Logo
Capital One

Manager, Network Security, Tech & Data Risk Management

Capital One, Baltimore, Maryland, United States, 21276

Save Job

Manager, Network Security, Tech & Data Risk Management Capital One is one of the fastest growing organizations in the world today, powered by our passion for our customers. We are serious about technology, we dream big, and we execute: Capital One moved our entire enterprise to the public cloud over the course of five years. Just as we prioritize driving innovation through technology, we equally prioritize cybersecurity, reliability, software quality, and data management.

Technology & Data Risk Management (TDRM) is a small organization that packs a big punch. The 200 professionals in TDRM are trusted experts who oversee 14,000 developers at Capital One. We raise the bar for excellence in cybersecurity, reliability, and tech risk, and data management risk. We shape strategy and decisions, challenge activities to ensure they meet our standards, and perform independent tests of our security and technology risk.

For years, the cybersecurity community has debated whether the CISO should report to the CIO or not. In regulated financial services, the answer is: both. The first-line CISO has operational responsibilities and reports to the CIO. The second-line Chief Tech Risk Officer (CTRO) and the Tech & Data Risk Management (TRM) organization have broader responsibilities for cybersecurity but also reliability, software quality, resilience, and the risk of failing to manage our data. The CTRO is independent and oversees the work of the CISO, the CIO/CTO, and the Chief Data Officer. The CTRO reports to the Chief Risk Officer, who reports directly to the CEO.

This position - Manager, Network Security - is a unique opportunity for candidates with technical cybersecurity experience who have a desire to expand that expertise in a risk management organization. This individual will have the opportunity to leverage their technical subject matter expertise to provide advisory, oversight, and effective challenge to stakeholders within the first line of defense. This role will engage with and build relationships across multiple lines of defense while overseeing network security across Capital One's private and public cloud footprints.

Responsibilities

Provide advisory, oversight, and effective challenge to the first line of defense.

Provide technical assessments of cybersecurity controls design and effectiveness.

Draft assessments for senior management and other stakeholders, to include regulatory agencies and the Board of Directors, as needed.

Stay current on emerging cyber threats and potential implications to the firm.

Collaborate effectively with colleagues, stakeholders, and leaders across multiple organizations to achieve objectives.

Coordinate program-related activities and deliverables to ensure effective collaboration within the team and across stakeholder groups.

Proven track record of leading, mentoring, and influencing others.

Ability to communicate clearly in written and verbal form.

Ability to manage multiple projects while maintaining superior results.

Ability to work individually and cross-functionally.

Execution oriented and a self-motivator.

Basic Qualifications

Bachelor's degree or military experience

3+ years of experience in the financial services industry or highly regulated industry (healthcare, energy, telecommunications)

3+ years of experience implementing network defenses (firewalls, network access control, intrusion detection, intrusion prevention, web application firewalls, web gateways, and proxies) in AWS (Amazon Web Services) or GCP (Google Cloud Platform)

2+ years of experience implementing Zero Trust or Secure Access Service Edge (SASE) in AWS or GCP

1+ certifications for AWS or GCP

2+ years of audit or risk management experience

Preferred Qualifications

2+ years of experience with Palo Alto Networks technologies

1 or more audit or risk-focused certification: CRISC (Certified in Risk and Information Systems Control), CISA (Certified Information Systems Auditor), CISM (Certified Information Security Manager), or CISSP (Certified Information System Security Professional)

2+ years of experience implementing network defenses for global payment networks

Salary Range McLean, VA: $193,400 - $220,700 New York, NY: $211,000 - $240,800 Plano, TX: $175,800 - $200,700 Richmond, VA: $175,800 - $200,700

Benefits Capital One offers a comprehensive, competitive, and inclusive set of health, financial and other benefits that support your total well-being.

No agencies please.

Equal Opportunity Capital One is an equal opportunity employer (EOE, including disability/vet) committed to non-discrimination in compliance with applicable federal, state, and local laws. Capital One promotes a drug‑free workplace. Capital One will consider for employment qualified applicants with a criminal history in a manner consistent with the requirements of applicable laws regarding criminal background inquiries, including, to the extent applicable, Article 23‑A of the New York Correction Law; San Francisco, California Police Code Article 49, Sections; New York City's Fair Chance Act; Philadelphia's Fair Criminal Records Screening Act; and other applicable federal, state, and local laws and regulations regarding criminal background inquiries.

#J-18808-Ljbffr