Expoint - all jobs in one place

Finding the best job has never been easier

Limitless High-tech career opportunities - Expoint

Capital One Sr Director Information Security Officer 
United States, Virginia, Arlington 
858945280

20.11.2024
Center 1 (19052), United States of America, McLean, Virginia Sr. Director, Information Security Officer


Responsibilities:

  • Be a leader at a premiere technology and financial services company

  • Lead a team of Product Security advisory professionals, responsible for Divisional cyber strategy integration and execution, identification and management of risk for top business initiatives and technology platforms, threat and vulnerability management, incident management, supply chain cyber risk management, cyber risk oversight and reporting.

  • Deliver Cyber agenda and integration of Information Security within business objectives for line of business area

  • Serve as the central point of contact for your line of business technology executives into Capital One’s Cyber risk management priorities

  • Educate and influence executive leadership and associates to effectively leverage security capabilities and solutions to mitigate risks and emerging threats

  • Provide security expertise on prioritizing and managing information security risks and initiatives

  • Escalate and manage cyber security risk

  • Provide regular updates to executive leadership with your line of business on the overall information security health and risk environment

  • Work with business leadership to anticipate their objectives and needs to better serve them

  • Be an advocate for security and an advocate for the business and digital innovation. Instills a culture that works toward the highest standards in cyber (safeguard the business) while ensuring that business requirements are understood and adhered to (enabling the business).

  • Plays a key leadership role within Cyber’s community of leaders, drives innovation activity as an outcome; partner extensively with other Cyber and Technology organizations to derive solutions enabling industry leading products

  • Build relationships and influence with risk management functions across lines of defense

  • Become knowledgeable and advise on Capital One’s Cyber’s services, policies, procedures and standards

  • Staying current on the changing regulatory environment and understanding the impacts to the organization

  • Recruits, develops, and retains top talent, and uses excellent people leadership skills.

  • Build your team to provide top-notch information security and risk management expertise and guidance

About You:

  • You are a demonstrated leader with team-oriented interpersonal skills and the ability to interface effectively with a broad range of people and roles, including business executives, technology leaders, and enterprise suppliers

  • You are a focused individual who thrives in a fast-paced, dynamic, and collaborative team environment.

  • You have a deep passion for securing forward leaning, modern computing platforms

  • You are comfortable with technologies and innovation including, Generative AI, Data Lakes, Cloud Services, Containers, Microservices, Serverless, APIs, DevOps, Encryption and Zero Trust

  • You have a strong desire to continually learn about new technologies

  • You enjoy leveraging your engineering experience to problem solve and continually learn new technology concepts to solve issues.

  • You display strong judgment, data/risk based decisioning, leadership, integrity, and communication skills.

  • You are able to tailor communications and analysis to the intended audience.

  • You have a passion and expertise in cybersecurity, with an ability to be confident, respectful, and articulate when registering dissenting or unpopular opinions.

  • You maintain calmness and clarity of thought under pressure and ability to maintain confidentiality

  • You are able to work well under minimal supervision

  • You have a deep understanding of strategic business objectives and the ability to drive results toward those objectives

  • You have the ability to describe the risks of a security exposure or vulnerability in business-impact terms

Basic Qualifications:

  • Bachelor's degree

  • At least 9 years of experience in Information Security

  • At least 7 years of experience in people management

  • At least 5 years of experience with cyber policies, standards, and procedures

  • At least 5 years of experience in securing public cloud environments and services (AWS, GCP, Azure)

Preferred Qualifications:

  • Masters degree or PhD in Computer Science, Information Systems, or Engineering

  • 10+ years experience in technology and cybersecurity risk

  • 8+ years experience in leading applications security, vulnerability management and incident response

  • 8+ years experience performing security risk assessments

  • 5+ years experience working with industry frameworks and compliance requirements (NIST CSF, FFIEC CAT, CIS RAM, FAIR, PCI DSS)

  • 3+ years experience with information technology audit or compliance management

  • 2+ years experience utilizing agile methodologies within DevOps environments

  • Industry-recognized professional certifications such as Certified Information Systems Security Professional (CISSP), Certified Cloud Security Professional (CCSP), AWS Certified Solutions Architect, Certified Information Security Manager (CISM)

  • 4+ years experience in a regulated environment

  • 2+ years experience in financial services industry

. Eligibility varies based on full or part-time status, exempt or non-exempt status, and management level.

If you have visited our website in search of information on employment opportunities or to apply for a position, and you require an accommodation, please contact Capital One Recruiting at 1-800-304-9102 or via email at . All information you provide will be kept confidential and will be used only to the extent required to provide needed reasonable accommodations.