Manager, International Risk Management
Capital One is one of the fastest growing organizations in the world today and we are growing our tech teams globally. You'll play a pivotal role in developing and driving our international risk management strategyfrom day one. Teamwork is at the heart of our innovation and we empower each other to think big. We welcome diverse perspectives and experiences as we reshape the financial industry. Just as we prioritize driving innovation through technology, we equally prioritize cybersecurity and managing technology risk. Technology / Cyber Risk Managers are experienced and progressive individuals that operate within a highly collaborative team environment to deliver value-added risk management services to our Technology and Business partners. You will have a high level of exposure across lines of business to create and implement innovative solutions to identify and mitigate potential risks to the Company. Proficiency in risk management program (ideally Technology risk-driven program) development and management are key to success in this role. The successful candidate will be an experienced risk management professional who understands cyber technology functions and organizations, with strong analytical, planning, strategic thinking, organizational and communication skills.
As a Manager of Technology / Cyber Risk in Capital One's Enterprise Services Risk Office (ES Risk, first line of defense), you will execute on high priority enterprise-level technology / cyber initiatives related to our international expansion in Mexico, help influence across the organization, and drive the implementation of our strategy. This includes analyzing technology initiatives to identify cybersecurity and technology risks to help ensure our Company remains well-managed and avoids unnecessary risk. You will collaborate closely with associates across all lines of defense, Lines of Business, and other risk management teams to perform and support the work related to further maturing risk management practices. The ideal candidate is an analytical thinker with expertise in technology and cybersecurity domains that has the ability to manage competing priorities, collaborate with stakeholders at all levels to gain consensus, communicate effectively in a cross-functional organization, and facilitate constructive problem-solving to achieve objectives and remove roadblocks.
Responsibilities :
- Support the coordination of work related to Capital One's emerging international risk management function, working with the first line of defense Technology and Cyber teams, Lines of Business, and second line of defense teams, to ensure effective collaboration within the team and across stakeholder groups
- Assist the ES Risk leadership team in delivering against their strategy and service model
- Participate in and support the development of international processes and the related risk management framework across Capital One by providing thought leadership, oversight, and coordination with lines of business and other risk management activities across the company
- Drive program and process level assessments to identify related risks and mitigation plans based on industry standards and best practices related to risk management (especially technology risk) and aligned with Capital One's strategic risk direction
- Analyze information to proactively identify risks, trends, and process improvements; supporting reporting on international risk topics to management
- Stay current on the changing regulatory environment and understand the impacts to our efforts
- Assist with project and program delivery, including project and process management, reporting, engagement in senior leadership meetings, drafting and reviewing materials for senior management and the Board of directors, and other governance activities
- Participate in risk and other management forums and contribute to continuous improvement of risk and project / program management practices
- Support direction, manage expectations, and support / help lead cross-functional teams through various initiatives
- Support interactions with Internal Audit and Regulatory agencies related to our work, as applicable
- Write and revise documents such as policies, standards, procedures, and guidelines. Develop and enhance processes, tools, templates, and job aids. Draft, contribute to, edit, and deliver presentations that aid in the design, development, refinement, and usage of risk methods
- Participate in and execute other special projects for the team on a periodic basis
Basic Qualifications :
Bachelor's Degree or military experienceAt least 4 years of experience in information security or technology risk managementAt least 4 years of experience supporting, partnering, and interacting with internal business clientsAt least 3 years of project or program management experienceAt least 2 years of experience developing, evaluating, and implementing information security or technology controlsAt least 2 years of experience with information security, technology practices, standards or proceduresPreferred Qualifications :
Proficiency in conversing in SpanishAt least 7 years of experience in information security or technology risk managementAt least 5 years of project management experience leading cross functional projects and programsAt least 4 years of experience with analysis of information security or technology threats and risksAt least 4 years of experience in information security or technology risk identification and assessments associated with new or change-driven initiativesBackground in the financial services industryCertified Information Systems Security Professional (CISSP), Certified Information Security Manager (CISM), Project Management Professional (PMP), or Masters Certificate of Project Management (CPM)Strong verbal presentation and written communication skills to confidently interact at all levels of the organization (e.g., technology / cyber organizations, enterprise business stakeholders, and executive leadership)Excellent problem-solving, analytical and critical thinking skills to effectively respond to shifting priorities, demands and timelinesAbility to set direction, manage expectations, and lead cross-functional teamsConsulting experience with a Big 4 firmFamiliarity with financial sector regulatory practices and three lines of defenseProficient with G Suite, Google Workspace for reports, analysis, and presentations is a plus