Manager, Security Platform Engineering, Dlp Control Platform

Capital One Capital One · Banking · McLean, VA +3

Manager, Security Platform Engineering, DLP Control Platform role at Capital One. This position leads the engineering delivery of a centralized Data Loss Prevention (DLP) platform, focusing on detection logic, enforcement orchestration, and continuous validation. The role involves shipping production software, making technical decisions, and owning the platform's technical direction within a regulated environment. Requires strong platform engineering experience, cybersecurity awareness, and cloud infrastructure knowledge.

What you'd actually do

  1. Lead the technical delivery of a centralized DLP platform that standardizes how data protection policies are authored, how findings are routed and scored, and how enforcement is applied across the program
  2. Design and build platform services using Python, AWS serverless and container infrastructure (ECS Fargate, Lambda, Step Functions, Aurora PostgreSQL, EventBridge), and infrastructure as code (CDK)
  3. Define interface contracts between platform components and existing production systems, ensuring clean integration boundaries
  4. Make architectural trade-offs that balance delivery speed, operational reliability, and regulatory defensibility
  5. Drive engineering decisions on schema design, API boundaries, deployment strategy, and platform lifecycle management

Skills

Required

  • High School Diploma, GED, or equivalent certification
  • 4 years of software engineering experience
  • 4 years of experience in building and deploying production platforms or distributed systems
  • 2 years of experience in cybersecurity, data protection, data engineering, or platform engineering in a regulated or security-sensitive environment
  • 2 years of experience in working with cloud infrastructure service

Nice to have

  • 1+ years of experience with Go and Python, including typed JSON handling, interface design, and template-based code generation
  • 1+ years of experience with schema validation systems (CUE, JSON Schema, or equivalent constraint languages)
  • 1+ years of experience defining and implementing API contracts, message schemas, or integration interfaces between systems
  • 1+ years of experience with infrastructure as code (CDK, Terraform, or CloudFormation)
  • 1+ years of experience with relational databases (PostgreSQL preferred) including schema design and query optimization
  • 1+ years experience programmatically implementing data protection or security controls including building detection logic, classification systems, enforcement automation, or false positive reduction through code
  • 1+ years of experience of shipping new platforms from inception to production
  • 1+ years of experience using AI coding tools (GitHub Copilot, Claude Code) to accelerate development delivery
  • AWS Certified Solutions Architect or Certified Information Systems Security Professional (CISSP) certification

What the JD emphasized

  • production platforms
  • regulated or security-sensitive environment
  • shipping new platforms from inception to production