Director, Information Security Office Ai/ml

Capital One Capital One · Banking · McLean, VA +2

This role is for a Director in the Information Security Office supporting the AIML Division. The primary focus is on ensuring enterprise-grade security and risk management for AI/ML initiatives, including generative AI security and compliance with regulatory frameworks. The role involves strategizing, implementing best practices, collaborating with various teams, and acting as a subject matter expert in cybersecurity operations.

What you'd actually do

  1. Serve as the subject matter expert guiding projects and technical investigative teams to protect a large enterprise
  2. Strategize and implement technology best practices for risk mitigation associated with analysis of security operations center alerts and cases
  3. Engage with internal teams and cyber/technology industry partners to ensure threats from external actors are evaluated and mitigated where appropriate
  4. Understand the business drivers, and associate culture of the enterprise and partner with relevant stakeholders to ensure regulatory compliance, data protection, and associate protection are are in place
  5. Collaborate with engineering and other teams to drive automation for analysis efficiency, containment, and remediation activities

Skills

Required

  • Bachelor's Degree
  • At least 7 years of experience in Cybersecurity or information technology
  • At least 5 years of experience in Application Development
  • At least 5 years of experience with Linux, Unix, and Windows operating systems
  • Subject matter expertise on Cyber Security Operations Centers including SIEM, SOAR, and Investigative methods
  • Experience with monitoring and protection tailored to specific applications
  • Understanding of the System Development Lifecycle and influencing developers
  • Must be able to work with little oversight, representing the company’s interests and values
  • Outstanding customer service and stakeholder management
  • Experience with security operations center, data analysis, and security event and incident management
  • Must be able to apply independent judgment
  • Strong ability compartmentalize information and structure findings in an easy to consume format

Nice to have

  • 3+ years experience managing security operations projects
  • 3+ years experience optimizing security operations tooling
  • 2+ years experience securing customer servicing agents platforms
  • 2+ years experience in securing Generative AI platforms and applications
  • 2+ years of experience managing, monitoring, or configuring public cloud environments (AWS, Azure, GCP)
  • Professional Security Certifications ( CISSP, CISM, CCSP, Security+, CEH, SANS GIAC 503 or 504, AWS Security)

What the JD emphasized

  • AIML Division
  • Enterprise-grade Agentic Capabilities
  • generative AI security
  • regulatory cybersecurity compliance frameworks
  • Cyber Security Operations Centers
  • security operations center
  • Generative AI platforms and applications