Principal Associate, Cyber Security

Capital One•McLean, VA
•$161,800 - $184,600

About The Position

Do you love building and pioneering in the technology space? Do you enjoy solving complex business problems in a fast-paced, collaborative, inclusive, and risk-conscious delivery environment? At Capital One, you'll be part of a big group of makers, breakers, doers and disruptors who love to solve real problems and meet real customer needs. We are seeking Cyber Security Professionals who are passionate about evaluating cyber capabilities, threat intelligence, and risk management to join our team. In this role, you’ll have the opportunity to be on the forefront of driving cybersecurity governance, capability maturation, and risk transformation across Capital One.

Requirements

  • Bachelor's degree
  • At least 3 years of experience in cybersecurity or information technology
  • At least 2 years of experience evaluating, contributing to, or supporting development of cybersecurity capabilities

Nice To Haves

  • 3+ years of experience with cybersecurity frameworks and concepts such as NIST CSF, MITRE ATT&CK, CMMC, FedRAMP, etc.
  • 3+ years of experience performing analysis of or developing solutions for cyber threats, vulnerabilities, risks, or, events
  • 3+ years of experience working on teams and presenting to stakeholders cybersecurity information such as metrics, threat intelligence, controls and/or requirements
  • 2+ years of experience working in multi-cloud environments
  • 2+ years of experience using security tools (e.g., Splunk, Crowdstrike, Qualys, or AWS Security Hub)
  • 1+ years of experience developing or interpreting cybersecurity metrics or dashboards
  • Demonstrated familiarity with industry governance or financial governance processes
  • Experience with risk management concepts, including identifying threats, assessing vulnerabilities, and recommending mitigation strategies.
  • Ability to perform security incident analysis and assist with resolution, translating technical findings into clear, actionable reports for technical and non-technical stakeholders

Responsibilities

  • Work autonomously to assess needs, identify insights, and move actions forward with stakeholders to achieve targeted cybersecurity outcomes
  • Support the ongoing evaluation of cybersecurity capabilities, such as by determining effectiveness of capability implementation using the NIST Cybersecurity Framework (CSF)
  • Collaborate with stakeholders, Executives and LOB partners to understand their capabilities, maturation road-maps, and facilitate next steps
  • Leverage and enrich cybersecurity data from multiple data streams to produce new insights and analysis
  • Support the monitoring of cyber capabilities and track progress to maturity state objectives
  • Support improvements activities to program capabilities through the interpretation of technical issues and determination of root cause(s) of discovered weaknesses
  • Independently lead portions of capability or control assessments, ensuring findings are clearly documented and communicated to stakeholders
  • Develop and deliver risk and maturity reports tailored for both executive and technical audiences, highlighting trends and emerging issues
  • Coordinate cross-team efforts to align cybersecurity governance, metrics and reporting practices across multiple domains

Benefits

  • comprehensive, competitive, and inclusive set of health, financial and other benefits that support your total well-being
  • performance based incentive compensation, which may include cash bonus(es) and/or long term incentives (LTI)
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service