Capital One is a rapidly growing organization focused on customer passion and technological innovation. We are committed to cybersecurity, reliability, software quality, and data management. The Technology & Data Risk Management (TDRM) organization, comprising approximately 200 professionals, plays a crucial role in overseeing around 14,000 developers. TDRM sets high standards for cybersecurity, reliability, tech risk, and data management risk, influencing strategy, challenging activities, and conducting independent tests. In the financial services industry, a dual reporting structure for cybersecurity is essential: a first-line CISO with operational responsibilities reporting to the CIO, and a second-line Chief Tech Risk Officer (CTRO) and TDRM organization with broader responsibilities for cybersecurity, reliability, software quality, resilience, and data risk management. The CTRO is independent, oversees the CISO and CIO/CTO, and reports to the Chief Risk Officer, who reports directly to the CEO. TDRM ensures business leaders have the necessary tech and data risk information for informed decision-making. TDRM associates are highly skilled professionals in information security, cybersecurity, site reliability engineering, technology, data analysis, data science, and risk management, bringing extensive experience and delivering high-impact results. This specific role, Senior Manager, Cyber Risk and Analysis, is pivotal in shaping the second line's independent perspective on cybersecurity, reliability, and tech risk, with a focus on emerging technologies and risks. It involves analyzing the outcomes of first-line assessments to enable robust challenge, leading independent risk analysis workshops, applying quantitative and qualitative risk assessment methodologies, understanding control stacks, identifying risk reduction strategies, and systematically reviewing and analyzing assessment outputs. The role will influence the first line to drive the definition and prioritization of high-leverage risk reduction initiatives. Key responsibilities include providing expert guidance and mentorship within TDRM, fostering strong relationships with other first and second-line groups, and navigating the Enterprise Risk Management framework. As part of a growing organization, the candidate will help shape and refine the risk program, operating with autonomy and empowerment from senior leadership. The ideal candidate is a seasoned leader with practical knowledge of risk frameworks and assessment methodologies for technology/cyber risk, strategic thinking, data-driven decision-making, intellectual curiosity, and a drive for change.
Stand Out From the Crowd
Upload your resume and get instant feedback on how well it matches this job.
Job Type
Full-time
Career Level
Senior