Director, Cyber Risk and Analysis
$226k - $257.9kCapital One National Association
Director, Cyber Risk and Analysis Capital One is one of the fastest growing organizations in the world today, powered by our passion for our customers. We are serious about technology, we dream big, and we execute: Capital One moved our entire enterprise to the public cloud over the course of five years. Just as we prioritize driving innovation through technology, we equally prioritize cybersecurity, reliability, and managing technology risk. For years, the cybersecurity community has debated whether the CISO should report to the CIO or not. In regulated financial services, the answer is: both. The first-line CISO has operational responsibilities and reports to the CIO. The second-line Chief Tech Risk Officer (CTRO) and the Technology Risk Management (TRM) organization have broader responsibilities for cybersecurity but also reliability, software quality, resilience, and other technology risks. The CTRO is independent, reports to the Chief Risk Officer, and oversees the work of the CISO and the CIO. Technology Risk Management (TRM) is a small organization that packs a big punch. The ~100 professionals in TRM are trusted experts who oversee ~14,000 developers at Capital One. We raise the bar for excellence in cybersecurity, reliability, and tech risk. We shape strategy and decisions, challenge activities to ensure they meet our standards, and perform independent tests of our security and technology risk. As a Director, Cyber Risk and Analysis, you will apply expertise on risk frameworks and best practices to assess current state, identify methodology gaps, and evaluate threats and/or business impact to enable advisory partnerships and effective oversight of tech and cyber risk across Capital One. You will lead risk aggregation initiatives, define mitigation strategies, prioritize and escalate recommendations to senior leadership. You will also participate in the design, socialization and implementation of risk management products and programs through your deep knowledge of risk assessments, information risk controls, regulatory and internal governance standards, data analysis, metrics / reporting, and customer engagement. Responsibilities: Maintains a broad, expert understanding of technology risk frameworks, has innate ability to leverage these frameworks in risk identification processes. Researches, assembles, and/or evaluates information regarding industry practices or applicable regulatory changes affecting risk management policies or programs; recommends sound, practical solutions to complex issues. Effectively communicates and demonstrates subject matter expertise in risk categorization, how risks can occur in a new environment, and the measures required to safeguard the enterprise. Advises Accountable Executives of tech and cyber-related risk on a consistent basis via relevant risk forums and through existing processes such as exception and issue management. Exhibits strong critical thinking and communication skills, with proven ability to navigate the unknown to devise and socialize innovative risk management solutions. Leverages reporting & tools to perform analysis on different types of data points to inform policies and drive change. Understands associated reporting metrics and is able to inform on tech and cyber risks. Quickly and accurately analyzes data, assesses risk, & prioritizes potential risks to differentiate critical, high-risk, and low-risk issues, and remediates and escalates as appropriate. Makes recommendations regarding changes to first line policy, procedures, and control programs to mitigate evolving risks. Effectively self-challenges tech and cyber control and risk management programs as part of first line duties and escalates risks where appropriate. Demonstrates sound lifecycle program management to include socializing action plans, impediments and risks, and stakeholder training / engagement. Basic Qualifications: Bachelor's Degree or military experience At least 5 years of experience with Technology Risk Management or Cyber Security Risk Management At least 5 years of experience building risk control environments or risk frameworks At least 5 years of experience in People Management Preferred Qualifications: Master’s Degree Process or Project Management certification (i.e. Lean, Six Sigma, PMP), Business Management certification 10+ years of experience with Technology or Cyber Security Risk Management 9+ years of experience in People Management At this time, Capital One will not sponsor a new applicant for employment authorization for this position. The minimum and maximum full-time annual salaries for this role are listed below, by location. Please note that this salary information is solely for candidates hired to perform work within one of these locations, and refers to the amount Capital One is willing to pay at the time of this posting. Salaries for part-time roles will be prorated based upon the agreed upon number of hours to be regularly worked. McLean, VA: $226,000 - $257,900 for Director, Cyber Risk & Analysis New York, NY: $246,500 - $281,300 for Director, Cyber Risk & Analysis Plano, TX: $205,400 - $234,400 for Director, Cyber Risk & Analysis Richmond, VA: $205,400 - $234,400 for Director, Cyber Risk & Analysis Candidates hired to work in other locations will be subject to the pay range associated with that location, and the actual annualized salary amount offered to any candidate at the time of hire will be reflected solely in the candidate’s offer letter. This role is also eligible to earn performance based incentive compensation, which may include cash bonus(es) and/or long term incentives (LTI). Incentives could be discretionary or non discretionary depending on the plan. Capital One offers a comprehensive, competitive, and inclusive set of health, financial and other benefits that support your total well-being. Learn more at the Capital One Careers website . Eligibility varies based on full or part-time status, exempt or non-exempt status, and management level. This role is expected to accept applications for a minimum of 5 business days. No agencies please. Capital One is an equal opportunity employer committed to diversity and inclusion in the workplace. All qualified applicants will receive consideration for employment without regard to sex (including pregnancy, childbirth or related medical conditions), race, color, age, national origin, religion, disability, genetic information, marital status, sexual orientation, gender identity, gender reassignment, citizenship, immigration status, protected veteran status, or any other basis prohibited under applicable federal, state or local law. Capital One promotes a drug-free workplace. Capital One will consider for employment qualified applicants with a criminal history in a manner consistent with the requirements of applicable laws regarding criminal background inquiries. #J-18808-Ljbffr Capital One National Association
$126k - $255k
...The Role The Enterprise Cybersecurity Risk (ECS Cyber Risk) team is seeking an experienced Director-level risk professional to lead in the creation of... ...with proven ability to integrate data into risk analysis tools and communicate progress effectively across...CyberWork from home- ...Head Of Enterprise Risk Management The Head of Enterprise Risk Management (ERM) is... ...capital management, operational risk, IT/Cyber, compliance, legal, internal audit, and business... ...), early‑warning mechanisms, scenario analysis, stress testing, and emerging risk...Cyber
$150k - $170k
Quantitative Enterprise Risk Manager page is loaded Quantitative Enterprise Risk Manager... ..., the role supports enterprise-wide risk analysis, including reinsurance structures,... ...Lines, Political Risk & Credit, Surety and Cyber. Perform ongoing capital adequacy analysis...CyberFull timeWork experience placementLocal areaRemote work$266k - $295k
...seeking an accomplished insurance and risk management leader to establish and lead... ...program covering key lines, including cyber, directors and officers (D&O), errors and omissions... ...insurance structures, including feasibility analysis, domicile and governance considerations...CyberWork at officeRelocation package$85.77k - $153.09k
...use): 11 The Role: Manager, Insurance Risk Management The Team: The Risk... ...of S&P Global's Casualty, Property, E&O, Cyber, D&O, Fiduciary and Crime coverages. Establish... ...reporting, status updates to insurers and analysis of coverage position letters....CyberContract workSecond jobLive inWork at officeWorldwideFlexible hours$85.77k - $153.09k
...internal use): 11 The Role: Manager, Insurance Risk Management The Team: The Risk Management... ...of S&P Global's Casualty, Property, E&O, Cyber, D&O, Fiduciary and Crime coverages.... ..., status updates to insurers and analysis of coverage position letters. Compensation...CyberContract workSecond jobLive inWork at officeWorldwideFlexible hours2 days per week$130k - $180k
...Risk Manager - Engineering - CRO Location New York Business Area Legal, Compliance... ...stakeholders to conduct an in-depth analysis of key processes, which may include... ...compliance related to technology risk or cyber security ~ Good understanding of all aspects...CyberTemporary workFor contractorsWork experience placementWork at office$132.42k - $217.55k
...As the Head of Risk & Resiliency, you will execute the Risk & Resiliency frameworks for... ...aggregating risk across domains (Technology, Cyber, Data, Model, Compliance, Third Party,... ...Indicators(KRIs), and stress scenario analysis, ensuring appropriate linkage, escalation...CyberFull timeWork at officeWork from homeVisa sponsorshipWork visaFlexible hours$197.3k - $225.1k
Manager, SRE Risk Advisory and Oversight Capital One is one of the... ...closely with Sr. Managers and Directors to synthesize risk findings,... ...Responsibilities) Perform Deep-Dive Risk Analysis: Conduct independent,... ...Reliability Engineering, or Cyber Risk Management At least 2 years...CyberFull timePart timeLocal area- ...Threat Detection and Vulnerability Assessments Implementing Deception Technology (Honeypot/Honeynets) Data Analysis DWDM and SONET Nozomi maintenance and management TDI administration and management Gigamon maintenance...Cyber
- ...this role, you will monitor security alerts, investigate incidents, and collaborate with clients to ensure they are protected against cyber threats. The ideal candidate will possess hands-on experience with Microsoft security solutions and a strong analytical mindset....CyberRemote job
$40 per hour
A cybersecurity-focused AI company is seeking experienced cybersecurity professionals to evaluate AI-generated security content and solve technical problems. This role offers flexibility as it's a remote position with hourly pay starting at $40+. Applicants should have ...CyberRemote jobHourly pay- Richemont is seeking a Senior Associate in Cyber Incident Response to protect against cyber threats and analyze security events in New York. The role involves incident management, detailed analysis of cybersecurity threats, and collaboration with IT and security teams...Cyber
- ...per week with a commitment to improving AI-driven cybersecurity solutions. The ideal candidate has over 2 years of SOC experience and is skilled at identifying meaningful cyber threats, communicating findings clearly, and working independently. #J-18808-Ljbffr AlignerrCyberRemote job10 hours per week
- A governmental services provider is seeking a Cyber Command Forensic Analyst to investigate network intrusions and cyber incidents.... ...Responsibilities include developing forensic techniques, managing analysis labs, and ensuring evidence integrity. Ideal candidates will...Cyber
- ...Qualifications: Bachelor's degree in Information Technology, Cyber Security, Computer Science, or related discipline Both English... ...and Forensics, Security Governance and Oversight, Security Risk Management, Network Security, or Threat and Vulnerability Management...CyberLocal area
- A health services company is looking for a Senior Cyber Incident Responder to lead investigations within the Cyber Fusion Center. The role requires expertise in malware analysis and incident handling, with responsibilities including providing support to cyber defense technicians...CyberRemote job
- ...the service ensuring effective delivery and continuous improvement. Experience in cybersecurity, supply chain management, and data analysis is crucial. Responsibilities include providing support for third-party services and enhancing processes for operational resilience...Cyber
$40 per hour
A leading cybersecurity firm is seeking experienced professionals to evaluate AI-generated security content and solve technical problems in cybersecurity. In this remote position, you can choose your projects and work on your schedule. Ideal candidates will have at least...CyberRemote jobHourly payFlexible hours- ...1-2 rounds Job Overview: The Senior Cyber Threat Intelligence (CTI) Analyst will serve... ...alert handling to proactive threat analysis, intelligence production, and strategic insight... ...intelligence-driven recommendations for risk mitigation. Threat Actor Profiling &...CyberContract workFor contractorsRemote work
$40 per hour
A cybersecurity innovations company is seeking experienced professionals to evaluate AI-generated security content and solve technical cybersecurity problems. Candidates should have at least 2 years of hands-on cybersecurity experience and be fluent in English. This offers...CyberRemote jobHourly payFlexible hours- ...Senior Vice President, Cyber Threat Simulation As a Senior Vice President, Cyber Threat... .... Lead/Participate in post-exercise analysis to translate simulation findings into actionable... ...spear-phishing simulations for high-risk populations based on role, access, threat...CyberFor contractors
- A leading technology firm is seeking a Safety Cyber Manager in New York to ensure project compliance with ISO standards. The candidate... ...convergence of safety and cybersecurity strategies, conduct risk analysis, and oversee the development of safety plans. Applicants...Cyber
- ...practices. • Data Loss Prevention (DLP) tools and configuration based on best practices. • User behavior monitoring. • Data analysis of Network, Cloud, and Endpoint data. • Centralized management of next generation firewalls and intrusion detection and prevention...CyberWork experience placement
$160k - $275k
...strengthening incident response readiness, improving cyber resilience, and advancing threat... ...Officers (BISOs), technology teams, and risk stakeholders to identify and remediate... ...hands-on experience with threat intelligence analysis and threat hunting. ~ Demonstrated...CyberFlexible hours$178k - $231k
...on their individual qualifications, experiences, and an analysis of the current compensation paid in their geography and... ...of benefits to its employees. Role Description The Director of Counterparty Credit Risk (CCR) Reporting provides senior leadership for the design...Work at officeLocal areaWork from homeWorldwide$220k - $280k
...Director, Risk New York, NY Current is a leading consumer fintech platform transforming financial access for everyday Americans with... ...and performance; own incident response including root cause analysis and go-forward controls Identify and surface emerging tools...Work at officeFlexible hours$109.57k - $126k
...funding for child care. Reporting to the Executive Director for Child Care Risk and Integrity, the Director of Eligibility Child Care Risk... ...of child care assistance applications - Research and analysis to look for irregularities in eligibility data and documentation...Full timeWork at officeLocal area$200k
...multifamily owners and operators mitigate leasing risk while expanding access for renters. With... ...of Deloitte's Technology Fast 500. Director, Risk will direct and oversee the... ...forecasting, stress testing, and scenario analysis. Manage development and enhancement of dashboards...- A cybersecurity firm is seeking a professional to perform assessments of cybersecurity levels, manage risk, and train personnel in proper cyber hygiene. The ideal candidate will have an Associate's degree in Information Technology along with certifications such as Security+...Cyber
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Director, Cyber Risk and Analysis. Be the first to apply!
- risk management manager New York, NY
- senior risk manager New York, NY
- risk management specialist New York, NY
- director of risk management New York, NY
- risk management associate New York, NY
- group risk manager New York, NY
- operational risk manager New York, NY
- head of risk management New York, NY
- enterprise risk manager New York, NY
- director credit risk New York, NY

