Senior Lead Information Security Office Consultant

Capital One Capital One · Banking · McLean, VA

Senior Lead Information Security Office Consultant responsible for managing and improving the cybersecurity posture of specific technology assets within Capital One's Cyber Information Security Office. The role involves proactive consulting, risk management, and influencing teams to integrate security early in development processes, with a focus on financial services.

What you'd actually do

  1. Act as a central Information Security point of contact for a portfolio of customer servicing technology assets.
  2. Coordinate and execute proactive Information Security consulting to the business and technology teams covering Infrastructure Security, Resiliency, Data Security, Network Architecture and Design, and User Access Management
  3. Serve as an expert in Capital One’s Information Security capabilities, solutions, policies, procedures and standards
  4. Influence customers to leverage security capabilities and solutions to shift and integrate security to the left in the development processes
  5. Escalate and manage cyber security risk

Skills

Required

  • technical architecture background
  • identify and mitigate technical risks
  • communication and collaboration skills
  • problem solving and influencing skills
  • simplify the technically complex
  • work across different functions, organizations, and reporting boundaries
  • High School Diploma, GED or equivalent certification
  • at least 6 years of experience working in cyber security or information technology
  • at least 5 years of experience providing guidance and oversight of cyber security concepts
  • at least 4 years of experience performing cyber security risk assessments and cyber security architecture reviews
  • at least 4 years of experience with architecture, software design, networking or cloud infrastructure

Nice to have

  • Bachelor’s Degree
  • 7+ years of experience with Architecture, software design, networking or Cloud infrastructure
  • 6+ years of experience in securing a public cloud environment (AWS, GCP, or Azure)
  • 2+ years of experience utilizing Agile methodologies
  • 2+ years of experience in Financial Services
  • 2+ years of experience in web application security
  • AWS Certified Solutions Architect or Certified Information Systems Security Professional (CISSP)

What the JD emphasized

  • cybersecurity posture
  • information security consulting
  • cyber security risk