In this role, you will:
Act as a Technology Risk Subject Matter Expert within the Business Risk team, specifically supporting the Enterprise Data Technology team.
Collaborate with the eData Risk team and the eData Product and Technology teams to facilitate the identification and development of risks, issues, and/or mitigation plans, ensuring necessary business changes and addressing areas of exposure.
Conduct comprehensive risk reviews during processes such as Risk Control and Self Assessments (RCSAs), Process Level Assessments (PLAs), Exceptions, Issues and Events, LAUNCH Assessments, and Targeted Risk Assessments to provide consultation on risk mitigation strategies and support the reporting of technology risk metrics..
Influence leadership within lines of business, Business Risk Offices, Compliance, Cyber Security, second-line risk organizations, and Internal Audit regarding pivotal technology risks and required actions.
Perform in-depth risk analysis and investigations, driving specific risk initiatives to minimize overall risk posture and enhance the effectiveness of the control suite.
Collaborate with technology leaders to ensure appropriate management of technical Key Risk Indicators (KRIs) and Key Performance Indicators (KPIs).
Identify and implement continuous enhancements to the technology risk program, aligning with industry standards, best practices, and Capital One’s strategic risk objectives.
Develop and assist in the delivery of senior-level risk management reports and communications.
Basic Qualifications:
High School Diploma, GED or Equivalent Certification
At least 4 years of experience in Risk Management, Process Management, Project Management, or a combination of the three.
At least 1 years of experience developing risks, associated controls, issues and mitigation plans or performing controls testing over cloud-based infrastructure
At least 3 years experience in Technology Risk, IT Internal or External Audit, or a combination, gained within a financial institution or professional services firm
At least 3 years of experience planning, analyzing and leading Risk assessments, and performing detailed reviews of control assessments; including National Institute of Standard & Technology (NIST) and PCI 1DSS
At least 3 years of experience supporting internal and external business clients with a deep understanding of technology risk in the areas of security considerations, sustainability, business resilience and data restrictions
Preferred Qualifications
Bachelor's Degree or Military Experience
Risk Certifications (CRISC, CISM, CRCM, CIPP, ABA Risk Mgmt Certification)
At least 5 years of experience supporting, partnering and interacting with internal stakeholders
At least 2 years of Financial Services industry experience
At least 7 years of Project Management experience leading cross functional projects in Risk simultaneously
Professional certification such as Certified Information Systems Auditor (CISA), Certified in Risk and Information Systems Control (CRISC), Certified Information Systems Security Professional (CISSP), Certified Information Security Manager (CISM) or other Industry related certifications
At least 7 years experience in information systems risk management, in information systems auditing, or a combination
At least 7 years of experience planning, analyzing and leading Risk assessments, and/or performing detailed reviews of control assessments; including National Institute of Standard & Technology (NIST) and/or PCI 1DSS
Experience with Amazon Web Service (AWS) with multi-cloud (Azure and GCP); Cloud Risk Management experience a plus.
. Eligibility varies based on full or part-time status, exempt or non-exempt status, and management level.
If you have visited our website in search of information on employment opportunities or to apply for a position, and you require an accommodation, please contact Capital One Recruiting at 1-800-304-9102 or via email at . All information you provide will be kept confidential and will be used only to the extent required to provide needed reasonable accommodations.
משרות נוספות שיכולות לעניין אותך