Talent.com
Director, Information Security Officer
Director, Information Security OfficerCapital One • Washington, DC, US
Director, Information Security Officer

Director, Information Security Officer

Capital One • Washington, DC, US
30+ days ago
Job type
  • Full-time
  • Part-time
Job description

Job Description

Director, Information Security Officer

Cybersecurity is essential to what we do at Capital One, from protecting our customers to our associates. As part of the Information Security Office, you are passionate about security and risk management. You see security as an enabler and differentiator to enable the business through innovation, not a step in the compliance process. You are pragmatic and practical in your understanding of risk and security, but also willing to know when to pull in experts and escalate. You collaborate and innovate with other teams within Capital One to push the envelope.

As Director, Information Security Officer, you will lead end to end security for strategic projects for one of our lines of business. You will work with the business, technology and risk partners to achieve time sensitive goals and objectives in a secure manner with a heavy forward lean on modern software and technology architectures.You have the ability to lead complex problem solving in partnership with multiple stakeholders in a fast-paced environment, driving results with critical impact.  You will play a leading role in delivering product security advisory services for a fast moving project within a line of business portfolio, working closely with other professionals as required.  At Capital One, you will help advise on strategic initiatives, programs, and projects to create business value in a risk-based and agile manner. You are pragmatic and practical in your understanding of security and associated risks, but also willing to know when to collaborate with experts and escalate as required.  You believe in making the secure way easy and see yourself as an advocate in the value of data driven business decisions and products.  You are comfortable with modern software, data analytics ecosystems, artificial intelligence, and cloud based technologies as well as associated protective methods.

Responsibilities :

Be a leader at a premiere technology and financial services company

Be responsible for delivery of end to end security for strategic projects, including but not limited to mergers and acquisitions

Deliver divisional cyber strategy integration and execution, identification and management of risk for top business initiatives and technology platforms, threat and vulnerability management, incident management, supply chain cyber risk management, cyber risk oversight and reporting.

Deliver Cyber agenda and integration of Information Security within business objectives for line of business area

Serve as the central point of contact for your line of business technology executives into Capital One’s Cyber risk management priorities

Educate and influence executive leadership and associates to effectively leverage security capabilities and solutions to mitigate risks and emerging threats

Provide security expertise on prioritizing and managing information security risks and initiatives

Escalate and manage cyber security risk

Provide regular updates to executive leadership with your line of business on the overall information security health and risk environment

Work with business leadership to anticipate their objectives and needs to better serve them

Be an advocate for security, business and digital innovation.  Instills a culture that works toward the highest standards in cyber (safeguard the business) while ensuring that business requirements are understood and adhered to (enabling the business).

Plays a key leadership role within Cyber’s community of leaders, drives innovation activity as an outcome; partner extensively with other Cyber and Technology organizations to derive solutions enabling industry leading products

Build relationships and influence with risk management functions across lines of defense

Become knowledgeable and advise on Capital One’s Cyber’s services, policies, procedures and standards

Staying current on the changing regulatory environment and understanding the impacts to the organization

About You :

You are a demonstrated leader with team-oriented interpersonal skills and the ability to interface effectively with a broad range of people and roles, including business executives, technology leaders, and enterprise suppliers.

You have expertise securing large-scale e-commerce platforms, with deep understanding of payments systems, customer data protection across high transaction environments ensuring protection of user data across internal and partner ecosystems.

You are a focused individual who thrives in a fast-paced, dynamic, and collaborative team environment.

You have a deep passion for securing forward leaning, modern computing platforms

You have intuitive knowledge and experience with Offensive and Defensive Security techniques

You are comfortable with technologies and innovation including, Generative AI, Data Lakes, Cloud Services, Containers, Microservices, Serverless, APIs, DevOps, Encryption and Zero Trust

You have a strong desire to continually learn about new technologies

You enjoy leveraging your engineering experience to problem solve and continually learn new technology concepts to solve issues.

You display strong judgment, data / risk based decisioning, leadership, integrity, and communication skills.

You are able to tailor communications and analysis to the intended audience.

You have a passion and expertise in cybersecurity, with an ability to be confident, respectful, and articulate when registering dissenting or unpopular opinions.

You maintain calmness and clarity of thought under pressure and ability to maintain confidentiality

You are able to work well under minimal supervision

You have a deep understanding of strategic business objectives and the ability to drive results toward those objectives

You have the ability to describe the risks of a security exposure or vulnerability in business-impact terms

Basic Qualifications :

Bachelor's degree

At least 7 years of experience in Information Security

At least 5 years of experience in people management

At least 5 years of experience with cyber policies, standards, and procedures

At least 5 years of experience in securing public cloud environments and services (AWS, GCP, Azure)

Preferred Qualifications :

Masters degree or PhD in Computer Science, Information Systems, or Engineering

10+ years experience in technology and cybersecurity risk

7+ years experience in leading applications security, vulnerability management and incident response

7+ years experience performing security risk assessments

5+ years experience in security automation and integrating security into software development pipelines

5+ years experience working with industry frameworks and compliance requirements (NIST CSF, FFIEC CAT, CIS RAM, FAIR, PCI DSS)

2+ years experience with information technology audit or compliance management

2+ years in payment security including securing digital payments and payment cryptography

2+ years experience utilizing agile methodologies within DevOps environments

Industry-recognized professional certifications such as Certified Information Systems Security Professional (CISSP), Certified Cloud Security Professional (CCSP), AWS Certified Solutions Architect, Certified Information Security Manager (CISM)

4+ years experience in the e-commerce industry

4+ years experience in a regulated environment

2+ years experience in financial services industry

2+ years of experience in security integration for Mergers and Acquisitions

At this time, Capital One will not sponsor a new applicant for employment authorization, or offer any immigration related support for this position (i.e. H1B, F-1 OPT, F-1 STEM OPT, F-1 CPT, J-1, TN, E-2, E-3, L-1 and O-1, or any EADs or other forms of work authorization that require immigration support from an employer).

The minimum and maximum full-time annual salaries for this role are listed below, by location. Please note that this salary information is solely for candidates hired to perform work within one of these locations, and refers to the amount Capital One is willing to pay at the time of this posting. Salaries for part-time roles will be prorated based upon the agreed upon number of hours to be regularly worked.

Chicago, IL : $239,900 - $273,800 for Director, Cyber Technical

McLean, VA : $263,900 - $301,200 for Director, Cyber Technical

Plano, TX : $239,900 - $273,800 for Director, Cyber Technical

Richmond, VA : $239,900 - $273,800 for Director, Cyber Technical

Candidates hired to work in other locations will be subject to the pay range associated with that location, and the actual annualized salary amount offered to any candidate at the time of hire will be reflected solely in the candidate’s offer letter.

This role is also eligible to earn performance based incentive compensation, which may include cash bonus(es) and / or long term incentives (LTI). Incentives could be discretionary or non discretionary depending on the plan.

Capital One offers a comprehensive, competitive, and inclusive set of health, financial and other benefits that support your total well-being. Learn more at the Capital One Careers website. Eligibility varies based on full or part-time status, exempt or non-exempt status, and management level.

This role is expected to accept applications for a minimum of 5 business days.

No agencies please. Capital One is an equal opportunity employer (EOE, including disability / vet) committed to non-discrimination in compliance with applicable federal, state, and local laws. Capital One promotes a drug-free workplace. Capital One will consider for employment qualified applicants with a criminal history in a manner consistent with the requirements of applicable laws regarding criminal background inquiries, including, to the extent applicable, Article 23-A of the New York Correction Law; San Francisco, California Police Code Article 49, Sections 4901-4920; New York City’s Fair Chance Act; Philadelphia’s Fair Criminal Records Screening Act; and other applicable federal, state, and local laws and regulations regarding criminal background inquiries.

If you have visited our website in search of information on employment opportunities or to apply for a position, and you require an accommodation, please contact Capital One Recruiting at 1-800-304-9102 or via email at RecruitingAccommodation@capitalone.com. All information you provide will be kept confidential and will be used only to the extent required to provide needed reasonable accommodations.

For technical support or questions about Capital One's recruiting process, please send an email to Careers@capitalone.com

Capital One does not provide, endorse nor guarantee and is not liable for third-party products, services, educational tools or other information available through this site.

Capital One Financial is made up of several different entities. Please note that any position posted in Canada is for Capital One Canada, any position posted in the United Kingdom is for Capital One Europe and any position posted in the Philippines is for Capital One Philippines Service Corp. (COPSSC).

Create a job alert for this search

Information Security Officer • Washington, DC, US

Related jobs
Director Business Information Security Officer

Director Business Information Security Officer

Surescripts • Arlington, VA, United States
Full-time
We deliver insights at critical points of care for better decisions - from streamlining prior authorizations to delivering comprehensive medication histories to facilitating messages between provid...Show more
Last updated: 27 days ago • Promoted
Information System Security Manager (ISSM), Public Sector

Information System Security Manager (ISSM), Public Sector

Scale AI, Inc. • Washington, DC, United States
Full-time
Our Security team works on operational issues at the leading edge of machine learning technology.You will join a creative and solutions-oriented team collaborating with internal teams at Scale and ...Show more
Last updated: 30+ days ago • Promoted
Information Systems Security Manager (ISSM)

Information Systems Security Manager (ISSM)

BTI • Washington, DC, US
Full-time
Quick Apply
Business Technology Integrators (BTI) is seeking an Information Systems Security Manager (ISSM) to lead a team in executing risk management efforts against our customer's inventory of on premise, v...Show more
Last updated: 30+ days ago
Director of Cybersecurity, Infrastructure & Secure Architecture

Director of Cybersecurity, Infrastructure & Secure Architecture

Klaritee • Washington, DC, United States
Full-time
Director of Cybersecurity, Infrastructure & Secure Architecture.The Executive Director of the Klaritee Federal Safety Council and the Director of Regulatory Affairs, Law & Civic Compliance will joi...Show more
Last updated: 1 day ago • Promoted
Information Systems Security Officer (ISSO)

Information Systems Security Officer (ISSO)

K2 Group, Inc. • Joint Base Andrews, MD, US
Full-time
Quick Apply
This is a contingent opportunity The ISSO is responsible for the administration and management of the Information Security program for Headquarters United States Space Force (HQ USSF) Staff Securit...Show more
Last updated: 30+ days ago
Information Systems Security Officer (ISSO)

Information Systems Security Officer (ISSO)

Avint • DC, WA, US
Full-time
Quick Apply
Avint, LLC is seeking a highly skilled and mission-driven.Information System Security Officer (ISSO).The ideal candidate will bring deep technical expertise, hands-on experience securing complex sy...Show more
Last updated: 5 days ago
Information Security Engineer

Information Security Engineer

ISACA • Washington, DC, United States
Full-time
The Information Technology Department of Arnold & Porter has an opening for an Information Security Engineer in the Washington, DC office or may work 100% virtual / remote in a firm-approved U.The In...Show more
Last updated: 16 days ago • Promoted
Information System Security Officer (ISSO)

Information System Security Officer (ISSO)

Tactibit Technologies LLC • Suitland, MD, United States
Full-time
Tactibit Technologies provides innovative information technology, cybersecurity, and cloud support services to the Federal Government. We support some of the nation's most critical and demanding pro...Show more
Last updated: 9 days ago • Promoted
Information System Security Officer (ISSO)

Information System Security Officer (ISSO)

St. George Tanaq Corporation • Washington, DC, United States
Full-time
Information System Security Officer (ISSO).WFH Flexible-Remote from MD, VA, DC (+DC+USA).Tanaq Technical Services (TTS), a division of St. George Tanaq (SGT) Corporation, is an 8(a) Alaskan Native S...Show more
Last updated: 30+ days ago • Promoted
Information Security Engineer

Information Security Engineer

Arnold & Porter Llp • Washington, DC, United States
Full-time
The Information Technology Department of Arnold & Porter has an opening for an Information Security Engineer in the Washington, DC office or may work 100% virtual / remote in a firm-approved U.The In...Show more
Last updated: 24 days ago • Promoted
Director Information Security & Risk Management

Director Information Security & Risk Management

Highmark Health • Washington, DC, United States
Full-time
Company : • •Highmark Health## • •Job Description : • • • •JOB SUMMARY • •This job directs and manages Identity and Access Management (IAM) services for the Enterprise. Provides leadership to the Organizatio...Show more
Last updated: 16 days ago • Promoted
Information Security Manager

Information Security Manager

Howard Community College • Columbia, MD, United States
Full-time
Howard Community College (HCC) is an exciting place to work, learn, and grow! We are proud to have received the Great Colleges to Work For honor for 12 consecutive years, 2009-2020.Howard Community...Show more
Last updated: 16 days ago • Promoted
IT Information Security Manager

IT Information Security Manager

SmartCommerce • Washington, DC, United States
Full-time
IT Information Security Manager.We are better together!!! And we hope that includes you!!! We’re a community of problem solvers passionate about helping clients take their sales to the next level.W...Show more
Last updated: 13 days ago • Promoted
Senior Information Systems Security Officer

Senior Information Systems Security Officer

Telophase Corporation • Lanham, MD, US
Full-time
Quick Apply
Telophase Corporation is seeking a motivated, career and customer-oriented senior Information Systems Security Officer (ISSO) to join our team. The ISSO shall ensure the implementation and maintenan...Show more
Last updated: 30+ days ago
Information System Security Officer (ISSO)

Information System Security Officer (ISSO)

Alpha Omega Integration, LLC • Arlington, VA, United States
Full-time
Job Title : Information System Security Officer (ISSO).Clearance Required : DHS Public Trust EOD, US Citizen (Secret or above preferred). Work Location : Hybrid; Onsite 2 days a week in Arlington, VA (...Show more
Last updated: 8 days ago • Promoted
Director - Cybersecurity

Director - Cybersecurity

Five Guys • Alexandria, VA, United States
Full-time
The Director - Cybersecurity is responsible for leading Five Guys cybersecurity strategy, governance, and operations to protect critical assets, data, and infrastructure. This executive-level role o...Show more
Last updated: 22 days ago • Promoted
Director of Offensive Security Engineering

Director of Offensive Security Engineering

NightDragon Acquisition Corp. • Washington, DC, United States
Full-time
A leading cybersecurity firm is seeking a Director of Software Engineering – Offensive Security to lead the development of innovative security solutions. The ideal candidate will have a strong backg...Show more
Last updated: 6 days ago • Promoted
Information Security Compliance Manager (INDG)

Information Security Compliance Manager (INDG)

Bloomberg Industry Group • Arlington, VA, United States
Full-time
As a Manager of Information Security Compliance, you will support Bloomberg Industry Group's Governance, Risk, and Compliance (GRC) programs. You will be part of a team that delivers customer trust,...Show more
Last updated: 15 days ago • Promoted