Principal Associate, International Risk, Strategy & Technology Enablement- Enterprise Services Risk

Capital One Capital One · Banking · McLean, VA +2

This role focuses on technical risk identification, data governance, and architectural design for secure global operations within the financial sector. While it involves leveraging AI and automation tools for risk analysis and documentation, the core function is not building AI models but rather ensuring secure and compliant technical and data frameworks. The role translates policies into technical requirements and guides data governance standards, with a strong emphasis on international regulations and risk appetites.

What you'd actually do

  1. Lead the design and development of comprehensive risk management frameworks that govern international technical architecture and global data management.
  2. Apply expertise in technical risk identification to review architectural diagrams and proposed network flows for Cloud, VDI, and Zero Trust environments, providing risk-based guidance and ensuring alignment with international standards.
  3. Translate international risk policies and regulations into technical requirements and architectural blueprints that engineering teams can execute.
  4. Guide the development of data governance frameworks for international operations, including data classification taxonomies, sovereignty rules, and tagging standards that enable downstream automation and enforcement.
  5. Define enforceable standards and procedures for the data lifecycle in alignment with global privacy laws, such as GDPR, and internal data security frameworks.

Skills

Required

  • High School Diploma, GED or Equivalent Certification
  • At least 3 years of experience in Risk Management, Process Management, Project Management, or a combination of these
  • At least 2 years of experience with technical documentation, data visualization, or technical requirement definition

Nice to have

  • Bachelor’s Degree or Military Experience
  • At least 3 years of experience supporting, partnering, and interacting with internal business clients
  • At least 4 years of experience in risk management or technology risk management
  • At least 3 years of experience performing technical or design-level risk assessments, including identifying threats and vulnerabilities within complex network or cloud infrastructures
  • At least 5 years of experience in project, program, or portfolio management
  • Experience developing risk or governance frameworks for Cloud Security, Zero Trust, or Network Security
  • Experience in Data Governance, including the development of data taxonomies and classification standards
  • Familiarity with International Data Privacy regulations (e.g., GDPR) and international market expansion risks
  • Familiarity with AI/ML concepts and experience using Gen AI tools to enhance analysis, documentation, or risk assessment workflows
  • Risk or Technical Certifications (e.g., CRISC, CISM, CIPP, CISSP, or PMP)

What the JD emphasized

  • international
  • technical risk identification
  • data governance
  • architectural blueprints
  • risk appetite
  • regulatory requirements
  • GDPR