Principal Associate, Information Security Office
Company: Capital One
Location: New York
Posted on: January 27, 2025
Job Description:
Principal Associate, Information Security OfficeAt Capital One,
you will help consult on initiatives, programs, and projects to
raise their game in Information Security. You are pragmatic and
practical in your understanding of risk and security, but also
willing to know when to pull in experts and escalate. You
collaborate and innovate with other teams within Capital One to
push the envelope. You are comfortable with Cloud Service
technologies like Storage Services, Security and Access Control
Management, Container Services, and API Implementation and
Management. You are familiar with various Cloud computing models to
include IaaS, PaaS, and SaaS along with their architectural
differences. - Security is essential to what we do here, from
protecting our customers to our associates.Responsibilities:
- Coordinate and execute Information Security assessments (for
example: Threat Modeling, Architecture Reviews, etc.) - for the
business and technology teams covering Infrastructure Security,
Resiliency, Data Security, Network Architecture and Design, and
User Access Management
- Serve as an expert in Capital One's Information Security
capabilities, solutions, policies, procedures and standards
- Influence customers to leverage security capabilities and
solutions to shift and integrate security to the left in the
development processes
- Normalize and translate cyber risks at the organizational level
to support a fully integrated, prioritized, enterprise-wide view of
organizational risks to drive strategic and business decisions
- Help to enhance cyber risk management processes across Capital
One by providing thought leadership, oversight, and coordination
with other risk management functions across the company
- Assist and drive project and program delivery, including
project and process management, reporting, engagement in senior
leadership meetings, drafting and reviewing materials for senior
management and the Board of directors, and other governance
activities
- Provide ad hoc support on special Information Security hot
topics for the organizationAbout You:
- You have a desire to work in a very fast moving, forward
leaning, and modern computing environment
- You have a deep passion for Securing modern computing
platforms
- You have a strong desire to continually learn about new
technologies
- You possess strong conceptual thinking and communication
skills
- You are able to work well under minimal supervision
- You are a demonstrated leader with team-oriented interpersonal
skills and the ability to interface effectively with a broad range
of people and roles, including upper management, IT leaders, and
technology vendors
- You maintain calmness and clarity of thought under pressure and
ability to maintain confidentiality
- You have a deep understanding of strategic business objectives
and the ability to drive results toward those objectivesBasic
Qualifications:
- High School Diploma, GED, or equivalent certification
- At least 3 years of experience working in cybersecurity or
information technology -
- At least 1 year of experience providing guidance and oversight
of Security concepts
- At least 1 year of experience performing security risk
assessments and security architecture reviewsPreferred
Qualifications:
- Bachelor's Degree
- 2+ years of experience with Software Security Architecture,
Application Security, Threat Modeling, Penetration Testing, or
Vulnerability Management
- 2+ years of experience in securing a public cloud environment
and building software utilizing public cloud -
- 2+ years of experience with Cloud patch management practices
such as system rehydration or image management
- 1+ years of experience utilizing Agile methodologies
- 1+ years of experience with integrating SaaS products into an
Enterprise Environment -
- 1+ years of experience with securing Container services
- 1+ years of experience with Splunk-Fu and Enterprise Monitoring
-
- 1+ years of experience with Offensive or Defensive Security
techniques
- 1+ years of experience in a Financial services industry -
- AWS Certified Solutions Architect or Certified Information
Systems Security Professional (CISSP) certificationAt this time,
Capital One will not sponsor a new applicant for employment
authorization, or offer any immigration related support for this
position (i.e. H1B, F-1 OPT, F-1 STEM OPT, F-1 CPT, J-1, TN, or
another type of work authorization).The minimum and maximum
full-time annual salaries for this role are listed below, by
location. Please note that this salary information is solely for
candidates hired to perform work within one of these locations, and
refers to the amount Capital One is willing to pay at the time of
this posting. Salaries for part-time roles will be prorated based
upon the agreed upon number of hours to be regularly worked.McLean,
VA: $158,600 - $181,000 for Prin Assoc, Cyber Technical -New York,
NY: $173,000 - $197,400 for Prin Assoc, Cyber Technical -Plano, TX:
$144,200 - $164,600 for Prin Assoc, Cyber Technical -Richmond, VA:
$144,200 - $164,600 for Prin Assoc, Cyber Technical - - - - - -
-Candidates hired to work in other locations will be subject to the
pay range associated with that location, and the actual annualized
salary amount offered to any candidate at the time of hire will be
reflected solely in the candidate's offer letter.This role is also
eligible to earn performance based incentive compensation, which
may include cash bonus(es) and/or long term incentives (LTI).
Incentives could be discretionary or non discretionary depending on
the plan.Capital One offers a comprehensive, competitive, and
inclusive set of health, financial and other benefits that support
your total well-being. Learn more at the -Capital One Careers
website. Eligibility varies based on full or part-time status,
exempt or non-exempt status, and management level.This role is
expected to accept applications for a minimum of 5 business days.No
agencies please. Capital One is an equal opportunity employer
committed to diversity and inclusion in the workplace. All
qualified applicants will receive consideration for employment
without regard to sex (including pregnancy, childbirth or related
medical conditions), race, color, age, national origin, religion,
disability, genetic information, marital status, sexual
orientation, gender identity, gender reassignment, citizenship,
immigration status, protected veteran status, or any other basis
prohibited under applicable federal, state or local law. Capital
One promotes a drug-free workplace. Capital One will consider for
employment qualified applicants with a criminal history in a manner
consistent with the requirements of applicable laws regarding
criminal background inquiries, including, to the extent applicable,
Article 23-A of the New York Correction Law; San Francisco,
California Police Code Article 49, Sections 4901-4920; New York
City's Fair Chance Act; Philadelphia's Fair Criminal Records
Screening Act; and other applicable federal, state, and local laws
and regulations regarding criminal background inquiries.If you have
visited our website in search of information on employment
opportunities or to apply for a position, and you require an
accommodation, please contact Capital One Recruiting at
1-800-304-9102 or via email at . All information you provide will
be kept confidential and will be used only to the extent required
to provide needed reasonable accommodations.For technical support
or questions about Capital One's recruiting process, please send an
email to Capital One does not provide, endorse nor guarantee and is
not liable for third-party products, services, educational tools or
other information available through this site.Capital One Financial
is made up of several different entities. Please note that any
position posted in Canada is for Capital One Canada, any position
posted in the United Kingdom is for Capital One Europe and any
position posted in the Philippines is for Capital One Philippines
Service Corp. (COPSSC).
Keywords: Capital One, East Orange , Principal Associate, Information Security Office, Education / Teaching , New York, New Jersey
Didn't find what you're looking for? Search again!
Loading more jobs...