About The Position

Senior Cyber Controls Monitoring Analyst As a Principal Analyst within the Cyber Controls Monitoring Team (Cyber CMT), you will operate at the intersection of GRC and engineering to approach control assurance as a product, not a periodic exercise. You won’t just report on data; you will build the automated measurements of Capital One’s security posture. Your primary responsibility is to develop, produce, and maintain automated health metrics for Cyber controls within our enterprise reporting platform by transforming raw telemetry data into real-time insights that prevent security process degradation before it becomes a significant risk.

Requirements

  • High School Diploma, GED, or equivalent certification
  • At least 3 years of experience in data analysis in a compliance, audit, or risk management environment
  • At least 2 years of experience in data manipulation and analysis
  • At least 2 years of experience with SQL and Python
  • At least 2 years of experience with version control (Git) and Continuous integration and continuous deployment

Nice To Haves

  • Bachelor's Degree
  • 5+ years of experience in data analysis in a compliance, audit, or risk management environment
  • 4+ years of experience developing metrics for a continuous controls monitoring program or a controls portfolio
  • 4 + years of experience developing config-driven data pipelines end-to-end including analytical SQL (CTEs, window functions), Python-based transformations (Pandas), REST API integration (OAuth, pagination), and inline data quality validation
  • 3 + years of experience with regulatory requirements and control frameworks (NIST 800.53, SOX, or COSO)
  • 3+ years of experience with an understanding of how security controls operate in practice including control types, execution patterns, and common failure points
  • 3+ years of experience connecting control monitoring to the underlying risks and threat scenarios that the control is designed to address

Responsibilities

  • Metric Engineering: Collaborate with cross functional teams and execute control walkthroughs to understand operations, identify data sources across disparate systems, and translate control designs/requirements into health metrics
  • ETL Pipeline Development: Design, develop, test, implement end-to-end data pipelines and metrics using Python and SQL based on control requirements
  • Technical Troubleshooting: Manage the full lifecycle of the control health metrics to maintain, debug, troubleshoot, and govern production pipelines
  • Stakeholder Engagement: Collaborate with Control SMEs and Accountable Executives (AEs) to define metrics and threshold logic, gain approval of control metrics, and facilitate remediation/escalation steps upon threshold breach
  • Continuous Improvement: Provide recommendations for enhancing control effectiveness and mitigating risks based on data-driven insights

Stand Out From the Crowd

Upload your resume and get instant feedback on how well it matches this job.

Upload and Match Resume

What This Job Offers

Job Type

Full-time

Career Level

Senior

Education Level

High school or GED

Number of Employees

5,001-10,000 employees

© 2024 Teal Labs, Inc
Privacy PolicyTerms of Service