Talent.com
Senior Manager, Risk Advisor, Technology and Data Risk Management

Senior Manager, Risk Advisor, Technology and Data Risk Management

Capital OneNew York, NY, US
6 days ago
Job type
  • Full-time
  • Part-time
Job description

Senior Manager, Cyber Risk And Analysis

Capital One is one of the fastest growing organizations in the world today, powered by our passion for our customers. We are serious about technology, we dream big, and we execute : Capital One moved our entire enterprise to the public cloud over the course of five years. Just as we prioritize driving innovation through technology, we equally prioritize cybersecurity, reliability, software quality, and data management.

Technology & Data Risk Management (TDRM) is a small organization that packs a big punch. The ~200 professionals in TDRM are trusted experts who oversee ~14,000 developers at Capital One. We raise the bar for excellence in cybersecurity, reliability, and tech risk, and data management risk. We shape strategy and decisions, challenge activities to ensure they meet our standards, and perform independent tests of our security and technology risk.

This position Senior Manager, Cyber Risk and Analysis will play a key role in shaping the second line's independent point of view on cybersecurity, reliability, and tech risk, and analyzing the outcomes of the first line's analysis to enable robust challenge across assessments.

This includes leading independent risk analysis workshops, applying quantitative and qualitative risk assessment methodologies, understanding the stack of controls, identifying new approaches to reducing risk, systematically reviewing, analyzing, aggregating and comparing outputs of different assessments, and influencing 1st Line to drive definition and prioritization of high leverage risk reduction initiatives. It will be critical for this role to provide expert guidance and mentorship across TRM, foster strong working relationships with other 1st and 2nd Line groups, and expertly navigate the Enterprise Risk Management framework.

As a member of a growing organization, you are expected to shape and further refine the risk program, and will have the opportunity to operate with both autonomy and empowerment from senior leadership. The successful candidate will be a seasoned leader with strong practical knowledge of risk frameworks and risk assessment methodologies applied to technology / cyber risk, who can think strategically and make data-driven decisions, who is intellectually curious, and who thrives driving change.

Desired Outcomes :

  • Review and challenge first line periodic and change-driven risk assessments, including risk sizing, control suite adequacy and mitigation plan relevance
  • Prepare executive reports summarizing TDRM's point of view on technology risks
  • Research industry trends and internal data to substantiate risk management decisions and make recommendations
  • Scope and facilitate cross-functional risk workshops and document the conclusions to influence 1st line's risk framing
  • Foster a collaborative relationship with stakeholders across 1st and 2nd line
  • Develop and implement plans to orchestrate the operational rollout of risk methodology changes

Ideal Candidate :

  • Positively contributes to an inclusive and accountable team culture
  • Critical analytical thinker, including the ability to express a point of view supported by data (with both technical and non-technical audiences)
  • Excellent communication and teaching skills, proven record teaching complex concepts to large audiences. Strong influencing and persuasion skills
  • Raises concerns early and knows when to escalate, including the ability to raise issues and facilitate constructive problem-solving at all levels of the organization
  • Passion and expertise in technology and cybersecurity domains, with an ability to be confident, respectful, and articulate when registering dissenting or unpopular opinions
  • Ability to manage multiple parallel initiatives while maintaining superior results
  • Execution oriented and a self-motivator
  • Personal resilience - the ability to stay optimistic and keep people focused during crises or times of change
  • Basic Qualifications :

  • Bachelor's degree or military experience
  • At least 6 years of experience managing, consulting, or auditing in the fields of risk management, information security or technology
  • At least 5 years of experience performing or challenging risk assessments leveraging qualitative and quantitative methodologies (COSO Framework, quantitative analysis, Factor Analysis Information Risk (FAIR), Process, Risk & Control (PRC) library, Risk and Control Self Assessment (RCSA), scenario analysis, new initiative risk assessments)
  • Professional security management certification (Open FAIR, Certified Information Systems Security Professional (CISSP), Certified Information Security Manager (CISM), Certified Information Systems Auditor (CISA), or Certified in Risk and Information Systems Control (CRISC))
  • Preferred Qualifications :

  • Master's degree in Information Technology, Cybersecurity, or equivalent
  • 5+ years of experience communicating and presenting data to both technical and non-technical audiences
  • 5+ years of experience applying risk quantification methodologies and rolling out risk framework changes
  • 4+ years of experience interacting with different stakeholders and leaders across multiple organizations
  • 4+ years of experience in a second-line or oversight role at a financial institution or regulatory agency
  • At this time, Capital One will not sponsor a new applicant for employment authorization for this position.

    The minimum and maximum full-time annual salaries for this role are listed below, by location. Please note that this salary information is solely for candidates hired to perform work within one of these locations, and refers to the amount Capital One is willing to pay at the time of this posting. Salaries for part-time roles will be prorated based upon the agreed upon number of hours to be regularly worked.

    Chicago, IL : $175,500 - $200,300 for Sr. Manager, Cyber Risk & Analysis McLean, VA : $193,000 - $220,300 for Sr. Manager, Cyber Risk & Analysis New York, NY : $210,500 - $240,300 for Sr. Manager, Cyber Risk & Analysis Plano, TX : $175,500 - $200,300 for Sr. Manager, Cyber Risk & Analysis Richmond, VA : $175,500 - $200,300 for Sr. Manager, Cyber Risk & Analysis Candidates hired to work in other locations will be subject to the pay range associated with that location, and the actual annualized salary amount offered to any candidate at the time of hire will be reflected solely in the candidate's offer letter. This role is also eligible to earn performance based incentive compensation, which may include cash bonus(es) and / or long term incentives (LTI). Incentives could be discretionary or non discretionary depending on the plan.

    Capital One offers a comprehensive, competitive, and inclusive set of health, financial and other benefits that support your total well-being. Learn more at the Capital One Careers website. Eligibility varies based on full or part-time status, exempt or non-exempt status, and management level.

    This role is expected to accept applications for a minimum of 5 business days. No agencies please. Capital One is an equal opportunity employer (EOE, including disability / vet) committed to non-discrimination in compliance with applicable federal, state, and local laws. Capital One promotes a drug-free workplace. Capital One will consider for employment qualified applicants with a criminal history in a manner consistent with the requirements of applicable laws regarding criminal background inquiries, including, to the extent applicable, Article 23-A of the New York Correction Law; San Francisco, California Police Code Article 49, Sections 4901-4920; New York City's Fair Chance Act; Philadelphia's Fair Criminal Records Screening Act; and other applicable federal, state, and local laws and regulations regarding criminal background inquiries.

    If you have visited our website in search of information on employment opportunities or to apply for a position, and you require an accommodation, please contact Capital One Recruiting at 1-800-304-9102 or via email at RecruitingAccommodation@capitalone.com. All information you provide will be kept confidential and will be used only to the extent required to provide needed reasonable accommodations.

    For technical support or questions about Capital One's recruiting process, please send an email to Careers@capitalone.com.

    Capital One Financial is made up of several different entities. Please note that any position posted in Canada is for Capital One Canada, any position posted in the United Kingdom is for Capital One Europe and any position posted in the Philippines is for Capital One Philippines Service Corp. (COPSSC).

    Create a job alert for this search

    Senior Manager Risk • New York, NY, US

    Related jobs
    • Promoted
    • New!
    Director, Technology Risk- Enterprise Services Risk

    Director, Technology Risk- Enterprise Services Risk

    Capital OneNew York, NY, United States
    Full-time +1
    Director, Technology Risk- Enterprise Services Risk.Director, Technology Risk- Enterprise Services Risk.The Enterprise Services Risk organization is expanding with a focus on attracting innovative,...Show moreLast updated: 10 hours ago
    • Promoted
    Audit Manager (Non-Profit)

    Audit Manager (Non-Profit)

    JobotHazlet, NJ, US
    Full-time +1
    Audit and Assurance Manager (Non-Profit) / Hybrid / $$$ / Top 50 firm.This Jobot Job is hosted by : Joseph Sipocz.Are you a fit? Easy Apply now by clicking the "Apply Now" buttonand sendin...Show moreLast updated: 21 days ago
    • Promoted
    Internal Audit & Risk Advisory Senior

    Internal Audit & Risk Advisory Senior

    EisnerAmperIselin, NJ, United States
    Full-time
    At EisnerAmper, we look for individuals who welcome.Internal Audit & Risk Consulting Senior that will perform tasks that focus on full-cycle internal audit engagements, including overseeing and con...Show moreLast updated: 28 days ago
    • Promoted
    Senior Manager - CFIUS Security Compliance Advisor

    Senior Manager - CFIUS Security Compliance Advisor

    EisnerAmperIselin, NJ, United States
    Full-time
    At EisnerAmper, we look for individuals who welcome.EisnerAmper is looking to hire a.Risk and Compliance Services practice as a dedicated member of the National Security Advisory services team.The ...Show moreLast updated: 30+ days ago
    • Promoted
    North America MarComm and Design Associate

    North America MarComm and Design Associate

    Axis CapitalRed Bank, NJ, United States
    Full-time
    This is your opportunity to join AXIS Capital - a trusted.We stand apart for our outstanding client service, intelligent risk taking and superior risk adjusted returns for our shareholders.We also ...Show moreLast updated: 16 days ago
    • Promoted
    Senior Claims Specialist

    Senior Claims Specialist

    Axis CapitalRed Bank, NJ, United States
    Full-time
    This is your opportunity to join AXIS Capital - a trusted.We stand apart for our outstanding client service, intelligent risk taking and superior risk adjusted returns for our shareholders.We also ...Show moreLast updated: 30+ days ago
    • Promoted
    Director of Risk Management

    Director of Risk Management

    City of New YorkNew York, NY, US
    Full-time
    The Financial Information Services Agency-Office of Payroll Administration (FISA-OPA) has a vacancy for a Director of Risk Management. The Director of Risk Management will report directly to the Chi...Show moreLast updated: 30+ days ago
    • Promoted
    FS & SOX Internal Audit Senior Manager - Risk Advisory

    FS & SOX Internal Audit Senior Manager - Risk Advisory

    EisnerAmperIselin, NJ, United States
    Full-time
    At EisnerAmper, we look for individuals who welcome.EisnerAmper experience is one-of-a-kind.Internal Audit Consulting Senior Manager. Risk & Compliance Services practice focusing primarily on our Fi...Show moreLast updated: 30+ days ago
    • Promoted
    FS & SOX Internal Audit & Risk Advisory Manager

    FS & SOX Internal Audit & Risk Advisory Manager

    EisnerAmperIselin, NJ, United States
    Full-time
    Internal Audit Consulting Manager.Risk & Compliance Services practice for our Financial Services clients.Focusing on Internal Audit, Internal Controls and Regulatory Compliance, we are seeking some...Show moreLast updated: 30+ days ago
    • Promoted
    Senior Claims Specialist - EPL / Fiduciary

    Senior Claims Specialist - EPL / Fiduciary

    Axis CapitalRed Bank, NJ, United States
    Full-time
    This is your opportunity to join AXIS Capital - a trusted.We stand apart for our outstanding client service, intelligent risk taking and superior risk adjusted returns for our shareholders.We also ...Show moreLast updated: 9 days ago
    • Promoted
    Senior Manager, Operational Risk Management

    Senior Manager, Operational Risk Management

    Bristol Myers SquibbNew Brunswick, NJ, US
    Full-time
    Those aren't words that are usually associated with a job.But working at Bristol Myers Squibb is anything but usual.Here, uniquely interesting work happens every day, in every department.From optim...Show moreLast updated: 22 days ago
    • Promoted
    Head of Technology Risk Management - Business Unit Risk Manager, Director

    Head of Technology Risk Management - Business Unit Risk Manager, Director

    MUFGJersey City, NJ, US
    Full-time
    Do you want your voice heard and your actions to count?.Discover your opportunity with Mitsubishi UFJ Financial Group (MUFG), one of the world's leading financial groups. Across the globe, we're 120...Show moreLast updated: 30+ days ago
    • Promoted
    Senior Claim Specialist, Environmental

    Senior Claim Specialist, Environmental

    Axis CapitalRed Bank, NJ, United States
    Full-time
    This is your opportunity to join AXIS Capital - a trusted.We stand apart for our outstanding client service, intelligent risk taking and superior risk adjusted returns for our shareholders.We also ...Show moreLast updated: 30+ days ago
    • Promoted
    Project Manager / Scrum Master - Claims

    Project Manager / Scrum Master - Claims

    Axis CapitalRed Bank, NJ, United States
    Full-time
    This is your opportunity to join AXIS Capital - a trusted.We stand apart for our outstanding client service, intelligent risk taking and superior risk adjusted returns for our shareholders.We also ...Show moreLast updated: 30+ days ago
    • Promoted
    Senior Claims Specialist, Design Professional

    Senior Claims Specialist, Design Professional

    Axis CapitalRed Bank, NJ, United States
    Full-time
    This is your opportunity to join AXIS Capital - a trusted.We stand apart for our outstanding client service, intelligent risk taking and superior risk adjusted returns for our shareholders.We also ...Show moreLast updated: 30+ days ago
    • Promoted
    • New!
    Senior Manager, Technology Change Risk Oversight

    Senior Manager, Technology Change Risk Oversight

    Capital OneNew York City, NY, United States
    Full-time +1
    Senior Lead Software Engineer (Velocity Black).Capital One's Digital Commerce & Innovation organization is seeking a Senior Lead, Software Engineer with a passion for building and growing full stac...Show moreLast updated: 5 hours ago
    • Promoted
    • New!
    Senior Manager, Technology Change Risk Oversight

    Senior Manager, Technology Change Risk Oversight

    Capital OneNew York, NY, United States
    Full-time +1
    Senior Manager, Technology Change Risk Oversight.Capital One is one of the fastest growing organizations in the world today, powered by our passion for our customers. We are serious about technology...Show moreLast updated: 16 hours ago
    • Promoted
    Technology and Cybersecurity Risk Governance, Managing Director

    Technology and Cybersecurity Risk Governance, Managing Director

    State StreetStamford, CT, US
    Full-time
    Technology and Cyber Risk Governance Leader.It is an exciting time to join State Street Corporation (SSC) in the Enterprise Technology Risk Management (ETRM) organization.ETRM is responsible for th...Show moreLast updated: 7 days ago