Logo
Capital One

Cyber Risk & Analysis Manager

Capital One, Chicago, Illinois, United States, 60290

Save Job

* Actively participate in ensuring the security of Third Party systems and applications, including Third Party Cybersecurity framework, program optimization, vulnerability remediation, metrics reporting, performance analysis and mitigation of cyber and Third Party risk.* Require high-level critical thinking to perform duties related to projects, compliance, metrics, assurance, vulnerabilities, or threats.* Apply knowledge of procedure-based controls of a cybersecurity program including qualitative risk analysis steps, vulnerability and patch management, threat modeling, Identity and Access Management (IAM), cybersecurity frameworks (NIST CSF, PCI-DSS and CIS).* Compile professional security assessment reports, slides, and lead discussions to effectively communicate the risks and remediation options to partners.* Demonstrate sound knowledge of Incident Management Respond and Recover functions from a cyber resiliency perspective.* Manage a cybersecurity team that focuses on Third Party cyber risk activities as it relates to Third Party monitoring, vulnerability monitoring and reach out efforts, framework and contract requirements.* Work cross-functionally within Cybersecurity to review identified Third Party vulnerabilities and vulnerabilities in deployment of Third Party solutions to determine severity, and impact, and recommend risk-based options for remediation.* Actively collaborate with business partners, application architects and partner security and risk teams to research and build security solutions aligned to business goals.* Learn advanced cybersecurity concepts including new and modern threat exploitation techniques of threat actors.* Achieve team commitments (and influence others to do the same) by using informal leadership & advanced communication skills.* Actively manage and escalate risk and customer-impacting issues within the day-to-day role to management.* Demonstrate excellent technical writing skills.* Mentor novices by providing learning tasks as well as work related tasks, direct the work of advanced beginners, and help them continue to grow.* Communicate effectively and promptly every day and lead cybersecurity discussions at Capital One. Provide oversight into security programs impacting decisions. Guide team to achieve key results for the assigned security assessment tasks.* High school diploma, GED or equivalent certification* At least 4 years of Cybersecurity experience* At least 2 years of Third Party Risk Management or Risk Management experience* At least 2 years of management experience* Bachelor’s Degree* 6+ years in cybersecurity* 4+ years in Third Party Risk Management* 2+ years of experience with establishing Third Party Connections, API, SFTP, and VPN* 2+ years of experience assessing security for cloud platforms, SaaS, PaaS, and IaaS* 2+ years of experience in network, OS, and Database security administration* 2+ years managing Third Party monitoring solutions* CISM Certification* CISSP CertificationCapital One offers a comprehensive, competitive, and inclusive set of health, financial and other benefits that support your total well-being. Learn more at the . Eligibility varies based on full or part-time status, exempt or non-exempt status, and management level. #J-18808-Ljbffr