Experience: 7+ years
At Capital One, you will help consult on initiatives, programs, and projects to raise their game in Information Security. You are pragmatic and practical in your understanding of risk and security, but also willing to know when to pull in experts and escalate. You collaborate and innovate with other teams within Capital One to push the envelope.
You are comfortable with Cloud Service technologies like Storage Services, Security & Access Control Management, Container Services, and API Implementation and Management. You are familiar with various Cloud computing models to include IaaS, PaaS, and SaaS along with their architectural differences. Security is essential to what we do here, from protecting our customers to our associates.
The Senior Lead ISO Consultant will provide cyber security architecture advisory support needed to build the Technology & Business capabilities on a novel Modern platform, that will enable customer set-up, use, and management of a Capital One Credit Card, including Data Product. In this role, the responsibilities will include:
- Act as a central Information Security point of contact for the Global Payment Networks line of business
- Coordinate and execute proactive Information Security consulting to the business and technology teams covering Infrastructure Security, Resiliency, Data Security, Network Architecture and Design, and User Access Management
- Serve as an expert in Capital One's Information Security capabilities, solutions, policies, procedures and standards
- Collaborating with enterprise cyber teams and tech architects in defining and driving the cyber architecture strategy and guiding principles for the architecting and designing of the modern platforms.
- Support security architecture and implementation needs for technology modernization efforts
- Overseeing all cyber related dependencies across the multiple components being built for the modernization effort.
- Influence customers to leverage security capabilities and solutions to shift and integrate security to the left in the development processes
- Provide ad-hoc support on special Information Security hot topics for the business
- Provide regular updates to executive leadership with your line of business on the overall Information Security health and risk environment
- Work with line of business leadership to anticipate their objectives and needs to better serve the line of business
- Support the team on collectively mapping technologies to a standardized framework in order to identify and execute on best practices in risk reduction through the configuration of cybersecurity tools and platforms.
- Support the development, modification, and use of capability, risk, or threat classification frameworks and standardization methodologies to facilitate the conduct of correlative capability, maturity, and effectiveness evaluations.
- Support data validation and communications on the impact of identified operational, compliance, process, control, and tooling gaps and potential remediation courses of action to multiple audiences, including leadership, to support the enhancement of their cybersecurity postures.
- You have a desire to work in a very fast moving, forward leaning, and modern computing environment
- You have a deep passion for Securing modern computing platforms
- You have a strong desire to continually learn about new technologies
- You possess strong conceptual thinking and communication skills
- You are a demonstrated leader with team-oriented interpersonal skills and the ability to interface effectively with a broad range of people and roles, including upper management, IT leaders, and technology vendors
- You maintain calmness and clarity of thought under pressure and ability to maintain confidentiality
- You have a deep understanding of strategic business objectives and the ability to drive results toward those objectives
- At least 6 years of experience working in cybersecurity or information technology
- At least 5 years of experience providing guidance and oversight of cyber security concepts
- At least 5 years of experience performing cyber security risk assessments or cyber security architecture reviews
- 7+ years of experience in securing a public cloud environment (AWS, GCP, Azure)
- 6+ years of cyber security advisory and technology consulting experience
- 3+ years of experience on cryptography, HSMs and similar systems
- Knowledge of HPNS, ATM, Mainframe technologies and other payment networks infrastructure technologies
- Experience in security integration for Mergers and Acquisitions
- Professional certifications AWS Certified Solutions Architect and Certified Information Systems Security Professional (CISSP)
At this time, Capital One will not sponsor a new applicant for employment authorization, or offer any immigration related support for this position (e.g. H1B, F-1 OPT, F-1 STEM OPT, F-1 CPT, J-1, TN, E-3, and O-1, or any other forms of work authorization that require immigration support from an employer).
Search Senior Manager, GPN Information Security Office Consultant jobs near McLean, VA → Browse all live jobs
This posting was published by Discover Financial Services on their own careers system and is shown here with a direct link to apply there. Employers: for corrections or removal, contact jobs@veritahire.com.