Principal Risk Specialist, Identity & Access Management | Retail Bank

Capital One Capital One · Banking · McLean, VA +1

This role focuses on risk management within Identity and Access Management (IAM) in a retail bank, with a specific emphasis on the responsible implementation of AI. The individual will act as a strategic risk partner, shaping the technology risk posture and ensuring the resilience of enterprise technology. Responsibilities include developing risk frameworks, performing risk assessments, managing projects, liaising with stakeholders, and reporting to senior management. While AI is mentioned in the context of responsible implementation, the core of the role is risk management and IAM, not direct AI/ML model development or deployment.

What you'd actually do

  1. Support the development and execution of the identity and access risk framework, providing guidance for critical assets including Identity Governance & Administration, Privileged Access Management, and Entitlement Management.
  2. Perform risk assessments and data analysis to identify trends and reduce residual risk within the Bank Tech business.
  3. Drive cross-functional projects and manage simultaneous workstreams, ensuring scope, timelines, and regulatory standards are met.
  4. Act as a key liaison between technology teams, cyber, ESM, vendors, and business partners to translate enhanced enterprise requirements and report on IAM risk posture.
  5. Prepare high-quality presentations and briefing materials for senior management and executive leadership regarding the risk environment, metrics, and remediation status.

Skills

Required

  • Cybersecurity
  • Technology Risk Management
  • Identity and Access Management (IAM)
  • Risk Assessment
  • Project Management

Nice to have

  • Certified Information Systems Security Professional (CISSP)
  • Certified Information Systems Auditor (CISA)
  • Certified in Risk and Information Systems Control (CRISC)
  • Certified Information Security Manager (CISM)
  • Certified Identity and Access Manager (CIAM)
  • Certified Identity Management Professional (CIMP)
  • Certified AI Governance Professional (AIGP)

What the JD emphasized

  • responsible implementation of AI
  • AI risk management certifications