Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Director, Cyber Risk and Analysis

$226k - $257.9k

Capital One National Association

Director, Cyber Risk and Analysis Capital One is one of the fastest growing organizations in the world today, powered by our passion for our customers. We are serious about technology, we dream big, and we execute: Capital One moved our entire enterprise to the public cloud over the course of five years. Just as we prioritize driving innovation through technology, we equally prioritize cybersecurity, reliability, and managing technology risk. For years, the cybersecurity community has debated whether the CISO should report to the CIO or not. In regulated financial services, the answer is: both. The first-line CISO has operational responsibilities and reports to the CIO. The second-line Chief Tech Risk Officer (CTRO) and the Technology Risk Management (TRM) organization have broader responsibilities for cybersecurity but also reliability, software quality, resilience, and other technology risks. The CTRO is independent, reports to the Chief Risk Officer, and oversees the work of the CISO and the CIO. Technology Risk Management (TRM) is a small organization that packs a big punch. The ~100 professionals in TRM are trusted experts who oversee ~14,000 developers at Capital One. We raise the bar for excellence in cybersecurity, reliability, and tech risk. We shape strategy and decisions, challenge activities to ensure they meet our standards, and perform independent tests of our security and technology risk. As a Director, Cyber Risk and Analysis, you will apply expertise on risk frameworks and best practices to assess current state, identify methodology gaps, and evaluate threats and/or business impact to enable advisory partnerships and effective oversight of tech and cyber risk across Capital One. You will lead risk aggregation initiatives, define mitigation strategies, prioritize and escalate recommendations to senior leadership. You will also participate in the design, socialization and implementation of risk management products and programs through your deep knowledge of risk assessments, information risk controls, regulatory and internal governance standards, data analysis, metrics / reporting, and customer engagement. Responsibilities: Maintains a broad, expert understanding of technology risk frameworks, has innate ability to leverage these frameworks in risk identification processes. Researches, assembles, and/or evaluates information regarding industry practices or applicable regulatory changes affecting risk management policies or programs; recommends sound, practical solutions to complex issues. Effectively communicates and demonstrates subject matter expertise in risk categorization, how risks can occur in a new environment, and the measures required to safeguard the enterprise. Advises Accountable Executives of tech and cyber-related risk on a consistent basis via relevant risk forums and through existing processes such as exception and issue management. Exhibits strong critical thinking and communication skills, with proven ability to navigate the unknown to devise and socialize innovative risk management solutions. Leverages reporting & tools to perform analysis on different types of data points to inform policies and drive change. Understands associated reporting metrics and is able to inform on tech and cyber risks. Quickly and accurately analyzes data, assesses risk, & prioritizes potential risks to differentiate critical, high-risk, and low-risk issues, and remediates and escalates as appropriate. Makes recommendations regarding changes to first line policy, procedures, and control programs to mitigate evolving risks. Effectively self-challenges tech and cyber control and risk management programs as part of first line duties and escalates risks where appropriate. Demonstrates sound lifecycle program management to include socializing action plans, impediments and risks, and stakeholder training / engagement. Basic Qualifications: Bachelor's Degree or military experience At least 5 years of experience with Technology Risk Management or Cyber Security Risk Management At least 5 years of experience building risk control environments or risk frameworks At least 5 years of experience in People Management Preferred Qualifications: Master’s Degree Process or Project Management certification (i.e. Lean, Six Sigma, PMP), Business Management certification 10+ years of experience with Technology or Cyber Security Risk Management 9+ years of experience in People Management At this time, Capital One will not sponsor a new applicant for employment authorization for this position. The minimum and maximum full-time annual salaries for this role are listed below, by location. Please note that this salary information is solely for candidates hired to perform work within one of these locations, and refers to the amount Capital One is willing to pay at the time of this posting. Salaries for part-time roles will be prorated based upon the agreed upon number of hours to be regularly worked. McLean, VA: $226,000 - $257,900 for Director, Cyber Risk & Analysis New York, NY: $246,500 - $281,300 for Director, Cyber Risk & Analysis Plano, TX: $205,400 - $234,400 for Director, Cyber Risk & Analysis Richmond, VA: $205,400 - $234,400 for Director, Cyber Risk & Analysis Candidates hired to work in other locations will be subject to the pay range associated with that location, and the actual annualized salary amount offered to any candidate at the time of hire will be reflected solely in the candidate’s offer letter. This role is also eligible to earn performance based incentive compensation, which may include cash bonus(es) and/or long term incentives (LTI). Incentives could be discretionary or non discretionary depending on the plan. Capital One offers a comprehensive, competitive, and inclusive set of health, financial and other benefits that support your total well-being. Learn more at the Capital One Careers website . Eligibility varies based on full or part-time status, exempt or non-exempt status, and management level. This role is expected to accept applications for a minimum of 5 business days. No agencies please. Capital One is an equal opportunity employer committed to diversity and inclusion in the workplace. All qualified applicants will receive consideration for employment without regard to sex (including pregnancy, childbirth or related medical conditions), race, color, age, national origin, religion, disability, genetic information, marital status, sexual orientation, gender identity, gender reassignment, citizenship, immigration status, protected veteran status, or any other basis prohibited under applicable federal, state or local law. Capital One promotes a drug-free workplace. Capital One will consider for employment qualified applicants with a criminal history in a manner consistent with the requirements of applicable laws regarding criminal background inquiries. #J-18808-Ljbffr Capital One National Association

Vacancy posted 1 day ago
Similar jobs that could be interesting for youBased on the Director, Cyber Risk and Analysis in New York, NY vacancy
  • $126k - $255k

     ...The Role The Enterprise Cybersecurity Risk (ECS Cyber Risk) team is seeking an experienced Director-level risk professional to lead in the creation of...  ...with proven ability to integrate data into risk analysis tools and communicate progress effectively across... 
    Cyber
    Work from home

    Fidelity Investments

    Jersey City, NJ
    13 hours ago
  •  ...Head Of Enterprise Risk Management The Head of Enterprise Risk Management (ERM) is...  ...capital management, operational risk, IT/Cyber, compliance, legal, internal audit, and business...  ...), early‑warning mechanisms, scenario analysis, stress testing, and emerging risk... 
    Cyber

    Westfield

    New York, NY
    1 day ago
  • $150k - $170k

    Quantitative Enterprise Risk Manager page is loaded Quantitative Enterprise Risk Manager...  ..., the role supports enterprise-wide risk analysis, including reinsurance structures,...  ...Lines, Political Risk & Credit, Surety and Cyber. Perform ongoing capital adequacy analysis... 
    Cyber
    Full time
    Work experience placement
    Local area
    Remote work

    Mitsui Sumitomo Insurance Group

    New York, NY
    4 days ago
  • $266k - $295k

     ...seeking an accomplished insurance and risk management leader to establish and lead...  ...program covering key lines, including cyber, directors and officers (D&O), errors and omissions...  ...insurance structures, including feasibility analysis, domicile and governance considerations... 
    Cyber
    Work at office
    Relocation package

    OpenAI

    New York, NY
    13 hours ago
  • $85.77k - $153.09k

     ...use): 11 The Role: Manager, Insurance Risk Management The Team: The Risk...  ...of S&P Global's Casualty, Property, E&O, Cyber, D&O, Fiduciary and Crime coverages. Establish...  ...reporting, status updates to insurers and analysis of coverage position letters.... 
    Cyber
    Contract work
    Second job
    Live in
    Work at office
    Worldwide
    Flexible hours

    S&P Global

    New York, NY
    17 days ago
  • $85.77k - $153.09k

     ...internal use): 11 The Role: Manager, Insurance Risk Management The Team: The Risk Management...  ...of S&P Global's Casualty, Property, E&O, Cyber, D&O, Fiduciary and Crime coverages....  ..., status updates to insurers and analysis of coverage position letters. Compensation... 
    Cyber
    Contract work
    Second job
    Live in
    Work at office
    Worldwide
    Flexible hours
    2 days per week

    S&P Global

    New York, NY
    4 days ago
  • $130k - $180k

     ...Risk Manager - Engineering - CRO Location New York Business Area Legal, Compliance...  ...stakeholders to conduct an in-depth analysis of key processes, which may include...  ...compliance related to technology risk or cyber security ~ Good understanding of all aspects... 
    Cyber
    Temporary work
    For contractors
    Work experience placement
    Work at office

    Bloomberg

    New York, NY
    13 hours ago
  • $132.42k - $217.55k

     ...As the Head of Risk & Resiliency, you will execute the Risk & Resiliency frameworks for...  ...aggregating risk across domains (Technology, Cyber, Data, Model, Compliance, Third Party,...  ...Indicators(KRIs), and stress scenario analysis, ensuring appropriate linkage, escalation... 
    Cyber
    Full time
    Work at office
    Work from home
    Visa sponsorship
    Work visa
    Flexible hours

    Guardian Life Insurance Company

    New York, NY
    1 day ago
  • $197.3k - $225.1k

    Manager, SRE Risk Advisory and Oversight Capital One is one of the...  ...closely with Sr. Managers and Directors to synthesize risk findings,...  ...Responsibilities) Perform Deep-Dive Risk Analysis: Conduct independent,...  ...Reliability Engineering, or Cyber Risk Management At least 2 years... 
    Cyber
    Full time
    Part time
    Local area

    Capital One

    New York, NY
    2 days ago
  •  ...Threat Detection and Vulnerability Assessments Implementing Deception Technology (Honeypot/Honeynets) Data Analysis DWDM and SONET Nozomi maintenance and management TDI administration and management Gigamon maintenance... 
    Cyber

    PALNAR

    New York, NY
    13 hours ago
  •  ...this role, you will monitor security alerts, investigate incidents, and collaborate with clients to ensure they are protected against cyber threats. The ideal candidate will possess hands-on experience with Microsoft security solutions and a strong analytical mindset.... 
    Cyber
    Remote job

    Atmosera

    New York, NY
    2 days ago
  • $40 per hour

    A cybersecurity-focused AI company is seeking experienced cybersecurity professionals to evaluate AI-generated security content and solve technical problems. This role offers flexibility as it's a remote position with hourly pay starting at $40+. Applicants should have ...
    Cyber
    Remote job
    Hourly pay

    DataAnnotation

    New York, NY
    13 hours ago
  • Richemont is seeking a Senior Associate in Cyber Incident Response to protect against cyber threats and analyze security events in New York. The role involves incident management, detailed analysis of cybersecurity threats, and collaboration with IT and security teams... 
    Cyber

    Richemont

    New York, NY
    3 days ago
  •  ...per week with a commitment to improving AI-driven cybersecurity solutions. The ideal candidate has over 2 years of SOC experience and is skilled at identifying meaningful cyber threats, communicating findings clearly, and working independently. #J-18808-Ljbffr Alignerr
    Cyber
    Remote job
    10 hours per week

    Alignerr

    New York, NY
    4 days ago
  • A governmental services provider is seeking a Cyber Command Forensic Analyst to investigate network intrusions and cyber incidents....  ...Responsibilities include developing forensic techniques, managing analysis labs, and ensuring evidence integrity. Ideal candidates will... 
    Cyber

    Govserviceshub

    New York, NY
    4 days ago
  •  ...Qualifications: Bachelor's degree in Information Technology, Cyber Security, Computer Science, or related discipline Both English...  ...and Forensics, Security Governance and Oversight, Security Risk Management, Network Security, or Threat and Vulnerability Management... 
    Cyber
    Local area

    United Software Group

    Jersey City, NJ
    13 hours ago
  • A health services company is looking for a Senior Cyber Incident Responder to lead investigations within the Cyber Fusion Center. The role requires expertise in malware analysis and incident handling, with responsibilities including providing support to cyber defense technicians... 
    Cyber
    Remote job

    Highmark Health

    New York, NY
    4 days ago
  •  ...the service ensuring effective delivery and continuous improvement. Experience in cybersecurity, supply chain management, and data analysis is crucial. Responsibilities include providing support for third-party services and enhancing processes for operational resilience... 
    Cyber

    Allegis Group

    New York, NY
    13 hours ago
  • $40 per hour

    A leading cybersecurity firm is seeking experienced professionals to evaluate AI-generated security content and solve technical problems in cybersecurity. In this remote position, you can choose your projects and work on your schedule. Ideal candidates will have at least...
    Cyber
    Remote job
    Hourly pay
    Flexible hours

    DataAnnotation

    New York, NY
    2 days ago
  •  ...1-2 rounds Job Overview: The Senior Cyber Threat Intelligence (CTI) Analyst will serve...  ...alert handling to proactive threat analysis, intelligence production, and strategic insight...  ...intelligence-driven recommendations for risk mitigation. Threat Actor Profiling &... 
    Cyber
    Contract work
    For contractors
    Remote work

    Seneca

    New York, NY
    4 days ago
  • $40 per hour

    A cybersecurity innovations company is seeking experienced professionals to evaluate AI-generated security content and solve technical cybersecurity problems. Candidates should have at least 2 years of hands-on cybersecurity experience and be fluent in English. This offers...
    Cyber
    Remote job
    Hourly pay
    Flexible hours

    DataAnnotation

    Brooklyn, NY
    13 hours ago
  •  ...Senior Vice President, Cyber Threat Simulation As a Senior Vice President, Cyber Threat...  .... Lead/Participate in post-exercise analysis to translate simulation findings into actionable...  ...spear-phishing simulations for high-risk populations based on role, access, threat... 
    Cyber
    For contractors

    BNY

    New York, NY
    13 hours ago
  • A leading technology firm is seeking a Safety Cyber Manager in New York to ensure project compliance with ISO standards. The candidate...  ...convergence of safety and cybersecurity strategies, conduct risk analysis, and oversee the development of safety plans. Applicants... 
    Cyber

    TechDigital Group

    New York, NY
    3 days ago
  •  ...practices. • Data Loss Prevention (DLP) tools and configuration based on best practices. • User behavior monitoring. • Data analysis of Network, Cloud, and Endpoint data. • Centralized management of next generation firewalls and intrusion detection and prevention... 
    Cyber
    Work experience placement

    Texas State Library and Archives Commision

    Brooklyn, NY
    1 day ago
  • $160k - $275k

     ...strengthening incident response readiness, improving cyber resilience, and advancing threat...  ...Officers (BISOs), technology teams, and risk stakeholders to identify and remediate...  ...hands-on experience with threat intelligence analysis and threat hunting. ~ Demonstrated... 
    Cyber
    Flexible hours

    RBC

    Jersey City, NJ
    13 hours ago
  • $178k - $231k

     ...on their individual qualifications, experiences, and an analysis of the current compensation paid in their geography and...  ...of benefits to its employees. Role Description The Director of Counterparty Credit Risk (CCR) Reporting provides senior leadership for the design... 
    Work at office
    Local area
    Work from home
    Worldwide

    SMBC

    New York, NY
    3 days ago
  • $220k - $280k

     ...Director, Risk New York, NY Current is a leading consumer fintech platform transforming financial access for everyday Americans with...  ...and performance; own incident response including root cause analysis and go-forward controls Identify and surface emerging tools... 
    Work at office
    Flexible hours

    Current

    New York, NY
    3 days ago
  • $109.57k - $126k

     ...funding for child care. Reporting to the Executive Director for Child Care Risk and Integrity, the Director of Eligibility Child Care Risk...  ...of child care assistance applications - Research and analysis to look for irregularities in eligibility data and documentation... 
    Full time
    Work at office
    Local area

    City of New York

    New York, NY
    2 days ago
  • $200k

     ...multifamily owners and operators mitigate leasing risk while expanding access for renters. With...  ...of Deloitte's Technology Fast 500. Director, Risk will direct and oversee the...  ...forecasting, stress testing, and scenario analysis. Manage development and enhancement of dashboards... 

    TheGuarantors

    New York, NY
    4 days ago
  • A cybersecurity firm is seeking a professional to perform assessments of cybersecurity levels, manage risk, and train personnel in proper cyber hygiene. The ideal candidate will have an Associate's degree in Information Technology along with certifications such as Security+... 
    Cyber

    360 Adept, LLC

    New York, NY
    3 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Director, Cyber Risk and Analysis. Be the first to apply!