Security And Risk Management
financial services
Director,InformationSecurityOfficer
Neural analysis suggests this role is
optimal for Director candidates.
“Director, Information Security Officer at Security And Risk Management. Skills: Information Security, people management, cyber policies, standards, and procedures, securing public cloud environments and services, technology and cybersecurity risk, leading applications security, vulnerability management, incident response, security risk assessments, security automation, integrating security into software development pipelines, industry frameworks, compliance requirements, payment security, agile ”
What You'll Achieve.
achieve time sensitive goals and objectives in a secure manner; create business value in a risk-based and agile manner; driving results with critical impact; safeguard the business; drive results toward those objectives
Industry & Context.
lead complex problem solving; problem solve; solve issues
What They're Looking For.
Must Have
Bachelor's degree, At least 7 years of experience in Information Security, At least 5 years of experience in people management, At least 5 years of experience with cyber policies, standards, and procedures, At least 5 years of experience in securing public cloud environments and services (AWS, GCP, Azure)
Nice to Have
Masters degree or PhD in Computer Science, Information Systems, or Engineering, 10+ years experience in technology and cybersecurity risk, 7+ years experience in leading applications security, vulnerability management and incident response, 7+ years experience performing security risk assessments, 5+ years experience in security automation and integrating security into software development pipelines, 5+ years experience working with industry frameworks and compliance requirements (NIST CSF, FFIEC CAT, CIS RAM, FAIR, PCI DSS), 2+ years experience with information technology audit or compliance management, 2+ years in payment security including securing digital payments and payment cryptography, 2+ years experience utilizing agile methodologies within DevOps environments, Industry-recognized professional certifications such as Certified Information Systems Security Professional (CISSP), Certified Cloud Security Professional (CCSP), AWS Certified Solutions Architect, Certified Information Security Manager (CISM), 4+ years experience in a regulated environment, 2+ years experience in financial services industry
What You'll Do.
lead end to end security for strategic projects
deliver product security advisory services
advise on strategic initiatives
delivery of end to end security for strategic projects
including but not limited to mergers and acquisitions
Deliver divisional cyber strategy integration and execution
identification and management of risk for top business initiatives and technology platforms
threat and vulnerability management
supply chain cyber risk management
cyber risk oversight and reporting
Deliver Cyber agenda and integration of Information Security within business objectives for line of business area
Provide security expertise on prioritizing and managing information security risks and initiatives
Escalate and manage cyber security risk
Provide regular updates to executive leadership on the overall information security health and risk environment
Work with business leadership to anticipate their objectives and needs
Build relationships and influence with risk management functions across lines of defense
Become knowledgeable and advise on Capital One’s Cyber’s services
procedures and standards
Staying current on the changing regulatory environment and understanding the impacts to the organization
How You'll Work.
Team & Collaboration
collaborate and innovate with other teams; partnership with multiple stakeholders; working closely with other professionals as required; interface effectively with a broad range of people and roles, including business executives, technology leaders, and enterprise suppliers; collaborative team environment; partner extensively with other Cyber and Technology organizations; Build relationships and influence with risk management functions across lines of defense
Communication Scope
tailor communications and analysis to the intended audience; articulate when registering dissenting or unpopular opinions
Process & Methodology
strategic projects, time sensitive goals and objectives, agile manner
Full Job Description
Director, Information Security Officer Cybersecurity is essential to what we do at Capital One, from protecting our customers to our associates. As part of the Information Security Office, you are passionate about security and risk management. You see security as an enabler and differentiator to enable the business through innovation, not a step in the compliance process. You are pragmatic and practical in your understanding of risk and security, but also willing to know when to pull in experts and escalate. You collaborate and innovate with other teams within Capital One to push the envelope. As Director, Information Security Officer, you will lead end to end security for strategic projects for one of our lines of business. You will work with the business, technology and risk partners to achieve time sensitive goals and objectives in a secure manner with a heavy forward lean on modern software and technology architectures.You have the ability to lead complex problem solving in partnership with multiple stakeholders in a fast-paced environment, driving results with critical impact. You will play a leading role in delivering product security advisory services for a fast moving project within a line of business portfolio, working closely with other professionals as required. At Capital One, you will help advise on strategic initiatives, programs, and projects to create business value in a risk-based and agile manner. You are pragmatic and practical in your understanding of security and associated risks, but also willing to know when to collaborate with experts and escalate as required. You believe in making the secure way easy and see yourself as an advocate in the value of data driven business decisions and products. You are comfortable with modern software, data analytics ecosystems, artificial intelligence, and cloud based technologies as well as associated protective methods. Responsibilities: * Be a leader at a premiere technology and financial services company *
Applying for this Director, Information Security Officer role?
Most applicants get filtered before a human reads their resume. See if yours makes the cut.
How to Apply on Workday
- Workday has a multi-step form — save your progress after every section.
- "Apply With LinkedIn" can fail or lose data; manual entry is more reliable.
- Watch for the "Submit for Review" final step — hitting "Save" alone does not submit.
- Job requisition numbers are useful when following up with HR by email.
ANONYMOUS · UNFILTERED
What do employees actually say about Security And Risk Management?
Real rants from real employees. Read before you apply.