Rochester Precision Optics LLC
West Henrietta, New York
Title System & Network Administrator Department Information Technology Reports to Information Technology Manager SEE YOUR CAREER THROUGH A NEW LENS WITH RPO! RPO is a global leader in precision optics, optical components, and optical assemblies. We specialize in a full spectrum of products & services including - Design and Engineering, Systems Integration, Lens Assembly, Visible and Infrared Components, Glass and Plastic Molded Aspheres, and Thin Film Coating. As one of the fastest growing companies in Rochester, RPO offers exciting career paths and work on market-leading programs. See below one of many career opportunities to join the RPO team! Job Summary: Rochester Precision Optics, LLC is seeking a Systems & Network Administrator to support and operate the company's core IT infrastructure within a regulated manufacturing environment. This role is responsible for the administration and operational stability of server, network, cloud, and enterprise infrastructure platforms supporting approximately 300 users across corporate and manufacturing operations. The Systems & Network Administrator works closely with the IT Manager to maintain a secure, reliable, and compliant infrastructure, including implementation of technical controls aligned with NIST 800-171 and CMMC 2.0 requirements. This is a hands-on role where the successful candidate will take ownership of infrastructure operations, contribute to the ongoing improvement and modernization of the organization's infrastructure platforms, and serve as an escalation resource for complex technical issues. Summary of Essential Job Duties: Infrastructure & Systems Administration Administer and maintain Windows Server environments and enterprise infrastructure systems Manage Active Directory, DNS, DHCP, Group Policy, and identity infrastructure Support virtualization platforms such as VMware or Hyper-V Provision and maintain virtual machines and server resources Monitor infrastructure performance, system capacity, and service availability Perform patch management and security updates for servers and infrastructure systems Maintain file services, storage systems, and system health monitoring Administer enterprise backup platforms and validate backup integrity through periodic recovery testing Administer enterprise software deployment platforms including PDQ Deploy and related deployment tooling Create and maintain standardized software deployment packages for enterprise applications and operating system updates Coordinate controlled rollout of software updates and application upgrades across managed systems Maintain infrastructure documentation including system configuration standards and architecture diagrams Network Infrastructure Administration Maintain & support network infrastructure including switches, firewalls, VPN, and wireless networks Configure and support VLANs, routing, and subnetting Configure and maintain firewall policies, access rules, and network security controls Maintain network authentication systems supporting secure wired and wireless access Support VoIP and network-connected infrastructure including cameras and related technologies Maintain and troubleshoot DNS, DHCP, routing, and other core network services Support structured cabling, patch panel management, and infrastructure expansion projects Maintain network diagrams, segmentation documentation, and infrastructure configuration records Microsoft 365 GCC High Administration Administer Microsoft 365 GCC High tenant services including Exchange Online, Microsoft Teams, and Entra ID Configure and maintain Conditional Access policies and secure authentication configurations Support identity lifecycle integration between on-premises Active Directory and Entra ID Provide Tier 2/3 escalation support for advanced Exchange Online and Teams issues Assist with Microsoft Purview administration including eDiscovery searches, retention policies, and litigation hold support Maintain secure messaging and collaboration configurations aligned with regulatory requirements Endpoint & Mobile Device Management Platform Administration Administer enterprise device management platforms including Microsoft Intune and Endpoint Central Configure and maintain device enrollment policies, compliance policies, and security baselines Integrate device compliance enforcement with Conditional Access authentication policies Provide Tier 3 escalation support for complex endpoint and mobile device management issues Support device security posture aligned with organizational security and compliance requirements Enterprise Infrastructure Platforms Maintain backend infrastructure supporting enterprise applications including ERP, SQL Server, and FileMaker hosting environments Support infrastructure stability for unified communications platforms such as 3CX VoIP Maintain backend infrastructure supporting physical security platforms including badge access control and video surveillance systems Maintain infrastructure supporting enterprise print services and related systems Support infrastructure used for digital signage, IoT devices, and other network-connected systems Security & Compliance Operations Implement and maintain infrastructure security controls aligned with NIST 800-171 and CMMC 2.0 requirements Partner with internal leadership and external compliance advisors on cybersecurity initiatives Maintain secure configuration baselines and infrastructure hardening standards Ensure infrastructure systems generate and forward logs to centralized monitoring platforms Support vulnerability remediation across infrastructure platforms Assist with investigation of infrastructure-level security alerts and anomalies Support audit readiness activities and collection of technical compliance evidence Collaboration & Operational Support Serve as Tier 2 / Tier 3 escalation resource for complex infrastructure and systems issues Collaborate with IT leadership on infrastructure improvements and modernization initiatives Assist with enterprise application upgrades and infrastructure lifecycle projects Provide mentorship and technical guidance to IT support staff Participate in rotating on-call coverage for infrastructure alerts and critical incidents Qualifications: Bachelor's degree in Information Technology, Computer Science, or related field preferred, or equivalent combination of education and experience. Relevant industry certifications such as Network+, Security+, Microsoft, or VMware certifications are a plus. 5+ years of experience in systems administration, infrastructure engineering, or related roles Strong knowledge of Windows Server, Active Directory, and Microsoft enterprise environments Experience managing network infrastructure including VLANs, switching, firewalls, and VPN technologies Experience supporting Microsoft 365 environments (GCC High experience preferred) Experience with virtualization platforms such as VMware or Hyper-V Experience administering enterprise endpoint management platforms (Intune, Endpoint Central, or similar) Experience supporting enterprise backup platforms and disaster recovery planning Familiarity with enterprise deployment tools and automation scripting (PowerShell preferred) Experience supporting infrastructure hosting enterprise applications or ERP systems preferred Familiarity with NIST 800-171 or CMMC security frameworks preferred You Are: Results-Oriented: Motivated, hard-working and ready to level-up; Curious: You never stop learning and have an insatiable desire to gain new skills and knowledge; Process Oriented: Well organized, demonstrating attention to detail; Analytical: Possess a"If there's a problem, I'll find a solution" attitude; Accountable: Demanding the highest quality from yourself and team members; Detail-Oriented: Have excellent time management and organizational skills; A Team Player: Reliable, collaborative, flexible with a positive 'get things done' attitude; A U.S. Person: Compliant with ITAR, EAR and other laws and regulations as defined: "U.S. citizens, lawful permanent residents ("Green Card" holders), persons granted refugee status or asylum status in the United States, or temporary residents granted amnesty." You Will Enjoy: Growth: The opportunity to learn and advance your career; Wealth: Competitive compensation package linked to your experience and performance, a 401(k) with company match; Wellness: Health, dental, vision & life insurance; Balance: 11 paid holidays, generous paid vacation and sick -time; Culture: an energetic, caring, fun, value-driven team. Work environment & Physical Demands:While performing the duties of this job, the employee is regularly required to stand, use hands & fingers, handle or feel, and reach with hands and arms. The employee frequently is required to stand, walk, stoop, kneel, crouch, talk and hear. Specific vision abilities required by this job include close vision, distance vision, peripheral vision, depth perception . click apply for full job details
03/04/2026
Full time
Title System & Network Administrator Department Information Technology Reports to Information Technology Manager SEE YOUR CAREER THROUGH A NEW LENS WITH RPO! RPO is a global leader in precision optics, optical components, and optical assemblies. We specialize in a full spectrum of products & services including - Design and Engineering, Systems Integration, Lens Assembly, Visible and Infrared Components, Glass and Plastic Molded Aspheres, and Thin Film Coating. As one of the fastest growing companies in Rochester, RPO offers exciting career paths and work on market-leading programs. See below one of many career opportunities to join the RPO team! Job Summary: Rochester Precision Optics, LLC is seeking a Systems & Network Administrator to support and operate the company's core IT infrastructure within a regulated manufacturing environment. This role is responsible for the administration and operational stability of server, network, cloud, and enterprise infrastructure platforms supporting approximately 300 users across corporate and manufacturing operations. The Systems & Network Administrator works closely with the IT Manager to maintain a secure, reliable, and compliant infrastructure, including implementation of technical controls aligned with NIST 800-171 and CMMC 2.0 requirements. This is a hands-on role where the successful candidate will take ownership of infrastructure operations, contribute to the ongoing improvement and modernization of the organization's infrastructure platforms, and serve as an escalation resource for complex technical issues. Summary of Essential Job Duties: Infrastructure & Systems Administration Administer and maintain Windows Server environments and enterprise infrastructure systems Manage Active Directory, DNS, DHCP, Group Policy, and identity infrastructure Support virtualization platforms such as VMware or Hyper-V Provision and maintain virtual machines and server resources Monitor infrastructure performance, system capacity, and service availability Perform patch management and security updates for servers and infrastructure systems Maintain file services, storage systems, and system health monitoring Administer enterprise backup platforms and validate backup integrity through periodic recovery testing Administer enterprise software deployment platforms including PDQ Deploy and related deployment tooling Create and maintain standardized software deployment packages for enterprise applications and operating system updates Coordinate controlled rollout of software updates and application upgrades across managed systems Maintain infrastructure documentation including system configuration standards and architecture diagrams Network Infrastructure Administration Maintain & support network infrastructure including switches, firewalls, VPN, and wireless networks Configure and support VLANs, routing, and subnetting Configure and maintain firewall policies, access rules, and network security controls Maintain network authentication systems supporting secure wired and wireless access Support VoIP and network-connected infrastructure including cameras and related technologies Maintain and troubleshoot DNS, DHCP, routing, and other core network services Support structured cabling, patch panel management, and infrastructure expansion projects Maintain network diagrams, segmentation documentation, and infrastructure configuration records Microsoft 365 GCC High Administration Administer Microsoft 365 GCC High tenant services including Exchange Online, Microsoft Teams, and Entra ID Configure and maintain Conditional Access policies and secure authentication configurations Support identity lifecycle integration between on-premises Active Directory and Entra ID Provide Tier 2/3 escalation support for advanced Exchange Online and Teams issues Assist with Microsoft Purview administration including eDiscovery searches, retention policies, and litigation hold support Maintain secure messaging and collaboration configurations aligned with regulatory requirements Endpoint & Mobile Device Management Platform Administration Administer enterprise device management platforms including Microsoft Intune and Endpoint Central Configure and maintain device enrollment policies, compliance policies, and security baselines Integrate device compliance enforcement with Conditional Access authentication policies Provide Tier 3 escalation support for complex endpoint and mobile device management issues Support device security posture aligned with organizational security and compliance requirements Enterprise Infrastructure Platforms Maintain backend infrastructure supporting enterprise applications including ERP, SQL Server, and FileMaker hosting environments Support infrastructure stability for unified communications platforms such as 3CX VoIP Maintain backend infrastructure supporting physical security platforms including badge access control and video surveillance systems Maintain infrastructure supporting enterprise print services and related systems Support infrastructure used for digital signage, IoT devices, and other network-connected systems Security & Compliance Operations Implement and maintain infrastructure security controls aligned with NIST 800-171 and CMMC 2.0 requirements Partner with internal leadership and external compliance advisors on cybersecurity initiatives Maintain secure configuration baselines and infrastructure hardening standards Ensure infrastructure systems generate and forward logs to centralized monitoring platforms Support vulnerability remediation across infrastructure platforms Assist with investigation of infrastructure-level security alerts and anomalies Support audit readiness activities and collection of technical compliance evidence Collaboration & Operational Support Serve as Tier 2 / Tier 3 escalation resource for complex infrastructure and systems issues Collaborate with IT leadership on infrastructure improvements and modernization initiatives Assist with enterprise application upgrades and infrastructure lifecycle projects Provide mentorship and technical guidance to IT support staff Participate in rotating on-call coverage for infrastructure alerts and critical incidents Qualifications: Bachelor's degree in Information Technology, Computer Science, or related field preferred, or equivalent combination of education and experience. Relevant industry certifications such as Network+, Security+, Microsoft, or VMware certifications are a plus. 5+ years of experience in systems administration, infrastructure engineering, or related roles Strong knowledge of Windows Server, Active Directory, and Microsoft enterprise environments Experience managing network infrastructure including VLANs, switching, firewalls, and VPN technologies Experience supporting Microsoft 365 environments (GCC High experience preferred) Experience with virtualization platforms such as VMware or Hyper-V Experience administering enterprise endpoint management platforms (Intune, Endpoint Central, or similar) Experience supporting enterprise backup platforms and disaster recovery planning Familiarity with enterprise deployment tools and automation scripting (PowerShell preferred) Experience supporting infrastructure hosting enterprise applications or ERP systems preferred Familiarity with NIST 800-171 or CMMC security frameworks preferred You Are: Results-Oriented: Motivated, hard-working and ready to level-up; Curious: You never stop learning and have an insatiable desire to gain new skills and knowledge; Process Oriented: Well organized, demonstrating attention to detail; Analytical: Possess a"If there's a problem, I'll find a solution" attitude; Accountable: Demanding the highest quality from yourself and team members; Detail-Oriented: Have excellent time management and organizational skills; A Team Player: Reliable, collaborative, flexible with a positive 'get things done' attitude; A U.S. Person: Compliant with ITAR, EAR and other laws and regulations as defined: "U.S. citizens, lawful permanent residents ("Green Card" holders), persons granted refugee status or asylum status in the United States, or temporary residents granted amnesty." You Will Enjoy: Growth: The opportunity to learn and advance your career; Wealth: Competitive compensation package linked to your experience and performance, a 401(k) with company match; Wellness: Health, dental, vision & life insurance; Balance: 11 paid holidays, generous paid vacation and sick -time; Culture: an energetic, caring, fun, value-driven team. Work environment & Physical Demands:While performing the duties of this job, the employee is regularly required to stand, use hands & fingers, handle or feel, and reach with hands and arms. The employee frequently is required to stand, walk, stoop, kneel, crouch, talk and hear. Specific vision abilities required by this job include close vision, distance vision, peripheral vision, depth perception . click apply for full job details
The Opportunity Join an industry leading EA function within MassMutual that creates alignment between technology and business strategy. You will have an opportunity to guide the process of planning and designing capabilities to maximize the value of IT and enable the company to make high impact, long-term decisions. This will be accomplished through architecture strategies, blueprints and road maps that standardize technology stacks which create engineering speed and agility through the innovative use of data science, data analytics, cloud and API's. The EA will work with a team that embrace diversity in all of its forms, respect and have fun. The Team The MassMutual Enterprise Architecture team in the Enterprise Technology and Experience organization is seeking an outstanding Enterprise Architect (Application) to join our team. Enterprise Architecture is composed of Business, Application, Infrastructure, Technology & Design and Security architecture domains. Joining this team will give the Application EA a unique perspective and opportunity to partner with best-in-class architects on enterprise wide technology initiatives. The Impact: This role will work with the Wealth Management line of business delivery teams, engineers, application operations, product managers, and enterprise stakeholders to help deliver innovative, data-driven systems aimed at transforming the insurance industry. As part of the application architecture team, incumbents may be responsible for any of the following: Partner with senior leaders to develop and maintain the Technology strategies & roadmap focused on Wealth Management Technical evaluations and benchmarking of core application platforms, frameworks and technologies Specification and publication of standards around application design and software engineering best practices Thought leadership and active participation in conferences and research with strategic partners and academic institutions Partner with business executives and senior architects to identify data and process issues, then provide solution options and recommends options Provide recommendations on system options, risks, cost/benefit analysis, and impact on cross-domain systems, business strategy, goals and processes Engage in SA problem solving, snapshots and full architecture documents Actively publish deliverables, and utilizes multi-media to educate and engage with federated solution architecture community members Collaborate with extended enterprise architecture, business, and IT support teams to communicate architecture strategies, standards, and direction Stay abreast of emerging technologies The Minimum Qualifications Bachelors degree in Computer Science, Engineering or related Technical degree 8+ years of related IT Solutions Architecture or Technical Lead experience The Ideal Qualifications 10+ years of related IT Architecture or IT consulting experience P referred job experience includes some knowledge of Insurance and Wealth Management Experience with technology supporting: Financial Planning, Order Management, Lending, Wealth Investment Products, etc. Excellent communication, presentation, influencing and reasoning skills A team-focused mentality with proven ability to work effectively with diverse stakeholders Strong interpersonal skills, with an emphasis on the ability to effectively influence others, collaborate and partner. Understanding of the impact of IT on business results Demonstrated experience using Architecture Methodology (TOGAF, Archimate) Strong decision-making capabilities, with a proven ability to weigh the relative costs and benefits of potential actions and identify the most appropriate one Experience in Public Cloud platforms (preferably AWS), solution design and development using Cloud-native services, and understanding of cost rationalization. AWS/Azure Cloud Certification Strong experience in Architecture and Design patterns Developed acumen in Domain Driven Design Strong experience with event streaming design and implementation using Kafka, along with web service protocols and patterns like SOAP, REST, JSON, XML/XSDs. Experience with REST API for data interchange and API-driven systems integration decoupling digital and backend systems. Track record of designing architectural reference material What to Expect as Part of MassMutual and the Team Regular meetings with the Enterprise Architecture team Focused one-on-one meetings with your manager Access to mentorship opportunities Networking opportunities including access to Asian, Hispanic/Latinx, African American, women, LGBTQ, veteran and disability-focused Business Resource Groups Access to learning content on Degreed and other informational platforms Your ethics and integrity will be valued by a company with a strong and stable ethical nosiness with industry leading pay and benefits MassMutual is an equal employment opportunity employer. We welcome all persons to apply. If you need an accommodation to complete the application process, please contact us and share the specifics of the assistance you need. California residents: For detailed information about your rights under the California Consumer Privacy Act (CCPA), please visit our California Consumer Privacy Act Disclosures page.
03/02/2026
Full time
The Opportunity Join an industry leading EA function within MassMutual that creates alignment between technology and business strategy. You will have an opportunity to guide the process of planning and designing capabilities to maximize the value of IT and enable the company to make high impact, long-term decisions. This will be accomplished through architecture strategies, blueprints and road maps that standardize technology stacks which create engineering speed and agility through the innovative use of data science, data analytics, cloud and API's. The EA will work with a team that embrace diversity in all of its forms, respect and have fun. The Team The MassMutual Enterprise Architecture team in the Enterprise Technology and Experience organization is seeking an outstanding Enterprise Architect (Application) to join our team. Enterprise Architecture is composed of Business, Application, Infrastructure, Technology & Design and Security architecture domains. Joining this team will give the Application EA a unique perspective and opportunity to partner with best-in-class architects on enterprise wide technology initiatives. The Impact: This role will work with the Wealth Management line of business delivery teams, engineers, application operations, product managers, and enterprise stakeholders to help deliver innovative, data-driven systems aimed at transforming the insurance industry. As part of the application architecture team, incumbents may be responsible for any of the following: Partner with senior leaders to develop and maintain the Technology strategies & roadmap focused on Wealth Management Technical evaluations and benchmarking of core application platforms, frameworks and technologies Specification and publication of standards around application design and software engineering best practices Thought leadership and active participation in conferences and research with strategic partners and academic institutions Partner with business executives and senior architects to identify data and process issues, then provide solution options and recommends options Provide recommendations on system options, risks, cost/benefit analysis, and impact on cross-domain systems, business strategy, goals and processes Engage in SA problem solving, snapshots and full architecture documents Actively publish deliverables, and utilizes multi-media to educate and engage with federated solution architecture community members Collaborate with extended enterprise architecture, business, and IT support teams to communicate architecture strategies, standards, and direction Stay abreast of emerging technologies The Minimum Qualifications Bachelors degree in Computer Science, Engineering or related Technical degree 8+ years of related IT Solutions Architecture or Technical Lead experience The Ideal Qualifications 10+ years of related IT Architecture or IT consulting experience P referred job experience includes some knowledge of Insurance and Wealth Management Experience with technology supporting: Financial Planning, Order Management, Lending, Wealth Investment Products, etc. Excellent communication, presentation, influencing and reasoning skills A team-focused mentality with proven ability to work effectively with diverse stakeholders Strong interpersonal skills, with an emphasis on the ability to effectively influence others, collaborate and partner. Understanding of the impact of IT on business results Demonstrated experience using Architecture Methodology (TOGAF, Archimate) Strong decision-making capabilities, with a proven ability to weigh the relative costs and benefits of potential actions and identify the most appropriate one Experience in Public Cloud platforms (preferably AWS), solution design and development using Cloud-native services, and understanding of cost rationalization. AWS/Azure Cloud Certification Strong experience in Architecture and Design patterns Developed acumen in Domain Driven Design Strong experience with event streaming design and implementation using Kafka, along with web service protocols and patterns like SOAP, REST, JSON, XML/XSDs. Experience with REST API for data interchange and API-driven systems integration decoupling digital and backend systems. Track record of designing architectural reference material What to Expect as Part of MassMutual and the Team Regular meetings with the Enterprise Architecture team Focused one-on-one meetings with your manager Access to mentorship opportunities Networking opportunities including access to Asian, Hispanic/Latinx, African American, women, LGBTQ, veteran and disability-focused Business Resource Groups Access to learning content on Degreed and other informational platforms Your ethics and integrity will be valued by a company with a strong and stable ethical nosiness with industry leading pay and benefits MassMutual is an equal employment opportunity employer. We welcome all persons to apply. If you need an accommodation to complete the application process, please contact us and share the specifics of the assistance you need. California residents: For detailed information about your rights under the California Consumer Privacy Act (CCPA), please visit our California Consumer Privacy Act Disclosures page.
The Opportunity Join an industry leading EA function within MassMutual that creates alignment between technology and business strategy. You will have an opportunity to guide the process of planning and designing capabilities to maximize the value of IT and enable the company to make high impact, long-term decisions. This will be accomplished through architecture strategies, blueprints and road maps that standardize technology stacks which create engineering speed and agility through the innovative use of data science, data analytics, cloud and API's. The EA will work with a team that embrace diversity in all of its forms, respect and have fun. The Team The MassMutual Enterprise Architecture team in the Enterprise Technology and Experience organization is seeking an outstanding Enterprise Architect (Application) to join our team. Enterprise Architecture is composed of Business, Application, Infrastructure, Technology & Design and Security architecture domains. Joining this team will give the Application EA a unique perspective and opportunity to partner with best-in-class architects on enterprise wide technology initiatives. The Impact: This role will work with the Wealth Management line of business delivery teams, engineers, application operations, product managers, and enterprise stakeholders to help deliver innovative, data-driven systems aimed at transforming the insurance industry. As part of the application architecture team, incumbents may be responsible for any of the following: Partner with senior leaders to develop and maintain the Technology strategies & roadmap focused on Wealth Management Technical evaluations and benchmarking of core application platforms, frameworks and technologies Specification and publication of standards around application design and software engineering best practices Thought leadership and active participation in conferences and research with strategic partners and academic institutions Partner with business executives and senior architects to identify data and process issues, then provide solution options and recommends options Provide recommendations on system options, risks, cost/benefit analysis, and impact on cross-domain systems, business strategy, goals and processes Engage in SA problem solving, snapshots and full architecture documents Actively publish deliverables, and utilizes multi-media to educate and engage with federated solution architecture community members Collaborate with extended enterprise architecture, business, and IT support teams to communicate architecture strategies, standards, and direction Stay abreast of emerging technologies The Minimum Qualifications Bachelors degree in Computer Science, Engineering or related Technical degree 8+ years of related IT Solutions Architecture or Technical Lead experience The Ideal Qualifications 10+ years of related IT Architecture or IT consulting experience P referred job experience includes some knowledge of Insurance and Wealth Management Experience with technology supporting: Financial Planning, Order Management, Lending, Wealth Investment Products, etc. Excellent communication, presentation, influencing and reasoning skills A team-focused mentality with proven ability to work effectively with diverse stakeholders Strong interpersonal skills, with an emphasis on the ability to effectively influence others, collaborate and partner. Understanding of the impact of IT on business results Demonstrated experience using Architecture Methodology (TOGAF, Archimate) Strong decision-making capabilities, with a proven ability to weigh the relative costs and benefits of potential actions and identify the most appropriate one Experience in Public Cloud platforms (preferably AWS), solution design and development using Cloud-native services, and understanding of cost rationalization. AWS/Azure Cloud Certification Strong experience in Architecture and Design patterns Developed acumen in Domain Driven Design Strong experience with event streaming design and implementation using Kafka, along with web service protocols and patterns like SOAP, REST, JSON, XML/XSDs. Experience with REST API for data interchange and API-driven systems integration decoupling digital and backend systems. Track record of designing architectural reference material What to Expect as Part of MassMutual and the Team Regular meetings with the Enterprise Architecture team Focused one-on-one meetings with your manager Access to mentorship opportunities Networking opportunities including access to Asian, Hispanic/Latinx, African American, women, LGBTQ, veteran and disability-focused Business Resource Groups Access to learning content on Degreed and other informational platforms Your ethics and integrity will be valued by a company with a strong and stable ethical nosiness with industry leading pay and benefits MassMutual is an equal employment opportunity employer. We welcome all persons to apply. If you need an accommodation to complete the application process, please contact us and share the specifics of the assistance you need. California residents: For detailed information about your rights under the California Consumer Privacy Act (CCPA), please visit our California Consumer Privacy Act Disclosures page.
03/02/2026
Full time
The Opportunity Join an industry leading EA function within MassMutual that creates alignment between technology and business strategy. You will have an opportunity to guide the process of planning and designing capabilities to maximize the value of IT and enable the company to make high impact, long-term decisions. This will be accomplished through architecture strategies, blueprints and road maps that standardize technology stacks which create engineering speed and agility through the innovative use of data science, data analytics, cloud and API's. The EA will work with a team that embrace diversity in all of its forms, respect and have fun. The Team The MassMutual Enterprise Architecture team in the Enterprise Technology and Experience organization is seeking an outstanding Enterprise Architect (Application) to join our team. Enterprise Architecture is composed of Business, Application, Infrastructure, Technology & Design and Security architecture domains. Joining this team will give the Application EA a unique perspective and opportunity to partner with best-in-class architects on enterprise wide technology initiatives. The Impact: This role will work with the Wealth Management line of business delivery teams, engineers, application operations, product managers, and enterprise stakeholders to help deliver innovative, data-driven systems aimed at transforming the insurance industry. As part of the application architecture team, incumbents may be responsible for any of the following: Partner with senior leaders to develop and maintain the Technology strategies & roadmap focused on Wealth Management Technical evaluations and benchmarking of core application platforms, frameworks and technologies Specification and publication of standards around application design and software engineering best practices Thought leadership and active participation in conferences and research with strategic partners and academic institutions Partner with business executives and senior architects to identify data and process issues, then provide solution options and recommends options Provide recommendations on system options, risks, cost/benefit analysis, and impact on cross-domain systems, business strategy, goals and processes Engage in SA problem solving, snapshots and full architecture documents Actively publish deliverables, and utilizes multi-media to educate and engage with federated solution architecture community members Collaborate with extended enterprise architecture, business, and IT support teams to communicate architecture strategies, standards, and direction Stay abreast of emerging technologies The Minimum Qualifications Bachelors degree in Computer Science, Engineering or related Technical degree 8+ years of related IT Solutions Architecture or Technical Lead experience The Ideal Qualifications 10+ years of related IT Architecture or IT consulting experience P referred job experience includes some knowledge of Insurance and Wealth Management Experience with technology supporting: Financial Planning, Order Management, Lending, Wealth Investment Products, etc. Excellent communication, presentation, influencing and reasoning skills A team-focused mentality with proven ability to work effectively with diverse stakeholders Strong interpersonal skills, with an emphasis on the ability to effectively influence others, collaborate and partner. Understanding of the impact of IT on business results Demonstrated experience using Architecture Methodology (TOGAF, Archimate) Strong decision-making capabilities, with a proven ability to weigh the relative costs and benefits of potential actions and identify the most appropriate one Experience in Public Cloud platforms (preferably AWS), solution design and development using Cloud-native services, and understanding of cost rationalization. AWS/Azure Cloud Certification Strong experience in Architecture and Design patterns Developed acumen in Domain Driven Design Strong experience with event streaming design and implementation using Kafka, along with web service protocols and patterns like SOAP, REST, JSON, XML/XSDs. Experience with REST API for data interchange and API-driven systems integration decoupling digital and backend systems. Track record of designing architectural reference material What to Expect as Part of MassMutual and the Team Regular meetings with the Enterprise Architecture team Focused one-on-one meetings with your manager Access to mentorship opportunities Networking opportunities including access to Asian, Hispanic/Latinx, African American, women, LGBTQ, veteran and disability-focused Business Resource Groups Access to learning content on Degreed and other informational platforms Your ethics and integrity will be valued by a company with a strong and stable ethical nosiness with industry leading pay and benefits MassMutual is an equal employment opportunity employer. We welcome all persons to apply. If you need an accommodation to complete the application process, please contact us and share the specifics of the assistance you need. California residents: For detailed information about your rights under the California Consumer Privacy Act (CCPA), please visit our California Consumer Privacy Act Disclosures page.
The Opportunity Join an industry leading EA function within MassMutual that creates alignment between technology and business strategy. You will have an opportunity to guide the process of planning and designing capabilities to maximize the value of IT and enable the company to make high impact, long-term decisions. This will be accomplished through architecture strategies, blueprints and road maps that standardize technology stacks which create engineering speed and agility through the innovative use of data science, data analytics, cloud and API's. The EA will work with a team that embrace diversity in all of its forms, respect and have fun. The Team The MassMutual Enterprise Architecture team in the Enterprise Technology and Experience organization is seeking an outstanding Enterprise Architect (Application) to join our team. Enterprise Architecture is composed of Business, Application, Infrastructure, Technology & Design and Security architecture domains. Joining this team will give the Application EA a unique perspective and opportunity to partner with best-in-class architects on enterprise wide technology initiatives. The Impact: This role will work with the Wealth Management line of business delivery teams, engineers, application operations, product managers, and enterprise stakeholders to help deliver innovative, data-driven systems aimed at transforming the insurance industry. As part of the application architecture team, incumbents may be responsible for any of the following: Partner with senior leaders to develop and maintain the Technology strategies & roadmap focused on Wealth Management Technical evaluations and benchmarking of core application platforms, frameworks and technologies Specification and publication of standards around application design and software engineering best practices Thought leadership and active participation in conferences and research with strategic partners and academic institutions Partner with business executives and senior architects to identify data and process issues, then provide solution options and recommends options Provide recommendations on system options, risks, cost/benefit analysis, and impact on cross-domain systems, business strategy, goals and processes Engage in SA problem solving, snapshots and full architecture documents Actively publish deliverables, and utilizes multi-media to educate and engage with federated solution architecture community members Collaborate with extended enterprise architecture, business, and IT support teams to communicate architecture strategies, standards, and direction Stay abreast of emerging technologies The Minimum Qualifications Bachelors degree in Computer Science, Engineering or related Technical degree 8+ years of related IT Solutions Architecture or Technical Lead experience The Ideal Qualifications 10+ years of related IT Architecture or IT consulting experience P referred job experience includes some knowledge of Insurance and Wealth Management Experience with technology supporting: Financial Planning, Order Management, Lending, Wealth Investment Products, etc. Excellent communication, presentation, influencing and reasoning skills A team-focused mentality with proven ability to work effectively with diverse stakeholders Strong interpersonal skills, with an emphasis on the ability to effectively influence others, collaborate and partner. Understanding of the impact of IT on business results Demonstrated experience using Architecture Methodology (TOGAF, Archimate) Strong decision-making capabilities, with a proven ability to weigh the relative costs and benefits of potential actions and identify the most appropriate one Experience in Public Cloud platforms (preferably AWS), solution design and development using Cloud-native services, and understanding of cost rationalization. AWS/Azure Cloud Certification Strong experience in Architecture and Design patterns Developed acumen in Domain Driven Design Strong experience with event streaming design and implementation using Kafka, along with web service protocols and patterns like SOAP, REST, JSON, XML/XSDs. Experience with REST API for data interchange and API-driven systems integration decoupling digital and backend systems. Track record of designing architectural reference material What to Expect as Part of MassMutual and the Team Regular meetings with the Enterprise Architecture team Focused one-on-one meetings with your manager Access to mentorship opportunities Networking opportunities including access to Asian, Hispanic/Latinx, African American, women, LGBTQ, veteran and disability-focused Business Resource Groups Access to learning content on Degreed and other informational platforms Your ethics and integrity will be valued by a company with a strong and stable ethical nosiness with industry leading pay and benefits MassMutual is an equal employment opportunity employer. We welcome all persons to apply. If you need an accommodation to complete the application process, please contact us and share the specifics of the assistance you need. California residents: For detailed information about your rights under the California Consumer Privacy Act (CCPA), please visit our California Consumer Privacy Act Disclosures page.
03/02/2026
Full time
The Opportunity Join an industry leading EA function within MassMutual that creates alignment between technology and business strategy. You will have an opportunity to guide the process of planning and designing capabilities to maximize the value of IT and enable the company to make high impact, long-term decisions. This will be accomplished through architecture strategies, blueprints and road maps that standardize technology stacks which create engineering speed and agility through the innovative use of data science, data analytics, cloud and API's. The EA will work with a team that embrace diversity in all of its forms, respect and have fun. The Team The MassMutual Enterprise Architecture team in the Enterprise Technology and Experience organization is seeking an outstanding Enterprise Architect (Application) to join our team. Enterprise Architecture is composed of Business, Application, Infrastructure, Technology & Design and Security architecture domains. Joining this team will give the Application EA a unique perspective and opportunity to partner with best-in-class architects on enterprise wide technology initiatives. The Impact: This role will work with the Wealth Management line of business delivery teams, engineers, application operations, product managers, and enterprise stakeholders to help deliver innovative, data-driven systems aimed at transforming the insurance industry. As part of the application architecture team, incumbents may be responsible for any of the following: Partner with senior leaders to develop and maintain the Technology strategies & roadmap focused on Wealth Management Technical evaluations and benchmarking of core application platforms, frameworks and technologies Specification and publication of standards around application design and software engineering best practices Thought leadership and active participation in conferences and research with strategic partners and academic institutions Partner with business executives and senior architects to identify data and process issues, then provide solution options and recommends options Provide recommendations on system options, risks, cost/benefit analysis, and impact on cross-domain systems, business strategy, goals and processes Engage in SA problem solving, snapshots and full architecture documents Actively publish deliverables, and utilizes multi-media to educate and engage with federated solution architecture community members Collaborate with extended enterprise architecture, business, and IT support teams to communicate architecture strategies, standards, and direction Stay abreast of emerging technologies The Minimum Qualifications Bachelors degree in Computer Science, Engineering or related Technical degree 8+ years of related IT Solutions Architecture or Technical Lead experience The Ideal Qualifications 10+ years of related IT Architecture or IT consulting experience P referred job experience includes some knowledge of Insurance and Wealth Management Experience with technology supporting: Financial Planning, Order Management, Lending, Wealth Investment Products, etc. Excellent communication, presentation, influencing and reasoning skills A team-focused mentality with proven ability to work effectively with diverse stakeholders Strong interpersonal skills, with an emphasis on the ability to effectively influence others, collaborate and partner. Understanding of the impact of IT on business results Demonstrated experience using Architecture Methodology (TOGAF, Archimate) Strong decision-making capabilities, with a proven ability to weigh the relative costs and benefits of potential actions and identify the most appropriate one Experience in Public Cloud platforms (preferably AWS), solution design and development using Cloud-native services, and understanding of cost rationalization. AWS/Azure Cloud Certification Strong experience in Architecture and Design patterns Developed acumen in Domain Driven Design Strong experience with event streaming design and implementation using Kafka, along with web service protocols and patterns like SOAP, REST, JSON, XML/XSDs. Experience with REST API for data interchange and API-driven systems integration decoupling digital and backend systems. Track record of designing architectural reference material What to Expect as Part of MassMutual and the Team Regular meetings with the Enterprise Architecture team Focused one-on-one meetings with your manager Access to mentorship opportunities Networking opportunities including access to Asian, Hispanic/Latinx, African American, women, LGBTQ, veteran and disability-focused Business Resource Groups Access to learning content on Degreed and other informational platforms Your ethics and integrity will be valued by a company with a strong and stable ethical nosiness with industry leading pay and benefits MassMutual is an equal employment opportunity employer. We welcome all persons to apply. If you need an accommodation to complete the application process, please contact us and share the specifics of the assistance you need. California residents: For detailed information about your rights under the California Consumer Privacy Act (CCPA), please visit our California Consumer Privacy Act Disclosures page.
The Opportunity Join an industry leading EA function within MassMutual that creates alignment between technology and business strategy. You will have an opportunity to guide the process of planning and designing capabilities to maximize the value of IT and enable the company to make high impact, long-term decisions. This will be accomplished through architecture strategies, blueprints and road maps that standardize technology stacks which create engineering speed and agility through the innovative use of data science, data analytics, cloud and API's. The EA will work with a team that embrace diversity in all of its forms, respect and have fun. The Team The MassMutual Enterprise Architecture team in the Enterprise Technology and Experience organization is seeking an outstanding Enterprise Architect (Application) to join our team. Enterprise Architecture is composed of Business, Application, Infrastructure, Technology & Design and Security architecture domains. Joining this team will give the Application EA a unique perspective and opportunity to partner with best-in-class architects on enterprise wide technology initiatives. The Impact: This role will work with the Wealth Management line of business delivery teams, engineers, application operations, product managers, and enterprise stakeholders to help deliver innovative, data-driven systems aimed at transforming the insurance industry. As part of the application architecture team, incumbents may be responsible for any of the following: Partner with senior leaders to develop and maintain the Technology strategies & roadmap focused on Wealth Management Technical evaluations and benchmarking of core application platforms, frameworks and technologies Specification and publication of standards around application design and software engineering best practices Thought leadership and active participation in conferences and research with strategic partners and academic institutions Partner with business executives and senior architects to identify data and process issues, then provide solution options and recommends options Provide recommendations on system options, risks, cost/benefit analysis, and impact on cross-domain systems, business strategy, goals and processes Engage in SA problem solving, snapshots and full architecture documents Actively publish deliverables, and utilizes multi-media to educate and engage with federated solution architecture community members Collaborate with extended enterprise architecture, business, and IT support teams to communicate architecture strategies, standards, and direction Stay abreast of emerging technologies The Minimum Qualifications Bachelors degree in Computer Science, Engineering or related Technical degree 8+ years of related IT Solutions Architecture or Technical Lead experience The Ideal Qualifications 10+ years of related IT Architecture or IT consulting experience P referred job experience includes some knowledge of Insurance and Wealth Management Experience with technology supporting: Financial Planning, Order Management, Lending, Wealth Investment Products, etc. Excellent communication, presentation, influencing and reasoning skills A team-focused mentality with proven ability to work effectively with diverse stakeholders Strong interpersonal skills, with an emphasis on the ability to effectively influence others, collaborate and partner. Understanding of the impact of IT on business results Demonstrated experience using Architecture Methodology (TOGAF, Archimate) Strong decision-making capabilities, with a proven ability to weigh the relative costs and benefits of potential actions and identify the most appropriate one Experience in Public Cloud platforms (preferably AWS), solution design and development using Cloud-native services, and understanding of cost rationalization. AWS/Azure Cloud Certification Strong experience in Architecture and Design patterns Developed acumen in Domain Driven Design Strong experience with event streaming design and implementation using Kafka, along with web service protocols and patterns like SOAP, REST, JSON, XML/XSDs. Experience with REST API for data interchange and API-driven systems integration decoupling digital and backend systems. Track record of designing architectural reference material What to Expect as Part of MassMutual and the Team Regular meetings with the Enterprise Architecture team Focused one-on-one meetings with your manager Access to mentorship opportunities Networking opportunities including access to Asian, Hispanic/Latinx, African American, women, LGBTQ, veteran and disability-focused Business Resource Groups Access to learning content on Degreed and other informational platforms Your ethics and integrity will be valued by a company with a strong and stable ethical nosiness with industry leading pay and benefits MassMutual is an equal employment opportunity employer. We welcome all persons to apply. If you need an accommodation to complete the application process, please contact us and share the specifics of the assistance you need. California residents: For detailed information about your rights under the California Consumer Privacy Act (CCPA), please visit our California Consumer Privacy Act Disclosures page.
03/02/2026
Full time
The Opportunity Join an industry leading EA function within MassMutual that creates alignment between technology and business strategy. You will have an opportunity to guide the process of planning and designing capabilities to maximize the value of IT and enable the company to make high impact, long-term decisions. This will be accomplished through architecture strategies, blueprints and road maps that standardize technology stacks which create engineering speed and agility through the innovative use of data science, data analytics, cloud and API's. The EA will work with a team that embrace diversity in all of its forms, respect and have fun. The Team The MassMutual Enterprise Architecture team in the Enterprise Technology and Experience organization is seeking an outstanding Enterprise Architect (Application) to join our team. Enterprise Architecture is composed of Business, Application, Infrastructure, Technology & Design and Security architecture domains. Joining this team will give the Application EA a unique perspective and opportunity to partner with best-in-class architects on enterprise wide technology initiatives. The Impact: This role will work with the Wealth Management line of business delivery teams, engineers, application operations, product managers, and enterprise stakeholders to help deliver innovative, data-driven systems aimed at transforming the insurance industry. As part of the application architecture team, incumbents may be responsible for any of the following: Partner with senior leaders to develop and maintain the Technology strategies & roadmap focused on Wealth Management Technical evaluations and benchmarking of core application platforms, frameworks and technologies Specification and publication of standards around application design and software engineering best practices Thought leadership and active participation in conferences and research with strategic partners and academic institutions Partner with business executives and senior architects to identify data and process issues, then provide solution options and recommends options Provide recommendations on system options, risks, cost/benefit analysis, and impact on cross-domain systems, business strategy, goals and processes Engage in SA problem solving, snapshots and full architecture documents Actively publish deliverables, and utilizes multi-media to educate and engage with federated solution architecture community members Collaborate with extended enterprise architecture, business, and IT support teams to communicate architecture strategies, standards, and direction Stay abreast of emerging technologies The Minimum Qualifications Bachelors degree in Computer Science, Engineering or related Technical degree 8+ years of related IT Solutions Architecture or Technical Lead experience The Ideal Qualifications 10+ years of related IT Architecture or IT consulting experience P referred job experience includes some knowledge of Insurance and Wealth Management Experience with technology supporting: Financial Planning, Order Management, Lending, Wealth Investment Products, etc. Excellent communication, presentation, influencing and reasoning skills A team-focused mentality with proven ability to work effectively with diverse stakeholders Strong interpersonal skills, with an emphasis on the ability to effectively influence others, collaborate and partner. Understanding of the impact of IT on business results Demonstrated experience using Architecture Methodology (TOGAF, Archimate) Strong decision-making capabilities, with a proven ability to weigh the relative costs and benefits of potential actions and identify the most appropriate one Experience in Public Cloud platforms (preferably AWS), solution design and development using Cloud-native services, and understanding of cost rationalization. AWS/Azure Cloud Certification Strong experience in Architecture and Design patterns Developed acumen in Domain Driven Design Strong experience with event streaming design and implementation using Kafka, along with web service protocols and patterns like SOAP, REST, JSON, XML/XSDs. Experience with REST API for data interchange and API-driven systems integration decoupling digital and backend systems. Track record of designing architectural reference material What to Expect as Part of MassMutual and the Team Regular meetings with the Enterprise Architecture team Focused one-on-one meetings with your manager Access to mentorship opportunities Networking opportunities including access to Asian, Hispanic/Latinx, African American, women, LGBTQ, veteran and disability-focused Business Resource Groups Access to learning content on Degreed and other informational platforms Your ethics and integrity will be valued by a company with a strong and stable ethical nosiness with industry leading pay and benefits MassMutual is an equal employment opportunity employer. We welcome all persons to apply. If you need an accommodation to complete the application process, please contact us and share the specifics of the assistance you need. California residents: For detailed information about your rights under the California Consumer Privacy Act (CCPA), please visit our California Consumer Privacy Act Disclosures page.
What you will do We are seeking a skilled Digital Product Manager to lead the development and management of the MES/MOM digital product. MES/MOM at Clarios focuses on optimizing manufacturing operations through real-time data, process automation, and integration with enterprise systems to improve efficiency, quality, and compliance. This will be onsite three days a week in Glendale, WI. Although, we are open to remote for the right candidate. The role involves understanding customer needs, defining product vision, collaborating with internal and external technology teams, and managing the product lifecycle. The ideal candidate is technically proficient and possesses strong communication, leadership, and delivery skills utilizing both lean/agile methodologies and traditional program/project management. How you will do it Define, own, and communicate a compelling vision, strategy, and roadmap for the MES/MOM digital product at Clarios. Manage the entire digital product lifecycle from concept to launch, serving as the voice of customer to technology teams. Work with executive level stakeholders to understand desired/potential business outcomes and then work with cross functional teams to define and prioritize a backlog of product features / functional requirements to meet those outcomes. Lead a combination of internal and external technology teams to deliver prioritized digital product features that align with and drive business outcomes such as improved OEE, reduced downtime, and enhanced traceability. Collaborate with IT, operations, and regional teams to ensure seamless delivery, launch, and adoption. Conduct market and technology research to identify and prepare for future customer needs and market opportunities. Actively engage with internal stakeholders (e.g., plant operations, quality, etc.) and customers to gather feedback and validate digital product direction. Manage digital product releases, track KPIs and Outcome Driven Metrics, and iterate based on feedback and performance. Ensure digital products align with company's quality standards, architecture strategy, and regulatory requirements. Act as a digital product evangelist to build awareness within the organization. Represent the digital product in steering committees and governance forums. What we look for Required Strong understanding of manufacturing technology, technology trends, business capabilities, processes, and data. Direct experience in manufacturing operations is preferred. Digital product management experience with a proven track record of delivering successful digital products. Strong problem-solving skills and willingness to roll up one's sleeves to get the job done. Skilled at working effectively with cross functional teams. Excellent written and verbal communication skills. Demonstrated experience conducting and leveraging market research, driving product strategy, and designing an excellent user experience. High level of emotional intelligence, demonstrated through successful working relationships with stakeholders at various levels in an organization and with various personality types. Strong analytical skills and financial acumen Ability to lead and influence data-driven decision making at the senior leader level Proven expertise in the software development process, agile methodologies, and project/program management. Problem-solving skills to identify issues that might occur during the product development cycle and drive effective resolution. Customer-centric mindset to ensure the digital product meets user needs and contributes to business goals. Preferred , Engineering or equivalent preferred. Agile/Scrum/Project Management certifications are a bonus. What you get: Medical, dental and vision care coverage and a 401(k) savings plan with company matching - all starting on date of hire Tuition reimbursement, perks, and discounts Parental and caregiver leave programs All the usual benefits such as paid time off, flexible spending, short-and long-term disability, basic life insurance, business travel insurance, Employee Assistance Program, and domestic partner benefits Global market strength and worldwide market share leadership HQ location earns LEED certification for sustainability plus a full-service cafeteria and workout facility Clarios has been recognized as one of 2025's Most Ethical Companies by Ethisphere. This prestigious recognition marks the third consecutive year Clarios has received this distinction. Who we are: Clarios is the force behind the world's most recognizable car battery brands, powering vehicles from leading automakers like Ford, General Motors, Toyota, Honda, and Nissan. With 18,000 employees worldwide, we develop, manufacture, and distribute energy storage solutions while recovering, recycling, and reusing up to 99% of battery materials-setting the standard for sustainability in our industry. At Clarios, we're not just making batteries; we're shaping the future of sustainable transportation. Join our mission to innovate, push boundaries, and make a real impact. Discover your potential at Clarios-where your power meets endless possibilities. Veterans/Military Spouses: We value the leadership, adaptability, and technical expertise developed through military service. At Clarios, those capabilities thrive in an environment built on grit, ingenuity, and passion-where you can grow your career while helping to power progress worldwide. All qualified applicants will be considered without regard to protected characteristics. We recognize that people come with a wealth of experience and talent beyond just the technical requirements of a job. If your experience is close to what you see listed here, please apply. Diversity of experience and skills combined with passion is key to challenging the status quo. Therefore, we encourage people from all backgrounds to apply to our positions. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, age, status as a protected veteran or other protected characteristics protected by law. As a federal contractor, we are committed to not discriminating against any applicant or employee based on these protected statuses. We will also take affirmative action to ensure equal employment opportunities. Please let us know if you require accommodations during the interview process by emailing . We are an Equal Opportunity Employer and value diversity in our teams in terms of work experience, area of expertise, and all characteristics protected by laws in the countries where we operate. For more information on our commitment to sustainability, diversity, and equal opportunity, please read our latest report . We want you to know your rights because EEO is the law. A Note to Job Applicants: please be aware of scams being perpetrated through the Internet and social media platforms. Clarios will never require a job applicant to pay money as part of the application or hiring process. To all recruitment agencies: Clarios does not accept unsolicited agency resumes/CVs. Please do not forward resumes/CVs to our careers email addresses, Clarios employees or any other company location. Clarios is not responsible for any fees related to unsolicited resumes/CVs.
03/01/2026
Full time
What you will do We are seeking a skilled Digital Product Manager to lead the development and management of the MES/MOM digital product. MES/MOM at Clarios focuses on optimizing manufacturing operations through real-time data, process automation, and integration with enterprise systems to improve efficiency, quality, and compliance. This will be onsite three days a week in Glendale, WI. Although, we are open to remote for the right candidate. The role involves understanding customer needs, defining product vision, collaborating with internal and external technology teams, and managing the product lifecycle. The ideal candidate is technically proficient and possesses strong communication, leadership, and delivery skills utilizing both lean/agile methodologies and traditional program/project management. How you will do it Define, own, and communicate a compelling vision, strategy, and roadmap for the MES/MOM digital product at Clarios. Manage the entire digital product lifecycle from concept to launch, serving as the voice of customer to technology teams. Work with executive level stakeholders to understand desired/potential business outcomes and then work with cross functional teams to define and prioritize a backlog of product features / functional requirements to meet those outcomes. Lead a combination of internal and external technology teams to deliver prioritized digital product features that align with and drive business outcomes such as improved OEE, reduced downtime, and enhanced traceability. Collaborate with IT, operations, and regional teams to ensure seamless delivery, launch, and adoption. Conduct market and technology research to identify and prepare for future customer needs and market opportunities. Actively engage with internal stakeholders (e.g., plant operations, quality, etc.) and customers to gather feedback and validate digital product direction. Manage digital product releases, track KPIs and Outcome Driven Metrics, and iterate based on feedback and performance. Ensure digital products align with company's quality standards, architecture strategy, and regulatory requirements. Act as a digital product evangelist to build awareness within the organization. Represent the digital product in steering committees and governance forums. What we look for Required Strong understanding of manufacturing technology, technology trends, business capabilities, processes, and data. Direct experience in manufacturing operations is preferred. Digital product management experience with a proven track record of delivering successful digital products. Strong problem-solving skills and willingness to roll up one's sleeves to get the job done. Skilled at working effectively with cross functional teams. Excellent written and verbal communication skills. Demonstrated experience conducting and leveraging market research, driving product strategy, and designing an excellent user experience. High level of emotional intelligence, demonstrated through successful working relationships with stakeholders at various levels in an organization and with various personality types. Strong analytical skills and financial acumen Ability to lead and influence data-driven decision making at the senior leader level Proven expertise in the software development process, agile methodologies, and project/program management. Problem-solving skills to identify issues that might occur during the product development cycle and drive effective resolution. Customer-centric mindset to ensure the digital product meets user needs and contributes to business goals. Preferred , Engineering or equivalent preferred. Agile/Scrum/Project Management certifications are a bonus. What you get: Medical, dental and vision care coverage and a 401(k) savings plan with company matching - all starting on date of hire Tuition reimbursement, perks, and discounts Parental and caregiver leave programs All the usual benefits such as paid time off, flexible spending, short-and long-term disability, basic life insurance, business travel insurance, Employee Assistance Program, and domestic partner benefits Global market strength and worldwide market share leadership HQ location earns LEED certification for sustainability plus a full-service cafeteria and workout facility Clarios has been recognized as one of 2025's Most Ethical Companies by Ethisphere. This prestigious recognition marks the third consecutive year Clarios has received this distinction. Who we are: Clarios is the force behind the world's most recognizable car battery brands, powering vehicles from leading automakers like Ford, General Motors, Toyota, Honda, and Nissan. With 18,000 employees worldwide, we develop, manufacture, and distribute energy storage solutions while recovering, recycling, and reusing up to 99% of battery materials-setting the standard for sustainability in our industry. At Clarios, we're not just making batteries; we're shaping the future of sustainable transportation. Join our mission to innovate, push boundaries, and make a real impact. Discover your potential at Clarios-where your power meets endless possibilities. Veterans/Military Spouses: We value the leadership, adaptability, and technical expertise developed through military service. At Clarios, those capabilities thrive in an environment built on grit, ingenuity, and passion-where you can grow your career while helping to power progress worldwide. All qualified applicants will be considered without regard to protected characteristics. We recognize that people come with a wealth of experience and talent beyond just the technical requirements of a job. If your experience is close to what you see listed here, please apply. Diversity of experience and skills combined with passion is key to challenging the status quo. Therefore, we encourage people from all backgrounds to apply to our positions. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, age, status as a protected veteran or other protected characteristics protected by law. As a federal contractor, we are committed to not discriminating against any applicant or employee based on these protected statuses. We will also take affirmative action to ensure equal employment opportunities. Please let us know if you require accommodations during the interview process by emailing . We are an Equal Opportunity Employer and value diversity in our teams in terms of work experience, area of expertise, and all characteristics protected by laws in the countries where we operate. For more information on our commitment to sustainability, diversity, and equal opportunity, please read our latest report . We want you to know your rights because EEO is the law. A Note to Job Applicants: please be aware of scams being perpetrated through the Internet and social media platforms. Clarios will never require a job applicant to pay money as part of the application or hiring process. To all recruitment agencies: Clarios does not accept unsolicited agency resumes/CVs. Please do not forward resumes/CVs to our careers email addresses, Clarios employees or any other company location. Clarios is not responsible for any fees related to unsolicited resumes/CVs.
Enterprise Services and Systems Administrator, Wharton Computing and Instructional Technology University Overview The University of Pennsylvania, the largest private employer in Philadelphia, is a world-renowned leader in education, research, and innovation. This historic, Ivy League school consistently ranks among the top 10 universities in the annual U.S. News & World Report survey. Penn has 12 highly-regarded schools that provide opportunities for undergraduate, graduate and continuing education, all influenced by Penn's distinctive interdisciplinary approach to scholarship and learning. As an employer Penn has been ranked nationally on many occasions with the most recent award from Forbes who named Penn one of America's Best Large Employers in 2023. Penn offers a unique working environment within the city of Philadelphia. The University is situated on a beautiful urban campus, with easy access to a range of educational, cultural, and recreational activities. With its historical significance and landmarks, lively cultural offerings, and wide variety of atmospheres, Philadelphia is the perfect place to call home for work and play. The University offers a competitive benefits package that includes excellent healthcare and tuition benefits for employees and their families, generous retirement benefits, a wide variety of professional development opportunities, supportive work and family benefits, a wealth of health and wellness programs and resources, and much more. Posted Job Title Enterprise Services and Systems Administrator, Wharton Computing and Instructional Technology Job Profile Title Systems Administrator Senior Job Description Summary Founded in 1881 as the world's first collegiate business school, the Wharton School of the University of Pennsylvania is shaping the future of business by incubating ideas, driving insights, and creating leaders who change the world. With campuses in both Philadelphia and San Francisco, Wharton has over 850 staff, a faculty population of more than 235 renowned professors, and 5,000 undergraduate, MBA, executive MBA, and doctoral students. Each year 13,000 professionals from around the world advance their careers through Wharton Executive Education's individual, company-customized, and online programs. More than 104,000 Wharton alumni form a powerful global network of leaders who transform business every day. Wharton is home to a diverse population of staff, representing a rich array of backgrounds, expertise, and cultures. To learn more, visit . Wharton Computing, the school's dedicated IT organization, is responsible for the technology driving connected learning across the School, advancing the rigorous research required for new business knowledge and understanding. Wharton Computing provides resources to faculty, staff, students, the Wharton Community and beyond, and members of Wharton Computing act as technology evangelists to encourage wider adoption of existing technologies and to experiment with new products and approaches. Job Description As a Enterprise Services and Systems Architect on the CORES (Core Operations, Resources and Enterprise Services) Team under Infrastructure & Services, you will deliver and manage scalable hosted enterprise services and solutions in areas such as Communications and Collaboration, Generative AI Tools, Identity and Access Management, Networks and Connectivity, Monitoring and Alerting, and more, using products and tools like Google Workspace, Office 365, Dropbox, Grouper, ChatGPT, and others. You will deploy, manage and improve our services using ITIL IT Service Management practices, serve as their technical expert and critical resource, and encourage their use and adoption through user outreach and documentation. You will lead and participate on projects that deploy, improve, retire, or deliver services. You will have primary responsibility for the management of a small number of services in our portfolio. You will be part of a rotating operations team that responds to service requests and incidents and performs routine operational work, backing up the I&S Cloud Architecture Team. Back up operational work includes deploying services as infrastructure-as-code on cloud infrastructure hosted in Amazon Web Services with automated workflows using tools like Terraform and Ansible, patching software and operating systems, and participating in code reviews. You will be part of a rotating 24/7 on call team that responds to system alerts and phone communications in week-long shifts. We collaborate to reduce the number of services that page after hours and are dedicated to reducing the after hours burden. We expect all team members to: Value inclusion and teamwork Strengthen our technical and customer service skills Bring new skills and perspective Display leadership and accountability Understand security and privacy principles Navigate change As an Enterprise Services and Systems Administrator, you will be expected to: Lead complex projects to deploy and improve services Maintain subject matter expertise in, and be accountable for services owned by the team Design, deploy, and continually improve services Represent Wharton Computing at events, on projects, and technical committees, locally and externally Expand your skills and provide mentoring and guidance to team members Demonstrate both judgment and insight in crisis and in planning Take provided opportunities to drive your professional development with training and conferences Qualifications For Enterprise Services and System Administrator, a Bachelor's degree and at least 3- 5 years of experience, or equivalent combination of education and experience, is required. To be considered, you should: Have experience managing and completing projects on schedule Be familiar with IT Service Management principles Communicate with technical colleagues, vendors and business users successfully Display the empathy necessary for customer-first support Highly experienced in technical troubleshooting Knowledge of networking basics and concepts Knowledge of email delivery basics, mail hygiene and email authentication Have at least three years of Linux or Windows system administration experience Know at least one cloud service provider such as Amazon Web Services, or Microsoft Azure Have experience with source control and be able to use Git, specifically Demonstrate familiarity with at least one scripting language such as Bash, PowerShell or Python Have experience administering at least one collaboration and productivity solution such as Microsoft M365 or Google Workspace A combination of the following desired attributes will help you be successful: A technical customer service background Demonstrated knowledge of principles of technical troubleshooting Comfort with Agile project management practice (Scrum/Kanban) A familiarity with ITIL procedures and language A general understanding of DevOps philosophies Understanding and experience with RESTful or other APIs Knowledge of cloud provider Identity and Access Management or broader IAM principles Awareness of Security and Privacy Best Practices and how they apply to Higher Education Practical experience with the fundamentals of TCP/IP networking Experience with a configuration management system like Ansible, Chef or Puppet Job Location - City, State Philadelphia, Pennsylvania Department / School Wharton School Pay Range $83,500.00 - $100,000.00 Annual Rate Salary offers are made based on the candidate's qualifications, experience, skills, and education as they directly relate to the requirements of the position, and in alignment with salary ranges based on external market data for the job's level. Internal organization and peer data at Penn are also considered. Equal Opportunity Statement The University of Pennsylvania is an equal opportunity employer. Candidates are considered for employment without regard to race, color, sex, sexual orientation, religion, creed, national origin (including shared ancestry or ethnic characteristics), citizenship status, age, disability, veteran status or any class protected under applicable federal, state or local law. Special Requirements Background checks may be required after a conditional job offer is made. Consideration of the background check will be tailored to the requirements of the job. University Benefits Health, Life, and Flexible Spending Accounts: Penn offers comprehensive medical, prescription, behavioral health, dental, vision, and life insurance benefits to protect you and your family's health and welfare. You can also use flexible spending accounts to pay for eligible health care and dependent care expenses with pre-tax dollars. Tuition: Take advantage of Penn's exceptional tuition benefits. You, your spouse, and your dependent children can get tuition assistance here at Penn. Your dependent children are also eligible for tuition assistance at other institutions. Retirement: Penn offers generous retirement plans to help you save for your future. Penn's Basic, Matching, and Supplemental retirement plans allow you to save for retirement on a pre-tax or Roth basis . click apply for full job details
01/14/2026
Full time
Enterprise Services and Systems Administrator, Wharton Computing and Instructional Technology University Overview The University of Pennsylvania, the largest private employer in Philadelphia, is a world-renowned leader in education, research, and innovation. This historic, Ivy League school consistently ranks among the top 10 universities in the annual U.S. News & World Report survey. Penn has 12 highly-regarded schools that provide opportunities for undergraduate, graduate and continuing education, all influenced by Penn's distinctive interdisciplinary approach to scholarship and learning. As an employer Penn has been ranked nationally on many occasions with the most recent award from Forbes who named Penn one of America's Best Large Employers in 2023. Penn offers a unique working environment within the city of Philadelphia. The University is situated on a beautiful urban campus, with easy access to a range of educational, cultural, and recreational activities. With its historical significance and landmarks, lively cultural offerings, and wide variety of atmospheres, Philadelphia is the perfect place to call home for work and play. The University offers a competitive benefits package that includes excellent healthcare and tuition benefits for employees and their families, generous retirement benefits, a wide variety of professional development opportunities, supportive work and family benefits, a wealth of health and wellness programs and resources, and much more. Posted Job Title Enterprise Services and Systems Administrator, Wharton Computing and Instructional Technology Job Profile Title Systems Administrator Senior Job Description Summary Founded in 1881 as the world's first collegiate business school, the Wharton School of the University of Pennsylvania is shaping the future of business by incubating ideas, driving insights, and creating leaders who change the world. With campuses in both Philadelphia and San Francisco, Wharton has over 850 staff, a faculty population of more than 235 renowned professors, and 5,000 undergraduate, MBA, executive MBA, and doctoral students. Each year 13,000 professionals from around the world advance their careers through Wharton Executive Education's individual, company-customized, and online programs. More than 104,000 Wharton alumni form a powerful global network of leaders who transform business every day. Wharton is home to a diverse population of staff, representing a rich array of backgrounds, expertise, and cultures. To learn more, visit . Wharton Computing, the school's dedicated IT organization, is responsible for the technology driving connected learning across the School, advancing the rigorous research required for new business knowledge and understanding. Wharton Computing provides resources to faculty, staff, students, the Wharton Community and beyond, and members of Wharton Computing act as technology evangelists to encourage wider adoption of existing technologies and to experiment with new products and approaches. Job Description As a Enterprise Services and Systems Architect on the CORES (Core Operations, Resources and Enterprise Services) Team under Infrastructure & Services, you will deliver and manage scalable hosted enterprise services and solutions in areas such as Communications and Collaboration, Generative AI Tools, Identity and Access Management, Networks and Connectivity, Monitoring and Alerting, and more, using products and tools like Google Workspace, Office 365, Dropbox, Grouper, ChatGPT, and others. You will deploy, manage and improve our services using ITIL IT Service Management practices, serve as their technical expert and critical resource, and encourage their use and adoption through user outreach and documentation. You will lead and participate on projects that deploy, improve, retire, or deliver services. You will have primary responsibility for the management of a small number of services in our portfolio. You will be part of a rotating operations team that responds to service requests and incidents and performs routine operational work, backing up the I&S Cloud Architecture Team. Back up operational work includes deploying services as infrastructure-as-code on cloud infrastructure hosted in Amazon Web Services with automated workflows using tools like Terraform and Ansible, patching software and operating systems, and participating in code reviews. You will be part of a rotating 24/7 on call team that responds to system alerts and phone communications in week-long shifts. We collaborate to reduce the number of services that page after hours and are dedicated to reducing the after hours burden. We expect all team members to: Value inclusion and teamwork Strengthen our technical and customer service skills Bring new skills and perspective Display leadership and accountability Understand security and privacy principles Navigate change As an Enterprise Services and Systems Administrator, you will be expected to: Lead complex projects to deploy and improve services Maintain subject matter expertise in, and be accountable for services owned by the team Design, deploy, and continually improve services Represent Wharton Computing at events, on projects, and technical committees, locally and externally Expand your skills and provide mentoring and guidance to team members Demonstrate both judgment and insight in crisis and in planning Take provided opportunities to drive your professional development with training and conferences Qualifications For Enterprise Services and System Administrator, a Bachelor's degree and at least 3- 5 years of experience, or equivalent combination of education and experience, is required. To be considered, you should: Have experience managing and completing projects on schedule Be familiar with IT Service Management principles Communicate with technical colleagues, vendors and business users successfully Display the empathy necessary for customer-first support Highly experienced in technical troubleshooting Knowledge of networking basics and concepts Knowledge of email delivery basics, mail hygiene and email authentication Have at least three years of Linux or Windows system administration experience Know at least one cloud service provider such as Amazon Web Services, or Microsoft Azure Have experience with source control and be able to use Git, specifically Demonstrate familiarity with at least one scripting language such as Bash, PowerShell or Python Have experience administering at least one collaboration and productivity solution such as Microsoft M365 or Google Workspace A combination of the following desired attributes will help you be successful: A technical customer service background Demonstrated knowledge of principles of technical troubleshooting Comfort with Agile project management practice (Scrum/Kanban) A familiarity with ITIL procedures and language A general understanding of DevOps philosophies Understanding and experience with RESTful or other APIs Knowledge of cloud provider Identity and Access Management or broader IAM principles Awareness of Security and Privacy Best Practices and how they apply to Higher Education Practical experience with the fundamentals of TCP/IP networking Experience with a configuration management system like Ansible, Chef or Puppet Job Location - City, State Philadelphia, Pennsylvania Department / School Wharton School Pay Range $83,500.00 - $100,000.00 Annual Rate Salary offers are made based on the candidate's qualifications, experience, skills, and education as they directly relate to the requirements of the position, and in alignment with salary ranges based on external market data for the job's level. Internal organization and peer data at Penn are also considered. Equal Opportunity Statement The University of Pennsylvania is an equal opportunity employer. Candidates are considered for employment without regard to race, color, sex, sexual orientation, religion, creed, national origin (including shared ancestry or ethnic characteristics), citizenship status, age, disability, veteran status or any class protected under applicable federal, state or local law. Special Requirements Background checks may be required after a conditional job offer is made. Consideration of the background check will be tailored to the requirements of the job. University Benefits Health, Life, and Flexible Spending Accounts: Penn offers comprehensive medical, prescription, behavioral health, dental, vision, and life insurance benefits to protect you and your family's health and welfare. You can also use flexible spending accounts to pay for eligible health care and dependent care expenses with pre-tax dollars. Tuition: Take advantage of Penn's exceptional tuition benefits. You, your spouse, and your dependent children can get tuition assistance here at Penn. Your dependent children are also eligible for tuition assistance at other institutions. Retirement: Penn offers generous retirement plans to help you save for your future. Penn's Basic, Matching, and Supplemental retirement plans allow you to save for retirement on a pre-tax or Roth basis . click apply for full job details
Senior Manager, Technology Change Risk Oversight Capital One is one of the fastest growing organizations in the world today, powered by our passion for our customers. We are serious about technology, we dream big, and we execute: Capital One moved our entire enterprise to the public cloud over the course of five years. Just as we prioritize driving innovation through technology, we equally prioritize cybersecurity, reliability, and managing technology risk. Technology Risk Management (TRM) is a small organization that packs a big punch. The 100 professionals in TRM are trusted experts who oversee 14,000 developers at Capital One. We raise the bar for excellence in cybersecurity, reliability, and tech risk. We shape strategy and decisions, challenge activities to ensure they meet our standards, and perform independent tests of our security and technology risk. Our business leaders must make technology decisions constantly. TRM makes sure they have the tech risk information they need to make good decisions. Associates within TRM are highly-skilled information security, cybersecurity, site reliability engineering, technology, and risk management professionals. They have a wealth of experience and a demonstrated ability to add value with their advice and to deliver high-impact results. As the Senior Manager, Technology Change Risk Oversight you will play a key role in the review, risk identification, risk assessment, reporting, and effective challenge of technology processes, controls, and capabilities, including but not limited to material and high risk technology changes. You will provide subject matter expertise, oversight, and effective challenge of key Technology areas such as cloud services, enterprise architecture, cloud migrations, and overall technology deployments. As part of the second line of defense, this position will also collaborate closely with associates in first line Cyber, Technology, the Lines of Business, as well as other second line of defense risk management offices to perform and support evaluations of the effectiveness of the firm's controls infrastructure and offer independent advice and recommendations regarding ways to further mature the firm's cyber risk management capabilities. Finally, as a member of a growing organization, you will have the opportunity to shape and further refine your portfolio commensurate with the priorities of the organization and the company. The demands and high-visibility nature of this position requires an expert with a proven ability to work independently in a fast-paced environment and who can begin contributing immediately. Essential Functions (Responsibilities): Provide technical leadership in assessing the practices of designing, developing, testing and implementing cloud native solutions to crucial business problems through thoughtful use of industry best practices and Capital One policy. Evaluate proposed and approved cloud technical solutions for automation, resiliency, performance, scalability, and security including appropriate tradeoffs, risks and opportunities Evaluate/assess complex technological and business environment migrations to the cloud and integrated end-to-end solution options Build and maintain relationships with technical leaders, business owners, engineers and other stakeholders to understand and evaluate implementation plans, business priorities and technical solutions to ensure risk are well communicated and understood by the key stakeholders Keep up-to-date on cutting edge technology, standards, protocols and tools in areas relevant to the rapidly changing environment at Capital One, specifically cloud native architecture, serverless, and emerging AWS services Demonstrate strong analytical, problem-solving, and decision-making skills Communicate and drive highly complex technology solutions to broad audiences including executives, business leaders, product managers, legal experts, security specialists and software engineers Define, structure and plan work independently Perform independent risk assessment of our cloud environment focusing on architecture, engineering, networking, governance. Provide expertise and advice regarding the effectiveness of device configurations, IT architecture, or IT engineering solutions Consult with risk owners on the design and implementation or adjustment of mitigating controls associated with emerging technologies Draft and publish independent reports for risk owners, senior management, and other stakeholders regarding risks associated with new or emerging technologies Basic Qualifications: Bachelor's Degree or military experience At least 6 years of experience managing, consulting, auditing, or working in the fields of information security or information technology At least 3 years experience with Public Cloud implementations Preferred Qualifications: Master's Degree in Computer Science or in an Engineering discipline Professional certification (AWS Certified Solutions Architect, AWS Certified Security Speciality, AWS SysOps Administrator, or Certified Information Systems Security Professional (CISSP Experience with Information Security at the policy, architecture or implementation level Ability to communicate clearly and to interact effectively at all levels of the organization, and to influence as warranted and appropriate to drive to consensus Experience with identifying and communicating key risks related to cloud native implementations and architectures Experience drafting reports or analytic assessments for senior management Experience with analysis of emerging threats and reports that describe the implications of threat(s) and opportunities to executives or senior decision-makers Passion and expertise in cybersecurity and technology risk, with an ability to be confident, respectful, and articulate when registering dissenting or unpopular opinions Ability to manage multiple high-visibility and high-impact projects while maintaining superior results Execution oriented and a self-motivator Experience with threat modeling frameworks (STRIDE, OWASP Top 10, MITRE ATT&CK) Familiarity with controls and control frameworks ( NIST Cybersecurity Framework, NIST 800-53, CIS Top 20, ISO, COBIT.) Ability to work independently and in a team, taking a lead role on projects when necessary Prior experience working in financial services or other highly-regulated sectors Experience working in a hybrid IT environment that includes both traditional on-premises data centers and public cloud infrastructure (e.g., AWS, Azure, Google Cloud) Experience with OpenStack At this time, Capital One will not sponsor a new applicant for employment authorization for this position. This role is Hybrid, with associates expected to consistently spend three days per week in the office. The minimum and maximum full-time annual salaries for this role are listed below, by location. Please note that this salary information is solely for candidates hired to perform work within one of these locations, and refers to the amount Capital One is willing to pay at the time of this posting. Salaries for part-time roles will be prorated based upon the agreed upon number of hours to be regularly worked. McLean, VA: $225,400 - $257,200 for Sr Manager, Cyber Technical Richmond, VA: $204,900 - $233,800 for Sr Manager, Cyber Technical New York, NY: $245,900 - $280,600 for Sr Manager, Cyber Technical Riverwoods, IL: $204,900 - $233,800 for Sr Manager, Cyber Technical Candidates hired to work in other locations will be subject to the pay range associated with that location, and the actual annualized salary amount offered to any candidate at the time of hire will be reflected solely in the candidate's offer letter. This role is also eligible to earn performance based incentive compensation, which may include cash bonus(es) and/or long term incentives (LTI). Incentives could be discretionary or non discretionary depending on the plan. Capital One offers a comprehensive, competitive, and inclusive set of health, financial and other benefits that support your total well-being. Learn more at the Capital One Careers website . Eligibility varies based on full or part-time status, exempt or non-exempt status, and management level. This role is expected to accept applications for a minimum of 5 business days.No agencies please. Capital One is an equal opportunity employer (EOE, including disability/vet) committed to non-discrimination in compliance with applicable federal, state, and local laws. Capital One promotes a drug-free workplace. Capital One will consider for employment qualified applicants with a criminal history in a manner consistent with the requirements of applicable laws regarding criminal background inquiries, including, to the extent applicable, Article 23-A of the New York Correction Law; San Francisco, California Police Code Article 49, Sections ; New York City's Fair Chance Act; Philadelphia's Fair Criminal Records Screening Act; and other applicable federal, state, and local laws and regulations regarding criminal background inquiries. If you have visited our website in search of information on employment opportunities or to apply for a position, and you require an accommodation, please contact Capital One Recruiting at 1- or via email at . click apply for full job details
12/17/2025
Full time
Senior Manager, Technology Change Risk Oversight Capital One is one of the fastest growing organizations in the world today, powered by our passion for our customers. We are serious about technology, we dream big, and we execute: Capital One moved our entire enterprise to the public cloud over the course of five years. Just as we prioritize driving innovation through technology, we equally prioritize cybersecurity, reliability, and managing technology risk. Technology Risk Management (TRM) is a small organization that packs a big punch. The 100 professionals in TRM are trusted experts who oversee 14,000 developers at Capital One. We raise the bar for excellence in cybersecurity, reliability, and tech risk. We shape strategy and decisions, challenge activities to ensure they meet our standards, and perform independent tests of our security and technology risk. Our business leaders must make technology decisions constantly. TRM makes sure they have the tech risk information they need to make good decisions. Associates within TRM are highly-skilled information security, cybersecurity, site reliability engineering, technology, and risk management professionals. They have a wealth of experience and a demonstrated ability to add value with their advice and to deliver high-impact results. As the Senior Manager, Technology Change Risk Oversight you will play a key role in the review, risk identification, risk assessment, reporting, and effective challenge of technology processes, controls, and capabilities, including but not limited to material and high risk technology changes. You will provide subject matter expertise, oversight, and effective challenge of key Technology areas such as cloud services, enterprise architecture, cloud migrations, and overall technology deployments. As part of the second line of defense, this position will also collaborate closely with associates in first line Cyber, Technology, the Lines of Business, as well as other second line of defense risk management offices to perform and support evaluations of the effectiveness of the firm's controls infrastructure and offer independent advice and recommendations regarding ways to further mature the firm's cyber risk management capabilities. Finally, as a member of a growing organization, you will have the opportunity to shape and further refine your portfolio commensurate with the priorities of the organization and the company. The demands and high-visibility nature of this position requires an expert with a proven ability to work independently in a fast-paced environment and who can begin contributing immediately. Essential Functions (Responsibilities): Provide technical leadership in assessing the practices of designing, developing, testing and implementing cloud native solutions to crucial business problems through thoughtful use of industry best practices and Capital One policy. Evaluate proposed and approved cloud technical solutions for automation, resiliency, performance, scalability, and security including appropriate tradeoffs, risks and opportunities Evaluate/assess complex technological and business environment migrations to the cloud and integrated end-to-end solution options Build and maintain relationships with technical leaders, business owners, engineers and other stakeholders to understand and evaluate implementation plans, business priorities and technical solutions to ensure risk are well communicated and understood by the key stakeholders Keep up-to-date on cutting edge technology, standards, protocols and tools in areas relevant to the rapidly changing environment at Capital One, specifically cloud native architecture, serverless, and emerging AWS services Demonstrate strong analytical, problem-solving, and decision-making skills Communicate and drive highly complex technology solutions to broad audiences including executives, business leaders, product managers, legal experts, security specialists and software engineers Define, structure and plan work independently Perform independent risk assessment of our cloud environment focusing on architecture, engineering, networking, governance. Provide expertise and advice regarding the effectiveness of device configurations, IT architecture, or IT engineering solutions Consult with risk owners on the design and implementation or adjustment of mitigating controls associated with emerging technologies Draft and publish independent reports for risk owners, senior management, and other stakeholders regarding risks associated with new or emerging technologies Basic Qualifications: Bachelor's Degree or military experience At least 6 years of experience managing, consulting, auditing, or working in the fields of information security or information technology At least 3 years experience with Public Cloud implementations Preferred Qualifications: Master's Degree in Computer Science or in an Engineering discipline Professional certification (AWS Certified Solutions Architect, AWS Certified Security Speciality, AWS SysOps Administrator, or Certified Information Systems Security Professional (CISSP Experience with Information Security at the policy, architecture or implementation level Ability to communicate clearly and to interact effectively at all levels of the organization, and to influence as warranted and appropriate to drive to consensus Experience with identifying and communicating key risks related to cloud native implementations and architectures Experience drafting reports or analytic assessments for senior management Experience with analysis of emerging threats and reports that describe the implications of threat(s) and opportunities to executives or senior decision-makers Passion and expertise in cybersecurity and technology risk, with an ability to be confident, respectful, and articulate when registering dissenting or unpopular opinions Ability to manage multiple high-visibility and high-impact projects while maintaining superior results Execution oriented and a self-motivator Experience with threat modeling frameworks (STRIDE, OWASP Top 10, MITRE ATT&CK) Familiarity with controls and control frameworks ( NIST Cybersecurity Framework, NIST 800-53, CIS Top 20, ISO, COBIT.) Ability to work independently and in a team, taking a lead role on projects when necessary Prior experience working in financial services or other highly-regulated sectors Experience working in a hybrid IT environment that includes both traditional on-premises data centers and public cloud infrastructure (e.g., AWS, Azure, Google Cloud) Experience with OpenStack At this time, Capital One will not sponsor a new applicant for employment authorization for this position. This role is Hybrid, with associates expected to consistently spend three days per week in the office. The minimum and maximum full-time annual salaries for this role are listed below, by location. Please note that this salary information is solely for candidates hired to perform work within one of these locations, and refers to the amount Capital One is willing to pay at the time of this posting. Salaries for part-time roles will be prorated based upon the agreed upon number of hours to be regularly worked. McLean, VA: $225,400 - $257,200 for Sr Manager, Cyber Technical Richmond, VA: $204,900 - $233,800 for Sr Manager, Cyber Technical New York, NY: $245,900 - $280,600 for Sr Manager, Cyber Technical Riverwoods, IL: $204,900 - $233,800 for Sr Manager, Cyber Technical Candidates hired to work in other locations will be subject to the pay range associated with that location, and the actual annualized salary amount offered to any candidate at the time of hire will be reflected solely in the candidate's offer letter. This role is also eligible to earn performance based incentive compensation, which may include cash bonus(es) and/or long term incentives (LTI). Incentives could be discretionary or non discretionary depending on the plan. Capital One offers a comprehensive, competitive, and inclusive set of health, financial and other benefits that support your total well-being. Learn more at the Capital One Careers website . Eligibility varies based on full or part-time status, exempt or non-exempt status, and management level. This role is expected to accept applications for a minimum of 5 business days.No agencies please. Capital One is an equal opportunity employer (EOE, including disability/vet) committed to non-discrimination in compliance with applicable federal, state, and local laws. Capital One promotes a drug-free workplace. Capital One will consider for employment qualified applicants with a criminal history in a manner consistent with the requirements of applicable laws regarding criminal background inquiries, including, to the extent applicable, Article 23-A of the New York Correction Law; San Francisco, California Police Code Article 49, Sections ; New York City's Fair Chance Act; Philadelphia's Fair Criminal Records Screening Act; and other applicable federal, state, and local laws and regulations regarding criminal background inquiries. If you have visited our website in search of information on employment opportunities or to apply for a position, and you require an accommodation, please contact Capital One Recruiting at 1- or via email at . click apply for full job details
Manager, Technology Risk Oversight Capital One is one of the fastest growing organizations in the world today, powered by our passion for our customers. We are serious about technology, we dream big, and we execute: Capital One moved our entire enterprise to the public cloud over the course of five years. Just as we prioritize driving innovation through technology, we equally prioritize cybersecurity, reliability, and managing technology risk. The Technology Risk Management (TRM) is a growing organization focused on providing expert advice, credible challenge, and effective oversight of information security and technology activities to identify, assess, control, and manage cyber and technology risk throughout the company. This organization plays a critical role in helping to ensure that the company's risk-taking entities are aware of the risks inherent in their activities and decisions, the impact of their actions on the company at an enterprise level, and opportunities to reduce, mitigate, or avoid risks altogether. Associates within the Technology Risk Management organization are highly-skilled information security, cyber, technology, or risk management professionals who have a wealth of experience and a demonstrated ability to provide value-added recommendations and deliver high-impact results in their areas of expertise. As a Manager, Technology Risk Oversight , you will play a key role in the review, risk identification, risk assessment, reporting, and effective challenge of technology processes, capabilities, and architecture including but not limited to enterprise technology initiatives, cloud services, architectural patterns and capabilities, as well as other areas of high risk technology changes. As part of the second line of defense, this position will also collaborate closely with associates in first line Cyber, Technology, the Lines of Business, as well as other second line of defense risk management offices to perform and support evaluations of the effectiveness of the firm's controls infrastructure and offer independent advice and recommendations regarding ways to further mature the firm's cyber risk management capabilities. As a member of a growing organization, you will have the opportunity to shape and further refine your portfolio commensurate with the priorities of the organization and the firm. The position affords opportunities for substantial growth. The demands and high-visibility nature of this position require an expert with a proven ability to work independently in a fast-paced environment and who can begin contributing immediately. Essential Functions (Responsibilities): Play a lead role in identifying areas of Technology Change risk to provide oversight, analysis, effective challenge, and risk-informed recommendations and expertise Independently drive the organization's participation in assessing Technology Changes by reviewing all aspects of changes (e.g. threat scenarios, applicable controls, risk mitigating, scope, rollout plans, etc ) focusing on Technology Risks related to technical implementation, controls, testing, and architecture concepts Provide technical assessments of Capital One's Technology Changes and Change Management Processes to identify identify, assess, and communicate Technology and Cyber risk Draft assessments for senior management and other stakeholders, to include regulatory agencies and the Board of Directors, as needed Stay current on emerging cyber threats and potential implications to the firm Collaborate effectively with colleagues, stakeholders, and leaders across multiple organizations to achieve objectives Basic Qualifications: A Bachelor's degree or military experience At least 5 years of experience in information security, information technology or cybersecurity At least 2 years experience with public cloud implementations Preferred Qualifications: Professional technology or security management certification (Certified Information Systems Security Professional (CISSP), Certified Information Security Manager (CISM), Certified in Risk and Information Systems Control (CRISC), AWS certification) 2+ years experience working in a hybrid IT environment that includes both traditional on-premises data centers and public cloud infrastructure (e.g., AWS, Azure, Google Cloud). 2+ years experience in a second-line or oversight role at a financial institution or regulatory agency 2+ years experience with implementation of control frameworks (NIST Cybersecurity Framework, NIST 800-53, CIS Top 20, ISO, COBIT) 2+ years of experience drafting reports or analytic assessments 2+ years of consulting experience At this time, Capital One will not sponsor a new applicant for employment authorization for this position. This role is Hybrid, with associates expected to consistently spend three days per week in the office The minimum and maximum full-time annual salaries for this role are listed below, by location. Please note that this salary information is solely for candidates hired to perform work within one of these locations, and refers to the amount Capital One is willing to pay at the time of this posting. Salaries for part-time roles will be prorated based upon the agreed upon number of hours to be regularly worked. McLean, VA: $193,400 - $220,700 for Manager, Cyber Technical Richmond, VA: $175,800 - $200,700 for Manager, Cyber Technical New York, NY: $211,000 - $240,800 for Manager, Cyber Technical Riverwoods, IL: $175,800 - $200,700 for Manager, Cyber Technical Candidates hired to work in other locations will be subject to the pay range associated with that location, and the actual annualized salary amount offered to any candidate at the time of hire will be reflected solely in the candidate's offer letter. This role is also eligible to earn performance based incentive compensation, which may include cash bonus(es) and/or long term incentives (LTI). Incentives could be discretionary or non discretionary depending on the plan. Capital One offers a comprehensive, competitive, and inclusive set of health, financial and other benefits that support your total well-being. Learn more at the Capital One Careers website . Eligibility varies based on full or part-time status, exempt or non-exempt status, and management level. This role is expected to accept applications for a minimum of 5 business days.No agencies please. Capital One is an equal opportunity employer (EOE, including disability/vet) committed to non-discrimination in compliance with applicable federal, state, and local laws. Capital One promotes a drug-free workplace. Capital One will consider for employment qualified applicants with a criminal history in a manner consistent with the requirements of applicable laws regarding criminal background inquiries, including, to the extent applicable, Article 23-A of the New York Correction Law; San Francisco, California Police Code Article 49, Sections ; New York City's Fair Chance Act; Philadelphia's Fair Criminal Records Screening Act; and other applicable federal, state, and local laws and regulations regarding criminal background inquiries. If you have visited our website in search of information on employment opportunities or to apply for a position, and you require an accommodation, please contact Capital One Recruiting at 1- or via email at . All information you provide will be kept confidential and will be used only to the extent required to provide needed reasonable accommodations. For technical support or questions about Capital One's recruiting process, please send an email to Capital One does not provide, endorse nor guarantee and is not liable for third-party products, services, educational tools or other information available through this site. Capital One Financial is made up of several different entities. Please note that any position posted in Canada is for Capital One Canada, any position posted in the United Kingdom is for Capital One Europe and any position posted in the Philippines is for Capital One Philippines Service Corp. (COPSSC).
12/17/2025
Full time
Manager, Technology Risk Oversight Capital One is one of the fastest growing organizations in the world today, powered by our passion for our customers. We are serious about technology, we dream big, and we execute: Capital One moved our entire enterprise to the public cloud over the course of five years. Just as we prioritize driving innovation through technology, we equally prioritize cybersecurity, reliability, and managing technology risk. The Technology Risk Management (TRM) is a growing organization focused on providing expert advice, credible challenge, and effective oversight of information security and technology activities to identify, assess, control, and manage cyber and technology risk throughout the company. This organization plays a critical role in helping to ensure that the company's risk-taking entities are aware of the risks inherent in their activities and decisions, the impact of their actions on the company at an enterprise level, and opportunities to reduce, mitigate, or avoid risks altogether. Associates within the Technology Risk Management organization are highly-skilled information security, cyber, technology, or risk management professionals who have a wealth of experience and a demonstrated ability to provide value-added recommendations and deliver high-impact results in their areas of expertise. As a Manager, Technology Risk Oversight , you will play a key role in the review, risk identification, risk assessment, reporting, and effective challenge of technology processes, capabilities, and architecture including but not limited to enterprise technology initiatives, cloud services, architectural patterns and capabilities, as well as other areas of high risk technology changes. As part of the second line of defense, this position will also collaborate closely with associates in first line Cyber, Technology, the Lines of Business, as well as other second line of defense risk management offices to perform and support evaluations of the effectiveness of the firm's controls infrastructure and offer independent advice and recommendations regarding ways to further mature the firm's cyber risk management capabilities. As a member of a growing organization, you will have the opportunity to shape and further refine your portfolio commensurate with the priorities of the organization and the firm. The position affords opportunities for substantial growth. The demands and high-visibility nature of this position require an expert with a proven ability to work independently in a fast-paced environment and who can begin contributing immediately. Essential Functions (Responsibilities): Play a lead role in identifying areas of Technology Change risk to provide oversight, analysis, effective challenge, and risk-informed recommendations and expertise Independently drive the organization's participation in assessing Technology Changes by reviewing all aspects of changes (e.g. threat scenarios, applicable controls, risk mitigating, scope, rollout plans, etc ) focusing on Technology Risks related to technical implementation, controls, testing, and architecture concepts Provide technical assessments of Capital One's Technology Changes and Change Management Processes to identify identify, assess, and communicate Technology and Cyber risk Draft assessments for senior management and other stakeholders, to include regulatory agencies and the Board of Directors, as needed Stay current on emerging cyber threats and potential implications to the firm Collaborate effectively with colleagues, stakeholders, and leaders across multiple organizations to achieve objectives Basic Qualifications: A Bachelor's degree or military experience At least 5 years of experience in information security, information technology or cybersecurity At least 2 years experience with public cloud implementations Preferred Qualifications: Professional technology or security management certification (Certified Information Systems Security Professional (CISSP), Certified Information Security Manager (CISM), Certified in Risk and Information Systems Control (CRISC), AWS certification) 2+ years experience working in a hybrid IT environment that includes both traditional on-premises data centers and public cloud infrastructure (e.g., AWS, Azure, Google Cloud). 2+ years experience in a second-line or oversight role at a financial institution or regulatory agency 2+ years experience with implementation of control frameworks (NIST Cybersecurity Framework, NIST 800-53, CIS Top 20, ISO, COBIT) 2+ years of experience drafting reports or analytic assessments 2+ years of consulting experience At this time, Capital One will not sponsor a new applicant for employment authorization for this position. This role is Hybrid, with associates expected to consistently spend three days per week in the office The minimum and maximum full-time annual salaries for this role are listed below, by location. Please note that this salary information is solely for candidates hired to perform work within one of these locations, and refers to the amount Capital One is willing to pay at the time of this posting. Salaries for part-time roles will be prorated based upon the agreed upon number of hours to be regularly worked. McLean, VA: $193,400 - $220,700 for Manager, Cyber Technical Richmond, VA: $175,800 - $200,700 for Manager, Cyber Technical New York, NY: $211,000 - $240,800 for Manager, Cyber Technical Riverwoods, IL: $175,800 - $200,700 for Manager, Cyber Technical Candidates hired to work in other locations will be subject to the pay range associated with that location, and the actual annualized salary amount offered to any candidate at the time of hire will be reflected solely in the candidate's offer letter. This role is also eligible to earn performance based incentive compensation, which may include cash bonus(es) and/or long term incentives (LTI). Incentives could be discretionary or non discretionary depending on the plan. Capital One offers a comprehensive, competitive, and inclusive set of health, financial and other benefits that support your total well-being. Learn more at the Capital One Careers website . Eligibility varies based on full or part-time status, exempt or non-exempt status, and management level. This role is expected to accept applications for a minimum of 5 business days.No agencies please. Capital One is an equal opportunity employer (EOE, including disability/vet) committed to non-discrimination in compliance with applicable federal, state, and local laws. Capital One promotes a drug-free workplace. Capital One will consider for employment qualified applicants with a criminal history in a manner consistent with the requirements of applicable laws regarding criminal background inquiries, including, to the extent applicable, Article 23-A of the New York Correction Law; San Francisco, California Police Code Article 49, Sections ; New York City's Fair Chance Act; Philadelphia's Fair Criminal Records Screening Act; and other applicable federal, state, and local laws and regulations regarding criminal background inquiries. If you have visited our website in search of information on employment opportunities or to apply for a position, and you require an accommodation, please contact Capital One Recruiting at 1- or via email at . All information you provide will be kept confidential and will be used only to the extent required to provide needed reasonable accommodations. For technical support or questions about Capital One's recruiting process, please send an email to Capital One does not provide, endorse nor guarantee and is not liable for third-party products, services, educational tools or other information available through this site. Capital One Financial is made up of several different entities. Please note that any position posted in Canada is for Capital One Canada, any position posted in the United Kingdom is for Capital One Europe and any position posted in the Philippines is for Capital One Philippines Service Corp. (COPSSC).
Senior Manager, Technology Change Risk Oversight Capital One is one of the fastest growing organizations in the world today, powered by our passion for our customers. We are serious about technology, we dream big, and we execute: Capital One moved our entire enterprise to the public cloud over the course of five years. Just as we prioritize driving innovation through technology, we equally prioritize cybersecurity, reliability, and managing technology risk. Technology Risk Management (TRM) is a small organization that packs a big punch. The 100 professionals in TRM are trusted experts who oversee 14,000 developers at Capital One. We raise the bar for excellence in cybersecurity, reliability, and tech risk. We shape strategy and decisions, challenge activities to ensure they meet our standards, and perform independent tests of our security and technology risk. Our business leaders must make technology decisions constantly. TRM makes sure they have the tech risk information they need to make good decisions. Associates within TRM are highly-skilled information security, cybersecurity, site reliability engineering, technology, and risk management professionals. They have a wealth of experience and a demonstrated ability to add value with their advice and to deliver high-impact results. As the Senior Manager, Technology Change Risk Oversight you will play a key role in the review, risk identification, risk assessment, reporting, and effective challenge of technology processes, controls, and capabilities, including but not limited to material and high risk technology changes. You will provide subject matter expertise, oversight, and effective challenge of key Technology areas such as cloud services, enterprise architecture, cloud migrations, and overall technology deployments. As part of the second line of defense, this position will also collaborate closely with associates in first line Cyber, Technology, the Lines of Business, as well as other second line of defense risk management offices to perform and support evaluations of the effectiveness of the firm's controls infrastructure and offer independent advice and recommendations regarding ways to further mature the firm's cyber risk management capabilities. Finally, as a member of a growing organization, you will have the opportunity to shape and further refine your portfolio commensurate with the priorities of the organization and the company. The demands and high-visibility nature of this position requires an expert with a proven ability to work independently in a fast-paced environment and who can begin contributing immediately. Essential Functions (Responsibilities): Provide technical leadership in assessing the practices of designing, developing, testing and implementing cloud native solutions to crucial business problems through thoughtful use of industry best practices and Capital One policy. Evaluate proposed and approved cloud technical solutions for automation, resiliency, performance, scalability, and security including appropriate tradeoffs, risks and opportunities Evaluate/assess complex technological and business environment migrations to the cloud and integrated end-to-end solution options Build and maintain relationships with technical leaders, business owners, engineers and other stakeholders to understand and evaluate implementation plans, business priorities and technical solutions to ensure risk are well communicated and understood by the key stakeholders Keep up-to-date on cutting edge technology, standards, protocols and tools in areas relevant to the rapidly changing environment at Capital One, specifically cloud native architecture, serverless, and emerging AWS services Demonstrate strong analytical, problem-solving, and decision-making skills Communicate and drive highly complex technology solutions to broad audiences including executives, business leaders, product managers, legal experts, security specialists and software engineers Define, structure and plan work independently Perform independent risk assessment of our cloud environment focusing on architecture, engineering, networking, governance. Provide expertise and advice regarding the effectiveness of device configurations, IT architecture, or IT engineering solutions Consult with risk owners on the design and implementation or adjustment of mitigating controls associated with emerging technologies Draft and publish independent reports for risk owners, senior management, and other stakeholders regarding risks associated with new or emerging technologies Basic Qualifications: Bachelor's Degree or military experience At least 6 years of experience managing, consulting, auditing, or working in the fields of information security or information technology At least 3 years experience with Public Cloud implementations Preferred Qualifications: Master's Degree in Computer Science or in an Engineering discipline Professional certification (AWS Certified Solutions Architect, AWS Certified Security Speciality, AWS SysOps Administrator, or Certified Information Systems Security Professional (CISSP Experience with Information Security at the policy, architecture or implementation level Ability to communicate clearly and to interact effectively at all levels of the organization, and to influence as warranted and appropriate to drive to consensus Experience with identifying and communicating key risks related to cloud native implementations and architectures Experience drafting reports or analytic assessments for senior management Experience with analysis of emerging threats and reports that describe the implications of threat(s) and opportunities to executives or senior decision-makers Passion and expertise in cybersecurity and technology risk, with an ability to be confident, respectful, and articulate when registering dissenting or unpopular opinions Ability to manage multiple high-visibility and high-impact projects while maintaining superior results Execution oriented and a self-motivator Experience with threat modeling frameworks (STRIDE, OWASP Top 10, MITRE ATT&CK) Familiarity with controls and control frameworks ( NIST Cybersecurity Framework, NIST 800-53, CIS Top 20, ISO, COBIT.) Ability to work independently and in a team, taking a lead role on projects when necessary Prior experience working in financial services or other highly-regulated sectors Experience working in a hybrid IT environment that includes both traditional on-premises data centers and public cloud infrastructure (e.g., AWS, Azure, Google Cloud) Experience with OpenStack At this time, Capital One will not sponsor a new applicant for employment authorization for this position. This role is Hybrid, with associates expected to consistently spend three days per week in the office. The minimum and maximum full-time annual salaries for this role are listed below, by location. Please note that this salary information is solely for candidates hired to perform work within one of these locations, and refers to the amount Capital One is willing to pay at the time of this posting. Salaries for part-time roles will be prorated based upon the agreed upon number of hours to be regularly worked. McLean, VA: $225,400 - $257,200 for Sr Manager, Cyber Technical Richmond, VA: $204,900 - $233,800 for Sr Manager, Cyber Technical New York, NY: $245,900 - $280,600 for Sr Manager, Cyber Technical Riverwoods, IL: $204,900 - $233,800 for Sr Manager, Cyber Technical Candidates hired to work in other locations will be subject to the pay range associated with that location, and the actual annualized salary amount offered to any candidate at the time of hire will be reflected solely in the candidate's offer letter. This role is also eligible to earn performance based incentive compensation, which may include cash bonus(es) and/or long term incentives (LTI). Incentives could be discretionary or non discretionary depending on the plan. Capital One offers a comprehensive, competitive, and inclusive set of health, financial and other benefits that support your total well-being. Learn more at the Capital One Careers website . Eligibility varies based on full or part-time status, exempt or non-exempt status, and management level. This role is expected to accept applications for a minimum of 5 business days.No agencies please. Capital One is an equal opportunity employer (EOE, including disability/vet) committed to non-discrimination in compliance with applicable federal, state, and local laws. Capital One promotes a drug-free workplace. Capital One will consider for employment qualified applicants with a criminal history in a manner consistent with the requirements of applicable laws regarding criminal background inquiries, including, to the extent applicable, Article 23-A of the New York Correction Law; San Francisco, California Police Code Article 49, Sections ; New York City's Fair Chance Act; Philadelphia's Fair Criminal Records Screening Act; and other applicable federal, state, and local laws and regulations regarding criminal background inquiries. If you have visited our website in search of information on employment opportunities or to apply for a position, and you require an accommodation, please contact Capital One Recruiting at 1- or via email at . click apply for full job details
12/17/2025
Full time
Senior Manager, Technology Change Risk Oversight Capital One is one of the fastest growing organizations in the world today, powered by our passion for our customers. We are serious about technology, we dream big, and we execute: Capital One moved our entire enterprise to the public cloud over the course of five years. Just as we prioritize driving innovation through technology, we equally prioritize cybersecurity, reliability, and managing technology risk. Technology Risk Management (TRM) is a small organization that packs a big punch. The 100 professionals in TRM are trusted experts who oversee 14,000 developers at Capital One. We raise the bar for excellence in cybersecurity, reliability, and tech risk. We shape strategy and decisions, challenge activities to ensure they meet our standards, and perform independent tests of our security and technology risk. Our business leaders must make technology decisions constantly. TRM makes sure they have the tech risk information they need to make good decisions. Associates within TRM are highly-skilled information security, cybersecurity, site reliability engineering, technology, and risk management professionals. They have a wealth of experience and a demonstrated ability to add value with their advice and to deliver high-impact results. As the Senior Manager, Technology Change Risk Oversight you will play a key role in the review, risk identification, risk assessment, reporting, and effective challenge of technology processes, controls, and capabilities, including but not limited to material and high risk technology changes. You will provide subject matter expertise, oversight, and effective challenge of key Technology areas such as cloud services, enterprise architecture, cloud migrations, and overall technology deployments. As part of the second line of defense, this position will also collaborate closely with associates in first line Cyber, Technology, the Lines of Business, as well as other second line of defense risk management offices to perform and support evaluations of the effectiveness of the firm's controls infrastructure and offer independent advice and recommendations regarding ways to further mature the firm's cyber risk management capabilities. Finally, as a member of a growing organization, you will have the opportunity to shape and further refine your portfolio commensurate with the priorities of the organization and the company. The demands and high-visibility nature of this position requires an expert with a proven ability to work independently in a fast-paced environment and who can begin contributing immediately. Essential Functions (Responsibilities): Provide technical leadership in assessing the practices of designing, developing, testing and implementing cloud native solutions to crucial business problems through thoughtful use of industry best practices and Capital One policy. Evaluate proposed and approved cloud technical solutions for automation, resiliency, performance, scalability, and security including appropriate tradeoffs, risks and opportunities Evaluate/assess complex technological and business environment migrations to the cloud and integrated end-to-end solution options Build and maintain relationships with technical leaders, business owners, engineers and other stakeholders to understand and evaluate implementation plans, business priorities and technical solutions to ensure risk are well communicated and understood by the key stakeholders Keep up-to-date on cutting edge technology, standards, protocols and tools in areas relevant to the rapidly changing environment at Capital One, specifically cloud native architecture, serverless, and emerging AWS services Demonstrate strong analytical, problem-solving, and decision-making skills Communicate and drive highly complex technology solutions to broad audiences including executives, business leaders, product managers, legal experts, security specialists and software engineers Define, structure and plan work independently Perform independent risk assessment of our cloud environment focusing on architecture, engineering, networking, governance. Provide expertise and advice regarding the effectiveness of device configurations, IT architecture, or IT engineering solutions Consult with risk owners on the design and implementation or adjustment of mitigating controls associated with emerging technologies Draft and publish independent reports for risk owners, senior management, and other stakeholders regarding risks associated with new or emerging technologies Basic Qualifications: Bachelor's Degree or military experience At least 6 years of experience managing, consulting, auditing, or working in the fields of information security or information technology At least 3 years experience with Public Cloud implementations Preferred Qualifications: Master's Degree in Computer Science or in an Engineering discipline Professional certification (AWS Certified Solutions Architect, AWS Certified Security Speciality, AWS SysOps Administrator, or Certified Information Systems Security Professional (CISSP Experience with Information Security at the policy, architecture or implementation level Ability to communicate clearly and to interact effectively at all levels of the organization, and to influence as warranted and appropriate to drive to consensus Experience with identifying and communicating key risks related to cloud native implementations and architectures Experience drafting reports or analytic assessments for senior management Experience with analysis of emerging threats and reports that describe the implications of threat(s) and opportunities to executives or senior decision-makers Passion and expertise in cybersecurity and technology risk, with an ability to be confident, respectful, and articulate when registering dissenting or unpopular opinions Ability to manage multiple high-visibility and high-impact projects while maintaining superior results Execution oriented and a self-motivator Experience with threat modeling frameworks (STRIDE, OWASP Top 10, MITRE ATT&CK) Familiarity with controls and control frameworks ( NIST Cybersecurity Framework, NIST 800-53, CIS Top 20, ISO, COBIT.) Ability to work independently and in a team, taking a lead role on projects when necessary Prior experience working in financial services or other highly-regulated sectors Experience working in a hybrid IT environment that includes both traditional on-premises data centers and public cloud infrastructure (e.g., AWS, Azure, Google Cloud) Experience with OpenStack At this time, Capital One will not sponsor a new applicant for employment authorization for this position. This role is Hybrid, with associates expected to consistently spend three days per week in the office. The minimum and maximum full-time annual salaries for this role are listed below, by location. Please note that this salary information is solely for candidates hired to perform work within one of these locations, and refers to the amount Capital One is willing to pay at the time of this posting. Salaries for part-time roles will be prorated based upon the agreed upon number of hours to be regularly worked. McLean, VA: $225,400 - $257,200 for Sr Manager, Cyber Technical Richmond, VA: $204,900 - $233,800 for Sr Manager, Cyber Technical New York, NY: $245,900 - $280,600 for Sr Manager, Cyber Technical Riverwoods, IL: $204,900 - $233,800 for Sr Manager, Cyber Technical Candidates hired to work in other locations will be subject to the pay range associated with that location, and the actual annualized salary amount offered to any candidate at the time of hire will be reflected solely in the candidate's offer letter. This role is also eligible to earn performance based incentive compensation, which may include cash bonus(es) and/or long term incentives (LTI). Incentives could be discretionary or non discretionary depending on the plan. Capital One offers a comprehensive, competitive, and inclusive set of health, financial and other benefits that support your total well-being. Learn more at the Capital One Careers website . Eligibility varies based on full or part-time status, exempt or non-exempt status, and management level. This role is expected to accept applications for a minimum of 5 business days.No agencies please. Capital One is an equal opportunity employer (EOE, including disability/vet) committed to non-discrimination in compliance with applicable federal, state, and local laws. Capital One promotes a drug-free workplace. Capital One will consider for employment qualified applicants with a criminal history in a manner consistent with the requirements of applicable laws regarding criminal background inquiries, including, to the extent applicable, Article 23-A of the New York Correction Law; San Francisco, California Police Code Article 49, Sections ; New York City's Fair Chance Act; Philadelphia's Fair Criminal Records Screening Act; and other applicable federal, state, and local laws and regulations regarding criminal background inquiries. If you have visited our website in search of information on employment opportunities or to apply for a position, and you require an accommodation, please contact Capital One Recruiting at 1- or via email at . click apply for full job details
Senior Manager, Technology Change Risk Oversight Capital One is one of the fastest growing organizations in the world today, powered by our passion for our customers. We are serious about technology, we dream big, and we execute: Capital One moved our entire enterprise to the public cloud over the course of five years. Just as we prioritize driving innovation through technology, we equally prioritize cybersecurity, reliability, and managing technology risk. Technology Risk Management (TRM) is a small organization that packs a big punch. The 100 professionals in TRM are trusted experts who oversee 14,000 developers at Capital One. We raise the bar for excellence in cybersecurity, reliability, and tech risk. We shape strategy and decisions, challenge activities to ensure they meet our standards, and perform independent tests of our security and technology risk. Our business leaders must make technology decisions constantly. TRM makes sure they have the tech risk information they need to make good decisions. Associates within TRM are highly-skilled information security, cybersecurity, site reliability engineering, technology, and risk management professionals. They have a wealth of experience and a demonstrated ability to add value with their advice and to deliver high-impact results. As the Senior Manager, Technology Change Risk Oversight you will play a key role in the review, risk identification, risk assessment, reporting, and effective challenge of technology processes, controls, and capabilities, including but not limited to material and high risk technology changes. You will provide subject matter expertise, oversight, and effective challenge of key Technology areas such as cloud services, enterprise architecture, cloud migrations, and overall technology deployments. As part of the second line of defense, this position will also collaborate closely with associates in first line Cyber, Technology, the Lines of Business, as well as other second line of defense risk management offices to perform and support evaluations of the effectiveness of the firm's controls infrastructure and offer independent advice and recommendations regarding ways to further mature the firm's cyber risk management capabilities. Finally, as a member of a growing organization, you will have the opportunity to shape and further refine your portfolio commensurate with the priorities of the organization and the company. The demands and high-visibility nature of this position requires an expert with a proven ability to work independently in a fast-paced environment and who can begin contributing immediately. Essential Functions (Responsibilities): Provide technical leadership in assessing the practices of designing, developing, testing and implementing cloud native solutions to crucial business problems through thoughtful use of industry best practices and Capital One policy. Evaluate proposed and approved cloud technical solutions for automation, resiliency, performance, scalability, and security including appropriate tradeoffs, risks and opportunities Evaluate/assess complex technological and business environment migrations to the cloud and integrated end-to-end solution options Build and maintain relationships with technical leaders, business owners, engineers and other stakeholders to understand and evaluate implementation plans, business priorities and technical solutions to ensure risk are well communicated and understood by the key stakeholders Keep up-to-date on cutting edge technology, standards, protocols and tools in areas relevant to the rapidly changing environment at Capital One, specifically cloud native architecture, serverless, and emerging AWS services Demonstrate strong analytical, problem-solving, and decision-making skills Communicate and drive highly complex technology solutions to broad audiences including executives, business leaders, product managers, legal experts, security specialists and software engineers Define, structure and plan work independently Perform independent risk assessment of our cloud environment focusing on architecture, engineering, networking, governance. Provide expertise and advice regarding the effectiveness of device configurations, IT architecture, or IT engineering solutions Consult with risk owners on the design and implementation or adjustment of mitigating controls associated with emerging technologies Draft and publish independent reports for risk owners, senior management, and other stakeholders regarding risks associated with new or emerging technologies Basic Qualifications: Bachelor's Degree or military experience At least 6 years of experience managing, consulting, auditing, or working in the fields of information security or information technology At least 3 years experience with Public Cloud implementations Preferred Qualifications: Master's Degree in Computer Science or in an Engineering discipline Professional certification (AWS Certified Solutions Architect, AWS Certified Security Speciality, AWS SysOps Administrator, or Certified Information Systems Security Professional (CISSP Experience with Information Security at the policy, architecture or implementation level Ability to communicate clearly and to interact effectively at all levels of the organization, and to influence as warranted and appropriate to drive to consensus Experience with identifying and communicating key risks related to cloud native implementations and architectures Experience drafting reports or analytic assessments for senior management Experience with analysis of emerging threats and reports that describe the implications of threat(s) and opportunities to executives or senior decision-makers Passion and expertise in cybersecurity and technology risk, with an ability to be confident, respectful, and articulate when registering dissenting or unpopular opinions Ability to manage multiple high-visibility and high-impact projects while maintaining superior results Execution oriented and a self-motivator Experience with threat modeling frameworks (STRIDE, OWASP Top 10, MITRE ATT&CK) Familiarity with controls and control frameworks ( NIST Cybersecurity Framework, NIST 800-53, CIS Top 20, ISO, COBIT.) Ability to work independently and in a team, taking a lead role on projects when necessary Prior experience working in financial services or other highly-regulated sectors Experience working in a hybrid IT environment that includes both traditional on-premises data centers and public cloud infrastructure (e.g., AWS, Azure, Google Cloud) Experience with OpenStack At this time, Capital One will not sponsor a new applicant for employment authorization for this position. This role is Hybrid, with associates expected to consistently spend three days per week in the office. The minimum and maximum full-time annual salaries for this role are listed below, by location. Please note that this salary information is solely for candidates hired to perform work within one of these locations, and refers to the amount Capital One is willing to pay at the time of this posting. Salaries for part-time roles will be prorated based upon the agreed upon number of hours to be regularly worked. McLean, VA: $225,400 - $257,200 for Sr Manager, Cyber Technical Richmond, VA: $204,900 - $233,800 for Sr Manager, Cyber Technical New York, NY: $245,900 - $280,600 for Sr Manager, Cyber Technical Riverwoods, IL: $204,900 - $233,800 for Sr Manager, Cyber Technical Candidates hired to work in other locations will be subject to the pay range associated with that location, and the actual annualized salary amount offered to any candidate at the time of hire will be reflected solely in the candidate's offer letter. This role is also eligible to earn performance based incentive compensation, which may include cash bonus(es) and/or long term incentives (LTI). Incentives could be discretionary or non discretionary depending on the plan. Capital One offers a comprehensive, competitive, and inclusive set of health, financial and other benefits that support your total well-being. Learn more at the Capital One Careers website . Eligibility varies based on full or part-time status, exempt or non-exempt status, and management level. This role is expected to accept applications for a minimum of 5 business days.No agencies please. Capital One is an equal opportunity employer (EOE, including disability/vet) committed to non-discrimination in compliance with applicable federal, state, and local laws. Capital One promotes a drug-free workplace. Capital One will consider for employment qualified applicants with a criminal history in a manner consistent with the requirements of applicable laws regarding criminal background inquiries, including, to the extent applicable, Article 23-A of the New York Correction Law; San Francisco, California Police Code Article 49, Sections ; New York City's Fair Chance Act; Philadelphia's Fair Criminal Records Screening Act; and other applicable federal, state, and local laws and regulations regarding criminal background inquiries. If you have visited our website in search of information on employment opportunities or to apply for a position, and you require an accommodation, please contact Capital One Recruiting at 1- or via email at . click apply for full job details
12/17/2025
Full time
Senior Manager, Technology Change Risk Oversight Capital One is one of the fastest growing organizations in the world today, powered by our passion for our customers. We are serious about technology, we dream big, and we execute: Capital One moved our entire enterprise to the public cloud over the course of five years. Just as we prioritize driving innovation through technology, we equally prioritize cybersecurity, reliability, and managing technology risk. Technology Risk Management (TRM) is a small organization that packs a big punch. The 100 professionals in TRM are trusted experts who oversee 14,000 developers at Capital One. We raise the bar for excellence in cybersecurity, reliability, and tech risk. We shape strategy and decisions, challenge activities to ensure they meet our standards, and perform independent tests of our security and technology risk. Our business leaders must make technology decisions constantly. TRM makes sure they have the tech risk information they need to make good decisions. Associates within TRM are highly-skilled information security, cybersecurity, site reliability engineering, technology, and risk management professionals. They have a wealth of experience and a demonstrated ability to add value with their advice and to deliver high-impact results. As the Senior Manager, Technology Change Risk Oversight you will play a key role in the review, risk identification, risk assessment, reporting, and effective challenge of technology processes, controls, and capabilities, including but not limited to material and high risk technology changes. You will provide subject matter expertise, oversight, and effective challenge of key Technology areas such as cloud services, enterprise architecture, cloud migrations, and overall technology deployments. As part of the second line of defense, this position will also collaborate closely with associates in first line Cyber, Technology, the Lines of Business, as well as other second line of defense risk management offices to perform and support evaluations of the effectiveness of the firm's controls infrastructure and offer independent advice and recommendations regarding ways to further mature the firm's cyber risk management capabilities. Finally, as a member of a growing organization, you will have the opportunity to shape and further refine your portfolio commensurate with the priorities of the organization and the company. The demands and high-visibility nature of this position requires an expert with a proven ability to work independently in a fast-paced environment and who can begin contributing immediately. Essential Functions (Responsibilities): Provide technical leadership in assessing the practices of designing, developing, testing and implementing cloud native solutions to crucial business problems through thoughtful use of industry best practices and Capital One policy. Evaluate proposed and approved cloud technical solutions for automation, resiliency, performance, scalability, and security including appropriate tradeoffs, risks and opportunities Evaluate/assess complex technological and business environment migrations to the cloud and integrated end-to-end solution options Build and maintain relationships with technical leaders, business owners, engineers and other stakeholders to understand and evaluate implementation plans, business priorities and technical solutions to ensure risk are well communicated and understood by the key stakeholders Keep up-to-date on cutting edge technology, standards, protocols and tools in areas relevant to the rapidly changing environment at Capital One, specifically cloud native architecture, serverless, and emerging AWS services Demonstrate strong analytical, problem-solving, and decision-making skills Communicate and drive highly complex technology solutions to broad audiences including executives, business leaders, product managers, legal experts, security specialists and software engineers Define, structure and plan work independently Perform independent risk assessment of our cloud environment focusing on architecture, engineering, networking, governance. Provide expertise and advice regarding the effectiveness of device configurations, IT architecture, or IT engineering solutions Consult with risk owners on the design and implementation or adjustment of mitigating controls associated with emerging technologies Draft and publish independent reports for risk owners, senior management, and other stakeholders regarding risks associated with new or emerging technologies Basic Qualifications: Bachelor's Degree or military experience At least 6 years of experience managing, consulting, auditing, or working in the fields of information security or information technology At least 3 years experience with Public Cloud implementations Preferred Qualifications: Master's Degree in Computer Science or in an Engineering discipline Professional certification (AWS Certified Solutions Architect, AWS Certified Security Speciality, AWS SysOps Administrator, or Certified Information Systems Security Professional (CISSP Experience with Information Security at the policy, architecture or implementation level Ability to communicate clearly and to interact effectively at all levels of the organization, and to influence as warranted and appropriate to drive to consensus Experience with identifying and communicating key risks related to cloud native implementations and architectures Experience drafting reports or analytic assessments for senior management Experience with analysis of emerging threats and reports that describe the implications of threat(s) and opportunities to executives or senior decision-makers Passion and expertise in cybersecurity and technology risk, with an ability to be confident, respectful, and articulate when registering dissenting or unpopular opinions Ability to manage multiple high-visibility and high-impact projects while maintaining superior results Execution oriented and a self-motivator Experience with threat modeling frameworks (STRIDE, OWASP Top 10, MITRE ATT&CK) Familiarity with controls and control frameworks ( NIST Cybersecurity Framework, NIST 800-53, CIS Top 20, ISO, COBIT.) Ability to work independently and in a team, taking a lead role on projects when necessary Prior experience working in financial services or other highly-regulated sectors Experience working in a hybrid IT environment that includes both traditional on-premises data centers and public cloud infrastructure (e.g., AWS, Azure, Google Cloud) Experience with OpenStack At this time, Capital One will not sponsor a new applicant for employment authorization for this position. This role is Hybrid, with associates expected to consistently spend three days per week in the office. The minimum and maximum full-time annual salaries for this role are listed below, by location. Please note that this salary information is solely for candidates hired to perform work within one of these locations, and refers to the amount Capital One is willing to pay at the time of this posting. Salaries for part-time roles will be prorated based upon the agreed upon number of hours to be regularly worked. McLean, VA: $225,400 - $257,200 for Sr Manager, Cyber Technical Richmond, VA: $204,900 - $233,800 for Sr Manager, Cyber Technical New York, NY: $245,900 - $280,600 for Sr Manager, Cyber Technical Riverwoods, IL: $204,900 - $233,800 for Sr Manager, Cyber Technical Candidates hired to work in other locations will be subject to the pay range associated with that location, and the actual annualized salary amount offered to any candidate at the time of hire will be reflected solely in the candidate's offer letter. This role is also eligible to earn performance based incentive compensation, which may include cash bonus(es) and/or long term incentives (LTI). Incentives could be discretionary or non discretionary depending on the plan. Capital One offers a comprehensive, competitive, and inclusive set of health, financial and other benefits that support your total well-being. Learn more at the Capital One Careers website . Eligibility varies based on full or part-time status, exempt or non-exempt status, and management level. This role is expected to accept applications for a minimum of 5 business days.No agencies please. Capital One is an equal opportunity employer (EOE, including disability/vet) committed to non-discrimination in compliance with applicable federal, state, and local laws. Capital One promotes a drug-free workplace. Capital One will consider for employment qualified applicants with a criminal history in a manner consistent with the requirements of applicable laws regarding criminal background inquiries, including, to the extent applicable, Article 23-A of the New York Correction Law; San Francisco, California Police Code Article 49, Sections ; New York City's Fair Chance Act; Philadelphia's Fair Criminal Records Screening Act; and other applicable federal, state, and local laws and regulations regarding criminal background inquiries. If you have visited our website in search of information on employment opportunities or to apply for a position, and you require an accommodation, please contact Capital One Recruiting at 1- or via email at . click apply for full job details
Senior Manager, Technology Change Risk Oversight Capital One is one of the fastest growing organizations in the world today, powered by our passion for our customers. We are serious about technology, we dream big, and we execute: Capital One moved our entire enterprise to the public cloud over the course of five years. Just as we prioritize driving innovation through technology, we equally prioritize cybersecurity, reliability, and managing technology risk. Technology Risk Management (TRM) is a small organization that packs a big punch. The 100 professionals in TRM are trusted experts who oversee 14,000 developers at Capital One. We raise the bar for excellence in cybersecurity, reliability, and tech risk. We shape strategy and decisions, challenge activities to ensure they meet our standards, and perform independent tests of our security and technology risk. Our business leaders must make technology decisions constantly. TRM makes sure they have the tech risk information they need to make good decisions. Associates within TRM are highly-skilled information security, cybersecurity, site reliability engineering, technology, and risk management professionals. They have a wealth of experience and a demonstrated ability to add value with their advice and to deliver high-impact results. As the Senior Manager, Technology Change Risk Oversight you will play a key role in the review, risk identification, risk assessment, reporting, and effective challenge of technology processes, controls, and capabilities, including but not limited to material and high risk technology changes. You will provide subject matter expertise, oversight, and effective challenge of key Technology areas such as cloud services, enterprise architecture, cloud migrations, and overall technology deployments. As part of the second line of defense, this position will also collaborate closely with associates in first line Cyber, Technology, the Lines of Business, as well as other second line of defense risk management offices to perform and support evaluations of the effectiveness of the firm's controls infrastructure and offer independent advice and recommendations regarding ways to further mature the firm's cyber risk management capabilities. Finally, as a member of a growing organization, you will have the opportunity to shape and further refine your portfolio commensurate with the priorities of the organization and the company. The demands and high-visibility nature of this position requires an expert with a proven ability to work independently in a fast-paced environment and who can begin contributing immediately. Essential Functions (Responsibilities): Provide technical leadership in assessing the practices of designing, developing, testing and implementing cloud native solutions to crucial business problems through thoughtful use of industry best practices and Capital One policy. Evaluate proposed and approved cloud technical solutions for automation, resiliency, performance, scalability, and security including appropriate tradeoffs, risks and opportunities Evaluate/assess complex technological and business environment migrations to the cloud and integrated end-to-end solution options Build and maintain relationships with technical leaders, business owners, engineers and other stakeholders to understand and evaluate implementation plans, business priorities and technical solutions to ensure risk are well communicated and understood by the key stakeholders Keep up-to-date on cutting edge technology, standards, protocols and tools in areas relevant to the rapidly changing environment at Capital One, specifically cloud native architecture, serverless, and emerging AWS services Demonstrate strong analytical, problem-solving, and decision-making skills Communicate and drive highly complex technology solutions to broad audiences including executives, business leaders, product managers, legal experts, security specialists and software engineers Define, structure and plan work independently Perform independent risk assessment of our cloud environment focusing on architecture, engineering, networking, governance. Provide expertise and advice regarding the effectiveness of device configurations, IT architecture, or IT engineering solutions Consult with risk owners on the design and implementation or adjustment of mitigating controls associated with emerging technologies Draft and publish independent reports for risk owners, senior management, and other stakeholders regarding risks associated with new or emerging technologies Basic Qualifications: Bachelor's Degree or military experience At least 6 years of experience managing, consulting, auditing, or working in the fields of information security or information technology At least 3 years experience with Public Cloud implementations Preferred Qualifications: Master's Degree in Computer Science or in an Engineering discipline Professional certification (AWS Certified Solutions Architect, AWS Certified Security Speciality, AWS SysOps Administrator, or Certified Information Systems Security Professional (CISSP Experience with Information Security at the policy, architecture or implementation level Ability to communicate clearly and to interact effectively at all levels of the organization, and to influence as warranted and appropriate to drive to consensus Experience with identifying and communicating key risks related to cloud native implementations and architectures Experience drafting reports or analytic assessments for senior management Experience with analysis of emerging threats and reports that describe the implications of threat(s) and opportunities to executives or senior decision-makers Passion and expertise in cybersecurity and technology risk, with an ability to be confident, respectful, and articulate when registering dissenting or unpopular opinions Ability to manage multiple high-visibility and high-impact projects while maintaining superior results Execution oriented and a self-motivator Experience with threat modeling frameworks (STRIDE, OWASP Top 10, MITRE ATT&CK) Familiarity with controls and control frameworks ( NIST Cybersecurity Framework, NIST 800-53, CIS Top 20, ISO, COBIT.) Ability to work independently and in a team, taking a lead role on projects when necessary Prior experience working in financial services or other highly-regulated sectors Experience working in a hybrid IT environment that includes both traditional on-premises data centers and public cloud infrastructure (e.g., AWS, Azure, Google Cloud) Experience with OpenStack At this time, Capital One will not sponsor a new applicant for employment authorization for this position. This role is Hybrid, with associates expected to consistently spend three days per week in the office. The minimum and maximum full-time annual salaries for this role are listed below, by location. Please note that this salary information is solely for candidates hired to perform work within one of these locations, and refers to the amount Capital One is willing to pay at the time of this posting. Salaries for part-time roles will be prorated based upon the agreed upon number of hours to be regularly worked. McLean, VA: $225,400 - $257,200 for Sr Manager, Cyber Technical Richmond, VA: $204,900 - $233,800 for Sr Manager, Cyber Technical New York, NY: $245,900 - $280,600 for Sr Manager, Cyber Technical Riverwoods, IL: $204,900 - $233,800 for Sr Manager, Cyber Technical Candidates hired to work in other locations will be subject to the pay range associated with that location, and the actual annualized salary amount offered to any candidate at the time of hire will be reflected solely in the candidate's offer letter. This role is also eligible to earn performance based incentive compensation, which may include cash bonus(es) and/or long term incentives (LTI). Incentives could be discretionary or non discretionary depending on the plan. Capital One offers a comprehensive, competitive, and inclusive set of health, financial and other benefits that support your total well-being. Learn more at the Capital One Careers website . Eligibility varies based on full or part-time status, exempt or non-exempt status, and management level. This role is expected to accept applications for a minimum of 5 business days.No agencies please. Capital One is an equal opportunity employer (EOE, including disability/vet) committed to non-discrimination in compliance with applicable federal, state, and local laws. Capital One promotes a drug-free workplace. Capital One will consider for employment qualified applicants with a criminal history in a manner consistent with the requirements of applicable laws regarding criminal background inquiries, including, to the extent applicable, Article 23-A of the New York Correction Law; San Francisco, California Police Code Article 49, Sections ; New York City's Fair Chance Act; Philadelphia's Fair Criminal Records Screening Act; and other applicable federal, state, and local laws and regulations regarding criminal background inquiries. If you have visited our website in search of information on employment opportunities or to apply for a position, and you require an accommodation, please contact Capital One Recruiting at 1- or via email at . click apply for full job details
12/17/2025
Full time
Senior Manager, Technology Change Risk Oversight Capital One is one of the fastest growing organizations in the world today, powered by our passion for our customers. We are serious about technology, we dream big, and we execute: Capital One moved our entire enterprise to the public cloud over the course of five years. Just as we prioritize driving innovation through technology, we equally prioritize cybersecurity, reliability, and managing technology risk. Technology Risk Management (TRM) is a small organization that packs a big punch. The 100 professionals in TRM are trusted experts who oversee 14,000 developers at Capital One. We raise the bar for excellence in cybersecurity, reliability, and tech risk. We shape strategy and decisions, challenge activities to ensure they meet our standards, and perform independent tests of our security and technology risk. Our business leaders must make technology decisions constantly. TRM makes sure they have the tech risk information they need to make good decisions. Associates within TRM are highly-skilled information security, cybersecurity, site reliability engineering, technology, and risk management professionals. They have a wealth of experience and a demonstrated ability to add value with their advice and to deliver high-impact results. As the Senior Manager, Technology Change Risk Oversight you will play a key role in the review, risk identification, risk assessment, reporting, and effective challenge of technology processes, controls, and capabilities, including but not limited to material and high risk technology changes. You will provide subject matter expertise, oversight, and effective challenge of key Technology areas such as cloud services, enterprise architecture, cloud migrations, and overall technology deployments. As part of the second line of defense, this position will also collaborate closely with associates in first line Cyber, Technology, the Lines of Business, as well as other second line of defense risk management offices to perform and support evaluations of the effectiveness of the firm's controls infrastructure and offer independent advice and recommendations regarding ways to further mature the firm's cyber risk management capabilities. Finally, as a member of a growing organization, you will have the opportunity to shape and further refine your portfolio commensurate with the priorities of the organization and the company. The demands and high-visibility nature of this position requires an expert with a proven ability to work independently in a fast-paced environment and who can begin contributing immediately. Essential Functions (Responsibilities): Provide technical leadership in assessing the practices of designing, developing, testing and implementing cloud native solutions to crucial business problems through thoughtful use of industry best practices and Capital One policy. Evaluate proposed and approved cloud technical solutions for automation, resiliency, performance, scalability, and security including appropriate tradeoffs, risks and opportunities Evaluate/assess complex technological and business environment migrations to the cloud and integrated end-to-end solution options Build and maintain relationships with technical leaders, business owners, engineers and other stakeholders to understand and evaluate implementation plans, business priorities and technical solutions to ensure risk are well communicated and understood by the key stakeholders Keep up-to-date on cutting edge technology, standards, protocols and tools in areas relevant to the rapidly changing environment at Capital One, specifically cloud native architecture, serverless, and emerging AWS services Demonstrate strong analytical, problem-solving, and decision-making skills Communicate and drive highly complex technology solutions to broad audiences including executives, business leaders, product managers, legal experts, security specialists and software engineers Define, structure and plan work independently Perform independent risk assessment of our cloud environment focusing on architecture, engineering, networking, governance. Provide expertise and advice regarding the effectiveness of device configurations, IT architecture, or IT engineering solutions Consult with risk owners on the design and implementation or adjustment of mitigating controls associated with emerging technologies Draft and publish independent reports for risk owners, senior management, and other stakeholders regarding risks associated with new or emerging technologies Basic Qualifications: Bachelor's Degree or military experience At least 6 years of experience managing, consulting, auditing, or working in the fields of information security or information technology At least 3 years experience with Public Cloud implementations Preferred Qualifications: Master's Degree in Computer Science or in an Engineering discipline Professional certification (AWS Certified Solutions Architect, AWS Certified Security Speciality, AWS SysOps Administrator, or Certified Information Systems Security Professional (CISSP Experience with Information Security at the policy, architecture or implementation level Ability to communicate clearly and to interact effectively at all levels of the organization, and to influence as warranted and appropriate to drive to consensus Experience with identifying and communicating key risks related to cloud native implementations and architectures Experience drafting reports or analytic assessments for senior management Experience with analysis of emerging threats and reports that describe the implications of threat(s) and opportunities to executives or senior decision-makers Passion and expertise in cybersecurity and technology risk, with an ability to be confident, respectful, and articulate when registering dissenting or unpopular opinions Ability to manage multiple high-visibility and high-impact projects while maintaining superior results Execution oriented and a self-motivator Experience with threat modeling frameworks (STRIDE, OWASP Top 10, MITRE ATT&CK) Familiarity with controls and control frameworks ( NIST Cybersecurity Framework, NIST 800-53, CIS Top 20, ISO, COBIT.) Ability to work independently and in a team, taking a lead role on projects when necessary Prior experience working in financial services or other highly-regulated sectors Experience working in a hybrid IT environment that includes both traditional on-premises data centers and public cloud infrastructure (e.g., AWS, Azure, Google Cloud) Experience with OpenStack At this time, Capital One will not sponsor a new applicant for employment authorization for this position. This role is Hybrid, with associates expected to consistently spend three days per week in the office. The minimum and maximum full-time annual salaries for this role are listed below, by location. Please note that this salary information is solely for candidates hired to perform work within one of these locations, and refers to the amount Capital One is willing to pay at the time of this posting. Salaries for part-time roles will be prorated based upon the agreed upon number of hours to be regularly worked. McLean, VA: $225,400 - $257,200 for Sr Manager, Cyber Technical Richmond, VA: $204,900 - $233,800 for Sr Manager, Cyber Technical New York, NY: $245,900 - $280,600 for Sr Manager, Cyber Technical Riverwoods, IL: $204,900 - $233,800 for Sr Manager, Cyber Technical Candidates hired to work in other locations will be subject to the pay range associated with that location, and the actual annualized salary amount offered to any candidate at the time of hire will be reflected solely in the candidate's offer letter. This role is also eligible to earn performance based incentive compensation, which may include cash bonus(es) and/or long term incentives (LTI). Incentives could be discretionary or non discretionary depending on the plan. Capital One offers a comprehensive, competitive, and inclusive set of health, financial and other benefits that support your total well-being. Learn more at the Capital One Careers website . Eligibility varies based on full or part-time status, exempt or non-exempt status, and management level. This role is expected to accept applications for a minimum of 5 business days.No agencies please. Capital One is an equal opportunity employer (EOE, including disability/vet) committed to non-discrimination in compliance with applicable federal, state, and local laws. Capital One promotes a drug-free workplace. Capital One will consider for employment qualified applicants with a criminal history in a manner consistent with the requirements of applicable laws regarding criminal background inquiries, including, to the extent applicable, Article 23-A of the New York Correction Law; San Francisco, California Police Code Article 49, Sections ; New York City's Fair Chance Act; Philadelphia's Fair Criminal Records Screening Act; and other applicable federal, state, and local laws and regulations regarding criminal background inquiries. If you have visited our website in search of information on employment opportunities or to apply for a position, and you require an accommodation, please contact Capital One Recruiting at 1- or via email at . click apply for full job details
Manager, Technology Risk Oversight Capital One is one of the fastest growing organizations in the world today, powered by our passion for our customers. We are serious about technology, we dream big, and we execute: Capital One moved our entire enterprise to the public cloud over the course of five years. Just as we prioritize driving innovation through technology, we equally prioritize cybersecurity, reliability, and managing technology risk. The Technology Risk Management (TRM) is a growing organization focused on providing expert advice, credible challenge, and effective oversight of information security and technology activities to identify, assess, control, and manage cyber and technology risk throughout the company. This organization plays a critical role in helping to ensure that the company's risk-taking entities are aware of the risks inherent in their activities and decisions, the impact of their actions on the company at an enterprise level, and opportunities to reduce, mitigate, or avoid risks altogether. Associates within the Technology Risk Management organization are highly-skilled information security, cyber, technology, or risk management professionals who have a wealth of experience and a demonstrated ability to provide value-added recommendations and deliver high-impact results in their areas of expertise. As a Manager, Technology Risk Oversight , you will play a key role in the review, risk identification, risk assessment, reporting, and effective challenge of technology processes, capabilities, and architecture including but not limited to enterprise technology initiatives, cloud services, architectural patterns and capabilities, as well as other areas of high risk technology changes. As part of the second line of defense, this position will also collaborate closely with associates in first line Cyber, Technology, the Lines of Business, as well as other second line of defense risk management offices to perform and support evaluations of the effectiveness of the firm's controls infrastructure and offer independent advice and recommendations regarding ways to further mature the firm's cyber risk management capabilities. As a member of a growing organization, you will have the opportunity to shape and further refine your portfolio commensurate with the priorities of the organization and the firm. The position affords opportunities for substantial growth. The demands and high-visibility nature of this position require an expert with a proven ability to work independently in a fast-paced environment and who can begin contributing immediately. Essential Functions (Responsibilities): Play a lead role in identifying areas of Technology Change risk to provide oversight, analysis, effective challenge, and risk-informed recommendations and expertise Independently drive the organization's participation in assessing Technology Changes by reviewing all aspects of changes (e.g. threat scenarios, applicable controls, risk mitigating, scope, rollout plans, etc ) focusing on Technology Risks related to technical implementation, controls, testing, and architecture concepts Provide technical assessments of Capital One's Technology Changes and Change Management Processes to identify identify, assess, and communicate Technology and Cyber risk Draft assessments for senior management and other stakeholders, to include regulatory agencies and the Board of Directors, as needed Stay current on emerging cyber threats and potential implications to the firm Collaborate effectively with colleagues, stakeholders, and leaders across multiple organizations to achieve objectives Basic Qualifications: A Bachelor's degree or military experience At least 5 years of experience in information security, information technology or cybersecurity At least 2 years experience with public cloud implementations Preferred Qualifications: Professional technology or security management certification (Certified Information Systems Security Professional (CISSP), Certified Information Security Manager (CISM), Certified in Risk and Information Systems Control (CRISC), AWS certification) 2+ years experience working in a hybrid IT environment that includes both traditional on-premises data centers and public cloud infrastructure (e.g., AWS, Azure, Google Cloud). 2+ years experience in a second-line or oversight role at a financial institution or regulatory agency 2+ years experience with implementation of control frameworks (NIST Cybersecurity Framework, NIST 800-53, CIS Top 20, ISO, COBIT) 2+ years of experience drafting reports or analytic assessments 2+ years of consulting experience At this time, Capital One will not sponsor a new applicant for employment authorization for this position. This role is Hybrid, with associates expected to consistently spend three days per week in the office The minimum and maximum full-time annual salaries for this role are listed below, by location. Please note that this salary information is solely for candidates hired to perform work within one of these locations, and refers to the amount Capital One is willing to pay at the time of this posting. Salaries for part-time roles will be prorated based upon the agreed upon number of hours to be regularly worked. McLean, VA: $193,400 - $220,700 for Manager, Cyber Technical Richmond, VA: $175,800 - $200,700 for Manager, Cyber Technical New York, NY: $211,000 - $240,800 for Manager, Cyber Technical Riverwoods, IL: $175,800 - $200,700 for Manager, Cyber Technical Candidates hired to work in other locations will be subject to the pay range associated with that location, and the actual annualized salary amount offered to any candidate at the time of hire will be reflected solely in the candidate's offer letter. This role is also eligible to earn performance based incentive compensation, which may include cash bonus(es) and/or long term incentives (LTI). Incentives could be discretionary or non discretionary depending on the plan. Capital One offers a comprehensive, competitive, and inclusive set of health, financial and other benefits that support your total well-being. Learn more at the Capital One Careers website . Eligibility varies based on full or part-time status, exempt or non-exempt status, and management level. This role is expected to accept applications for a minimum of 5 business days.No agencies please. Capital One is an equal opportunity employer (EOE, including disability/vet) committed to non-discrimination in compliance with applicable federal, state, and local laws. Capital One promotes a drug-free workplace. Capital One will consider for employment qualified applicants with a criminal history in a manner consistent with the requirements of applicable laws regarding criminal background inquiries, including, to the extent applicable, Article 23-A of the New York Correction Law; San Francisco, California Police Code Article 49, Sections ; New York City's Fair Chance Act; Philadelphia's Fair Criminal Records Screening Act; and other applicable federal, state, and local laws and regulations regarding criminal background inquiries. If you have visited our website in search of information on employment opportunities or to apply for a position, and you require an accommodation, please contact Capital One Recruiting at 1- or via email at . All information you provide will be kept confidential and will be used only to the extent required to provide needed reasonable accommodations. For technical support or questions about Capital One's recruiting process, please send an email to Capital One does not provide, endorse nor guarantee and is not liable for third-party products, services, educational tools or other information available through this site. Capital One Financial is made up of several different entities. Please note that any position posted in Canada is for Capital One Canada, any position posted in the United Kingdom is for Capital One Europe and any position posted in the Philippines is for Capital One Philippines Service Corp. (COPSSC).
12/17/2025
Full time
Manager, Technology Risk Oversight Capital One is one of the fastest growing organizations in the world today, powered by our passion for our customers. We are serious about technology, we dream big, and we execute: Capital One moved our entire enterprise to the public cloud over the course of five years. Just as we prioritize driving innovation through technology, we equally prioritize cybersecurity, reliability, and managing technology risk. The Technology Risk Management (TRM) is a growing organization focused on providing expert advice, credible challenge, and effective oversight of information security and technology activities to identify, assess, control, and manage cyber and technology risk throughout the company. This organization plays a critical role in helping to ensure that the company's risk-taking entities are aware of the risks inherent in their activities and decisions, the impact of their actions on the company at an enterprise level, and opportunities to reduce, mitigate, or avoid risks altogether. Associates within the Technology Risk Management organization are highly-skilled information security, cyber, technology, or risk management professionals who have a wealth of experience and a demonstrated ability to provide value-added recommendations and deliver high-impact results in their areas of expertise. As a Manager, Technology Risk Oversight , you will play a key role in the review, risk identification, risk assessment, reporting, and effective challenge of technology processes, capabilities, and architecture including but not limited to enterprise technology initiatives, cloud services, architectural patterns and capabilities, as well as other areas of high risk technology changes. As part of the second line of defense, this position will also collaborate closely with associates in first line Cyber, Technology, the Lines of Business, as well as other second line of defense risk management offices to perform and support evaluations of the effectiveness of the firm's controls infrastructure and offer independent advice and recommendations regarding ways to further mature the firm's cyber risk management capabilities. As a member of a growing organization, you will have the opportunity to shape and further refine your portfolio commensurate with the priorities of the organization and the firm. The position affords opportunities for substantial growth. The demands and high-visibility nature of this position require an expert with a proven ability to work independently in a fast-paced environment and who can begin contributing immediately. Essential Functions (Responsibilities): Play a lead role in identifying areas of Technology Change risk to provide oversight, analysis, effective challenge, and risk-informed recommendations and expertise Independently drive the organization's participation in assessing Technology Changes by reviewing all aspects of changes (e.g. threat scenarios, applicable controls, risk mitigating, scope, rollout plans, etc ) focusing on Technology Risks related to technical implementation, controls, testing, and architecture concepts Provide technical assessments of Capital One's Technology Changes and Change Management Processes to identify identify, assess, and communicate Technology and Cyber risk Draft assessments for senior management and other stakeholders, to include regulatory agencies and the Board of Directors, as needed Stay current on emerging cyber threats and potential implications to the firm Collaborate effectively with colleagues, stakeholders, and leaders across multiple organizations to achieve objectives Basic Qualifications: A Bachelor's degree or military experience At least 5 years of experience in information security, information technology or cybersecurity At least 2 years experience with public cloud implementations Preferred Qualifications: Professional technology or security management certification (Certified Information Systems Security Professional (CISSP), Certified Information Security Manager (CISM), Certified in Risk and Information Systems Control (CRISC), AWS certification) 2+ years experience working in a hybrid IT environment that includes both traditional on-premises data centers and public cloud infrastructure (e.g., AWS, Azure, Google Cloud). 2+ years experience in a second-line or oversight role at a financial institution or regulatory agency 2+ years experience with implementation of control frameworks (NIST Cybersecurity Framework, NIST 800-53, CIS Top 20, ISO, COBIT) 2+ years of experience drafting reports or analytic assessments 2+ years of consulting experience At this time, Capital One will not sponsor a new applicant for employment authorization for this position. This role is Hybrid, with associates expected to consistently spend three days per week in the office The minimum and maximum full-time annual salaries for this role are listed below, by location. Please note that this salary information is solely for candidates hired to perform work within one of these locations, and refers to the amount Capital One is willing to pay at the time of this posting. Salaries for part-time roles will be prorated based upon the agreed upon number of hours to be regularly worked. McLean, VA: $193,400 - $220,700 for Manager, Cyber Technical Richmond, VA: $175,800 - $200,700 for Manager, Cyber Technical New York, NY: $211,000 - $240,800 for Manager, Cyber Technical Riverwoods, IL: $175,800 - $200,700 for Manager, Cyber Technical Candidates hired to work in other locations will be subject to the pay range associated with that location, and the actual annualized salary amount offered to any candidate at the time of hire will be reflected solely in the candidate's offer letter. This role is also eligible to earn performance based incentive compensation, which may include cash bonus(es) and/or long term incentives (LTI). Incentives could be discretionary or non discretionary depending on the plan. Capital One offers a comprehensive, competitive, and inclusive set of health, financial and other benefits that support your total well-being. Learn more at the Capital One Careers website . Eligibility varies based on full or part-time status, exempt or non-exempt status, and management level. This role is expected to accept applications for a minimum of 5 business days.No agencies please. Capital One is an equal opportunity employer (EOE, including disability/vet) committed to non-discrimination in compliance with applicable federal, state, and local laws. Capital One promotes a drug-free workplace. Capital One will consider for employment qualified applicants with a criminal history in a manner consistent with the requirements of applicable laws regarding criminal background inquiries, including, to the extent applicable, Article 23-A of the New York Correction Law; San Francisco, California Police Code Article 49, Sections ; New York City's Fair Chance Act; Philadelphia's Fair Criminal Records Screening Act; and other applicable federal, state, and local laws and regulations regarding criminal background inquiries. If you have visited our website in search of information on employment opportunities or to apply for a position, and you require an accommodation, please contact Capital One Recruiting at 1- or via email at . All information you provide will be kept confidential and will be used only to the extent required to provide needed reasonable accommodations. For technical support or questions about Capital One's recruiting process, please send an email to Capital One does not provide, endorse nor guarantee and is not liable for third-party products, services, educational tools or other information available through this site. Capital One Financial is made up of several different entities. Please note that any position posted in Canada is for Capital One Canada, any position posted in the United Kingdom is for Capital One Europe and any position posted in the Philippines is for Capital One Philippines Service Corp. (COPSSC).
Manager, Technology Risk Oversight Capital One is one of the fastest growing organizations in the world today, powered by our passion for our customers. We are serious about technology, we dream big, and we execute: Capital One moved our entire enterprise to the public cloud over the course of five years. Just as we prioritize driving innovation through technology, we equally prioritize cybersecurity, reliability, and managing technology risk. The Technology Risk Management (TRM) is a growing organization focused on providing expert advice, credible challenge, and effective oversight of information security and technology activities to identify, assess, control, and manage cyber and technology risk throughout the company. This organization plays a critical role in helping to ensure that the company's risk-taking entities are aware of the risks inherent in their activities and decisions, the impact of their actions on the company at an enterprise level, and opportunities to reduce, mitigate, or avoid risks altogether. Associates within the Technology Risk Management organization are highly-skilled information security, cyber, technology, or risk management professionals who have a wealth of experience and a demonstrated ability to provide value-added recommendations and deliver high-impact results in their areas of expertise. As a Manager, Technology Risk Oversight , you will play a key role in the review, risk identification, risk assessment, reporting, and effective challenge of technology processes, capabilities, and architecture including but not limited to enterprise technology initiatives, cloud services, architectural patterns and capabilities, as well as other areas of high risk technology changes. As part of the second line of defense, this position will also collaborate closely with associates in first line Cyber, Technology, the Lines of Business, as well as other second line of defense risk management offices to perform and support evaluations of the effectiveness of the firm's controls infrastructure and offer independent advice and recommendations regarding ways to further mature the firm's cyber risk management capabilities. As a member of a growing organization, you will have the opportunity to shape and further refine your portfolio commensurate with the priorities of the organization and the firm. The position affords opportunities for substantial growth. The demands and high-visibility nature of this position require an expert with a proven ability to work independently in a fast-paced environment and who can begin contributing immediately. Essential Functions (Responsibilities): Play a lead role in identifying areas of Technology Change risk to provide oversight, analysis, effective challenge, and risk-informed recommendations and expertise Independently drive the organization's participation in assessing Technology Changes by reviewing all aspects of changes (e.g. threat scenarios, applicable controls, risk mitigating, scope, rollout plans, etc ) focusing on Technology Risks related to technical implementation, controls, testing, and architecture concepts Provide technical assessments of Capital One's Technology Changes and Change Management Processes to identify identify, assess, and communicate Technology and Cyber risk Draft assessments for senior management and other stakeholders, to include regulatory agencies and the Board of Directors, as needed Stay current on emerging cyber threats and potential implications to the firm Collaborate effectively with colleagues, stakeholders, and leaders across multiple organizations to achieve objectives Basic Qualifications: A Bachelor's degree or military experience At least 5 years of experience in information security, information technology or cybersecurity At least 2 years experience with public cloud implementations Preferred Qualifications: Professional technology or security management certification (Certified Information Systems Security Professional (CISSP), Certified Information Security Manager (CISM), Certified in Risk and Information Systems Control (CRISC), AWS certification) 2+ years experience working in a hybrid IT environment that includes both traditional on-premises data centers and public cloud infrastructure (e.g., AWS, Azure, Google Cloud). 2+ years experience in a second-line or oversight role at a financial institution or regulatory agency 2+ years experience with implementation of control frameworks (NIST Cybersecurity Framework, NIST 800-53, CIS Top 20, ISO, COBIT) 2+ years of experience drafting reports or analytic assessments 2+ years of consulting experience At this time, Capital One will not sponsor a new applicant for employment authorization for this position. This role is Hybrid, with associates expected to consistently spend three days per week in the office The minimum and maximum full-time annual salaries for this role are listed below, by location. Please note that this salary information is solely for candidates hired to perform work within one of these locations, and refers to the amount Capital One is willing to pay at the time of this posting. Salaries for part-time roles will be prorated based upon the agreed upon number of hours to be regularly worked. McLean, VA: $193,400 - $220,700 for Manager, Cyber Technical Richmond, VA: $175,800 - $200,700 for Manager, Cyber Technical New York, NY: $211,000 - $240,800 for Manager, Cyber Technical Riverwoods, IL: $175,800 - $200,700 for Manager, Cyber Technical Candidates hired to work in other locations will be subject to the pay range associated with that location, and the actual annualized salary amount offered to any candidate at the time of hire will be reflected solely in the candidate's offer letter. This role is also eligible to earn performance based incentive compensation, which may include cash bonus(es) and/or long term incentives (LTI). Incentives could be discretionary or non discretionary depending on the plan. Capital One offers a comprehensive, competitive, and inclusive set of health, financial and other benefits that support your total well-being. Learn more at the Capital One Careers website . Eligibility varies based on full or part-time status, exempt or non-exempt status, and management level. This role is expected to accept applications for a minimum of 5 business days.No agencies please. Capital One is an equal opportunity employer (EOE, including disability/vet) committed to non-discrimination in compliance with applicable federal, state, and local laws. Capital One promotes a drug-free workplace. Capital One will consider for employment qualified applicants with a criminal history in a manner consistent with the requirements of applicable laws regarding criminal background inquiries, including, to the extent applicable, Article 23-A of the New York Correction Law; San Francisco, California Police Code Article 49, Sections ; New York City's Fair Chance Act; Philadelphia's Fair Criminal Records Screening Act; and other applicable federal, state, and local laws and regulations regarding criminal background inquiries. If you have visited our website in search of information on employment opportunities or to apply for a position, and you require an accommodation, please contact Capital One Recruiting at 1- or via email at . All information you provide will be kept confidential and will be used only to the extent required to provide needed reasonable accommodations. For technical support or questions about Capital One's recruiting process, please send an email to Capital One does not provide, endorse nor guarantee and is not liable for third-party products, services, educational tools or other information available through this site. Capital One Financial is made up of several different entities. Please note that any position posted in Canada is for Capital One Canada, any position posted in the United Kingdom is for Capital One Europe and any position posted in the Philippines is for Capital One Philippines Service Corp. (COPSSC).
12/17/2025
Full time
Manager, Technology Risk Oversight Capital One is one of the fastest growing organizations in the world today, powered by our passion for our customers. We are serious about technology, we dream big, and we execute: Capital One moved our entire enterprise to the public cloud over the course of five years. Just as we prioritize driving innovation through technology, we equally prioritize cybersecurity, reliability, and managing technology risk. The Technology Risk Management (TRM) is a growing organization focused on providing expert advice, credible challenge, and effective oversight of information security and technology activities to identify, assess, control, and manage cyber and technology risk throughout the company. This organization plays a critical role in helping to ensure that the company's risk-taking entities are aware of the risks inherent in their activities and decisions, the impact of their actions on the company at an enterprise level, and opportunities to reduce, mitigate, or avoid risks altogether. Associates within the Technology Risk Management organization are highly-skilled information security, cyber, technology, or risk management professionals who have a wealth of experience and a demonstrated ability to provide value-added recommendations and deliver high-impact results in their areas of expertise. As a Manager, Technology Risk Oversight , you will play a key role in the review, risk identification, risk assessment, reporting, and effective challenge of technology processes, capabilities, and architecture including but not limited to enterprise technology initiatives, cloud services, architectural patterns and capabilities, as well as other areas of high risk technology changes. As part of the second line of defense, this position will also collaborate closely with associates in first line Cyber, Technology, the Lines of Business, as well as other second line of defense risk management offices to perform and support evaluations of the effectiveness of the firm's controls infrastructure and offer independent advice and recommendations regarding ways to further mature the firm's cyber risk management capabilities. As a member of a growing organization, you will have the opportunity to shape and further refine your portfolio commensurate with the priorities of the organization and the firm. The position affords opportunities for substantial growth. The demands and high-visibility nature of this position require an expert with a proven ability to work independently in a fast-paced environment and who can begin contributing immediately. Essential Functions (Responsibilities): Play a lead role in identifying areas of Technology Change risk to provide oversight, analysis, effective challenge, and risk-informed recommendations and expertise Independently drive the organization's participation in assessing Technology Changes by reviewing all aspects of changes (e.g. threat scenarios, applicable controls, risk mitigating, scope, rollout plans, etc ) focusing on Technology Risks related to technical implementation, controls, testing, and architecture concepts Provide technical assessments of Capital One's Technology Changes and Change Management Processes to identify identify, assess, and communicate Technology and Cyber risk Draft assessments for senior management and other stakeholders, to include regulatory agencies and the Board of Directors, as needed Stay current on emerging cyber threats and potential implications to the firm Collaborate effectively with colleagues, stakeholders, and leaders across multiple organizations to achieve objectives Basic Qualifications: A Bachelor's degree or military experience At least 5 years of experience in information security, information technology or cybersecurity At least 2 years experience with public cloud implementations Preferred Qualifications: Professional technology or security management certification (Certified Information Systems Security Professional (CISSP), Certified Information Security Manager (CISM), Certified in Risk and Information Systems Control (CRISC), AWS certification) 2+ years experience working in a hybrid IT environment that includes both traditional on-premises data centers and public cloud infrastructure (e.g., AWS, Azure, Google Cloud). 2+ years experience in a second-line or oversight role at a financial institution or regulatory agency 2+ years experience with implementation of control frameworks (NIST Cybersecurity Framework, NIST 800-53, CIS Top 20, ISO, COBIT) 2+ years of experience drafting reports or analytic assessments 2+ years of consulting experience At this time, Capital One will not sponsor a new applicant for employment authorization for this position. This role is Hybrid, with associates expected to consistently spend three days per week in the office The minimum and maximum full-time annual salaries for this role are listed below, by location. Please note that this salary information is solely for candidates hired to perform work within one of these locations, and refers to the amount Capital One is willing to pay at the time of this posting. Salaries for part-time roles will be prorated based upon the agreed upon number of hours to be regularly worked. McLean, VA: $193,400 - $220,700 for Manager, Cyber Technical Richmond, VA: $175,800 - $200,700 for Manager, Cyber Technical New York, NY: $211,000 - $240,800 for Manager, Cyber Technical Riverwoods, IL: $175,800 - $200,700 for Manager, Cyber Technical Candidates hired to work in other locations will be subject to the pay range associated with that location, and the actual annualized salary amount offered to any candidate at the time of hire will be reflected solely in the candidate's offer letter. This role is also eligible to earn performance based incentive compensation, which may include cash bonus(es) and/or long term incentives (LTI). Incentives could be discretionary or non discretionary depending on the plan. Capital One offers a comprehensive, competitive, and inclusive set of health, financial and other benefits that support your total well-being. Learn more at the Capital One Careers website . Eligibility varies based on full or part-time status, exempt or non-exempt status, and management level. This role is expected to accept applications for a minimum of 5 business days.No agencies please. Capital One is an equal opportunity employer (EOE, including disability/vet) committed to non-discrimination in compliance with applicable federal, state, and local laws. Capital One promotes a drug-free workplace. Capital One will consider for employment qualified applicants with a criminal history in a manner consistent with the requirements of applicable laws regarding criminal background inquiries, including, to the extent applicable, Article 23-A of the New York Correction Law; San Francisco, California Police Code Article 49, Sections ; New York City's Fair Chance Act; Philadelphia's Fair Criminal Records Screening Act; and other applicable federal, state, and local laws and regulations regarding criminal background inquiries. If you have visited our website in search of information on employment opportunities or to apply for a position, and you require an accommodation, please contact Capital One Recruiting at 1- or via email at . All information you provide will be kept confidential and will be used only to the extent required to provide needed reasonable accommodations. For technical support or questions about Capital One's recruiting process, please send an email to Capital One does not provide, endorse nor guarantee and is not liable for third-party products, services, educational tools or other information available through this site. Capital One Financial is made up of several different entities. Please note that any position posted in Canada is for Capital One Canada, any position posted in the United Kingdom is for Capital One Europe and any position posted in the Philippines is for Capital One Philippines Service Corp. (COPSSC).
Manager, Technology Risk Oversight Capital One is one of the fastest growing organizations in the world today, powered by our passion for our customers. We are serious about technology, we dream big, and we execute: Capital One moved our entire enterprise to the public cloud over the course of five years. Just as we prioritize driving innovation through technology, we equally prioritize cybersecurity, reliability, and managing technology risk. The Technology Risk Management (TRM) is a growing organization focused on providing expert advice, credible challenge, and effective oversight of information security and technology activities to identify, assess, control, and manage cyber and technology risk throughout the company. This organization plays a critical role in helping to ensure that the company's risk-taking entities are aware of the risks inherent in their activities and decisions, the impact of their actions on the company at an enterprise level, and opportunities to reduce, mitigate, or avoid risks altogether. Associates within the Technology Risk Management organization are highly-skilled information security, cyber, technology, or risk management professionals who have a wealth of experience and a demonstrated ability to provide value-added recommendations and deliver high-impact results in their areas of expertise. As a Manager, Technology Risk Oversight , you will play a key role in the review, risk identification, risk assessment, reporting, and effective challenge of technology processes, capabilities, and architecture including but not limited to enterprise technology initiatives, cloud services, architectural patterns and capabilities, as well as other areas of high risk technology changes. As part of the second line of defense, this position will also collaborate closely with associates in first line Cyber, Technology, the Lines of Business, as well as other second line of defense risk management offices to perform and support evaluations of the effectiveness of the firm's controls infrastructure and offer independent advice and recommendations regarding ways to further mature the firm's cyber risk management capabilities. As a member of a growing organization, you will have the opportunity to shape and further refine your portfolio commensurate with the priorities of the organization and the firm. The position affords opportunities for substantial growth. The demands and high-visibility nature of this position require an expert with a proven ability to work independently in a fast-paced environment and who can begin contributing immediately. Essential Functions (Responsibilities): Play a lead role in identifying areas of Technology Change risk to provide oversight, analysis, effective challenge, and risk-informed recommendations and expertise Independently drive the organization's participation in assessing Technology Changes by reviewing all aspects of changes (e.g. threat scenarios, applicable controls, risk mitigating, scope, rollout plans, etc ) focusing on Technology Risks related to technical implementation, controls, testing, and architecture concepts Provide technical assessments of Capital One's Technology Changes and Change Management Processes to identify identify, assess, and communicate Technology and Cyber risk Draft assessments for senior management and other stakeholders, to include regulatory agencies and the Board of Directors, as needed Stay current on emerging cyber threats and potential implications to the firm Collaborate effectively with colleagues, stakeholders, and leaders across multiple organizations to achieve objectives Basic Qualifications: A Bachelor's degree or military experience At least 5 years of experience in information security, information technology or cybersecurity At least 2 years experience with public cloud implementations Preferred Qualifications: Professional technology or security management certification (Certified Information Systems Security Professional (CISSP), Certified Information Security Manager (CISM), Certified in Risk and Information Systems Control (CRISC), AWS certification) 2+ years experience working in a hybrid IT environment that includes both traditional on-premises data centers and public cloud infrastructure (e.g., AWS, Azure, Google Cloud). 2+ years experience in a second-line or oversight role at a financial institution or regulatory agency 2+ years experience with implementation of control frameworks (NIST Cybersecurity Framework, NIST 800-53, CIS Top 20, ISO, COBIT) 2+ years of experience drafting reports or analytic assessments 2+ years of consulting experience At this time, Capital One will not sponsor a new applicant for employment authorization for this position. This role is Hybrid, with associates expected to consistently spend three days per week in the office The minimum and maximum full-time annual salaries for this role are listed below, by location. Please note that this salary information is solely for candidates hired to perform work within one of these locations, and refers to the amount Capital One is willing to pay at the time of this posting. Salaries for part-time roles will be prorated based upon the agreed upon number of hours to be regularly worked. McLean, VA: $193,400 - $220,700 for Manager, Cyber Technical Richmond, VA: $175,800 - $200,700 for Manager, Cyber Technical New York, NY: $211,000 - $240,800 for Manager, Cyber Technical Riverwoods, IL: $175,800 - $200,700 for Manager, Cyber Technical Candidates hired to work in other locations will be subject to the pay range associated with that location, and the actual annualized salary amount offered to any candidate at the time of hire will be reflected solely in the candidate's offer letter. This role is also eligible to earn performance based incentive compensation, which may include cash bonus(es) and/or long term incentives (LTI). Incentives could be discretionary or non discretionary depending on the plan. Capital One offers a comprehensive, competitive, and inclusive set of health, financial and other benefits that support your total well-being. Learn more at the Capital One Careers website . Eligibility varies based on full or part-time status, exempt or non-exempt status, and management level. This role is expected to accept applications for a minimum of 5 business days.No agencies please. Capital One is an equal opportunity employer (EOE, including disability/vet) committed to non-discrimination in compliance with applicable federal, state, and local laws. Capital One promotes a drug-free workplace. Capital One will consider for employment qualified applicants with a criminal history in a manner consistent with the requirements of applicable laws regarding criminal background inquiries, including, to the extent applicable, Article 23-A of the New York Correction Law; San Francisco, California Police Code Article 49, Sections ; New York City's Fair Chance Act; Philadelphia's Fair Criminal Records Screening Act; and other applicable federal, state, and local laws and regulations regarding criminal background inquiries. If you have visited our website in search of information on employment opportunities or to apply for a position, and you require an accommodation, please contact Capital One Recruiting at 1- or via email at . All information you provide will be kept confidential and will be used only to the extent required to provide needed reasonable accommodations. For technical support or questions about Capital One's recruiting process, please send an email to Capital One does not provide, endorse nor guarantee and is not liable for third-party products, services, educational tools or other information available through this site. Capital One Financial is made up of several different entities. Please note that any position posted in Canada is for Capital One Canada, any position posted in the United Kingdom is for Capital One Europe and any position posted in the Philippines is for Capital One Philippines Service Corp. (COPSSC).
12/17/2025
Full time
Manager, Technology Risk Oversight Capital One is one of the fastest growing organizations in the world today, powered by our passion for our customers. We are serious about technology, we dream big, and we execute: Capital One moved our entire enterprise to the public cloud over the course of five years. Just as we prioritize driving innovation through technology, we equally prioritize cybersecurity, reliability, and managing technology risk. The Technology Risk Management (TRM) is a growing organization focused on providing expert advice, credible challenge, and effective oversight of information security and technology activities to identify, assess, control, and manage cyber and technology risk throughout the company. This organization plays a critical role in helping to ensure that the company's risk-taking entities are aware of the risks inherent in their activities and decisions, the impact of their actions on the company at an enterprise level, and opportunities to reduce, mitigate, or avoid risks altogether. Associates within the Technology Risk Management organization are highly-skilled information security, cyber, technology, or risk management professionals who have a wealth of experience and a demonstrated ability to provide value-added recommendations and deliver high-impact results in their areas of expertise. As a Manager, Technology Risk Oversight , you will play a key role in the review, risk identification, risk assessment, reporting, and effective challenge of technology processes, capabilities, and architecture including but not limited to enterprise technology initiatives, cloud services, architectural patterns and capabilities, as well as other areas of high risk technology changes. As part of the second line of defense, this position will also collaborate closely with associates in first line Cyber, Technology, the Lines of Business, as well as other second line of defense risk management offices to perform and support evaluations of the effectiveness of the firm's controls infrastructure and offer independent advice and recommendations regarding ways to further mature the firm's cyber risk management capabilities. As a member of a growing organization, you will have the opportunity to shape and further refine your portfolio commensurate with the priorities of the organization and the firm. The position affords opportunities for substantial growth. The demands and high-visibility nature of this position require an expert with a proven ability to work independently in a fast-paced environment and who can begin contributing immediately. Essential Functions (Responsibilities): Play a lead role in identifying areas of Technology Change risk to provide oversight, analysis, effective challenge, and risk-informed recommendations and expertise Independently drive the organization's participation in assessing Technology Changes by reviewing all aspects of changes (e.g. threat scenarios, applicable controls, risk mitigating, scope, rollout plans, etc ) focusing on Technology Risks related to technical implementation, controls, testing, and architecture concepts Provide technical assessments of Capital One's Technology Changes and Change Management Processes to identify identify, assess, and communicate Technology and Cyber risk Draft assessments for senior management and other stakeholders, to include regulatory agencies and the Board of Directors, as needed Stay current on emerging cyber threats and potential implications to the firm Collaborate effectively with colleagues, stakeholders, and leaders across multiple organizations to achieve objectives Basic Qualifications: A Bachelor's degree or military experience At least 5 years of experience in information security, information technology or cybersecurity At least 2 years experience with public cloud implementations Preferred Qualifications: Professional technology or security management certification (Certified Information Systems Security Professional (CISSP), Certified Information Security Manager (CISM), Certified in Risk and Information Systems Control (CRISC), AWS certification) 2+ years experience working in a hybrid IT environment that includes both traditional on-premises data centers and public cloud infrastructure (e.g., AWS, Azure, Google Cloud). 2+ years experience in a second-line or oversight role at a financial institution or regulatory agency 2+ years experience with implementation of control frameworks (NIST Cybersecurity Framework, NIST 800-53, CIS Top 20, ISO, COBIT) 2+ years of experience drafting reports or analytic assessments 2+ years of consulting experience At this time, Capital One will not sponsor a new applicant for employment authorization for this position. This role is Hybrid, with associates expected to consistently spend three days per week in the office The minimum and maximum full-time annual salaries for this role are listed below, by location. Please note that this salary information is solely for candidates hired to perform work within one of these locations, and refers to the amount Capital One is willing to pay at the time of this posting. Salaries for part-time roles will be prorated based upon the agreed upon number of hours to be regularly worked. McLean, VA: $193,400 - $220,700 for Manager, Cyber Technical Richmond, VA: $175,800 - $200,700 for Manager, Cyber Technical New York, NY: $211,000 - $240,800 for Manager, Cyber Technical Riverwoods, IL: $175,800 - $200,700 for Manager, Cyber Technical Candidates hired to work in other locations will be subject to the pay range associated with that location, and the actual annualized salary amount offered to any candidate at the time of hire will be reflected solely in the candidate's offer letter. This role is also eligible to earn performance based incentive compensation, which may include cash bonus(es) and/or long term incentives (LTI). Incentives could be discretionary or non discretionary depending on the plan. Capital One offers a comprehensive, competitive, and inclusive set of health, financial and other benefits that support your total well-being. Learn more at the Capital One Careers website . Eligibility varies based on full or part-time status, exempt or non-exempt status, and management level. This role is expected to accept applications for a minimum of 5 business days.No agencies please. Capital One is an equal opportunity employer (EOE, including disability/vet) committed to non-discrimination in compliance with applicable federal, state, and local laws. Capital One promotes a drug-free workplace. Capital One will consider for employment qualified applicants with a criminal history in a manner consistent with the requirements of applicable laws regarding criminal background inquiries, including, to the extent applicable, Article 23-A of the New York Correction Law; San Francisco, California Police Code Article 49, Sections ; New York City's Fair Chance Act; Philadelphia's Fair Criminal Records Screening Act; and other applicable federal, state, and local laws and regulations regarding criminal background inquiries. If you have visited our website in search of information on employment opportunities or to apply for a position, and you require an accommodation, please contact Capital One Recruiting at 1- or via email at . All information you provide will be kept confidential and will be used only to the extent required to provide needed reasonable accommodations. For technical support or questions about Capital One's recruiting process, please send an email to Capital One does not provide, endorse nor guarantee and is not liable for third-party products, services, educational tools or other information available through this site. Capital One Financial is made up of several different entities. Please note that any position posted in Canada is for Capital One Canada, any position posted in the United Kingdom is for Capital One Europe and any position posted in the Philippines is for Capital One Philippines Service Corp. (COPSSC).
Manager, Technology Risk Oversight Capital One is one of the fastest growing organizations in the world today, powered by our passion for our customers. We are serious about technology, we dream big, and we execute: Capital One moved our entire enterprise to the public cloud over the course of five years. Just as we prioritize driving innovation through technology, we equally prioritize cybersecurity, reliability, and managing technology risk. The Technology Risk Management (TRM) is a growing organization focused on providing expert advice, credible challenge, and effective oversight of information security and technology activities to identify, assess, control, and manage cyber and technology risk throughout the company. This organization plays a critical role in helping to ensure that the company's risk-taking entities are aware of the risks inherent in their activities and decisions, the impact of their actions on the company at an enterprise level, and opportunities to reduce, mitigate, or avoid risks altogether. Associates within the Technology Risk Management organization are highly-skilled information security, cyber, technology, or risk management professionals who have a wealth of experience and a demonstrated ability to provide value-added recommendations and deliver high-impact results in their areas of expertise. As a Manager, Technology Risk Oversight , you will play a key role in the review, risk identification, risk assessment, reporting, and effective challenge of technology processes, capabilities, and architecture including but not limited to enterprise technology initiatives, cloud services, architectural patterns and capabilities, as well as other areas of high risk technology changes. As part of the second line of defense, this position will also collaborate closely with associates in first line Cyber, Technology, the Lines of Business, as well as other second line of defense risk management offices to perform and support evaluations of the effectiveness of the firm's controls infrastructure and offer independent advice and recommendations regarding ways to further mature the firm's cyber risk management capabilities. As a member of a growing organization, you will have the opportunity to shape and further refine your portfolio commensurate with the priorities of the organization and the firm. The position affords opportunities for substantial growth. The demands and high-visibility nature of this position require an expert with a proven ability to work independently in a fast-paced environment and who can begin contributing immediately. Essential Functions (Responsibilities): Play a lead role in identifying areas of Technology Change risk to provide oversight, analysis, effective challenge, and risk-informed recommendations and expertise Independently drive the organization's participation in assessing Technology Changes by reviewing all aspects of changes (e.g. threat scenarios, applicable controls, risk mitigating, scope, rollout plans, etc ) focusing on Technology Risks related to technical implementation, controls, testing, and architecture concepts Provide technical assessments of Capital One's Technology Changes and Change Management Processes to identify identify, assess, and communicate Technology and Cyber risk Draft assessments for senior management and other stakeholders, to include regulatory agencies and the Board of Directors, as needed Stay current on emerging cyber threats and potential implications to the firm Collaborate effectively with colleagues, stakeholders, and leaders across multiple organizations to achieve objectives Basic Qualifications: A Bachelor's degree or military experience At least 5 years of experience in information security, information technology or cybersecurity At least 2 years experience with public cloud implementations Preferred Qualifications: Professional technology or security management certification (Certified Information Systems Security Professional (CISSP), Certified Information Security Manager (CISM), Certified in Risk and Information Systems Control (CRISC), AWS certification) 2+ years experience working in a hybrid IT environment that includes both traditional on-premises data centers and public cloud infrastructure (e.g., AWS, Azure, Google Cloud). 2+ years experience in a second-line or oversight role at a financial institution or regulatory agency 2+ years experience with implementation of control frameworks (NIST Cybersecurity Framework, NIST 800-53, CIS Top 20, ISO, COBIT) 2+ years of experience drafting reports or analytic assessments 2+ years of consulting experience At this time, Capital One will not sponsor a new applicant for employment authorization for this position. This role is Hybrid, with associates expected to consistently spend three days per week in the office The minimum and maximum full-time annual salaries for this role are listed below, by location. Please note that this salary information is solely for candidates hired to perform work within one of these locations, and refers to the amount Capital One is willing to pay at the time of this posting. Salaries for part-time roles will be prorated based upon the agreed upon number of hours to be regularly worked. McLean, VA: $193,400 - $220,700 for Manager, Cyber Technical Richmond, VA: $175,800 - $200,700 for Manager, Cyber Technical New York, NY: $211,000 - $240,800 for Manager, Cyber Technical Riverwoods, IL: $175,800 - $200,700 for Manager, Cyber Technical Candidates hired to work in other locations will be subject to the pay range associated with that location, and the actual annualized salary amount offered to any candidate at the time of hire will be reflected solely in the candidate's offer letter. This role is also eligible to earn performance based incentive compensation, which may include cash bonus(es) and/or long term incentives (LTI). Incentives could be discretionary or non discretionary depending on the plan. Capital One offers a comprehensive, competitive, and inclusive set of health, financial and other benefits that support your total well-being. Learn more at the Capital One Careers website . Eligibility varies based on full or part-time status, exempt or non-exempt status, and management level. This role is expected to accept applications for a minimum of 5 business days.No agencies please. Capital One is an equal opportunity employer (EOE, including disability/vet) committed to non-discrimination in compliance with applicable federal, state, and local laws. Capital One promotes a drug-free workplace. Capital One will consider for employment qualified applicants with a criminal history in a manner consistent with the requirements of applicable laws regarding criminal background inquiries, including, to the extent applicable, Article 23-A of the New York Correction Law; San Francisco, California Police Code Article 49, Sections ; New York City's Fair Chance Act; Philadelphia's Fair Criminal Records Screening Act; and other applicable federal, state, and local laws and regulations regarding criminal background inquiries. If you have visited our website in search of information on employment opportunities or to apply for a position, and you require an accommodation, please contact Capital One Recruiting at 1- or via email at . All information you provide will be kept confidential and will be used only to the extent required to provide needed reasonable accommodations. For technical support or questions about Capital One's recruiting process, please send an email to Capital One does not provide, endorse nor guarantee and is not liable for third-party products, services, educational tools or other information available through this site. Capital One Financial is made up of several different entities. Please note that any position posted in Canada is for Capital One Canada, any position posted in the United Kingdom is for Capital One Europe and any position posted in the Philippines is for Capital One Philippines Service Corp. (COPSSC).
12/17/2025
Full time
Manager, Technology Risk Oversight Capital One is one of the fastest growing organizations in the world today, powered by our passion for our customers. We are serious about technology, we dream big, and we execute: Capital One moved our entire enterprise to the public cloud over the course of five years. Just as we prioritize driving innovation through technology, we equally prioritize cybersecurity, reliability, and managing technology risk. The Technology Risk Management (TRM) is a growing organization focused on providing expert advice, credible challenge, and effective oversight of information security and technology activities to identify, assess, control, and manage cyber and technology risk throughout the company. This organization plays a critical role in helping to ensure that the company's risk-taking entities are aware of the risks inherent in their activities and decisions, the impact of their actions on the company at an enterprise level, and opportunities to reduce, mitigate, or avoid risks altogether. Associates within the Technology Risk Management organization are highly-skilled information security, cyber, technology, or risk management professionals who have a wealth of experience and a demonstrated ability to provide value-added recommendations and deliver high-impact results in their areas of expertise. As a Manager, Technology Risk Oversight , you will play a key role in the review, risk identification, risk assessment, reporting, and effective challenge of technology processes, capabilities, and architecture including but not limited to enterprise technology initiatives, cloud services, architectural patterns and capabilities, as well as other areas of high risk technology changes. As part of the second line of defense, this position will also collaborate closely with associates in first line Cyber, Technology, the Lines of Business, as well as other second line of defense risk management offices to perform and support evaluations of the effectiveness of the firm's controls infrastructure and offer independent advice and recommendations regarding ways to further mature the firm's cyber risk management capabilities. As a member of a growing organization, you will have the opportunity to shape and further refine your portfolio commensurate with the priorities of the organization and the firm. The position affords opportunities for substantial growth. The demands and high-visibility nature of this position require an expert with a proven ability to work independently in a fast-paced environment and who can begin contributing immediately. Essential Functions (Responsibilities): Play a lead role in identifying areas of Technology Change risk to provide oversight, analysis, effective challenge, and risk-informed recommendations and expertise Independently drive the organization's participation in assessing Technology Changes by reviewing all aspects of changes (e.g. threat scenarios, applicable controls, risk mitigating, scope, rollout plans, etc ) focusing on Technology Risks related to technical implementation, controls, testing, and architecture concepts Provide technical assessments of Capital One's Technology Changes and Change Management Processes to identify identify, assess, and communicate Technology and Cyber risk Draft assessments for senior management and other stakeholders, to include regulatory agencies and the Board of Directors, as needed Stay current on emerging cyber threats and potential implications to the firm Collaborate effectively with colleagues, stakeholders, and leaders across multiple organizations to achieve objectives Basic Qualifications: A Bachelor's degree or military experience At least 5 years of experience in information security, information technology or cybersecurity At least 2 years experience with public cloud implementations Preferred Qualifications: Professional technology or security management certification (Certified Information Systems Security Professional (CISSP), Certified Information Security Manager (CISM), Certified in Risk and Information Systems Control (CRISC), AWS certification) 2+ years experience working in a hybrid IT environment that includes both traditional on-premises data centers and public cloud infrastructure (e.g., AWS, Azure, Google Cloud). 2+ years experience in a second-line or oversight role at a financial institution or regulatory agency 2+ years experience with implementation of control frameworks (NIST Cybersecurity Framework, NIST 800-53, CIS Top 20, ISO, COBIT) 2+ years of experience drafting reports or analytic assessments 2+ years of consulting experience At this time, Capital One will not sponsor a new applicant for employment authorization for this position. This role is Hybrid, with associates expected to consistently spend three days per week in the office The minimum and maximum full-time annual salaries for this role are listed below, by location. Please note that this salary information is solely for candidates hired to perform work within one of these locations, and refers to the amount Capital One is willing to pay at the time of this posting. Salaries for part-time roles will be prorated based upon the agreed upon number of hours to be regularly worked. McLean, VA: $193,400 - $220,700 for Manager, Cyber Technical Richmond, VA: $175,800 - $200,700 for Manager, Cyber Technical New York, NY: $211,000 - $240,800 for Manager, Cyber Technical Riverwoods, IL: $175,800 - $200,700 for Manager, Cyber Technical Candidates hired to work in other locations will be subject to the pay range associated with that location, and the actual annualized salary amount offered to any candidate at the time of hire will be reflected solely in the candidate's offer letter. This role is also eligible to earn performance based incentive compensation, which may include cash bonus(es) and/or long term incentives (LTI). Incentives could be discretionary or non discretionary depending on the plan. Capital One offers a comprehensive, competitive, and inclusive set of health, financial and other benefits that support your total well-being. Learn more at the Capital One Careers website . Eligibility varies based on full or part-time status, exempt or non-exempt status, and management level. This role is expected to accept applications for a minimum of 5 business days.No agencies please. Capital One is an equal opportunity employer (EOE, including disability/vet) committed to non-discrimination in compliance with applicable federal, state, and local laws. Capital One promotes a drug-free workplace. Capital One will consider for employment qualified applicants with a criminal history in a manner consistent with the requirements of applicable laws regarding criminal background inquiries, including, to the extent applicable, Article 23-A of the New York Correction Law; San Francisco, California Police Code Article 49, Sections ; New York City's Fair Chance Act; Philadelphia's Fair Criminal Records Screening Act; and other applicable federal, state, and local laws and regulations regarding criminal background inquiries. If you have visited our website in search of information on employment opportunities or to apply for a position, and you require an accommodation, please contact Capital One Recruiting at 1- or via email at . All information you provide will be kept confidential and will be used only to the extent required to provide needed reasonable accommodations. For technical support or questions about Capital One's recruiting process, please send an email to Capital One does not provide, endorse nor guarantee and is not liable for third-party products, services, educational tools or other information available through this site. Capital One Financial is made up of several different entities. Please note that any position posted in Canada is for Capital One Canada, any position posted in the United Kingdom is for Capital One Europe and any position posted in the Philippines is for Capital One Philippines Service Corp. (COPSSC).
Manager, Technology Risk Oversight Capital One is one of the fastest growing organizations in the world today, powered by our passion for our customers. We are serious about technology, we dream big, and we execute: Capital One moved our entire enterprise to the public cloud over the course of five years. Just as we prioritize driving innovation through technology, we equally prioritize cybersecurity, reliability, and managing technology risk. The Technology Risk Management (TRM) is a growing organization focused on providing expert advice, credible challenge, and effective oversight of information security and technology activities to identify, assess, control, and manage cyber and technology risk throughout the company. This organization plays a critical role in helping to ensure that the company's risk-taking entities are aware of the risks inherent in their activities and decisions, the impact of their actions on the company at an enterprise level, and opportunities to reduce, mitigate, or avoid risks altogether. Associates within the Technology Risk Management organization are highly-skilled information security, cyber, technology, or risk management professionals who have a wealth of experience and a demonstrated ability to provide value-added recommendations and deliver high-impact results in their areas of expertise. As a Manager, Technology Risk Oversight , you will play a key role in the review, risk identification, risk assessment, reporting, and effective challenge of technology processes, capabilities, and architecture including but not limited to enterprise technology initiatives, cloud services, architectural patterns and capabilities, as well as other areas of high risk technology changes. As part of the second line of defense, this position will also collaborate closely with associates in first line Cyber, Technology, the Lines of Business, as well as other second line of defense risk management offices to perform and support evaluations of the effectiveness of the firm's controls infrastructure and offer independent advice and recommendations regarding ways to further mature the firm's cyber risk management capabilities. As a member of a growing organization, you will have the opportunity to shape and further refine your portfolio commensurate with the priorities of the organization and the firm. The position affords opportunities for substantial growth. The demands and high-visibility nature of this position require an expert with a proven ability to work independently in a fast-paced environment and who can begin contributing immediately. Essential Functions (Responsibilities): Play a lead role in identifying areas of Technology Change risk to provide oversight, analysis, effective challenge, and risk-informed recommendations and expertise Independently drive the organization's participation in assessing Technology Changes by reviewing all aspects of changes (e.g. threat scenarios, applicable controls, risk mitigating, scope, rollout plans, etc ) focusing on Technology Risks related to technical implementation, controls, testing, and architecture concepts Provide technical assessments of Capital One's Technology Changes and Change Management Processes to identify identify, assess, and communicate Technology and Cyber risk Draft assessments for senior management and other stakeholders, to include regulatory agencies and the Board of Directors, as needed Stay current on emerging cyber threats and potential implications to the firm Collaborate effectively with colleagues, stakeholders, and leaders across multiple organizations to achieve objectives Basic Qualifications: A Bachelor's degree or military experience At least 5 years of experience in information security, information technology or cybersecurity At least 2 years experience with public cloud implementations Preferred Qualifications: Professional technology or security management certification (Certified Information Systems Security Professional (CISSP), Certified Information Security Manager (CISM), Certified in Risk and Information Systems Control (CRISC), AWS certification) 2+ years experience working in a hybrid IT environment that includes both traditional on-premises data centers and public cloud infrastructure (e.g., AWS, Azure, Google Cloud). 2+ years experience in a second-line or oversight role at a financial institution or regulatory agency 2+ years experience with implementation of control frameworks (NIST Cybersecurity Framework, NIST 800-53, CIS Top 20, ISO, COBIT) 2+ years of experience drafting reports or analytic assessments 2+ years of consulting experience At this time, Capital One will not sponsor a new applicant for employment authorization for this position. This role is Hybrid, with associates expected to consistently spend three days per week in the office The minimum and maximum full-time annual salaries for this role are listed below, by location. Please note that this salary information is solely for candidates hired to perform work within one of these locations, and refers to the amount Capital One is willing to pay at the time of this posting. Salaries for part-time roles will be prorated based upon the agreed upon number of hours to be regularly worked. McLean, VA: $193,400 - $220,700 for Manager, Cyber Technical Richmond, VA: $175,800 - $200,700 for Manager, Cyber Technical New York, NY: $211,000 - $240,800 for Manager, Cyber Technical Riverwoods, IL: $175,800 - $200,700 for Manager, Cyber Technical Candidates hired to work in other locations will be subject to the pay range associated with that location, and the actual annualized salary amount offered to any candidate at the time of hire will be reflected solely in the candidate's offer letter. This role is also eligible to earn performance based incentive compensation, which may include cash bonus(es) and/or long term incentives (LTI). Incentives could be discretionary or non discretionary depending on the plan. Capital One offers a comprehensive, competitive, and inclusive set of health, financial and other benefits that support your total well-being. Learn more at the Capital One Careers website . Eligibility varies based on full or part-time status, exempt or non-exempt status, and management level. This role is expected to accept applications for a minimum of 5 business days.No agencies please. Capital One is an equal opportunity employer (EOE, including disability/vet) committed to non-discrimination in compliance with applicable federal, state, and local laws. Capital One promotes a drug-free workplace. Capital One will consider for employment qualified applicants with a criminal history in a manner consistent with the requirements of applicable laws regarding criminal background inquiries, including, to the extent applicable, Article 23-A of the New York Correction Law; San Francisco, California Police Code Article 49, Sections ; New York City's Fair Chance Act; Philadelphia's Fair Criminal Records Screening Act; and other applicable federal, state, and local laws and regulations regarding criminal background inquiries. If you have visited our website in search of information on employment opportunities or to apply for a position, and you require an accommodation, please contact Capital One Recruiting at 1- or via email at . All information you provide will be kept confidential and will be used only to the extent required to provide needed reasonable accommodations. For technical support or questions about Capital One's recruiting process, please send an email to Capital One does not provide, endorse nor guarantee and is not liable for third-party products, services, educational tools or other information available through this site. Capital One Financial is made up of several different entities. Please note that any position posted in Canada is for Capital One Canada, any position posted in the United Kingdom is for Capital One Europe and any position posted in the Philippines is for Capital One Philippines Service Corp. (COPSSC).
12/17/2025
Full time
Manager, Technology Risk Oversight Capital One is one of the fastest growing organizations in the world today, powered by our passion for our customers. We are serious about technology, we dream big, and we execute: Capital One moved our entire enterprise to the public cloud over the course of five years. Just as we prioritize driving innovation through technology, we equally prioritize cybersecurity, reliability, and managing technology risk. The Technology Risk Management (TRM) is a growing organization focused on providing expert advice, credible challenge, and effective oversight of information security and technology activities to identify, assess, control, and manage cyber and technology risk throughout the company. This organization plays a critical role in helping to ensure that the company's risk-taking entities are aware of the risks inherent in their activities and decisions, the impact of their actions on the company at an enterprise level, and opportunities to reduce, mitigate, or avoid risks altogether. Associates within the Technology Risk Management organization are highly-skilled information security, cyber, technology, or risk management professionals who have a wealth of experience and a demonstrated ability to provide value-added recommendations and deliver high-impact results in their areas of expertise. As a Manager, Technology Risk Oversight , you will play a key role in the review, risk identification, risk assessment, reporting, and effective challenge of technology processes, capabilities, and architecture including but not limited to enterprise technology initiatives, cloud services, architectural patterns and capabilities, as well as other areas of high risk technology changes. As part of the second line of defense, this position will also collaborate closely with associates in first line Cyber, Technology, the Lines of Business, as well as other second line of defense risk management offices to perform and support evaluations of the effectiveness of the firm's controls infrastructure and offer independent advice and recommendations regarding ways to further mature the firm's cyber risk management capabilities. As a member of a growing organization, you will have the opportunity to shape and further refine your portfolio commensurate with the priorities of the organization and the firm. The position affords opportunities for substantial growth. The demands and high-visibility nature of this position require an expert with a proven ability to work independently in a fast-paced environment and who can begin contributing immediately. Essential Functions (Responsibilities): Play a lead role in identifying areas of Technology Change risk to provide oversight, analysis, effective challenge, and risk-informed recommendations and expertise Independently drive the organization's participation in assessing Technology Changes by reviewing all aspects of changes (e.g. threat scenarios, applicable controls, risk mitigating, scope, rollout plans, etc ) focusing on Technology Risks related to technical implementation, controls, testing, and architecture concepts Provide technical assessments of Capital One's Technology Changes and Change Management Processes to identify identify, assess, and communicate Technology and Cyber risk Draft assessments for senior management and other stakeholders, to include regulatory agencies and the Board of Directors, as needed Stay current on emerging cyber threats and potential implications to the firm Collaborate effectively with colleagues, stakeholders, and leaders across multiple organizations to achieve objectives Basic Qualifications: A Bachelor's degree or military experience At least 5 years of experience in information security, information technology or cybersecurity At least 2 years experience with public cloud implementations Preferred Qualifications: Professional technology or security management certification (Certified Information Systems Security Professional (CISSP), Certified Information Security Manager (CISM), Certified in Risk and Information Systems Control (CRISC), AWS certification) 2+ years experience working in a hybrid IT environment that includes both traditional on-premises data centers and public cloud infrastructure (e.g., AWS, Azure, Google Cloud). 2+ years experience in a second-line or oversight role at a financial institution or regulatory agency 2+ years experience with implementation of control frameworks (NIST Cybersecurity Framework, NIST 800-53, CIS Top 20, ISO, COBIT) 2+ years of experience drafting reports or analytic assessments 2+ years of consulting experience At this time, Capital One will not sponsor a new applicant for employment authorization for this position. This role is Hybrid, with associates expected to consistently spend three days per week in the office The minimum and maximum full-time annual salaries for this role are listed below, by location. Please note that this salary information is solely for candidates hired to perform work within one of these locations, and refers to the amount Capital One is willing to pay at the time of this posting. Salaries for part-time roles will be prorated based upon the agreed upon number of hours to be regularly worked. McLean, VA: $193,400 - $220,700 for Manager, Cyber Technical Richmond, VA: $175,800 - $200,700 for Manager, Cyber Technical New York, NY: $211,000 - $240,800 for Manager, Cyber Technical Riverwoods, IL: $175,800 - $200,700 for Manager, Cyber Technical Candidates hired to work in other locations will be subject to the pay range associated with that location, and the actual annualized salary amount offered to any candidate at the time of hire will be reflected solely in the candidate's offer letter. This role is also eligible to earn performance based incentive compensation, which may include cash bonus(es) and/or long term incentives (LTI). Incentives could be discretionary or non discretionary depending on the plan. Capital One offers a comprehensive, competitive, and inclusive set of health, financial and other benefits that support your total well-being. Learn more at the Capital One Careers website . Eligibility varies based on full or part-time status, exempt or non-exempt status, and management level. This role is expected to accept applications for a minimum of 5 business days.No agencies please. Capital One is an equal opportunity employer (EOE, including disability/vet) committed to non-discrimination in compliance with applicable federal, state, and local laws. Capital One promotes a drug-free workplace. Capital One will consider for employment qualified applicants with a criminal history in a manner consistent with the requirements of applicable laws regarding criminal background inquiries, including, to the extent applicable, Article 23-A of the New York Correction Law; San Francisco, California Police Code Article 49, Sections ; New York City's Fair Chance Act; Philadelphia's Fair Criminal Records Screening Act; and other applicable federal, state, and local laws and regulations regarding criminal background inquiries. If you have visited our website in search of information on employment opportunities or to apply for a position, and you require an accommodation, please contact Capital One Recruiting at 1- or via email at . All information you provide will be kept confidential and will be used only to the extent required to provide needed reasonable accommodations. For technical support or questions about Capital One's recruiting process, please send an email to Capital One does not provide, endorse nor guarantee and is not liable for third-party products, services, educational tools or other information available through this site. Capital One Financial is made up of several different entities. Please note that any position posted in Canada is for Capital One Canada, any position posted in the United Kingdom is for Capital One Europe and any position posted in the Philippines is for Capital One Philippines Service Corp. (COPSSC).
Manager, Technology Risk Oversight Capital One is one of the fastest growing organizations in the world today, powered by our passion for our customers. We are serious about technology, we dream big, and we execute: Capital One moved our entire enterprise to the public cloud over the course of five years. Just as we prioritize driving innovation through technology, we equally prioritize cybersecurity, reliability, and managing technology risk. The Technology Risk Management (TRM) is a growing organization focused on providing expert advice, credible challenge, and effective oversight of information security and technology activities to identify, assess, control, and manage cyber and technology risk throughout the company. This organization plays a critical role in helping to ensure that the company's risk-taking entities are aware of the risks inherent in their activities and decisions, the impact of their actions on the company at an enterprise level, and opportunities to reduce, mitigate, or avoid risks altogether. Associates within the Technology Risk Management organization are highly-skilled information security, cyber, technology, or risk management professionals who have a wealth of experience and a demonstrated ability to provide value-added recommendations and deliver high-impact results in their areas of expertise. As a Manager, Technology Risk Oversight , you will play a key role in the review, risk identification, risk assessment, reporting, and effective challenge of technology processes, capabilities, and architecture including but not limited to enterprise technology initiatives, cloud services, architectural patterns and capabilities, as well as other areas of high risk technology changes. As part of the second line of defense, this position will also collaborate closely with associates in first line Cyber, Technology, the Lines of Business, as well as other second line of defense risk management offices to perform and support evaluations of the effectiveness of the firm's controls infrastructure and offer independent advice and recommendations regarding ways to further mature the firm's cyber risk management capabilities. As a member of a growing organization, you will have the opportunity to shape and further refine your portfolio commensurate with the priorities of the organization and the firm. The position affords opportunities for substantial growth. The demands and high-visibility nature of this position require an expert with a proven ability to work independently in a fast-paced environment and who can begin contributing immediately. Essential Functions (Responsibilities): Play a lead role in identifying areas of Technology Change risk to provide oversight, analysis, effective challenge, and risk-informed recommendations and expertise Independently drive the organization's participation in assessing Technology Changes by reviewing all aspects of changes (e.g. threat scenarios, applicable controls, risk mitigating, scope, rollout plans, etc ) focusing on Technology Risks related to technical implementation, controls, testing, and architecture concepts Provide technical assessments of Capital One's Technology Changes and Change Management Processes to identify identify, assess, and communicate Technology and Cyber risk Draft assessments for senior management and other stakeholders, to include regulatory agencies and the Board of Directors, as needed Stay current on emerging cyber threats and potential implications to the firm Collaborate effectively with colleagues, stakeholders, and leaders across multiple organizations to achieve objectives Basic Qualifications: A Bachelor's degree or military experience At least 5 years of experience in information security, information technology or cybersecurity At least 2 years experience with public cloud implementations Preferred Qualifications: Professional technology or security management certification (Certified Information Systems Security Professional (CISSP), Certified Information Security Manager (CISM), Certified in Risk and Information Systems Control (CRISC), AWS certification) 2+ years experience working in a hybrid IT environment that includes both traditional on-premises data centers and public cloud infrastructure (e.g., AWS, Azure, Google Cloud). 2+ years experience in a second-line or oversight role at a financial institution or regulatory agency 2+ years experience with implementation of control frameworks (NIST Cybersecurity Framework, NIST 800-53, CIS Top 20, ISO, COBIT) 2+ years of experience drafting reports or analytic assessments 2+ years of consulting experience At this time, Capital One will not sponsor a new applicant for employment authorization for this position. This role is Hybrid, with associates expected to consistently spend three days per week in the office The minimum and maximum full-time annual salaries for this role are listed below, by location. Please note that this salary information is solely for candidates hired to perform work within one of these locations, and refers to the amount Capital One is willing to pay at the time of this posting. Salaries for part-time roles will be prorated based upon the agreed upon number of hours to be regularly worked. McLean, VA: $193,400 - $220,700 for Manager, Cyber Technical Richmond, VA: $175,800 - $200,700 for Manager, Cyber Technical New York, NY: $211,000 - $240,800 for Manager, Cyber Technical Riverwoods, IL: $175,800 - $200,700 for Manager, Cyber Technical Candidates hired to work in other locations will be subject to the pay range associated with that location, and the actual annualized salary amount offered to any candidate at the time of hire will be reflected solely in the candidate's offer letter. This role is also eligible to earn performance based incentive compensation, which may include cash bonus(es) and/or long term incentives (LTI). Incentives could be discretionary or non discretionary depending on the plan. Capital One offers a comprehensive, competitive, and inclusive set of health, financial and other benefits that support your total well-being. Learn more at the Capital One Careers website . Eligibility varies based on full or part-time status, exempt or non-exempt status, and management level. This role is expected to accept applications for a minimum of 5 business days.No agencies please. Capital One is an equal opportunity employer (EOE, including disability/vet) committed to non-discrimination in compliance with applicable federal, state, and local laws. Capital One promotes a drug-free workplace. Capital One will consider for employment qualified applicants with a criminal history in a manner consistent with the requirements of applicable laws regarding criminal background inquiries, including, to the extent applicable, Article 23-A of the New York Correction Law; San Francisco, California Police Code Article 49, Sections ; New York City's Fair Chance Act; Philadelphia's Fair Criminal Records Screening Act; and other applicable federal, state, and local laws and regulations regarding criminal background inquiries. If you have visited our website in search of information on employment opportunities or to apply for a position, and you require an accommodation, please contact Capital One Recruiting at 1- or via email at . All information you provide will be kept confidential and will be used only to the extent required to provide needed reasonable accommodations. For technical support or questions about Capital One's recruiting process, please send an email to Capital One does not provide, endorse nor guarantee and is not liable for third-party products, services, educational tools or other information available through this site. Capital One Financial is made up of several different entities. Please note that any position posted in Canada is for Capital One Canada, any position posted in the United Kingdom is for Capital One Europe and any position posted in the Philippines is for Capital One Philippines Service Corp. (COPSSC).
12/17/2025
Full time
Manager, Technology Risk Oversight Capital One is one of the fastest growing organizations in the world today, powered by our passion for our customers. We are serious about technology, we dream big, and we execute: Capital One moved our entire enterprise to the public cloud over the course of five years. Just as we prioritize driving innovation through technology, we equally prioritize cybersecurity, reliability, and managing technology risk. The Technology Risk Management (TRM) is a growing organization focused on providing expert advice, credible challenge, and effective oversight of information security and technology activities to identify, assess, control, and manage cyber and technology risk throughout the company. This organization plays a critical role in helping to ensure that the company's risk-taking entities are aware of the risks inherent in their activities and decisions, the impact of their actions on the company at an enterprise level, and opportunities to reduce, mitigate, or avoid risks altogether. Associates within the Technology Risk Management organization are highly-skilled information security, cyber, technology, or risk management professionals who have a wealth of experience and a demonstrated ability to provide value-added recommendations and deliver high-impact results in their areas of expertise. As a Manager, Technology Risk Oversight , you will play a key role in the review, risk identification, risk assessment, reporting, and effective challenge of technology processes, capabilities, and architecture including but not limited to enterprise technology initiatives, cloud services, architectural patterns and capabilities, as well as other areas of high risk technology changes. As part of the second line of defense, this position will also collaborate closely with associates in first line Cyber, Technology, the Lines of Business, as well as other second line of defense risk management offices to perform and support evaluations of the effectiveness of the firm's controls infrastructure and offer independent advice and recommendations regarding ways to further mature the firm's cyber risk management capabilities. As a member of a growing organization, you will have the opportunity to shape and further refine your portfolio commensurate with the priorities of the organization and the firm. The position affords opportunities for substantial growth. The demands and high-visibility nature of this position require an expert with a proven ability to work independently in a fast-paced environment and who can begin contributing immediately. Essential Functions (Responsibilities): Play a lead role in identifying areas of Technology Change risk to provide oversight, analysis, effective challenge, and risk-informed recommendations and expertise Independently drive the organization's participation in assessing Technology Changes by reviewing all aspects of changes (e.g. threat scenarios, applicable controls, risk mitigating, scope, rollout plans, etc ) focusing on Technology Risks related to technical implementation, controls, testing, and architecture concepts Provide technical assessments of Capital One's Technology Changes and Change Management Processes to identify identify, assess, and communicate Technology and Cyber risk Draft assessments for senior management and other stakeholders, to include regulatory agencies and the Board of Directors, as needed Stay current on emerging cyber threats and potential implications to the firm Collaborate effectively with colleagues, stakeholders, and leaders across multiple organizations to achieve objectives Basic Qualifications: A Bachelor's degree or military experience At least 5 years of experience in information security, information technology or cybersecurity At least 2 years experience with public cloud implementations Preferred Qualifications: Professional technology or security management certification (Certified Information Systems Security Professional (CISSP), Certified Information Security Manager (CISM), Certified in Risk and Information Systems Control (CRISC), AWS certification) 2+ years experience working in a hybrid IT environment that includes both traditional on-premises data centers and public cloud infrastructure (e.g., AWS, Azure, Google Cloud). 2+ years experience in a second-line or oversight role at a financial institution or regulatory agency 2+ years experience with implementation of control frameworks (NIST Cybersecurity Framework, NIST 800-53, CIS Top 20, ISO, COBIT) 2+ years of experience drafting reports or analytic assessments 2+ years of consulting experience At this time, Capital One will not sponsor a new applicant for employment authorization for this position. This role is Hybrid, with associates expected to consistently spend three days per week in the office The minimum and maximum full-time annual salaries for this role are listed below, by location. Please note that this salary information is solely for candidates hired to perform work within one of these locations, and refers to the amount Capital One is willing to pay at the time of this posting. Salaries for part-time roles will be prorated based upon the agreed upon number of hours to be regularly worked. McLean, VA: $193,400 - $220,700 for Manager, Cyber Technical Richmond, VA: $175,800 - $200,700 for Manager, Cyber Technical New York, NY: $211,000 - $240,800 for Manager, Cyber Technical Riverwoods, IL: $175,800 - $200,700 for Manager, Cyber Technical Candidates hired to work in other locations will be subject to the pay range associated with that location, and the actual annualized salary amount offered to any candidate at the time of hire will be reflected solely in the candidate's offer letter. This role is also eligible to earn performance based incentive compensation, which may include cash bonus(es) and/or long term incentives (LTI). Incentives could be discretionary or non discretionary depending on the plan. Capital One offers a comprehensive, competitive, and inclusive set of health, financial and other benefits that support your total well-being. Learn more at the Capital One Careers website . Eligibility varies based on full or part-time status, exempt or non-exempt status, and management level. This role is expected to accept applications for a minimum of 5 business days.No agencies please. Capital One is an equal opportunity employer (EOE, including disability/vet) committed to non-discrimination in compliance with applicable federal, state, and local laws. Capital One promotes a drug-free workplace. Capital One will consider for employment qualified applicants with a criminal history in a manner consistent with the requirements of applicable laws regarding criminal background inquiries, including, to the extent applicable, Article 23-A of the New York Correction Law; San Francisco, California Police Code Article 49, Sections ; New York City's Fair Chance Act; Philadelphia's Fair Criminal Records Screening Act; and other applicable federal, state, and local laws and regulations regarding criminal background inquiries. If you have visited our website in search of information on employment opportunities or to apply for a position, and you require an accommodation, please contact Capital One Recruiting at 1- or via email at . All information you provide will be kept confidential and will be used only to the extent required to provide needed reasonable accommodations. For technical support or questions about Capital One's recruiting process, please send an email to Capital One does not provide, endorse nor guarantee and is not liable for third-party products, services, educational tools or other information available through this site. Capital One Financial is made up of several different entities. Please note that any position posted in Canada is for Capital One Canada, any position posted in the United Kingdom is for Capital One Europe and any position posted in the Philippines is for Capital One Philippines Service Corp. (COPSSC).
Manager, Technology Risk Oversight Capital One is one of the fastest growing organizations in the world today, powered by our passion for our customers. We are serious about technology, we dream big, and we execute: Capital One moved our entire enterprise to the public cloud over the course of five years. Just as we prioritize driving innovation through technology, we equally prioritize cybersecurity, reliability, and managing technology risk. The Technology Risk Management (TRM) is a growing organization focused on providing expert advice, credible challenge, and effective oversight of information security and technology activities to identify, assess, control, and manage cyber and technology risk throughout the company. This organization plays a critical role in helping to ensure that the company's risk-taking entities are aware of the risks inherent in their activities and decisions, the impact of their actions on the company at an enterprise level, and opportunities to reduce, mitigate, or avoid risks altogether. Associates within the Technology Risk Management organization are highly-skilled information security, cyber, technology, or risk management professionals who have a wealth of experience and a demonstrated ability to provide value-added recommendations and deliver high-impact results in their areas of expertise. As a Manager, Technology Risk Oversight , you will play a key role in the review, risk identification, risk assessment, reporting, and effective challenge of technology processes, capabilities, and architecture including but not limited to enterprise technology initiatives, cloud services, architectural patterns and capabilities, as well as other areas of high risk technology changes. As part of the second line of defense, this position will also collaborate closely with associates in first line Cyber, Technology, the Lines of Business, as well as other second line of defense risk management offices to perform and support evaluations of the effectiveness of the firm's controls infrastructure and offer independent advice and recommendations regarding ways to further mature the firm's cyber risk management capabilities. As a member of a growing organization, you will have the opportunity to shape and further refine your portfolio commensurate with the priorities of the organization and the firm. The position affords opportunities for substantial growth. The demands and high-visibility nature of this position require an expert with a proven ability to work independently in a fast-paced environment and who can begin contributing immediately. Essential Functions (Responsibilities): Play a lead role in identifying areas of Technology Change risk to provide oversight, analysis, effective challenge, and risk-informed recommendations and expertise Independently drive the organization's participation in assessing Technology Changes by reviewing all aspects of changes (e.g. threat scenarios, applicable controls, risk mitigating, scope, rollout plans, etc ) focusing on Technology Risks related to technical implementation, controls, testing, and architecture concepts Provide technical assessments of Capital One's Technology Changes and Change Management Processes to identify identify, assess, and communicate Technology and Cyber risk Draft assessments for senior management and other stakeholders, to include regulatory agencies and the Board of Directors, as needed Stay current on emerging cyber threats and potential implications to the firm Collaborate effectively with colleagues, stakeholders, and leaders across multiple organizations to achieve objectives Basic Qualifications: A Bachelor's degree or military experience At least 5 years of experience in information security, information technology or cybersecurity At least 2 years experience with public cloud implementations Preferred Qualifications: Professional technology or security management certification (Certified Information Systems Security Professional (CISSP), Certified Information Security Manager (CISM), Certified in Risk and Information Systems Control (CRISC), AWS certification) 2+ years experience working in a hybrid IT environment that includes both traditional on-premises data centers and public cloud infrastructure (e.g., AWS, Azure, Google Cloud). 2+ years experience in a second-line or oversight role at a financial institution or regulatory agency 2+ years experience with implementation of control frameworks (NIST Cybersecurity Framework, NIST 800-53, CIS Top 20, ISO, COBIT) 2+ years of experience drafting reports or analytic assessments 2+ years of consulting experience At this time, Capital One will not sponsor a new applicant for employment authorization for this position. This role is Hybrid, with associates expected to consistently spend three days per week in the office The minimum and maximum full-time annual salaries for this role are listed below, by location. Please note that this salary information is solely for candidates hired to perform work within one of these locations, and refers to the amount Capital One is willing to pay at the time of this posting. Salaries for part-time roles will be prorated based upon the agreed upon number of hours to be regularly worked. McLean, VA: $193,400 - $220,700 for Manager, Cyber Technical Richmond, VA: $175,800 - $200,700 for Manager, Cyber Technical New York, NY: $211,000 - $240,800 for Manager, Cyber Technical Riverwoods, IL: $175,800 - $200,700 for Manager, Cyber Technical Candidates hired to work in other locations will be subject to the pay range associated with that location, and the actual annualized salary amount offered to any candidate at the time of hire will be reflected solely in the candidate's offer letter. This role is also eligible to earn performance based incentive compensation, which may include cash bonus(es) and/or long term incentives (LTI). Incentives could be discretionary or non discretionary depending on the plan. Capital One offers a comprehensive, competitive, and inclusive set of health, financial and other benefits that support your total well-being. Learn more at the Capital One Careers website . Eligibility varies based on full or part-time status, exempt or non-exempt status, and management level. This role is expected to accept applications for a minimum of 5 business days.No agencies please. Capital One is an equal opportunity employer (EOE, including disability/vet) committed to non-discrimination in compliance with applicable federal, state, and local laws. Capital One promotes a drug-free workplace. Capital One will consider for employment qualified applicants with a criminal history in a manner consistent with the requirements of applicable laws regarding criminal background inquiries, including, to the extent applicable, Article 23-A of the New York Correction Law; San Francisco, California Police Code Article 49, Sections ; New York City's Fair Chance Act; Philadelphia's Fair Criminal Records Screening Act; and other applicable federal, state, and local laws and regulations regarding criminal background inquiries. If you have visited our website in search of information on employment opportunities or to apply for a position, and you require an accommodation, please contact Capital One Recruiting at 1- or via email at . All information you provide will be kept confidential and will be used only to the extent required to provide needed reasonable accommodations. For technical support or questions about Capital One's recruiting process, please send an email to Capital One does not provide, endorse nor guarantee and is not liable for third-party products, services, educational tools or other information available through this site. Capital One Financial is made up of several different entities. Please note that any position posted in Canada is for Capital One Canada, any position posted in the United Kingdom is for Capital One Europe and any position posted in the Philippines is for Capital One Philippines Service Corp. (COPSSC).
12/17/2025
Full time
Manager, Technology Risk Oversight Capital One is one of the fastest growing organizations in the world today, powered by our passion for our customers. We are serious about technology, we dream big, and we execute: Capital One moved our entire enterprise to the public cloud over the course of five years. Just as we prioritize driving innovation through technology, we equally prioritize cybersecurity, reliability, and managing technology risk. The Technology Risk Management (TRM) is a growing organization focused on providing expert advice, credible challenge, and effective oversight of information security and technology activities to identify, assess, control, and manage cyber and technology risk throughout the company. This organization plays a critical role in helping to ensure that the company's risk-taking entities are aware of the risks inherent in their activities and decisions, the impact of their actions on the company at an enterprise level, and opportunities to reduce, mitigate, or avoid risks altogether. Associates within the Technology Risk Management organization are highly-skilled information security, cyber, technology, or risk management professionals who have a wealth of experience and a demonstrated ability to provide value-added recommendations and deliver high-impact results in their areas of expertise. As a Manager, Technology Risk Oversight , you will play a key role in the review, risk identification, risk assessment, reporting, and effective challenge of technology processes, capabilities, and architecture including but not limited to enterprise technology initiatives, cloud services, architectural patterns and capabilities, as well as other areas of high risk technology changes. As part of the second line of defense, this position will also collaborate closely with associates in first line Cyber, Technology, the Lines of Business, as well as other second line of defense risk management offices to perform and support evaluations of the effectiveness of the firm's controls infrastructure and offer independent advice and recommendations regarding ways to further mature the firm's cyber risk management capabilities. As a member of a growing organization, you will have the opportunity to shape and further refine your portfolio commensurate with the priorities of the organization and the firm. The position affords opportunities for substantial growth. The demands and high-visibility nature of this position require an expert with a proven ability to work independently in a fast-paced environment and who can begin contributing immediately. Essential Functions (Responsibilities): Play a lead role in identifying areas of Technology Change risk to provide oversight, analysis, effective challenge, and risk-informed recommendations and expertise Independently drive the organization's participation in assessing Technology Changes by reviewing all aspects of changes (e.g. threat scenarios, applicable controls, risk mitigating, scope, rollout plans, etc ) focusing on Technology Risks related to technical implementation, controls, testing, and architecture concepts Provide technical assessments of Capital One's Technology Changes and Change Management Processes to identify identify, assess, and communicate Technology and Cyber risk Draft assessments for senior management and other stakeholders, to include regulatory agencies and the Board of Directors, as needed Stay current on emerging cyber threats and potential implications to the firm Collaborate effectively with colleagues, stakeholders, and leaders across multiple organizations to achieve objectives Basic Qualifications: A Bachelor's degree or military experience At least 5 years of experience in information security, information technology or cybersecurity At least 2 years experience with public cloud implementations Preferred Qualifications: Professional technology or security management certification (Certified Information Systems Security Professional (CISSP), Certified Information Security Manager (CISM), Certified in Risk and Information Systems Control (CRISC), AWS certification) 2+ years experience working in a hybrid IT environment that includes both traditional on-premises data centers and public cloud infrastructure (e.g., AWS, Azure, Google Cloud). 2+ years experience in a second-line or oversight role at a financial institution or regulatory agency 2+ years experience with implementation of control frameworks (NIST Cybersecurity Framework, NIST 800-53, CIS Top 20, ISO, COBIT) 2+ years of experience drafting reports or analytic assessments 2+ years of consulting experience At this time, Capital One will not sponsor a new applicant for employment authorization for this position. This role is Hybrid, with associates expected to consistently spend three days per week in the office The minimum and maximum full-time annual salaries for this role are listed below, by location. Please note that this salary information is solely for candidates hired to perform work within one of these locations, and refers to the amount Capital One is willing to pay at the time of this posting. Salaries for part-time roles will be prorated based upon the agreed upon number of hours to be regularly worked. McLean, VA: $193,400 - $220,700 for Manager, Cyber Technical Richmond, VA: $175,800 - $200,700 for Manager, Cyber Technical New York, NY: $211,000 - $240,800 for Manager, Cyber Technical Riverwoods, IL: $175,800 - $200,700 for Manager, Cyber Technical Candidates hired to work in other locations will be subject to the pay range associated with that location, and the actual annualized salary amount offered to any candidate at the time of hire will be reflected solely in the candidate's offer letter. This role is also eligible to earn performance based incentive compensation, which may include cash bonus(es) and/or long term incentives (LTI). Incentives could be discretionary or non discretionary depending on the plan. Capital One offers a comprehensive, competitive, and inclusive set of health, financial and other benefits that support your total well-being. Learn more at the Capital One Careers website . Eligibility varies based on full or part-time status, exempt or non-exempt status, and management level. This role is expected to accept applications for a minimum of 5 business days.No agencies please. Capital One is an equal opportunity employer (EOE, including disability/vet) committed to non-discrimination in compliance with applicable federal, state, and local laws. Capital One promotes a drug-free workplace. Capital One will consider for employment qualified applicants with a criminal history in a manner consistent with the requirements of applicable laws regarding criminal background inquiries, including, to the extent applicable, Article 23-A of the New York Correction Law; San Francisco, California Police Code Article 49, Sections ; New York City's Fair Chance Act; Philadelphia's Fair Criminal Records Screening Act; and other applicable federal, state, and local laws and regulations regarding criminal background inquiries. If you have visited our website in search of information on employment opportunities or to apply for a position, and you require an accommodation, please contact Capital One Recruiting at 1- or via email at . All information you provide will be kept confidential and will be used only to the extent required to provide needed reasonable accommodations. For technical support or questions about Capital One's recruiting process, please send an email to Capital One does not provide, endorse nor guarantee and is not liable for third-party products, services, educational tools or other information available through this site. Capital One Financial is made up of several different entities. Please note that any position posted in Canada is for Capital One Canada, any position posted in the United Kingdom is for Capital One Europe and any position posted in the Philippines is for Capital One Philippines Service Corp. (COPSSC).
Senior Manager, Technology Change Risk Oversight Capital One is one of the fastest growing organizations in the world today, powered by our passion for our customers. We are serious about technology, we dream big, and we execute: Capital One moved our entire enterprise to the public cloud over the course of five years. Just as we prioritize driving innovation through technology, we equally prioritize cybersecurity, reliability, and managing technology risk. Technology Risk Management (TRM) is a small organization that packs a big punch. The 100 professionals in TRM are trusted experts who oversee 14,000 developers at Capital One. We raise the bar for excellence in cybersecurity, reliability, and tech risk. We shape strategy and decisions, challenge activities to ensure they meet our standards, and perform independent tests of our security and technology risk. Our business leaders must make technology decisions constantly. TRM makes sure they have the tech risk information they need to make good decisions. Associates within TRM are highly-skilled information security, cybersecurity, site reliability engineering, technology, and risk management professionals. They have a wealth of experience and a demonstrated ability to add value with their advice and to deliver high-impact results. As the Senior Manager, Technology Change Risk Oversight you will play a key role in the review, risk identification, risk assessment, reporting, and effective challenge of technology processes, controls, and capabilities, including but not limited to material and high risk technology changes. You will provide subject matter expertise, oversight, and effective challenge of key Technology areas such as cloud services, enterprise architecture, cloud migrations, and overall technology deployments. As part of the second line of defense, this position will also collaborate closely with associates in first line Cyber, Technology, the Lines of Business, as well as other second line of defense risk management offices to perform and support evaluations of the effectiveness of the firm's controls infrastructure and offer independent advice and recommendations regarding ways to further mature the firm's cyber risk management capabilities. Finally, as a member of a growing organization, you will have the opportunity to shape and further refine your portfolio commensurate with the priorities of the organization and the company. The demands and high-visibility nature of this position requires an expert with a proven ability to work independently in a fast-paced environment and who can begin contributing immediately. Essential Functions (Responsibilities): Provide technical leadership in assessing the practices of designing, developing, testing and implementing cloud native solutions to crucial business problems through thoughtful use of industry best practices and Capital One policy. Evaluate proposed and approved cloud technical solutions for automation, resiliency, performance, scalability, and security including appropriate tradeoffs, risks and opportunities Evaluate/assess complex technological and business environment migrations to the cloud and integrated end-to-end solution options Build and maintain relationships with technical leaders, business owners, engineers and other stakeholders to understand and evaluate implementation plans, business priorities and technical solutions to ensure risk are well communicated and understood by the key stakeholders Keep up-to-date on cutting edge technology, standards, protocols and tools in areas relevant to the rapidly changing environment at Capital One, specifically cloud native architecture, serverless, and emerging AWS services Demonstrate strong analytical, problem-solving, and decision-making skills Communicate and drive highly complex technology solutions to broad audiences including executives, business leaders, product managers, legal experts, security specialists and software engineers Define, structure and plan work independently Perform independent risk assessment of our cloud environment focusing on architecture, engineering, networking, governance. Provide expertise and advice regarding the effectiveness of device configurations, IT architecture, or IT engineering solutions Consult with risk owners on the design and implementation or adjustment of mitigating controls associated with emerging technologies Draft and publish independent reports for risk owners, senior management, and other stakeholders regarding risks associated with new or emerging technologies Basic Qualifications: Bachelor's Degree or military experience At least 6 years of experience managing, consulting, auditing, or working in the fields of information security or information technology At least 3 years experience with Public Cloud implementations Preferred Qualifications: Master's Degree in Computer Science or in an Engineering discipline Professional certification (AWS Certified Solutions Architect, AWS Certified Security Speciality, AWS SysOps Administrator, or Certified Information Systems Security Professional (CISSP Experience with Information Security at the policy, architecture or implementation level Ability to communicate clearly and to interact effectively at all levels of the organization, and to influence as warranted and appropriate to drive to consensus Experience with identifying and communicating key risks related to cloud native implementations and architectures Experience drafting reports or analytic assessments for senior management Experience with analysis of emerging threats and reports that describe the implications of threat(s) and opportunities to executives or senior decision-makers Passion and expertise in cybersecurity and technology risk, with an ability to be confident, respectful, and articulate when registering dissenting or unpopular opinions Ability to manage multiple high-visibility and high-impact projects while maintaining superior results Execution oriented and a self-motivator Experience with threat modeling frameworks (STRIDE, OWASP Top 10, MITRE ATT&CK) Familiarity with controls and control frameworks ( NIST Cybersecurity Framework, NIST 800-53, CIS Top 20, ISO, COBIT.) Ability to work independently and in a team, taking a lead role on projects when necessary Prior experience working in financial services or other highly-regulated sectors Experience working in a hybrid IT environment that includes both traditional on-premises data centers and public cloud infrastructure (e.g., AWS, Azure, Google Cloud) Experience with OpenStack At this time, Capital One will not sponsor a new applicant for employment authorization for this position. This role is Hybrid, with associates expected to consistently spend three days per week in the office. The minimum and maximum full-time annual salaries for this role are listed below, by location. Please note that this salary information is solely for candidates hired to perform work within one of these locations, and refers to the amount Capital One is willing to pay at the time of this posting. Salaries for part-time roles will be prorated based upon the agreed upon number of hours to be regularly worked. McLean, VA: $225,400 - $257,200 for Sr Manager, Cyber Technical Richmond, VA: $204,900 - $233,800 for Sr Manager, Cyber Technical New York, NY: $245,900 - $280,600 for Sr Manager, Cyber Technical Riverwoods, IL: $204,900 - $233,800 for Sr Manager, Cyber Technical Candidates hired to work in other locations will be subject to the pay range associated with that location, and the actual annualized salary amount offered to any candidate at the time of hire will be reflected solely in the candidate's offer letter. This role is also eligible to earn performance based incentive compensation, which may include cash bonus(es) and/or long term incentives (LTI). Incentives could be discretionary or non discretionary depending on the plan. Capital One offers a comprehensive, competitive, and inclusive set of health, financial and other benefits that support your total well-being. Learn more at the Capital One Careers website . Eligibility varies based on full or part-time status, exempt or non-exempt status, and management level. This role is expected to accept applications for a minimum of 5 business days.No agencies please. Capital One is an equal opportunity employer (EOE, including disability/vet) committed to non-discrimination in compliance with applicable federal, state, and local laws. Capital One promotes a drug-free workplace. Capital One will consider for employment qualified applicants with a criminal history in a manner consistent with the requirements of applicable laws regarding criminal background inquiries, including, to the extent applicable, Article 23-A of the New York Correction Law; San Francisco, California Police Code Article 49, Sections ; New York City's Fair Chance Act; Philadelphia's Fair Criminal Records Screening Act; and other applicable federal, state, and local laws and regulations regarding criminal background inquiries. If you have visited our website in search of information on employment opportunities or to apply for a position, and you require an accommodation, please contact Capital One Recruiting at 1- or via email at . click apply for full job details
12/17/2025
Full time
Senior Manager, Technology Change Risk Oversight Capital One is one of the fastest growing organizations in the world today, powered by our passion for our customers. We are serious about technology, we dream big, and we execute: Capital One moved our entire enterprise to the public cloud over the course of five years. Just as we prioritize driving innovation through technology, we equally prioritize cybersecurity, reliability, and managing technology risk. Technology Risk Management (TRM) is a small organization that packs a big punch. The 100 professionals in TRM are trusted experts who oversee 14,000 developers at Capital One. We raise the bar for excellence in cybersecurity, reliability, and tech risk. We shape strategy and decisions, challenge activities to ensure they meet our standards, and perform independent tests of our security and technology risk. Our business leaders must make technology decisions constantly. TRM makes sure they have the tech risk information they need to make good decisions. Associates within TRM are highly-skilled information security, cybersecurity, site reliability engineering, technology, and risk management professionals. They have a wealth of experience and a demonstrated ability to add value with their advice and to deliver high-impact results. As the Senior Manager, Technology Change Risk Oversight you will play a key role in the review, risk identification, risk assessment, reporting, and effective challenge of technology processes, controls, and capabilities, including but not limited to material and high risk technology changes. You will provide subject matter expertise, oversight, and effective challenge of key Technology areas such as cloud services, enterprise architecture, cloud migrations, and overall technology deployments. As part of the second line of defense, this position will also collaborate closely with associates in first line Cyber, Technology, the Lines of Business, as well as other second line of defense risk management offices to perform and support evaluations of the effectiveness of the firm's controls infrastructure and offer independent advice and recommendations regarding ways to further mature the firm's cyber risk management capabilities. Finally, as a member of a growing organization, you will have the opportunity to shape and further refine your portfolio commensurate with the priorities of the organization and the company. The demands and high-visibility nature of this position requires an expert with a proven ability to work independently in a fast-paced environment and who can begin contributing immediately. Essential Functions (Responsibilities): Provide technical leadership in assessing the practices of designing, developing, testing and implementing cloud native solutions to crucial business problems through thoughtful use of industry best practices and Capital One policy. Evaluate proposed and approved cloud technical solutions for automation, resiliency, performance, scalability, and security including appropriate tradeoffs, risks and opportunities Evaluate/assess complex technological and business environment migrations to the cloud and integrated end-to-end solution options Build and maintain relationships with technical leaders, business owners, engineers and other stakeholders to understand and evaluate implementation plans, business priorities and technical solutions to ensure risk are well communicated and understood by the key stakeholders Keep up-to-date on cutting edge technology, standards, protocols and tools in areas relevant to the rapidly changing environment at Capital One, specifically cloud native architecture, serverless, and emerging AWS services Demonstrate strong analytical, problem-solving, and decision-making skills Communicate and drive highly complex technology solutions to broad audiences including executives, business leaders, product managers, legal experts, security specialists and software engineers Define, structure and plan work independently Perform independent risk assessment of our cloud environment focusing on architecture, engineering, networking, governance. Provide expertise and advice regarding the effectiveness of device configurations, IT architecture, or IT engineering solutions Consult with risk owners on the design and implementation or adjustment of mitigating controls associated with emerging technologies Draft and publish independent reports for risk owners, senior management, and other stakeholders regarding risks associated with new or emerging technologies Basic Qualifications: Bachelor's Degree or military experience At least 6 years of experience managing, consulting, auditing, or working in the fields of information security or information technology At least 3 years experience with Public Cloud implementations Preferred Qualifications: Master's Degree in Computer Science or in an Engineering discipline Professional certification (AWS Certified Solutions Architect, AWS Certified Security Speciality, AWS SysOps Administrator, or Certified Information Systems Security Professional (CISSP Experience with Information Security at the policy, architecture or implementation level Ability to communicate clearly and to interact effectively at all levels of the organization, and to influence as warranted and appropriate to drive to consensus Experience with identifying and communicating key risks related to cloud native implementations and architectures Experience drafting reports or analytic assessments for senior management Experience with analysis of emerging threats and reports that describe the implications of threat(s) and opportunities to executives or senior decision-makers Passion and expertise in cybersecurity and technology risk, with an ability to be confident, respectful, and articulate when registering dissenting or unpopular opinions Ability to manage multiple high-visibility and high-impact projects while maintaining superior results Execution oriented and a self-motivator Experience with threat modeling frameworks (STRIDE, OWASP Top 10, MITRE ATT&CK) Familiarity with controls and control frameworks ( NIST Cybersecurity Framework, NIST 800-53, CIS Top 20, ISO, COBIT.) Ability to work independently and in a team, taking a lead role on projects when necessary Prior experience working in financial services or other highly-regulated sectors Experience working in a hybrid IT environment that includes both traditional on-premises data centers and public cloud infrastructure (e.g., AWS, Azure, Google Cloud) Experience with OpenStack At this time, Capital One will not sponsor a new applicant for employment authorization for this position. This role is Hybrid, with associates expected to consistently spend three days per week in the office. The minimum and maximum full-time annual salaries for this role are listed below, by location. Please note that this salary information is solely for candidates hired to perform work within one of these locations, and refers to the amount Capital One is willing to pay at the time of this posting. Salaries for part-time roles will be prorated based upon the agreed upon number of hours to be regularly worked. McLean, VA: $225,400 - $257,200 for Sr Manager, Cyber Technical Richmond, VA: $204,900 - $233,800 for Sr Manager, Cyber Technical New York, NY: $245,900 - $280,600 for Sr Manager, Cyber Technical Riverwoods, IL: $204,900 - $233,800 for Sr Manager, Cyber Technical Candidates hired to work in other locations will be subject to the pay range associated with that location, and the actual annualized salary amount offered to any candidate at the time of hire will be reflected solely in the candidate's offer letter. This role is also eligible to earn performance based incentive compensation, which may include cash bonus(es) and/or long term incentives (LTI). Incentives could be discretionary or non discretionary depending on the plan. Capital One offers a comprehensive, competitive, and inclusive set of health, financial and other benefits that support your total well-being. Learn more at the Capital One Careers website . Eligibility varies based on full or part-time status, exempt or non-exempt status, and management level. This role is expected to accept applications for a minimum of 5 business days.No agencies please. Capital One is an equal opportunity employer (EOE, including disability/vet) committed to non-discrimination in compliance with applicable federal, state, and local laws. Capital One promotes a drug-free workplace. Capital One will consider for employment qualified applicants with a criminal history in a manner consistent with the requirements of applicable laws regarding criminal background inquiries, including, to the extent applicable, Article 23-A of the New York Correction Law; San Francisco, California Police Code Article 49, Sections ; New York City's Fair Chance Act; Philadelphia's Fair Criminal Records Screening Act; and other applicable federal, state, and local laws and regulations regarding criminal background inquiries. If you have visited our website in search of information on employment opportunities or to apply for a position, and you require an accommodation, please contact Capital One Recruiting at 1- or via email at . click apply for full job details