it job board logo
  • Home
  • Find IT Jobs
  • Register CV
  • Register as Employer
  • Contact us
  • Career Advice
  • Recruiting? Post a job
  • Sign in
  • Sign up
  • Home
  • Find IT Jobs
  • Register CV
  • Register as Employer
  • Contact us
  • Career Advice
Sorry, that job is no longer available. Here are some results that may be similar to the job you were looking for.

38 jobs found

Email me jobs like this
Refine Search
Current Search
enterprise data architect lead specialist
ServiceNow Principal Domain Architect - Remote
Sentara Health Norfolk, Virginia
City/State Norfolk, VA Work Shift First (Days) Overview: Sentara is hiring a ServiceNow Principal Domain Architect! This position is fully remote! Overview The domain architect proactively and holistically leads and supports EA activities that guide the development and management of domain and infrastructure solutions. These solutions enable the organization's future-state business capabilities and drive the organization's targeted business outcomes. Technologies include data centers, infrastructure, cloud, mobile, AI, Internet of Things (IoT), blockchain, edge computing, and immersive experiences technologies. Domain architects provide the leadership, facilitation, analysis, and design tasks required for the development of an enterprise's technical and infrastructure architecture. Domain architects create deliverables that help develop target-state guidance (standards, guidelines, individual parts, platforms, and configurations) for evolving the technical infrastructure across the enterprise, in order to enable business strategy and deliver targeted business outcomes. They enable and orchestrate the delivery of targeted business outcomes by facilitating and making technical decisions. A Specialist Professional is a recognized subject matter expert in a job area, typically obtained through advanced education and work experience. Responsibilities typically include • Managing large projects or processes with limited oversight from the manager. • Coaching, reviewing, and delegating work to lower-level professionals. • Problems faced are difficult and often complex. Education 8+ years of relevant experience with a degree (Required) or 10+ years of relevant experience without a degree (Required) Certification/Licensure ServiceNow Architect Certification (Preferred) Experience 10 to 12 years of ServiceNow experience over all ServiceNow experience (Required) Minimum 2 to 3 years of ServiceNow architect-level experience (Required) ServiceNow experienced, certified Architect Strong familiarity with ServiceNow Suite (e.g., ITSM, SPM, FSM, ITOM, IRM, EA etc) and platform wide analytics, AI, reporting and Virtual Agent a plus. Proven ability to communicate effectively with both business and technical stakeholders. Demonstrable ability to work independently, with a focus on best practice architectural design and analytical problem-solving and critical thinking. Familiarity with system/software engineering lifecycle principles, including requirements analysis, functional and technical solutions development, and application support. Experience working with large datasets, performing data analysis/modeling, and contributing insights for management decision-making. Talroo-IT, Indeed Benefits: Caring For Your Family and Your Career • Medical, Dental, Vision plans • Adoption, Fertility and Surrogacy Reimbursement up to $10,000 • Paid Time Off and Sick Leave • Paid Parental & Family Caregiver Leave • Emergency Backup Care • Long-Term, Short-Term Disability, and Critical Illness plans • Life Insurance • 401k/403B with Employer Match • Tuition Assistance - $5,250/year and discounted educational opportunities through Guild Education • Student Debt Pay Down - $10,000 • Reimbursement for certifications and free access to complete CEUs and professional development •Pet Insurance •Legal Resources Plan •Colleagues have the opportunity to earn an annual discretionary bonus ifestablished system and employee eligibility criteria is met. Sentara Health is an equal opportunity employer and prides itself on the diversity and inclusiveness of its close to an almost 30,000-member workforce. Diversity, inclusion, and belonging is a guiding principle of the organization to ensure its workforce reflects the communities it serves. In support of our mission "to improve health every day," this is a tobacco-free environment. For positions that are available as remote work, Sentara Health employs associates in the following states: Alabama, Delaware, Florida, Georgia, Idaho, Indiana, Kansas, Louisiana, Maine, Maryland, Minnesota, Nebraska, Nevada, New Hampshire, North Carolina, North Dakota, Ohio, Oklahoma, Pennsylvania, South Carolina, South Dakota, Tennessee, Texas, Utah, Virginia, Washington, West Virginia, Wisconsin, and Wyoming.
06/01/2026
Full time
City/State Norfolk, VA Work Shift First (Days) Overview: Sentara is hiring a ServiceNow Principal Domain Architect! This position is fully remote! Overview The domain architect proactively and holistically leads and supports EA activities that guide the development and management of domain and infrastructure solutions. These solutions enable the organization's future-state business capabilities and drive the organization's targeted business outcomes. Technologies include data centers, infrastructure, cloud, mobile, AI, Internet of Things (IoT), blockchain, edge computing, and immersive experiences technologies. Domain architects provide the leadership, facilitation, analysis, and design tasks required for the development of an enterprise's technical and infrastructure architecture. Domain architects create deliverables that help develop target-state guidance (standards, guidelines, individual parts, platforms, and configurations) for evolving the technical infrastructure across the enterprise, in order to enable business strategy and deliver targeted business outcomes. They enable and orchestrate the delivery of targeted business outcomes by facilitating and making technical decisions. A Specialist Professional is a recognized subject matter expert in a job area, typically obtained through advanced education and work experience. Responsibilities typically include • Managing large projects or processes with limited oversight from the manager. • Coaching, reviewing, and delegating work to lower-level professionals. • Problems faced are difficult and often complex. Education 8+ years of relevant experience with a degree (Required) or 10+ years of relevant experience without a degree (Required) Certification/Licensure ServiceNow Architect Certification (Preferred) Experience 10 to 12 years of ServiceNow experience over all ServiceNow experience (Required) Minimum 2 to 3 years of ServiceNow architect-level experience (Required) ServiceNow experienced, certified Architect Strong familiarity with ServiceNow Suite (e.g., ITSM, SPM, FSM, ITOM, IRM, EA etc) and platform wide analytics, AI, reporting and Virtual Agent a plus. Proven ability to communicate effectively with both business and technical stakeholders. Demonstrable ability to work independently, with a focus on best practice architectural design and analytical problem-solving and critical thinking. Familiarity with system/software engineering lifecycle principles, including requirements analysis, functional and technical solutions development, and application support. Experience working with large datasets, performing data analysis/modeling, and contributing insights for management decision-making. Talroo-IT, Indeed Benefits: Caring For Your Family and Your Career • Medical, Dental, Vision plans • Adoption, Fertility and Surrogacy Reimbursement up to $10,000 • Paid Time Off and Sick Leave • Paid Parental & Family Caregiver Leave • Emergency Backup Care • Long-Term, Short-Term Disability, and Critical Illness plans • Life Insurance • 401k/403B with Employer Match • Tuition Assistance - $5,250/year and discounted educational opportunities through Guild Education • Student Debt Pay Down - $10,000 • Reimbursement for certifications and free access to complete CEUs and professional development •Pet Insurance •Legal Resources Plan •Colleagues have the opportunity to earn an annual discretionary bonus ifestablished system and employee eligibility criteria is met. Sentara Health is an equal opportunity employer and prides itself on the diversity and inclusiveness of its close to an almost 30,000-member workforce. Diversity, inclusion, and belonging is a guiding principle of the organization to ensure its workforce reflects the communities it serves. In support of our mission "to improve health every day," this is a tobacco-free environment. For positions that are available as remote work, Sentara Health employs associates in the following states: Alabama, Delaware, Florida, Georgia, Idaho, Indiana, Kansas, Louisiana, Maine, Maryland, Minnesota, Nebraska, Nevada, New Hampshire, North Carolina, North Dakota, Ohio, Oklahoma, Pennsylvania, South Carolina, South Dakota, Tennessee, Texas, Utah, Virginia, Washington, West Virginia, Wisconsin, and Wyoming.
Senior Software Development Engineer, AWS Infrastructure Supply Chain Automation
Amazon Web Services, Inc. Seattle, Washington
AWS Infrastructure Services owns the design, planning, delivery, and operation of all AWS global infrastructure. In other words, we're the people who keep the cloud running. We support all AWS data centers and all of the servers, storage, networking, power, and cooling equipment that ensure our customers have continual access to the innovation they rely on. We work on the most challenging problems, with thousands of variables impacting the supply chain - and we're looking for talented people who want to help. You'll join a diverse team of software, hardware, and network engineers, supply chain specialists, security experts, operations managers, and other vital roles. You'll collaborate with people across AWS to help us deliver the highest standards for safety and security while providing seemingly infinite capacity at the lowest possible cost for our customers. And you'll experience an inclusive culture that welcomes bold ideas and empowers you to own them to completion. Come and be part of the AWS Supply Chain team and build systems that enable AWS to rapidly grow and continue to be the pioneer and widely recognized leader in Cloud Computing, and have direct and immediate impact on the hundreds of thousands developers and businesses around the world who use AWS every day. Supply Chain Management (SCM) systems are at heart of ensuring that we can provide our customers with the right computing services, in the right region, at the right time! The SCM team is responsible for building inventory and warehouse management systems that enable control of our global footprint for our hyper-growth cloud and automate the orchestration required to ensure physical and financial control of inventory. As a Senior Software Development Engineer on the team, you will be responsible guiding your team through the design, development, testing, and deployment of a range of products. In addition, you will help build the roadmaps for software teams, developing cutting edge experiences. You will have sound technical acumen, excellent project management skills, great communication skills, and hire, build, and develop your team. You are a true owner - you are deeply interested in product design and you innovate on behalf of our customers. We have a very flat team structure and offer a unique opportunity for technical leaders who want to work closely with the business in defining, designing, building and operating products that are used by millions of customers. Key job responsibilities - Participate in the design, implementation, and deployment of successful large-scale systems and services in support of our fulfillment operations and the businesses they support. - Participate in the definition of secure, scalable, and low-latency services and efficient physical processes. - Work in expert cross-functional teams delivering on demanding projects. - Functionally decompose complex problems into simple, straight-forward solutions. - Understand system interdependencies and limitations. - Share knowledge in performance, scalability, enterprise system architecture, and engineering best practices. If you have an entrepreneurial spirit, know how to deliver, are deeply technical, highly innovative and long for the opportunity to build pioneering solutions to challenging problems, we want to talk to you. About the team About AWS Diverse Experiences AWS values diverse experiences. Even if you do not meet all of the qualifications and skills listed in the job description, we encourage candidates to apply. If your career is just starting, hasn't followed a traditional path, or includes alternative experiences, don't let it stop you from applying. Why AWS? Amazon Web Services (AWS) is the world's most comprehensive and broadly adopted cloud platform. We pioneered cloud computing and never stopped innovating - that's why customers from the most successful startups to Global 500 companies trust our robust suite of products and services to power their businesses. Inclusive Team Culture Here at AWS, it's in our nature to learn and be curious. Our employee-led affinity groups foster a culture of inclusion that empower us to be proud of our differences. Ongoing events and learning experiences, including our Conversations on Race and Ethnicity (CORE) and AmazeCon (gender diversity) conferences, inspire us to never stop embracing our uniqueness. Mentorship & Career Growth We're continuously raising our performance bar as we strive to become Earth's Best Employer. That's why you'll find endless knowledge-sharing, mentorship and other career-advancing resources here to help you develop into a better-rounded professional. Work/Life Balance We value work-life harmony. Achieving success at work should never come at the expense of sacrifices at home, which is why we strive for flexibility as part of our working culture. When we feel supported in the workplace and at home, there's nothing we can't achieve in the cloud. BASIC QUALIFICATIONS - 6+ years of non-internship professional software development experience - 6+ years of programming with at least one software programming language experience - 5+ years of leading design or architecture (design patterns, reliability and scaling) of new and existing systems experience - Experience as a mentor, tech lead or leading an engineering team - Bachelor's degree PREFERRED QUALIFICATIONS - 6+ years of full software development life cycle, including coding standards, code reviews, source control management, build processes, testing, and operations experience - Master's degree in computer science or equivalent - Knowledge of Machine Learning and LLM fundamentals, including transformer architecture, training/inference lifecycles, and optimization techniques Amazon is an equal opportunity employer and does not discriminate on the basis of protected veteran status, disability, or other legally protected status. Our inclusive culture empowers Amazonians to deliver the best results for our customers. If you have a disability and need a workplace accommodation or adjustment during the application and hiring process, including support for the interview or onboarding process, please visit for more information. If the country/region you're applying in isn't listed, please contact your Recruiting Partner. The base salary range for this position is listed below. Your Amazon package will include sign-on payments and restricted stock units (RSUs). Final compensation will be determined based on factors including experience, qualifications, and location. Amazon also offers comprehensive benefits including health insurance (medical, dental, vision, prescription, Basic Life & AD&D insurance and option for Supplemental life plans, EAP, Mental Health Support, Medical Advice Line, Flexible Spending Accounts, Adoption and Surrogacy Reimbursement coverage), 401(k) matching, paid time off, and parental leave. Learn more about our benefits at . USA, WA, Seattle - 168 400.00 USD annually
06/01/2026
Full time
AWS Infrastructure Services owns the design, planning, delivery, and operation of all AWS global infrastructure. In other words, we're the people who keep the cloud running. We support all AWS data centers and all of the servers, storage, networking, power, and cooling equipment that ensure our customers have continual access to the innovation they rely on. We work on the most challenging problems, with thousands of variables impacting the supply chain - and we're looking for talented people who want to help. You'll join a diverse team of software, hardware, and network engineers, supply chain specialists, security experts, operations managers, and other vital roles. You'll collaborate with people across AWS to help us deliver the highest standards for safety and security while providing seemingly infinite capacity at the lowest possible cost for our customers. And you'll experience an inclusive culture that welcomes bold ideas and empowers you to own them to completion. Come and be part of the AWS Supply Chain team and build systems that enable AWS to rapidly grow and continue to be the pioneer and widely recognized leader in Cloud Computing, and have direct and immediate impact on the hundreds of thousands developers and businesses around the world who use AWS every day. Supply Chain Management (SCM) systems are at heart of ensuring that we can provide our customers with the right computing services, in the right region, at the right time! The SCM team is responsible for building inventory and warehouse management systems that enable control of our global footprint for our hyper-growth cloud and automate the orchestration required to ensure physical and financial control of inventory. As a Senior Software Development Engineer on the team, you will be responsible guiding your team through the design, development, testing, and deployment of a range of products. In addition, you will help build the roadmaps for software teams, developing cutting edge experiences. You will have sound technical acumen, excellent project management skills, great communication skills, and hire, build, and develop your team. You are a true owner - you are deeply interested in product design and you innovate on behalf of our customers. We have a very flat team structure and offer a unique opportunity for technical leaders who want to work closely with the business in defining, designing, building and operating products that are used by millions of customers. Key job responsibilities - Participate in the design, implementation, and deployment of successful large-scale systems and services in support of our fulfillment operations and the businesses they support. - Participate in the definition of secure, scalable, and low-latency services and efficient physical processes. - Work in expert cross-functional teams delivering on demanding projects. - Functionally decompose complex problems into simple, straight-forward solutions. - Understand system interdependencies and limitations. - Share knowledge in performance, scalability, enterprise system architecture, and engineering best practices. If you have an entrepreneurial spirit, know how to deliver, are deeply technical, highly innovative and long for the opportunity to build pioneering solutions to challenging problems, we want to talk to you. About the team About AWS Diverse Experiences AWS values diverse experiences. Even if you do not meet all of the qualifications and skills listed in the job description, we encourage candidates to apply. If your career is just starting, hasn't followed a traditional path, or includes alternative experiences, don't let it stop you from applying. Why AWS? Amazon Web Services (AWS) is the world's most comprehensive and broadly adopted cloud platform. We pioneered cloud computing and never stopped innovating - that's why customers from the most successful startups to Global 500 companies trust our robust suite of products and services to power their businesses. Inclusive Team Culture Here at AWS, it's in our nature to learn and be curious. Our employee-led affinity groups foster a culture of inclusion that empower us to be proud of our differences. Ongoing events and learning experiences, including our Conversations on Race and Ethnicity (CORE) and AmazeCon (gender diversity) conferences, inspire us to never stop embracing our uniqueness. Mentorship & Career Growth We're continuously raising our performance bar as we strive to become Earth's Best Employer. That's why you'll find endless knowledge-sharing, mentorship and other career-advancing resources here to help you develop into a better-rounded professional. Work/Life Balance We value work-life harmony. Achieving success at work should never come at the expense of sacrifices at home, which is why we strive for flexibility as part of our working culture. When we feel supported in the workplace and at home, there's nothing we can't achieve in the cloud. BASIC QUALIFICATIONS - 6+ years of non-internship professional software development experience - 6+ years of programming with at least one software programming language experience - 5+ years of leading design or architecture (design patterns, reliability and scaling) of new and existing systems experience - Experience as a mentor, tech lead or leading an engineering team - Bachelor's degree PREFERRED QUALIFICATIONS - 6+ years of full software development life cycle, including coding standards, code reviews, source control management, build processes, testing, and operations experience - Master's degree in computer science or equivalent - Knowledge of Machine Learning and LLM fundamentals, including transformer architecture, training/inference lifecycles, and optimization techniques Amazon is an equal opportunity employer and does not discriminate on the basis of protected veteran status, disability, or other legally protected status. Our inclusive culture empowers Amazonians to deliver the best results for our customers. If you have a disability and need a workplace accommodation or adjustment during the application and hiring process, including support for the interview or onboarding process, please visit for more information. If the country/region you're applying in isn't listed, please contact your Recruiting Partner. The base salary range for this position is listed below. Your Amazon package will include sign-on payments and restricted stock units (RSUs). Final compensation will be determined based on factors including experience, qualifications, and location. Amazon also offers comprehensive benefits including health insurance (medical, dental, vision, prescription, Basic Life & AD&D insurance and option for Supplemental life plans, EAP, Mental Health Support, Medical Advice Line, Flexible Spending Accounts, Adoption and Surrogacy Reimbursement coverage), 401(k) matching, paid time off, and parental leave. Learn more about our benefits at . USA, WA, Seattle - 168 400.00 USD annually
Principal Cloud Security Engineer
BMO Financial Chicago, Illinois
Application Deadline: 07/30/2026 Address: 320 S Canal Street Job Family Group: Technology We are seeking an enthusiastic and passionate professional for a Senior Cloud, AI & Data Security Engineer role who wants to design and implement security solutions for systems and services across AWS, Azure, and AI/ML platforms. We need someone who can establish the highest standards that meet and exceed security governance solutions and practices, provide assurance to management and auditors, and ensure sustained protection by embedding controls in operational and DevOps (CI/CD) practices with a focus on automation. We are looking for someone who has a high level of technical security expertise and who takes seriously the responsibility of monitoring, detecting, protecting, and maintaining the security of data, AI/ML systems, cloud platforms, and networks. You are a leader with a strong technical background. You have demonstrated strength in: Developing and implementing secure cloud and AI/ML architectures using a risk-based cybersecurity and data privacy strategy Defining security patterns, roadmaps, and operating models that leverage collaboration Facilitating industry-standard information security governance Advising senior leadership on cybersecurity, AI risk, and privacy risks, threats, and investment strategies Documenting appropriate policies and procedures to manage information security risks, including those unique to AI/ML systems and sensitive data assets As a qualified candidate, you will be part of the team driving BMO's Cloud, AI, and Data Security implementation. As a member of this team, you should possess the ability to inspire yourself and all of our team. Based on your previous experiences, you will inject new knowledge and skills into an already high-performing team, thus elevating our efforts to new heights. Your Responsibilities Cloud Security Assess, design, implement, automate, and document security solutions, controls, and processes for Amazon Web Services (AWS) and Microsoft Azure cloud platforms Develop and maintain security patterns for cloud platforms and services; assess all cloud patterns to ensure adherence to best security practices and controls Design and implement security baseline controls for Cloud Services for integration into the CI/CD process Build and deliver policies as code, automating security controls and best practices Review and approve code and changes with security implications (e.g., IAM Roles and Policies, Security Groups, etc.) Be the cloud security subject matter expert for the Cloud Engineering group and its partners in any IaaS, PaaS, and SaaS implementations AI & Machine Learning Security Define and implement a security framework for AI/ML systems, covering the full model lifecycle from data ingestion and training to deployment and monitoring Assess and mitigate AI-specific threats including adversarial attacks, model inversion, data poisoning, prompt injection, and model theft Evaluate and secure AI/ML platforms and tools (e.g., Amazon SageMaker, Azure Machine Learning, Hugging Face, OpenAI APIs) against organizational risk standards Collaborate with data science and AI engineering teams to integrate security controls into MLOps pipelines, ensuring model integrity, access controls, and auditability Monitor emerging AI threat landscapes and regulatory developments (e.g., EU AI Act, NIST AI RMF) and translate these into actionable organizational controls Data Security Implement and manage data security posture management (DSPM) tools to continuously monitor sensitive data exposure across cloud environments Establish controls for structured and unstructured data stores, including databases, data lakes, data warehouses (e.g., Snowflake, AWS S3, Azure Data Lake), and file sharing platforms Drive the adoption of data-centric security practices within application development and analytics teams General Security Leadership Provide subject matter expertise on architecture, authentication, and systems security based on a clear understanding of the engineering stack, services, and data flow Lead focused and continuous cybersecurity risk assessments of new and existing technologies - including AI/ML systems and data platforms - to identify risks and appropriate controls that balance security and operability Provide effective and pragmatic cybersecurity guidance upfront in major technology projects to enable the business to innovate securely Assist in the investigation and remediation of security incidents and issues, including those involving AI model compromise or data breaches Work closely with Information Security, product, and software development teams to assess cybersecurity risk and recommend solutions in cloud, AI, and data environments Your Mindset You are a self-starter, driven, and can handle multiple projects and priorities You are passionate about driving the DevSecOps and MLSecOps mindset and culture in a fast-paced, challenging environment where you get the opportunity to work with the latest tools and technologies You understand the intersection of security, AI, and data, and actively seek to build bridges between these disciplines You are actively looking to improve the solutions you implement, understand the efficacy of collaboration, and are keen to work in a team of CI/CD, infrastructure, AI, and data specialists You are energized by the rapidly evolving AI threat landscape and bring intellectual curiosity and practical judgment to navigating ambiguity As a member of this team, you will inject new knowledge and skills into an already high-performing team, elevating our collective efforts to new heights Required Core Skills Foundational A university degree in Engineering, Computer Science, Information Technology, or a related field 7-10 years of experience developing and implementing security architectures and/or engineering, with demonstrated breadth across cloud, data, and/or AI security domains Security certifications such as CISSP, CCSP, CCSK, or any Cloud Security Specialty certification (e.g., AWS Certified Security Specialty, Microsoft Certified: Azure Security Engineer Associate) Emerging/preferred: Certifications or demonstrated knowledge in AI security (e.g., CDAI, CompTIA AI+, or equivalent vendor-specific AI security training) or data security (e.g., CDPSE, CIPP) Cloud Security Demonstrated knowledge of cloud architecture, cloud operations, cloud-based identity and access management, security automation, and orchestration Extensive experience with cloud-native security solutions and tools (e.g., AWS Security Hub, AWS GuardDuty, Microsoft Defender for Cloud, Azure Sentinel) Knowledge of technical security control environments and compliance frameworks including CSA CCM, ISO 27001, ISO 27017, and NIST CSF AI & ML Security Working knowledge of AI/ML development frameworks and platforms (e.g., TensorFlow, PyTorch, SageMaker, Azure ML) and associated security risks Familiarity with the OWASP Top 10 for LLMs, MITRE ATLAS, and NIST AI Risk Management Framework (AI RMF) Understanding of MLOps pipeline security, including securing model registries, feature stores, training environments, and inference endpoints Knowledge of Generative AI security risks, including prompt injection, jailbreaking, data leakage via LLMs, and supply chain risks in AI model dependencies Data Security Experience implementing data loss prevention (DLP), data classification, and data access governance solutions in enterprise environments Knowledge of DSPM tools and practices Understanding of data encryption at rest and in transit, tokenization, and key management for large-scale data environments Familiarity with data privacy regulations (e.g., PIPEDA, GDPR, CCPA) and their technical implementation requirements Experience securing cloud-based data platforms such as Snowflake, Databricks, AWS Redshift, Azure Synapse, or equivalent Technical Skills Firm grasp of networking protocols and operations; comfortable with packet analysis tools such as Wireshark, Burp Suite, nmap, Nessus, and Metasploit Knowledge of theoretical and applied cryptography, key management, and cryptographic algorithms (RSA, AES, TLS, PKI, etc.) Knowledge of Identity and Access Management (IAM) concepts including SSO, SAML, federated identity, RBAC, and OAuth/OIDC Strong scripting and programming skills with experience in Python, PowerShell, Bash, Node.js, and API/webhook development Experience with Infrastructure as Code (IaC) security scanning tools (e.g., Checkov, tfsec, Prisma Cloud) Interpersonal & Leadership Demonstrable internal and external relationship-building skills with the ability to clearly articulate complex security concepts across a diverse corporate culture Ability to lead in-depth workshops across a broad range of topics including . click apply for full job details
06/01/2026
Full time
Application Deadline: 07/30/2026 Address: 320 S Canal Street Job Family Group: Technology We are seeking an enthusiastic and passionate professional for a Senior Cloud, AI & Data Security Engineer role who wants to design and implement security solutions for systems and services across AWS, Azure, and AI/ML platforms. We need someone who can establish the highest standards that meet and exceed security governance solutions and practices, provide assurance to management and auditors, and ensure sustained protection by embedding controls in operational and DevOps (CI/CD) practices with a focus on automation. We are looking for someone who has a high level of technical security expertise and who takes seriously the responsibility of monitoring, detecting, protecting, and maintaining the security of data, AI/ML systems, cloud platforms, and networks. You are a leader with a strong technical background. You have demonstrated strength in: Developing and implementing secure cloud and AI/ML architectures using a risk-based cybersecurity and data privacy strategy Defining security patterns, roadmaps, and operating models that leverage collaboration Facilitating industry-standard information security governance Advising senior leadership on cybersecurity, AI risk, and privacy risks, threats, and investment strategies Documenting appropriate policies and procedures to manage information security risks, including those unique to AI/ML systems and sensitive data assets As a qualified candidate, you will be part of the team driving BMO's Cloud, AI, and Data Security implementation. As a member of this team, you should possess the ability to inspire yourself and all of our team. Based on your previous experiences, you will inject new knowledge and skills into an already high-performing team, thus elevating our efforts to new heights. Your Responsibilities Cloud Security Assess, design, implement, automate, and document security solutions, controls, and processes for Amazon Web Services (AWS) and Microsoft Azure cloud platforms Develop and maintain security patterns for cloud platforms and services; assess all cloud patterns to ensure adherence to best security practices and controls Design and implement security baseline controls for Cloud Services for integration into the CI/CD process Build and deliver policies as code, automating security controls and best practices Review and approve code and changes with security implications (e.g., IAM Roles and Policies, Security Groups, etc.) Be the cloud security subject matter expert for the Cloud Engineering group and its partners in any IaaS, PaaS, and SaaS implementations AI & Machine Learning Security Define and implement a security framework for AI/ML systems, covering the full model lifecycle from data ingestion and training to deployment and monitoring Assess and mitigate AI-specific threats including adversarial attacks, model inversion, data poisoning, prompt injection, and model theft Evaluate and secure AI/ML platforms and tools (e.g., Amazon SageMaker, Azure Machine Learning, Hugging Face, OpenAI APIs) against organizational risk standards Collaborate with data science and AI engineering teams to integrate security controls into MLOps pipelines, ensuring model integrity, access controls, and auditability Monitor emerging AI threat landscapes and regulatory developments (e.g., EU AI Act, NIST AI RMF) and translate these into actionable organizational controls Data Security Implement and manage data security posture management (DSPM) tools to continuously monitor sensitive data exposure across cloud environments Establish controls for structured and unstructured data stores, including databases, data lakes, data warehouses (e.g., Snowflake, AWS S3, Azure Data Lake), and file sharing platforms Drive the adoption of data-centric security practices within application development and analytics teams General Security Leadership Provide subject matter expertise on architecture, authentication, and systems security based on a clear understanding of the engineering stack, services, and data flow Lead focused and continuous cybersecurity risk assessments of new and existing technologies - including AI/ML systems and data platforms - to identify risks and appropriate controls that balance security and operability Provide effective and pragmatic cybersecurity guidance upfront in major technology projects to enable the business to innovate securely Assist in the investigation and remediation of security incidents and issues, including those involving AI model compromise or data breaches Work closely with Information Security, product, and software development teams to assess cybersecurity risk and recommend solutions in cloud, AI, and data environments Your Mindset You are a self-starter, driven, and can handle multiple projects and priorities You are passionate about driving the DevSecOps and MLSecOps mindset and culture in a fast-paced, challenging environment where you get the opportunity to work with the latest tools and technologies You understand the intersection of security, AI, and data, and actively seek to build bridges between these disciplines You are actively looking to improve the solutions you implement, understand the efficacy of collaboration, and are keen to work in a team of CI/CD, infrastructure, AI, and data specialists You are energized by the rapidly evolving AI threat landscape and bring intellectual curiosity and practical judgment to navigating ambiguity As a member of this team, you will inject new knowledge and skills into an already high-performing team, elevating our collective efforts to new heights Required Core Skills Foundational A university degree in Engineering, Computer Science, Information Technology, or a related field 7-10 years of experience developing and implementing security architectures and/or engineering, with demonstrated breadth across cloud, data, and/or AI security domains Security certifications such as CISSP, CCSP, CCSK, or any Cloud Security Specialty certification (e.g., AWS Certified Security Specialty, Microsoft Certified: Azure Security Engineer Associate) Emerging/preferred: Certifications or demonstrated knowledge in AI security (e.g., CDAI, CompTIA AI+, or equivalent vendor-specific AI security training) or data security (e.g., CDPSE, CIPP) Cloud Security Demonstrated knowledge of cloud architecture, cloud operations, cloud-based identity and access management, security automation, and orchestration Extensive experience with cloud-native security solutions and tools (e.g., AWS Security Hub, AWS GuardDuty, Microsoft Defender for Cloud, Azure Sentinel) Knowledge of technical security control environments and compliance frameworks including CSA CCM, ISO 27001, ISO 27017, and NIST CSF AI & ML Security Working knowledge of AI/ML development frameworks and platforms (e.g., TensorFlow, PyTorch, SageMaker, Azure ML) and associated security risks Familiarity with the OWASP Top 10 for LLMs, MITRE ATLAS, and NIST AI Risk Management Framework (AI RMF) Understanding of MLOps pipeline security, including securing model registries, feature stores, training environments, and inference endpoints Knowledge of Generative AI security risks, including prompt injection, jailbreaking, data leakage via LLMs, and supply chain risks in AI model dependencies Data Security Experience implementing data loss prevention (DLP), data classification, and data access governance solutions in enterprise environments Knowledge of DSPM tools and practices Understanding of data encryption at rest and in transit, tokenization, and key management for large-scale data environments Familiarity with data privacy regulations (e.g., PIPEDA, GDPR, CCPA) and their technical implementation requirements Experience securing cloud-based data platforms such as Snowflake, Databricks, AWS Redshift, Azure Synapse, or equivalent Technical Skills Firm grasp of networking protocols and operations; comfortable with packet analysis tools such as Wireshark, Burp Suite, nmap, Nessus, and Metasploit Knowledge of theoretical and applied cryptography, key management, and cryptographic algorithms (RSA, AES, TLS, PKI, etc.) Knowledge of Identity and Access Management (IAM) concepts including SSO, SAML, federated identity, RBAC, and OAuth/OIDC Strong scripting and programming skills with experience in Python, PowerShell, Bash, Node.js, and API/webhook development Experience with Infrastructure as Code (IaC) security scanning tools (e.g., Checkov, tfsec, Prisma Cloud) Interpersonal & Leadership Demonstrable internal and external relationship-building skills with the ability to clearly articulate complex security concepts across a diverse corporate culture Ability to lead in-depth workshops across a broad range of topics including . click apply for full job details
Senior Endpoint Management Specialist - ITS
InsideHigherEd Albany, New York
Category:: Professional Subscribe:: Department:: Information Technology Services - 02007 Locations:: Albany, NY Posted:: Sep 10, 2025 Closes:: Open Until Filled Type:: Full-time Ref. No.:: WF240297r Position ID:: 192683 About University at Albany: Established in 1844 and designated a University Center of the State University of New York in 1962, the University at Albany's broad mission of excellence in undergraduate and graduate education, research, and public service engages a diverse student body of more than 17,000 students in nine schools and colleges across three campuses. Located in Albany, New York, New York State's capital, the University is convenient to Boston, New York City, and the Adirondacks. Job Description: Information Technology Services (ITS), the central IT provider at the University at Albany, seeks applicants for a Desktop and Mobile Computing (D&MC) Senior Endpoint Management Specialist. ITS manages and supports nearly 7,000 university-owned faculty/staff, classroom, conference room, and research lab desktops and mobile devices. The D&MC Endpoint Management Specialist is a senior position that is key to continuous improvement and delivery of services in this large-scale operation. The D&MC Senior Endpoint Management Specialist is a subject matter expert in desktop and mobile computing and provides technical leadership within service teams. They address and resolve complex and non-standard requests and issues. They develop and maintain strong expertise in enterprise management applications and tools (i.e., Active Directory, MECM, AllSight, Jamf, etc.) and steer the selection and usage of each in achieving ITS' goals and adhering to ITS' principles and standards. The D&MC Senior Endpoint Management Specialist understands the importance of well-defined processes and promoting their adoption across large service teams to successfully manage the pace and volume of work required to support thousands of devices. The successful Senior Endpoint Management Specialist independently identifies process challenges and recommends and assists in implementing actionable improvements and solutions to the D&MC Manager. They monitor the flow of real-time work and act to address operational problems. Under the leadership and direction of the D&MC Manager, the Senior Endpoint Management Specialist is responsible for ensuring internal and customer-facing documentation is created, accurate, and updated regularly. They understand the value of documentation in promoting clarity and cohesion for large service teams. Primary Responsibilities: Enterprise management applications and tools (i.e., Active Directory, MECM, AllSight, Jamf, etc.) Ensure that all enterprise desktop and mobile device management applications and tools are maintained, and versions updated in a timely fashion and adhere to ITS standards, controls, security policies and procedures. Build and maintain advanced technical expertise in ITS' enterprise desktop and mobile device management applications and tools. Stay abreast of advances in the field and steer technical direction in D&MC, following ITS' architecture review protocols. Asset inventory maintenance, cyclical planning, budgeting, and related projects Develop and maintain a strong understanding of how the inventory data structure, operational processes to add/remove/update records, inventory dashboards and reports, and project workload planning all play a role in planning cyclic replacement of all D&MC assets. Regularly report on anomalies and potential problems in the asset inventories for all supported services and work to resolve. Maintain, provide reports and update replacement schedule and replacement cost fields in the asset inventories for all supported service areas to support budgeting and planning processes. Endpoints service standards, efficient operations and consistent user experiences Provide subject matter expertise, oversee and continuously evaluate hardware and software deployment and support processes, their effectiveness and recommend improvements. Determine and document the standard workstation and printer models and configurations for various use cases including fac/staff, classrooms, conference rooms, research labs; refresh standards, as needed. Oversee the internal and external documentation and maintain all approved desktop and mobile computing standards for the University. Regularly report on workstation hardware, operating systems, software, and printers at risk or outside of defined standards and work to resolve. Determine and document operating system versions used for deployments; determine and manage upgrade cycles. Provide day-to-day operational oversight of operations and service offerings Prepare technical diagrams, configuration logs, process maps, internal and external knowledge base articles, and other documentation, as needed. Provide subject matter expertise, technical support and collaborate across ITS teams and on projects to identify problems, devise creative solutions, and implement proposed recommendations. Other reasonable duties as assigned. Project Management Serve as Project Manager on D&MC projects. Actively participate, as needed, in ITS projects related to your service(s). Functional and Supervisory Relationships: Reports to: Manager of Desktop and Mobile Computing Services Supervises the following positions: None Interacts with: ITS staff; faculty and staff in academic, research, and business units; external vendors/contractors/consultants; peer institutions Job Requirements: Excellent interpersonal, oral, and written communication skills. Organize work, prioritize tasks, and manage multiple and changing priorities. Provide scheduled support and consultation outside normal business hours, including occasional evenings, holidays, or weekends, within reasonable professional obligation and expectation. Report to campus in-person on Mondays, Wednesdays, Fridays, and as needed. This position is eligible to telecommute on Tuesdays and Thursdays, following a probationary period and with supervisor approval. Requirements: Minimum Qualifications: A bachelor's degree from a college or university accredited by a U.S. Department of Education (DOE) or internationally recognized accrediting organization, or at least 6 years of full-time professional experience related to the role. Minimum of 3 years' experience building operating systems and application deployments in a large, complex environment. Minimum of 3 years' experience documenting deployment processes that can be replicated/implemented by field staff. Minimum of 3 years' experience supporting desktops and mobile devices, IT operations, or systems administration addressing and resolving issues escalated for higher level support. Applicants must demonstrate an ability to develop inclusive and equitable relationships within our diverse campus community Applicants must demonstrate an ability to support diversity, equity, access, inclusion, and belonging relative to their role Preferred Qualifications: Minimum of 3 years' experience using Microsoft Endpoint Configuration Manager (MECM); for operating system deployments, application packaging and deployment, and workstation security/patch management. Minimum of 3 years' experience using and maintaining active directory and group policy. Minimum of 3 years' experience developing and continuously maintaining technical documentation within a knowledge base repository. Experience configuring and managing a Microsoft mobile device management (MDM) system such as Microsoft Intune. Experience configuring and managing an Apple mobile device management (MDM) system such as Jamf Pro. Experience using PowerShell (or similar scripting language) to manage workstations, users, AD. Experience using and supporting workstations running Linux operating systems. Working Environment: Typical office environment Additional Information: Professional Rank and Salary Grade: Senior Programmer/Analyst, SL-4, $85,000-$95,000 Special Note: Visa sponsorship is not available for this position. If you currently need sponsorship or will need it in the future to maintain employment authorization, you do not meet eligibility requirements. Additionally, please note that UAlbany is not an E-Verify employer. The Jeanne Clery Disclosure of Campus Security Policy and Campus Crime Statistics Act, or Clery Act, mandates that all Title IV institutions, without exception, prepare, publish and distribute an Annual Security Report. This report consists of two basic parts: disclosure of the University's crime statistics for the past three years; and disclosures regarding the University's current campus security policies. The University at Albany's Annual Security Report is available in portable document format PDF by clicking this link Pursuant to NYS Labor Law 194-A, no State entity, as defined by the Law, is permitted to rely on, orally or in writing seek, request, or require in any form, that an applicant for employment provide his or her current wage, or salary history as a condition to be interviewed . click apply for full job details
01/14/2026
Full time
Category:: Professional Subscribe:: Department:: Information Technology Services - 02007 Locations:: Albany, NY Posted:: Sep 10, 2025 Closes:: Open Until Filled Type:: Full-time Ref. No.:: WF240297r Position ID:: 192683 About University at Albany: Established in 1844 and designated a University Center of the State University of New York in 1962, the University at Albany's broad mission of excellence in undergraduate and graduate education, research, and public service engages a diverse student body of more than 17,000 students in nine schools and colleges across three campuses. Located in Albany, New York, New York State's capital, the University is convenient to Boston, New York City, and the Adirondacks. Job Description: Information Technology Services (ITS), the central IT provider at the University at Albany, seeks applicants for a Desktop and Mobile Computing (D&MC) Senior Endpoint Management Specialist. ITS manages and supports nearly 7,000 university-owned faculty/staff, classroom, conference room, and research lab desktops and mobile devices. The D&MC Endpoint Management Specialist is a senior position that is key to continuous improvement and delivery of services in this large-scale operation. The D&MC Senior Endpoint Management Specialist is a subject matter expert in desktop and mobile computing and provides technical leadership within service teams. They address and resolve complex and non-standard requests and issues. They develop and maintain strong expertise in enterprise management applications and tools (i.e., Active Directory, MECM, AllSight, Jamf, etc.) and steer the selection and usage of each in achieving ITS' goals and adhering to ITS' principles and standards. The D&MC Senior Endpoint Management Specialist understands the importance of well-defined processes and promoting their adoption across large service teams to successfully manage the pace and volume of work required to support thousands of devices. The successful Senior Endpoint Management Specialist independently identifies process challenges and recommends and assists in implementing actionable improvements and solutions to the D&MC Manager. They monitor the flow of real-time work and act to address operational problems. Under the leadership and direction of the D&MC Manager, the Senior Endpoint Management Specialist is responsible for ensuring internal and customer-facing documentation is created, accurate, and updated regularly. They understand the value of documentation in promoting clarity and cohesion for large service teams. Primary Responsibilities: Enterprise management applications and tools (i.e., Active Directory, MECM, AllSight, Jamf, etc.) Ensure that all enterprise desktop and mobile device management applications and tools are maintained, and versions updated in a timely fashion and adhere to ITS standards, controls, security policies and procedures. Build and maintain advanced technical expertise in ITS' enterprise desktop and mobile device management applications and tools. Stay abreast of advances in the field and steer technical direction in D&MC, following ITS' architecture review protocols. Asset inventory maintenance, cyclical planning, budgeting, and related projects Develop and maintain a strong understanding of how the inventory data structure, operational processes to add/remove/update records, inventory dashboards and reports, and project workload planning all play a role in planning cyclic replacement of all D&MC assets. Regularly report on anomalies and potential problems in the asset inventories for all supported services and work to resolve. Maintain, provide reports and update replacement schedule and replacement cost fields in the asset inventories for all supported service areas to support budgeting and planning processes. Endpoints service standards, efficient operations and consistent user experiences Provide subject matter expertise, oversee and continuously evaluate hardware and software deployment and support processes, their effectiveness and recommend improvements. Determine and document the standard workstation and printer models and configurations for various use cases including fac/staff, classrooms, conference rooms, research labs; refresh standards, as needed. Oversee the internal and external documentation and maintain all approved desktop and mobile computing standards for the University. Regularly report on workstation hardware, operating systems, software, and printers at risk or outside of defined standards and work to resolve. Determine and document operating system versions used for deployments; determine and manage upgrade cycles. Provide day-to-day operational oversight of operations and service offerings Prepare technical diagrams, configuration logs, process maps, internal and external knowledge base articles, and other documentation, as needed. Provide subject matter expertise, technical support and collaborate across ITS teams and on projects to identify problems, devise creative solutions, and implement proposed recommendations. Other reasonable duties as assigned. Project Management Serve as Project Manager on D&MC projects. Actively participate, as needed, in ITS projects related to your service(s). Functional and Supervisory Relationships: Reports to: Manager of Desktop and Mobile Computing Services Supervises the following positions: None Interacts with: ITS staff; faculty and staff in academic, research, and business units; external vendors/contractors/consultants; peer institutions Job Requirements: Excellent interpersonal, oral, and written communication skills. Organize work, prioritize tasks, and manage multiple and changing priorities. Provide scheduled support and consultation outside normal business hours, including occasional evenings, holidays, or weekends, within reasonable professional obligation and expectation. Report to campus in-person on Mondays, Wednesdays, Fridays, and as needed. This position is eligible to telecommute on Tuesdays and Thursdays, following a probationary period and with supervisor approval. Requirements: Minimum Qualifications: A bachelor's degree from a college or university accredited by a U.S. Department of Education (DOE) or internationally recognized accrediting organization, or at least 6 years of full-time professional experience related to the role. Minimum of 3 years' experience building operating systems and application deployments in a large, complex environment. Minimum of 3 years' experience documenting deployment processes that can be replicated/implemented by field staff. Minimum of 3 years' experience supporting desktops and mobile devices, IT operations, or systems administration addressing and resolving issues escalated for higher level support. Applicants must demonstrate an ability to develop inclusive and equitable relationships within our diverse campus community Applicants must demonstrate an ability to support diversity, equity, access, inclusion, and belonging relative to their role Preferred Qualifications: Minimum of 3 years' experience using Microsoft Endpoint Configuration Manager (MECM); for operating system deployments, application packaging and deployment, and workstation security/patch management. Minimum of 3 years' experience using and maintaining active directory and group policy. Minimum of 3 years' experience developing and continuously maintaining technical documentation within a knowledge base repository. Experience configuring and managing a Microsoft mobile device management (MDM) system such as Microsoft Intune. Experience configuring and managing an Apple mobile device management (MDM) system such as Jamf Pro. Experience using PowerShell (or similar scripting language) to manage workstations, users, AD. Experience using and supporting workstations running Linux operating systems. Working Environment: Typical office environment Additional Information: Professional Rank and Salary Grade: Senior Programmer/Analyst, SL-4, $85,000-$95,000 Special Note: Visa sponsorship is not available for this position. If you currently need sponsorship or will need it in the future to maintain employment authorization, you do not meet eligibility requirements. Additionally, please note that UAlbany is not an E-Verify employer. The Jeanne Clery Disclosure of Campus Security Policy and Campus Crime Statistics Act, or Clery Act, mandates that all Title IV institutions, without exception, prepare, publish and distribute an Annual Security Report. This report consists of two basic parts: disclosure of the University's crime statistics for the past three years; and disclosures regarding the University's current campus security policies. The University at Albany's Annual Security Report is available in portable document format PDF by clicking this link Pursuant to NYS Labor Law 194-A, no State entity, as defined by the Law, is permitted to rely on, orally or in writing seek, request, or require in any form, that an applicant for employment provide his or her current wage, or salary history as a condition to be interviewed . click apply for full job details
Enterprise Learning Systems Programmer/Analyst
InsideHigherEd Saratoga Springs, New York
Enterprise Learning Systems Programmer/Analyst SUNY Empire is seeking a skilled Enterprise Learning Systems Programmer/Analyst to support the data integrations, technical operations, and ongoing needs of our Learning Management System (D2L Brightspace). This role will be central to ensuring seamless data flow between the University's Student Information System (Banner) and Brightspace, while also providing technical expertise to the Empire Online department (comprised of Instructional Designers, Instructional Technologists, Learning Management System Administrators, and Digital Accessibility Specialists). The selected incumbent will play a critical role in maintaining reliable integrations, supporting data-driven decision making, and ensuring that the institution's learning technologies function smoothly for students, faculty, and staff. The Enterprise Learning Systems Programmer/Analyst will also serve as a member of the Brightspace Operations Committee and will work closely with colleagues in Academic Affairs to align technical solutions with teaching and learning needs across the university. Primary responsibilities include: Develop, maintain, and optimize integrations between Banner SIS and D2L Brightspace. Design, maintain, and document API integrations, with emphasis on RESTful APIs, to support secure and efficient data exchange. Collaborate with DLE, IT staff, and Academic Affairs to ensure accurate and timely data flow across systems. Serve as a contributing member of the Brightspace Operations Committee, representing integration and technical perspectives. Troubleshoot and resolve technical issues related to data integrations, synchronization, and system interoperability. Support technical needs for the Empire Online department, including maintaining workflows, automation, and reporting. Implement, test, and document updates, patches, and custom integration solutions. Develop and maintain clear documentation of process, integration workflows, and technical standards to support continuity and best practices. Contribute technical expertise to projects involving course migrations, data reporting, or system enhancements. Ensure compliance with institutional policies, data security standards, FERPA, and accessibility requirements. Job Requirements: Required Qualifications: Bachelor's degree from a regionally accredited college or university and a minimum of 2 years' applicable programming experience; OR an Associate's degree and a minimum of 4 years' applicable programming experience. Hands-on experience with Student Information and Learning Management Systems. Proven background in system integrations with APIs, including RESTful API development and support. Proficiency in programming and scripting languages (e.g., Python, Java, SQL, XML, JSON). Experience working with web services (REST, SOAP) and middleware technologies. Strong problem-solving skills with the ability to troubleshoot integration and data exchange issues independently. Excellent communication skills and ability to collaborate across functional teams, including Academic Affairs. Preferred Qualifications: Banner SIS and D2L Brightspace experience in Higher Education. Familiarity with Brightspace integration architecture. Knowledge of data security, FERPA compliance, and accessibility standards (WCAG/ADA). Experience supporting technical projects in Educational Technology or instructional technology contexts. Special Information: Occasional travel may be required to fulfill department and university-wide commitments. Applicants must be currently authorized to work in the United States on a full-time basis. VISA sponsorship is not available for this position. SUNY Empire provides employees with flexible work options to meet the needs of students, faculty, and staff in a dispersed work environment. Additional Information: Rank/Salary: Lead Programmer-Analyst, SL3 / $70,000. We are pleased to offer our employees an excellent benefit package which includes NYS health insurance, free dental and vision, competitive retirement options, and generous vacation, sick and holiday accruals; and a strong emphasis on work-life balance. We also offer professional-development activities for professionals and support staff. SUNY Empire is an AA/EEO/ADA employer. The University actively seeks applications from women, veterans, individuals with a disability, members of underrepresented groups or anyone that would enrich the diversity of the University. SUNY Empire is committed to fostering a diverse community of outstanding faculty, staff, and students, as well as ensuring equal educational opportunity, employment, and access to services, programs, and activities, without regard to an individual's race, color, national origin, religion, creed, age, disability, sex, gender identity, sexual orientation, familial status, pregnancy, predisposing genetic characteristics, military status, domestic violence victim status, or criminal conviction. Employees, students, applicants, or other members of the university community (including but not limited to vendors, visitors, and guests) may not be subjected to harassment that is prohibited by law or treated adversely or retaliated against based upon a protected characteristic. SUNY Empire provides reasonable accommodations for applicants with disabilities, veterans, or wounded warriors where appropriate. If you would like to request a reasonable accommodation for any part of the application and hiring process, please contact the Office of Human Resources at . In accordance with the Title II Crime Awareness and Security Act, a copy of our crime statistics is available upon request by calling . It can also be viewed online at our Safety and Security website . To apply, visit Copyright 2025 Inc. All rights reserved. Posted by the FREE value-added recruitment advertising agency jeid-043e08d8dc1ee544b93e2b16abace6fa
01/14/2026
Full time
Enterprise Learning Systems Programmer/Analyst SUNY Empire is seeking a skilled Enterprise Learning Systems Programmer/Analyst to support the data integrations, technical operations, and ongoing needs of our Learning Management System (D2L Brightspace). This role will be central to ensuring seamless data flow between the University's Student Information System (Banner) and Brightspace, while also providing technical expertise to the Empire Online department (comprised of Instructional Designers, Instructional Technologists, Learning Management System Administrators, and Digital Accessibility Specialists). The selected incumbent will play a critical role in maintaining reliable integrations, supporting data-driven decision making, and ensuring that the institution's learning technologies function smoothly for students, faculty, and staff. The Enterprise Learning Systems Programmer/Analyst will also serve as a member of the Brightspace Operations Committee and will work closely with colleagues in Academic Affairs to align technical solutions with teaching and learning needs across the university. Primary responsibilities include: Develop, maintain, and optimize integrations between Banner SIS and D2L Brightspace. Design, maintain, and document API integrations, with emphasis on RESTful APIs, to support secure and efficient data exchange. Collaborate with DLE, IT staff, and Academic Affairs to ensure accurate and timely data flow across systems. Serve as a contributing member of the Brightspace Operations Committee, representing integration and technical perspectives. Troubleshoot and resolve technical issues related to data integrations, synchronization, and system interoperability. Support technical needs for the Empire Online department, including maintaining workflows, automation, and reporting. Implement, test, and document updates, patches, and custom integration solutions. Develop and maintain clear documentation of process, integration workflows, and technical standards to support continuity and best practices. Contribute technical expertise to projects involving course migrations, data reporting, or system enhancements. Ensure compliance with institutional policies, data security standards, FERPA, and accessibility requirements. Job Requirements: Required Qualifications: Bachelor's degree from a regionally accredited college or university and a minimum of 2 years' applicable programming experience; OR an Associate's degree and a minimum of 4 years' applicable programming experience. Hands-on experience with Student Information and Learning Management Systems. Proven background in system integrations with APIs, including RESTful API development and support. Proficiency in programming and scripting languages (e.g., Python, Java, SQL, XML, JSON). Experience working with web services (REST, SOAP) and middleware technologies. Strong problem-solving skills with the ability to troubleshoot integration and data exchange issues independently. Excellent communication skills and ability to collaborate across functional teams, including Academic Affairs. Preferred Qualifications: Banner SIS and D2L Brightspace experience in Higher Education. Familiarity with Brightspace integration architecture. Knowledge of data security, FERPA compliance, and accessibility standards (WCAG/ADA). Experience supporting technical projects in Educational Technology or instructional technology contexts. Special Information: Occasional travel may be required to fulfill department and university-wide commitments. Applicants must be currently authorized to work in the United States on a full-time basis. VISA sponsorship is not available for this position. SUNY Empire provides employees with flexible work options to meet the needs of students, faculty, and staff in a dispersed work environment. Additional Information: Rank/Salary: Lead Programmer-Analyst, SL3 / $70,000. We are pleased to offer our employees an excellent benefit package which includes NYS health insurance, free dental and vision, competitive retirement options, and generous vacation, sick and holiday accruals; and a strong emphasis on work-life balance. We also offer professional-development activities for professionals and support staff. SUNY Empire is an AA/EEO/ADA employer. The University actively seeks applications from women, veterans, individuals with a disability, members of underrepresented groups or anyone that would enrich the diversity of the University. SUNY Empire is committed to fostering a diverse community of outstanding faculty, staff, and students, as well as ensuring equal educational opportunity, employment, and access to services, programs, and activities, without regard to an individual's race, color, national origin, religion, creed, age, disability, sex, gender identity, sexual orientation, familial status, pregnancy, predisposing genetic characteristics, military status, domestic violence victim status, or criminal conviction. Employees, students, applicants, or other members of the university community (including but not limited to vendors, visitors, and guests) may not be subjected to harassment that is prohibited by law or treated adversely or retaliated against based upon a protected characteristic. SUNY Empire provides reasonable accommodations for applicants with disabilities, veterans, or wounded warriors where appropriate. If you would like to request a reasonable accommodation for any part of the application and hiring process, please contact the Office of Human Resources at . In accordance with the Title II Crime Awareness and Security Act, a copy of our crime statistics is available upon request by calling . It can also be viewed online at our Safety and Security website . To apply, visit Copyright 2025 Inc. All rights reserved. Posted by the FREE value-added recruitment advertising agency jeid-043e08d8dc1ee544b93e2b16abace6fa
SENIOR, LEARNING & EVENT TECHNOLOGY SPECIALIST, IS&T Classroom Technology Services
InsideHigherEd Boston, Massachusetts
SENIOR, LEARNING & EVENT TECHNOLOGY SPECIALIST, IS&T Classroom Technology Services Job Description SENIOR, LEARNING & EVENT TECHNOLOGY SPECIALIST, IS&T Classroom Technology Services Category Charles River Campus > Professional Job Location BOSTON, MA, United States Tracking Code Posted Date 1/7/2026 Salary Grade Grade 49 Expected Hiring Range Minimum $100,000.00 Expected Hiring Range Maximum $115,000.00 The salary of the finalist selected for this role will be set based on a variety of factors, including but not limited to departmental budgets, qualifications, experience, education, licenses, specialty, training and internal pay comparison. The above hiring range represents the University's good faith and reasonable estimate of the range of possible compensation at the time of posting. Position Type Full-Time/Regular Are you ready to be at the forefront of research and innovation on a vibrant, dynamic campus shaping the future of education? Join the Boston University Information Services & Technology (IS&T) community in our Learning & Event Technology Services (LETS) group. We are seeking applicants with diverse skills and experience to provide best-in-class AV/IT support to our faculty, staff, and students. We are looking for an energetic, self-directed, and motivated individual to join our Technology Experience & Community group as a Senior LETS Specialist on our AV/IT field engineering team. This hands-on role involves installing, configuring, repairing, and troubleshooting systems while providing advanced support for a wide range of AV/IT technology and services. You will also advise management on emerging technologies, test and verify new solutions, and serve on multiple service or project teams in various roles such as Subject Matter Expert or Technical Lead. This position will interface with consultants, integrators, vendors, general contractors, trades, and other partners. Required Skills Please note: This is an onsite position and may require occasional evening, weekend, and/or holiday hours. Requirements: 8+ years of progressively responsible experience with AV/IT technology in a support role. Bachelor's degree required; Masters preferred. (Work experience accepted in lieu of degree) Valid driver's license. Ability to lift moderately heavy equipment (up to 75 pounds). AVIXA CTS or CTS-I certification(s) preferred. Technical Qualifications: Crestron programming, troubleshooting, Simple, HTML5 DSP Biamp Configuration Dante Configuration & Setup Audio Commissioning AVoIP (Quality of Service) Virtual Control - VC4 (Programming, Loading, Setup, Linux) Install/Configure - Zoom/Teams Rooms AV Networking Cable Termination RS-232 Familiarity with enterprise management software (e.g., Crestron XIO or Fusion) Working knowledge of digital signage solutions (e.g., Appspace) Experience with ticketing systems (e.g., ServiceNow) Programming or commissioning experience in professional audio/video integration preferred Soft Skills: Patience in problem-solving complex technical issues, both over the phone and in person, with diverse customers. Ability to learn and support new technology quickly. Excellent interpersonal communication and strong customer service skills. Ability to work productively in cross-functional teams and independently. Ability to maintain control in rapidly changing situations, exhibiting a high level of independent decision-making. Willingness to train and share knowledge with other team members. Boston University Offers an Excellent Benefits Package: Time Off: Generous time off, paid intersession break, and 13 paid holidays. Retirement: University-funded retirement plan with full vesting after 2 years of eligible service. Tuition Assistance: Competitive tuition assistance program for yourself and family members. Transportation: Discounted MBTA pass and additional commuting options. Wellness: Programs and classes at little or no cost, including workshops and personal counseling. More information at ( ). Culture & Community: Access to discounts or free admission to various city art/cultural institutes around Boston. Public Service Loan Forgiveness Pet Insurance Our Mission: To provide best-in-class technology and data services to support outstanding education, groundbreaking research, effective administration, and a connected, secure community at Boston University, one of the largest private employers in Boston with almost 10,000 faculty and staff. IS&T invests in our staff's personal and professional growth. We promote staff learning through lunch and learn sessions, an extensive library of online courses, and opportunities to engage with peers at NERCOMP and EDUCAUSE events. Our Fun Advisory Board (FAB) arranges various events throughout the year, including nights at Lucky Strikes Boston, karaoke nights, BU hockey games, nights at Symphony Hall, pancake breakfasts, and department holiday lunches. If you require a reasonable accommodation to complete the employment application process, please contact the Equal Opportunity Office at . required. technology environment. Experience with Lecture Capture technology is highly preferred. Master's Degree in related discipline preferred. Certified Technology Specialist (CTS) certification preferred. Must hold a valid driver's license. Must be able to lift moderately heavy equipment (up to 75 pounds). Technical Expertise: Strong experience with lecture capture technology (Echo360 experience preferred.) Knowledge of Echo System Architecture, cradle to grave content lifecycle, system functions, integration options, ESS user interface and more preferred. Equipment expertise includes LCD and/or DLP projectors, visual presenters, audio amplifiers and mixers, various audio and video switching devices and electronic control systems. Experience with sound reinforcement and lighting set ups. Experience maintaining and programming Crestron and Extron systems. ITIL Foundations Certification preferred. Working knowledge of digital signage solutions such as Visix. Working knowledge of video streaming platforms, video network delivery methods, video presentation layers and technologies, video streaming protocols (i.e. RTP, UDP, RTSP, HLS, RTMP, MPEG-DASH), and video codecs (i.e. H.264, MPEG2, vp8, ProRes) required. Knowledge of TCP/IP, LAN/wireless networking principles and application protocols, i.e. HTTp, HTTPS, SMTP, and FTP. Familiarity with LDAP, CAS, & Shibboleth technologies. Familiarity with remote assistance technology (i.e. Bomgar) and enterprise management software (i.e. Crestron Fusion). Demonstrable application experience of working with the following technologies: Oracle, MS SQL Server 2005/2008 and MySql databases. Knowledge of programming, scripting, and use of regular expressions with technologies such as Perl, Powershell, Bash, etc. Program and configure AV equipment such as media control systems (AMX/Crestron/Extron), DSPs, matrix mixers and switchers, codec's. Program and configure systems with consultant driven designs as well as developing designs from scratch from client requirements. Interface with consultants, vendors, general contractors, electrical contractors and other partners. Demonstrating creative solutions to help differentiate LETS and the IT Help Center. At least two years of programming or commissioning experience in the professional audio/video integration preferred. Working knowledge of media management systems such as Kaltura. Experience supporting computer hardware and software including Windows and OSX operating systems, desktop business applications, various specialized applications, peripherals and mobile devices. Experience with WordPress and web site content management and development. Soft Skills: Must follow procedures and keep accurate records of incidents and requests while working in the field. Strong writing and organizational skills required. Demonstrate patience when problem-solving complex technical issues, over the phone and in person, with diverse customers. Learn and support new technology quickly. Must possess excellent interpersonal communication skills. Strong customer service skills absolutely necessary. Energetic, self-directed, motivated and professional individual who thrives in a fast-paced, dynamic environment. Interact with all levels of an organization in a professional, diplomatic and tactful manner. Work well with external vendors. Work well with both primary and dotted line reporting in a matrix environment. Work productively in cross-functional teams and/or resourcefully and independently as an individual. Must possess the ability to work autonomously and maintain control in rapidly changing situations. A high level of independent decision making is absolutely. We are an equal opportunity employer, and all qualified applicants will receive consideration for employment without regard to race, color, natural or protective hairstyle, religion, sex, age, national origin, physical or mental disability, sexual orientation, gender identity, genetic information, military service, pregnancy or pregnancy-related condition, or because of marital, parental, or veteran status. We are a VEVRAA Federal Contractor. Required Skills Job Location: BOSTON, MA . click apply for full job details
01/14/2026
Full time
SENIOR, LEARNING & EVENT TECHNOLOGY SPECIALIST, IS&T Classroom Technology Services Job Description SENIOR, LEARNING & EVENT TECHNOLOGY SPECIALIST, IS&T Classroom Technology Services Category Charles River Campus > Professional Job Location BOSTON, MA, United States Tracking Code Posted Date 1/7/2026 Salary Grade Grade 49 Expected Hiring Range Minimum $100,000.00 Expected Hiring Range Maximum $115,000.00 The salary of the finalist selected for this role will be set based on a variety of factors, including but not limited to departmental budgets, qualifications, experience, education, licenses, specialty, training and internal pay comparison. The above hiring range represents the University's good faith and reasonable estimate of the range of possible compensation at the time of posting. Position Type Full-Time/Regular Are you ready to be at the forefront of research and innovation on a vibrant, dynamic campus shaping the future of education? Join the Boston University Information Services & Technology (IS&T) community in our Learning & Event Technology Services (LETS) group. We are seeking applicants with diverse skills and experience to provide best-in-class AV/IT support to our faculty, staff, and students. We are looking for an energetic, self-directed, and motivated individual to join our Technology Experience & Community group as a Senior LETS Specialist on our AV/IT field engineering team. This hands-on role involves installing, configuring, repairing, and troubleshooting systems while providing advanced support for a wide range of AV/IT technology and services. You will also advise management on emerging technologies, test and verify new solutions, and serve on multiple service or project teams in various roles such as Subject Matter Expert or Technical Lead. This position will interface with consultants, integrators, vendors, general contractors, trades, and other partners. Required Skills Please note: This is an onsite position and may require occasional evening, weekend, and/or holiday hours. Requirements: 8+ years of progressively responsible experience with AV/IT technology in a support role. Bachelor's degree required; Masters preferred. (Work experience accepted in lieu of degree) Valid driver's license. Ability to lift moderately heavy equipment (up to 75 pounds). AVIXA CTS or CTS-I certification(s) preferred. Technical Qualifications: Crestron programming, troubleshooting, Simple, HTML5 DSP Biamp Configuration Dante Configuration & Setup Audio Commissioning AVoIP (Quality of Service) Virtual Control - VC4 (Programming, Loading, Setup, Linux) Install/Configure - Zoom/Teams Rooms AV Networking Cable Termination RS-232 Familiarity with enterprise management software (e.g., Crestron XIO or Fusion) Working knowledge of digital signage solutions (e.g., Appspace) Experience with ticketing systems (e.g., ServiceNow) Programming or commissioning experience in professional audio/video integration preferred Soft Skills: Patience in problem-solving complex technical issues, both over the phone and in person, with diverse customers. Ability to learn and support new technology quickly. Excellent interpersonal communication and strong customer service skills. Ability to work productively in cross-functional teams and independently. Ability to maintain control in rapidly changing situations, exhibiting a high level of independent decision-making. Willingness to train and share knowledge with other team members. Boston University Offers an Excellent Benefits Package: Time Off: Generous time off, paid intersession break, and 13 paid holidays. Retirement: University-funded retirement plan with full vesting after 2 years of eligible service. Tuition Assistance: Competitive tuition assistance program for yourself and family members. Transportation: Discounted MBTA pass and additional commuting options. Wellness: Programs and classes at little or no cost, including workshops and personal counseling. More information at ( ). Culture & Community: Access to discounts or free admission to various city art/cultural institutes around Boston. Public Service Loan Forgiveness Pet Insurance Our Mission: To provide best-in-class technology and data services to support outstanding education, groundbreaking research, effective administration, and a connected, secure community at Boston University, one of the largest private employers in Boston with almost 10,000 faculty and staff. IS&T invests in our staff's personal and professional growth. We promote staff learning through lunch and learn sessions, an extensive library of online courses, and opportunities to engage with peers at NERCOMP and EDUCAUSE events. Our Fun Advisory Board (FAB) arranges various events throughout the year, including nights at Lucky Strikes Boston, karaoke nights, BU hockey games, nights at Symphony Hall, pancake breakfasts, and department holiday lunches. If you require a reasonable accommodation to complete the employment application process, please contact the Equal Opportunity Office at . required. technology environment. Experience with Lecture Capture technology is highly preferred. Master's Degree in related discipline preferred. Certified Technology Specialist (CTS) certification preferred. Must hold a valid driver's license. Must be able to lift moderately heavy equipment (up to 75 pounds). Technical Expertise: Strong experience with lecture capture technology (Echo360 experience preferred.) Knowledge of Echo System Architecture, cradle to grave content lifecycle, system functions, integration options, ESS user interface and more preferred. Equipment expertise includes LCD and/or DLP projectors, visual presenters, audio amplifiers and mixers, various audio and video switching devices and electronic control systems. Experience with sound reinforcement and lighting set ups. Experience maintaining and programming Crestron and Extron systems. ITIL Foundations Certification preferred. Working knowledge of digital signage solutions such as Visix. Working knowledge of video streaming platforms, video network delivery methods, video presentation layers and technologies, video streaming protocols (i.e. RTP, UDP, RTSP, HLS, RTMP, MPEG-DASH), and video codecs (i.e. H.264, MPEG2, vp8, ProRes) required. Knowledge of TCP/IP, LAN/wireless networking principles and application protocols, i.e. HTTp, HTTPS, SMTP, and FTP. Familiarity with LDAP, CAS, & Shibboleth technologies. Familiarity with remote assistance technology (i.e. Bomgar) and enterprise management software (i.e. Crestron Fusion). Demonstrable application experience of working with the following technologies: Oracle, MS SQL Server 2005/2008 and MySql databases. Knowledge of programming, scripting, and use of regular expressions with technologies such as Perl, Powershell, Bash, etc. Program and configure AV equipment such as media control systems (AMX/Crestron/Extron), DSPs, matrix mixers and switchers, codec's. Program and configure systems with consultant driven designs as well as developing designs from scratch from client requirements. Interface with consultants, vendors, general contractors, electrical contractors and other partners. Demonstrating creative solutions to help differentiate LETS and the IT Help Center. At least two years of programming or commissioning experience in the professional audio/video integration preferred. Working knowledge of media management systems such as Kaltura. Experience supporting computer hardware and software including Windows and OSX operating systems, desktop business applications, various specialized applications, peripherals and mobile devices. Experience with WordPress and web site content management and development. Soft Skills: Must follow procedures and keep accurate records of incidents and requests while working in the field. Strong writing and organizational skills required. Demonstrate patience when problem-solving complex technical issues, over the phone and in person, with diverse customers. Learn and support new technology quickly. Must possess excellent interpersonal communication skills. Strong customer service skills absolutely necessary. Energetic, self-directed, motivated and professional individual who thrives in a fast-paced, dynamic environment. Interact with all levels of an organization in a professional, diplomatic and tactful manner. Work well with external vendors. Work well with both primary and dotted line reporting in a matrix environment. Work productively in cross-functional teams and/or resourcefully and independently as an individual. Must possess the ability to work autonomously and maintain control in rapidly changing situations. A high level of independent decision making is absolutely. We are an equal opportunity employer, and all qualified applicants will receive consideration for employment without regard to race, color, natural or protective hairstyle, religion, sex, age, national origin, physical or mental disability, sexual orientation, gender identity, genetic information, military service, pregnancy or pregnancy-related condition, or because of marital, parental, or veteran status. We are a VEVRAA Federal Contractor. Required Skills Job Location: BOSTON, MA . click apply for full job details
Senior Engineer - Infrastructure
InsideHigherEd Arnold, Maryland
Job no: 493133 Work type: Full-Time Staff Location: Arnold/Main Campus Categories: Full-Time Staff Title: Senior Engineer - Infrastructure Department: Info Security & Infrastructure Campus Location: Arnold/Main Campus Salary Range: $110,590-$138,237 Work Mode: This position requires regular in-person presence on campus and at alternative locations, depending on class schedule and other assigned duties. Hours Per Week: 40 Work Schedule: Position Type: Full-Time Staff, Exempt Position Summary This position provides technical solutions in the design, implementation, management, administration and troubleshooting of the Enterprise-wide data network infrastructure/Hybrid Cloud environments. It requires the ability to analyze the needs of user departments and establish priorities for network design accordingly. This position is responsible for network design, hardware recommendation and implementation for all data infrastructure hardware and related software applications. The successful candidate will possess a high degree of experience and skill in managing the installation, testing, monitoring and maintenance of the data communications, wireless, and IP based services environment to include voice communications and security cameras. Information and Instructional Technology team members must be dedicated to fostering a culture of excellence. Successful candidates will help IIT build our culture by enabling frictionless service, valuing feedback, and embracing continuous improvement and learning. To support this foundation, IIT has established five pillars. These pillars create a collaborative, supportive, and inclusive professional culture. Successful candidates will be skilled technologists who value AACC's community and people. They will also be empathetic to the challenges faced by our students, faculty, and staff. Our Characteristics of Excellence are the guiding principles of our Division, empowering our teams to deliver exceptional results and drive success. Successful candidates will treat people with respect, dignity, and fairness, consistently delivering quality results and following through on commitments and responsibilities. They will cultivate teamwork and collaboration, embrace opportunities for improvement and innovation, and maintain open and honest communication with integrity. Additionally, they will appreciate the value of simple, efficient solutions, recognize the importance of building positive relationships, and respect others' time. Job Duties and Responsibilities Lead efforts to develop and implement comprehensive network infrastructure system designs that meet business requirements by utilizing technology in a cost effective and scalable manner. Provide design, configuration, implementation, monitoring, and support for enterprise/Hybrid network infrastructure (routers and switches) wireless, and video systems. Responsible for hands-on engineering activities to ensure the successful operation of a mission critical Hybrid network architecture spanning multiple data centers and sites. Leads efforts to define and execute ongoing network security, health maintenance plans, processes, procedures, documentation, and operations for the enterprise infrastructure system in accordance with industry standards and guidelines. Provide guidance and assistance to the IIT team in the implementation and administration of system monitoring tools. Monitor performance and tuning of key technology components for the college's network infrastructure; recommend changes or enhancements to resolve stability and performance issues based on findings. Maintain statistics on system performance and availability. Practice effective project management skills, including the ability to adequately manage assigned projects and report project progress and status. Lead projects to upgrade and/or expand the network including design, planning, testing, and implementation. Develop and maintain document repositories and architectural diagrams related to the installation, administration, maintenance, and use of systems. Strives to ensure solutions, systems, and content are secure, accessible, inclusive, and compliant with WCAG and other relevant standards. Continuously improves technical skills and knowledge. Documents and tracks service disruptions and requests in the appropriate systems and provides their supervisor with timely updates on project progress, status, and issues. Develop and maintain document repositories and architectural diagrams related to the installation, administration, maintenance, and use of systems. Plan and execute changes which impact the hybrid network infrastructure following established change management processes. Ensure planned testing activities are developed, documented, and executed. Troubleshoot incidents, identify root causes, fix and document problems, and implement preventive measures. Works to ensure availability of applications and services by monitoring systems and services used at all AACC locations. Assist the Director, Information Security & Infrastructure in the college-wide budget planning process to review and ensure new initiatives are properly vetted for technology needs. Support the development of SOW's, RFP's and RFQ's for Information and Instructional Technologies related technologies and maintenance while working very closely with the Purchasing department. Communicate with vendors, customers, management, and technology staff. Maintain expertise of current hybrid Cloud networking trends and provide guidance about direction of various hybrid Cloud networking technologies. Ensure that network infrastructure equipment is installed in dedicated spaces that are physically secure, provide stable temperature and humidity within equipment manufacturer's specified ranges, and have reliable Uninterruptible Power Supply (UPS) units capable of keeping equipment running during power outages of up to 30 minutes. Provides training and guidance to AACC staff and students to develop new technology skills. Required Qualifications: Bachelor's degree Minimum of five years of relevant experience Current industry standard Cloud related certification, i.e. Extreme ECNA, Aruba ACMA, ACMP or other industry recognized networking certification. Possess comprehensive knowledge of, and hands-on experience with Extreme Networks wired network infrastructure products and management software. Considerable experience with cloud (AWS, Azure) networking and/or security. Experience in designing, implementing, and maintaining complex Enterprise Wireless, Local Area Networks (LANs) & Wide Area Networks (WANs), Ethernet and Fiber Optic cabling infrastructures. Knowledge of dynamic routing protocols (RIP, BGP, EIGRP, OSPF, IGRP), IPSEC, wireless and TCP/IP protocols, switched Ethernet and VLAN technologies. Layer 2 and 3 LAN design and operation Preferred Qualifications: Certifications: Extreme Networks Associate, Specialist (ECS) or Professional (ECP) highly desired. However, other industry routing and switching certifications will be considered. Microsoft Azure Network Engineer Associate, or Microsoft Azure Solutions Architect Expert highly desired. However, other Cloud provider certifications will be considered. General Industry Experience: Extreme Networks Routers and Switches, Panduit Cable Management Systems, HPE/Aruba Wireless, FatPipe WAN Optimization and APC UPS experience highly desired. Anne Arundel Community College (AACC) is committed to enriching the educational experience it offers through the diversity of its faculty, administrators, and staff members. The college seeks to recruit and support a broadly diverse team who will contribute to the college's excellence, diversity of viewpoints and experiences, embrace concepts of equity and inclusiveness, and support the equal rights of all people by advancing the understanding and appreciation of differences including age, race, gender, ability, religious convictions, socio-economic status, ethnic heritage, or sexual orientation. While we appreciate your interest in employment with Anne Arundel Community College, applicants must be currently authorized to work in the U.S. on a full-time basis. Employment-based visa sponsorship (including H-1B sponsorship) is not available for any position. Pay dates occur on the 7th and 22nd of each month. If those dates fall on a weekend, the pay date occurs on the Friday prior to the 7th and 22nd. As an employee of the college, you are eligible for a comprehensive benefits package. In the best interest of the College, only individuals who are residents of Maryland or one of the following states will be eligible for employment at the college: Delaware, Pennsylvania, Virginia, West Virginia or the District of Columbia. The college will annually review this restriction and, if appropriate, expand the list of states of employment eligibility. Advertised: 03 Dec 2025 Eastern Standard Time Applications close: Whatsapp Facebook LinkedIn Email App if (typeof SocialShareKit != 'undefined') SocialShareKit.init( forceInit: true, reinitialize: true, selector: '.social-share-kit .ssk' );
01/14/2026
Full time
Job no: 493133 Work type: Full-Time Staff Location: Arnold/Main Campus Categories: Full-Time Staff Title: Senior Engineer - Infrastructure Department: Info Security & Infrastructure Campus Location: Arnold/Main Campus Salary Range: $110,590-$138,237 Work Mode: This position requires regular in-person presence on campus and at alternative locations, depending on class schedule and other assigned duties. Hours Per Week: 40 Work Schedule: Position Type: Full-Time Staff, Exempt Position Summary This position provides technical solutions in the design, implementation, management, administration and troubleshooting of the Enterprise-wide data network infrastructure/Hybrid Cloud environments. It requires the ability to analyze the needs of user departments and establish priorities for network design accordingly. This position is responsible for network design, hardware recommendation and implementation for all data infrastructure hardware and related software applications. The successful candidate will possess a high degree of experience and skill in managing the installation, testing, monitoring and maintenance of the data communications, wireless, and IP based services environment to include voice communications and security cameras. Information and Instructional Technology team members must be dedicated to fostering a culture of excellence. Successful candidates will help IIT build our culture by enabling frictionless service, valuing feedback, and embracing continuous improvement and learning. To support this foundation, IIT has established five pillars. These pillars create a collaborative, supportive, and inclusive professional culture. Successful candidates will be skilled technologists who value AACC's community and people. They will also be empathetic to the challenges faced by our students, faculty, and staff. Our Characteristics of Excellence are the guiding principles of our Division, empowering our teams to deliver exceptional results and drive success. Successful candidates will treat people with respect, dignity, and fairness, consistently delivering quality results and following through on commitments and responsibilities. They will cultivate teamwork and collaboration, embrace opportunities for improvement and innovation, and maintain open and honest communication with integrity. Additionally, they will appreciate the value of simple, efficient solutions, recognize the importance of building positive relationships, and respect others' time. Job Duties and Responsibilities Lead efforts to develop and implement comprehensive network infrastructure system designs that meet business requirements by utilizing technology in a cost effective and scalable manner. Provide design, configuration, implementation, monitoring, and support for enterprise/Hybrid network infrastructure (routers and switches) wireless, and video systems. Responsible for hands-on engineering activities to ensure the successful operation of a mission critical Hybrid network architecture spanning multiple data centers and sites. Leads efforts to define and execute ongoing network security, health maintenance plans, processes, procedures, documentation, and operations for the enterprise infrastructure system in accordance with industry standards and guidelines. Provide guidance and assistance to the IIT team in the implementation and administration of system monitoring tools. Monitor performance and tuning of key technology components for the college's network infrastructure; recommend changes or enhancements to resolve stability and performance issues based on findings. Maintain statistics on system performance and availability. Practice effective project management skills, including the ability to adequately manage assigned projects and report project progress and status. Lead projects to upgrade and/or expand the network including design, planning, testing, and implementation. Develop and maintain document repositories and architectural diagrams related to the installation, administration, maintenance, and use of systems. Strives to ensure solutions, systems, and content are secure, accessible, inclusive, and compliant with WCAG and other relevant standards. Continuously improves technical skills and knowledge. Documents and tracks service disruptions and requests in the appropriate systems and provides their supervisor with timely updates on project progress, status, and issues. Develop and maintain document repositories and architectural diagrams related to the installation, administration, maintenance, and use of systems. Plan and execute changes which impact the hybrid network infrastructure following established change management processes. Ensure planned testing activities are developed, documented, and executed. Troubleshoot incidents, identify root causes, fix and document problems, and implement preventive measures. Works to ensure availability of applications and services by monitoring systems and services used at all AACC locations. Assist the Director, Information Security & Infrastructure in the college-wide budget planning process to review and ensure new initiatives are properly vetted for technology needs. Support the development of SOW's, RFP's and RFQ's for Information and Instructional Technologies related technologies and maintenance while working very closely with the Purchasing department. Communicate with vendors, customers, management, and technology staff. Maintain expertise of current hybrid Cloud networking trends and provide guidance about direction of various hybrid Cloud networking technologies. Ensure that network infrastructure equipment is installed in dedicated spaces that are physically secure, provide stable temperature and humidity within equipment manufacturer's specified ranges, and have reliable Uninterruptible Power Supply (UPS) units capable of keeping equipment running during power outages of up to 30 minutes. Provides training and guidance to AACC staff and students to develop new technology skills. Required Qualifications: Bachelor's degree Minimum of five years of relevant experience Current industry standard Cloud related certification, i.e. Extreme ECNA, Aruba ACMA, ACMP or other industry recognized networking certification. Possess comprehensive knowledge of, and hands-on experience with Extreme Networks wired network infrastructure products and management software. Considerable experience with cloud (AWS, Azure) networking and/or security. Experience in designing, implementing, and maintaining complex Enterprise Wireless, Local Area Networks (LANs) & Wide Area Networks (WANs), Ethernet and Fiber Optic cabling infrastructures. Knowledge of dynamic routing protocols (RIP, BGP, EIGRP, OSPF, IGRP), IPSEC, wireless and TCP/IP protocols, switched Ethernet and VLAN technologies. Layer 2 and 3 LAN design and operation Preferred Qualifications: Certifications: Extreme Networks Associate, Specialist (ECS) or Professional (ECP) highly desired. However, other industry routing and switching certifications will be considered. Microsoft Azure Network Engineer Associate, or Microsoft Azure Solutions Architect Expert highly desired. However, other Cloud provider certifications will be considered. General Industry Experience: Extreme Networks Routers and Switches, Panduit Cable Management Systems, HPE/Aruba Wireless, FatPipe WAN Optimization and APC UPS experience highly desired. Anne Arundel Community College (AACC) is committed to enriching the educational experience it offers through the diversity of its faculty, administrators, and staff members. The college seeks to recruit and support a broadly diverse team who will contribute to the college's excellence, diversity of viewpoints and experiences, embrace concepts of equity and inclusiveness, and support the equal rights of all people by advancing the understanding and appreciation of differences including age, race, gender, ability, religious convictions, socio-economic status, ethnic heritage, or sexual orientation. While we appreciate your interest in employment with Anne Arundel Community College, applicants must be currently authorized to work in the U.S. on a full-time basis. Employment-based visa sponsorship (including H-1B sponsorship) is not available for any position. Pay dates occur on the 7th and 22nd of each month. If those dates fall on a weekend, the pay date occurs on the Friday prior to the 7th and 22nd. As an employee of the college, you are eligible for a comprehensive benefits package. In the best interest of the College, only individuals who are residents of Maryland or one of the following states will be eligible for employment at the college: Delaware, Pennsylvania, Virginia, West Virginia or the District of Columbia. The college will annually review this restriction and, if appropriate, expand the list of states of employment eligibility. Advertised: 03 Dec 2025 Eastern Standard Time Applications close: Whatsapp Facebook LinkedIn Email App if (typeof SocialShareKit != 'undefined') SocialShareKit.init( forceInit: true, reinitialize: true, selector: '.social-share-kit .ssk' );
ServiceNow Engineer
Ekman Associates, Inc Woodland Hills, California
Job Description Title: ServiceNow Engineer Location: Woodland Hills, CA / Hybrid 3 Days Onsite Ekman Associates is a management consulting firm that specializes in developing business, digital, and technology strategy, delivering solutions, and addressing human resource demands. Summary: The role will also be responsible for driving standardization and best practice platform management and help in optimizing the platform performance while reducing technical debt. This role will collaborate with the existing platform team, IT Service Owners, Analysts, and external vendors to build code and engineer solutions to meet delivery of projects / work items. Development areas will include (but are not limited to) custom portal pages, modules, API and software integrations, customized web pages, User Interface policies, scripts, etc. This role will participate in administration of ServiceNow to include upgrades, updates, etc. as needed. Key Skills ServiceNow CMDB Responsibilities: Develop standards and practices for maintaining the architecture model and health of the ServiceNow platform Evaluate demands against ServiceNow platform architecture, platform capabilities, and best practices Guide ServiceNow platform design, including considerations for integration and performance Assess architecture and solution designs to support business objectives including alignment with ServiceNow implementation best practices Analyze business requirements to configure / develop / enable capabilities using the ServiceNow platform Help prototype and accelerate time to deploy Lead and participate in the development and configuration of various areas including, but not limited to Service Portal, Service Catalog items, Incident, Problem, Change, Knowledge, Configuration Management (CMDB), HRSD, VR and Reporting / Performance Analytics Participate / conduct code walkthroughs with other team members, develop coding standards and review code work for accuracy and functionality Evaluate alternate solutions, identify the best option, and drive implementation Advises on configuration and coding standards Support ServiceNow version upgrades Analyze, troubleshoot, and fix identified ServiceNow system issues Qualifications: A Bachelor's degree (or equivalent work experience) in IT, Engineering, or related science and math discipline with a Technology emphasis Service Now Administrator Certifications, Certified ServiceNow Implementation Specialist, ITIL foundations 6+ years of experience working with ITSM solutions in an enterprise environment 6+ years of ServiceNow development / implementation / integration / administrative experience 10+ years of experience working in team of developer(s) Experience working with web technologies (HTML, CSS, JavaScript (including AngularJS), XML, SOAP, REST, Jelly, etc.) Experience working with databases (MySQL, Oracle, SQL Server, etc.) Experience integrating internal and external (SaaS based) systems / applications like Zoom, Box, OKTA, Active Directory, Workday is a plus Experience providing training on using SNOW tool capabilities and ITIL processes Ability to learn and adapt to new technologies applicable to the ServiceNow platform Ability to understand complex business needs and adapt appropriately Ability to collaborate with senior-level management Ability to lead/influence others effectively Strong & Effective communication and presentation skills Qualified Candidates Only : If you wish to learn more about this opportunity and additional qualifications/responsibilities, please submit your resume . To learn more about Ekman Associates, Inc. please visit our website at
01/06/2026
Full time
Job Description Title: ServiceNow Engineer Location: Woodland Hills, CA / Hybrid 3 Days Onsite Ekman Associates is a management consulting firm that specializes in developing business, digital, and technology strategy, delivering solutions, and addressing human resource demands. Summary: The role will also be responsible for driving standardization and best practice platform management and help in optimizing the platform performance while reducing technical debt. This role will collaborate with the existing platform team, IT Service Owners, Analysts, and external vendors to build code and engineer solutions to meet delivery of projects / work items. Development areas will include (but are not limited to) custom portal pages, modules, API and software integrations, customized web pages, User Interface policies, scripts, etc. This role will participate in administration of ServiceNow to include upgrades, updates, etc. as needed. Key Skills ServiceNow CMDB Responsibilities: Develop standards and practices for maintaining the architecture model and health of the ServiceNow platform Evaluate demands against ServiceNow platform architecture, platform capabilities, and best practices Guide ServiceNow platform design, including considerations for integration and performance Assess architecture and solution designs to support business objectives including alignment with ServiceNow implementation best practices Analyze business requirements to configure / develop / enable capabilities using the ServiceNow platform Help prototype and accelerate time to deploy Lead and participate in the development and configuration of various areas including, but not limited to Service Portal, Service Catalog items, Incident, Problem, Change, Knowledge, Configuration Management (CMDB), HRSD, VR and Reporting / Performance Analytics Participate / conduct code walkthroughs with other team members, develop coding standards and review code work for accuracy and functionality Evaluate alternate solutions, identify the best option, and drive implementation Advises on configuration and coding standards Support ServiceNow version upgrades Analyze, troubleshoot, and fix identified ServiceNow system issues Qualifications: A Bachelor's degree (or equivalent work experience) in IT, Engineering, or related science and math discipline with a Technology emphasis Service Now Administrator Certifications, Certified ServiceNow Implementation Specialist, ITIL foundations 6+ years of experience working with ITSM solutions in an enterprise environment 6+ years of ServiceNow development / implementation / integration / administrative experience 10+ years of experience working in team of developer(s) Experience working with web technologies (HTML, CSS, JavaScript (including AngularJS), XML, SOAP, REST, Jelly, etc.) Experience working with databases (MySQL, Oracle, SQL Server, etc.) Experience integrating internal and external (SaaS based) systems / applications like Zoom, Box, OKTA, Active Directory, Workday is a plus Experience providing training on using SNOW tool capabilities and ITIL processes Ability to learn and adapt to new technologies applicable to the ServiceNow platform Ability to understand complex business needs and adapt appropriately Ability to collaborate with senior-level management Ability to lead/influence others effectively Strong & Effective communication and presentation skills Qualified Candidates Only : If you wish to learn more about this opportunity and additional qualifications/responsibilities, please submit your resume . To learn more about Ekman Associates, Inc. please visit our website at
IoT Solutions Architect Lead Specialist
JPS Tech Solutions LLC Norwich, North Dakota
Job Title: IoT Solutions Architect Lead Specialist Location: Minot, North Dakota Experience: 12+ Years Employment Type: Contract Interview Type: In-Person or Webcam Job Description We are looking for an experienced IoT Solutions Architect Lead Specialist to design, develop, and implement enterprise-level IoT solutions. This role requires deep expertise in IoT platforms, cloud architecture, sensor integration, connectivity technologies, edge computing, and secure end-to-end data flow. The ideal candidate will collaborate with cross-functional technical and business teams to define solution roadmaps, lead technical architecture decisions, and ensure successful delivery of IoT initiatives that support business transformation and operational efficiency. You will serve as a senior technical leader guiding teams through the full lifecycle of IoT deployments, from requirement analysis and system design to implementation, optimization, and support. Key Responsibilities Design scalable IoT system architectures including edge, cloud, data processing, security, and device integration layers. Lead architecture planning, solution blueprinting, and technology evaluations for IoT initiatives. Work with stakeholders to define technical requirements, use cases, and solution scope. Integrate sensors, gateways, firmware, and wireless communication protocols into unified IoT platforms. Drive proof-of-concept development, prototyping, and solution validation. Oversee end-to-end solution deployment including configuration, testing, monitoring, and optimization. Ensure system reliability, performance, data integrity, and security compliance. Collaborate with software development, network, security, manufacturing, and operations teams. Establish architectural standards, best practices, and technical documentation. Provide leadership, mentoring, and guidance to engineering teams and solution partners. Support troubleshooting, incident resolution, and continuous improvement efforts. Communicate technical designs and presenting concepts to executive leadership and customers. Required Skills and Qualifications 12+ years of experience in IoT solution architecture, embedded systems, or cloud platform engineering. Strong knowledge of IoT connectivity technologies such as MQTT, CoAP, LoRaWAN, NB-IoT, LTE, 5G, BLE, Zigbee, Modbus, or CAN. Hands-on experience with major IoT platforms such as AWS IoT, Azure IoT Hub, Google Cloud IoT, or PTC ThingWorx. Expertise in cloud architecture, microservices, and APIs. Solid experience with edge computing frameworks and device management. Strong background in data pipelines, analytics, telemetry processing, and real-time monitoring. Understanding of cybersecurity principles for IoT systems including device authentication, encryption, and secure communication. Experience integrating hardware devices, sensors, gateways, and industrial control systems. Proficiency in programming or scripting languages such as Python, C/C++, Java, or Node.js. Strong stakeholder communication and leadership skills. Experience leading large-scale IoT deployment projects and cross-functional teams. Preferred Qualifications Experience in manufacturing, energy, utilities, transportation, or smart infrastructure. Familiarity with digital twin technologies and AI/ML for predictive analytics. IoT-related certifications such as AWS Certified IoT, Azure IoT Developer, or equivalent. Knowledge of industry protocols and standards including OPC-UA, BACnet, or SCADA systems.
01/06/2026
Job Title: IoT Solutions Architect Lead Specialist Location: Minot, North Dakota Experience: 12+ Years Employment Type: Contract Interview Type: In-Person or Webcam Job Description We are looking for an experienced IoT Solutions Architect Lead Specialist to design, develop, and implement enterprise-level IoT solutions. This role requires deep expertise in IoT platforms, cloud architecture, sensor integration, connectivity technologies, edge computing, and secure end-to-end data flow. The ideal candidate will collaborate with cross-functional technical and business teams to define solution roadmaps, lead technical architecture decisions, and ensure successful delivery of IoT initiatives that support business transformation and operational efficiency. You will serve as a senior technical leader guiding teams through the full lifecycle of IoT deployments, from requirement analysis and system design to implementation, optimization, and support. Key Responsibilities Design scalable IoT system architectures including edge, cloud, data processing, security, and device integration layers. Lead architecture planning, solution blueprinting, and technology evaluations for IoT initiatives. Work with stakeholders to define technical requirements, use cases, and solution scope. Integrate sensors, gateways, firmware, and wireless communication protocols into unified IoT platforms. Drive proof-of-concept development, prototyping, and solution validation. Oversee end-to-end solution deployment including configuration, testing, monitoring, and optimization. Ensure system reliability, performance, data integrity, and security compliance. Collaborate with software development, network, security, manufacturing, and operations teams. Establish architectural standards, best practices, and technical documentation. Provide leadership, mentoring, and guidance to engineering teams and solution partners. Support troubleshooting, incident resolution, and continuous improvement efforts. Communicate technical designs and presenting concepts to executive leadership and customers. Required Skills and Qualifications 12+ years of experience in IoT solution architecture, embedded systems, or cloud platform engineering. Strong knowledge of IoT connectivity technologies such as MQTT, CoAP, LoRaWAN, NB-IoT, LTE, 5G, BLE, Zigbee, Modbus, or CAN. Hands-on experience with major IoT platforms such as AWS IoT, Azure IoT Hub, Google Cloud IoT, or PTC ThingWorx. Expertise in cloud architecture, microservices, and APIs. Solid experience with edge computing frameworks and device management. Strong background in data pipelines, analytics, telemetry processing, and real-time monitoring. Understanding of cybersecurity principles for IoT systems including device authentication, encryption, and secure communication. Experience integrating hardware devices, sensors, gateways, and industrial control systems. Proficiency in programming or scripting languages such as Python, C/C++, Java, or Node.js. Strong stakeholder communication and leadership skills. Experience leading large-scale IoT deployment projects and cross-functional teams. Preferred Qualifications Experience in manufacturing, energy, utilities, transportation, or smart infrastructure. Familiarity with digital twin technologies and AI/ML for predictive analytics. IoT-related certifications such as AWS Certified IoT, Azure IoT Developer, or equivalent. Knowledge of industry protocols and standards including OPC-UA, BACnet, or SCADA systems.
NMS ServiceNow Software Designer (IT Software Developer III) (Government)
AT&T Chantilly, Virginia
Job Description: AT&T Global Public Sector is a trusted provider of secure, IP enabled, cloud-based, network solutions and professional services to the Federal Government. We are dedicated to recruiting, developing and empowering a diverse, high-performing workforce that is passionate about what they do, committed to our shared values and dedicated to our customers' mission. Our National Security Team supports the intelligence community, providing, operating, and assuring critical voice, video and collaboration services for the full spectrum of operations. AT&T has an opening for an NMS ServiceNow Senior Software Designer: To support a key program in AT&T's National Security business segment. The NMS IT Software Designer will provide expert knowledge of network management systems, operating systems, commercial software, government software, and full integration of toolsets and servers. This position requires office presence a minimum of 5 days per week and is only located in the location(s) posted. No relocation is offered. Description of Job Duties/Responsibilities: Compliance with Department of Defense (DoD) 8140.03 (8570) Information Assurance Technical (IAT) Level 2. Oversee and guide team members in the deployment, administration, development, and integration of the ServiceNow suite of tools on RHEL and Windows operating systems, while facilitating collaboration with database developers on MariaDB requirements. Lead the team in utilizing Agile, Scrum, and SDLC methodologies to coordinate, track, and deliver projects efficiently, fostering a culture of continuous improvement and accountability. Coordinate closely with Project Managers and Technical Leads, ensuring clear communication of team progress, risks, and technical challenges. Direct integration efforts with Cisco Network Services Orchestrator, GOTS, and other enterprise tools, assigning integration tasks and ensuring successful outcomes. Oversee the creation and maintenance of technical documentation by the team, ensuring accuracy and completeness for operations users and providing user handoff training as needed. Monitor the team's efforts to maintain IT system and application performance/availability while responding proactively to emerging issues. Lead the team in hardening and securing systems, supporting Risk Management Framework (RMF) authorization and accreditation (A&A) efforts, and ensuring all engineered solutions are compliant. Guide the automation and orchestration of ServiceNow deployment activities using modern tools and methods (Ansible, Python, Terraform, PowerShell), and mentor the team in best practices for testing, validation, and verification. Manage the troubleshooting, diagnosis, and resolution of complex system and service issues, overseeing Root Cause Analysis (RCA) and driving continuous improvement. Direct system performance analysis and tuning activities, ensuring solutions are efficiently configured and optimized by the team. Lead engineering projects and technical processes through the Systems Development Life Cycle (SDLC), ensuring the team meets deliverables, achieves positive outcomes, and stays within scope and budget. Oversee the delivery of well-developed and engineered solutions as deployable packages, ensuring Operations teams can transition solutions to production environments with minimal manual intervention and high success rates. Perform additional duties as assigned and needed in a dynamic environment to support evolving business and technical requirements. Required Clearance: TS/SCI with polygraph. (/sci) () Required Qualifications: Candidate must have 16 years of experience that can be a combination of work history and education. This equates to a doctorate and 8 years of experience OR a master's and 10 years OR a bachelor's and 12 years OR an associate's and 14 years OR HS and 16 years . Must meet Information Assurance Technical (IAT) Level 2 certification requirements. Additional requirements include: Must have at least 5 years of relevant ServiceNow experience that can be a combination of work history, education, and training. Must have Certification: ServiceNow Certified System Administrator . Must have at least one other advanced ServiceNow certification. Team Leadership experience. The candidate must be highly motivated. Able to work independently with both local and geographically diverse team members. Using effective time management skills to meet deliverable timelines. The candidate must also have experience working within concept, design, engineering, production, and sustainment phases of ServiceNow system development lifecycle. Experience with at least one of (Agile, Scrum, SDLC). Must be able to work with minimal supervision to perform complex technical tasks and lead others effectively. Must be able to process and analyze information and trouble calls submitted by a customer (e.g., system administrator, developer, security specialist), make determinations, and provide and implement solutions. Proven experience automating the implementation and configuration of ServiceNow technologies to support large scale enterprise solution deployments and configuration management efforts. Hands-on experience with developing, evaluating, assessing, and refining automated testing, validation, and verifications methods. Excellent client-facing and internal communication skills. Exceptional organizational skills, including attention to detail, multitasking and critical thinking skills. Skilled in working within a team environment within a professional office setting. Skilled in the ability to focus study and research to rapidly solve specific problems. Excellent and clear written documentation skills. Excellent self-study to achieve advanced training as required by the team and the program. Thrive within a highly dynamic and changing environment while adapting and managing shifting customer priorities. Excellent verbal communication skills. Working knowledge of Service Now or other ITSM. Experience working with Microsoft Office products: Word, Excel, PowerPoint, and Outlook. Experience innovating in a collaborative environment. Advanced system architecture, design, and integration. Experience with databases. Ideally including MariaDB. Required Cross platform and integration experience including Windows, Linux, Juniper, and Cisco. Demonstrated experience developing and scripting within ServiceNow using languages such as JavaScript, as well as integrating ServiceNow with external systems using Java, Python, Perl, or PowerShell. Desired Qualifications: CompTIA Security+ or equivalent will meet the minimum requirement for the role. ISC2 CISSP or equivalent is strongly preferred and exceeds the minimum requirement for this role. Ready to join our team? Apply today! Our NMS ServiceNow Software Designer (IT Software Developer III) (Government) earns between $108,000 - $225,000 yearly. Not to mention all the other amazing rewards that working at AT&T offers. Individual starting salary within this range may depend on geography, experience, expertise, and education/training. Joining our team comes with amazing perks and benefits: Medical/Dental/Vision coverage 401(k) plan Tuition reimbursement program Paid Time Off and Holidays (based on date of hire, at least 23 days of vacation each year and 9 company-designated holidays) Pro-rated when working less than 40 hrs/wk. Paid Parental Leave Paid Caregiver Leave Additional sick leave beyond what state and local law require may be available but is unprotected Adoption Reimbursement Disability Benefits (short term and long term) Life and Accidental Death Insurance Supplemental benefit programs: critical illness/accident hospital indemnity/group legal Employee Assistance Programs (EAP) Extensive employee wellness programs Employee discounts up to 50% off on eligible AT&T mobility plans and accessories, AT&T internet (and fiber where available) and AT&T phone Weekly Hours: 40 Time Type: Regular Location: Chantilly, Virginia It is the policy of AT&T to provide equal employment opportunity (EEO) to all persons regardless of age, color, national origin, citizenship status, physical or mental disability, race, religion, creed, gender, sex, sexual orientation, gender identity and/or expression, genetic information, marital status, status with regard to public assistance, veteran status, or any other characteristic protected by federal, state or local law. In addition, AT&T will provide reasonable accommodations for qualified individuals with disabilities. AT&T is a fair chance employer and does not initiate a background check until an offer is made.
01/05/2026
Full time
Job Description: AT&T Global Public Sector is a trusted provider of secure, IP enabled, cloud-based, network solutions and professional services to the Federal Government. We are dedicated to recruiting, developing and empowering a diverse, high-performing workforce that is passionate about what they do, committed to our shared values and dedicated to our customers' mission. Our National Security Team supports the intelligence community, providing, operating, and assuring critical voice, video and collaboration services for the full spectrum of operations. AT&T has an opening for an NMS ServiceNow Senior Software Designer: To support a key program in AT&T's National Security business segment. The NMS IT Software Designer will provide expert knowledge of network management systems, operating systems, commercial software, government software, and full integration of toolsets and servers. This position requires office presence a minimum of 5 days per week and is only located in the location(s) posted. No relocation is offered. Description of Job Duties/Responsibilities: Compliance with Department of Defense (DoD) 8140.03 (8570) Information Assurance Technical (IAT) Level 2. Oversee and guide team members in the deployment, administration, development, and integration of the ServiceNow suite of tools on RHEL and Windows operating systems, while facilitating collaboration with database developers on MariaDB requirements. Lead the team in utilizing Agile, Scrum, and SDLC methodologies to coordinate, track, and deliver projects efficiently, fostering a culture of continuous improvement and accountability. Coordinate closely with Project Managers and Technical Leads, ensuring clear communication of team progress, risks, and technical challenges. Direct integration efforts with Cisco Network Services Orchestrator, GOTS, and other enterprise tools, assigning integration tasks and ensuring successful outcomes. Oversee the creation and maintenance of technical documentation by the team, ensuring accuracy and completeness for operations users and providing user handoff training as needed. Monitor the team's efforts to maintain IT system and application performance/availability while responding proactively to emerging issues. Lead the team in hardening and securing systems, supporting Risk Management Framework (RMF) authorization and accreditation (A&A) efforts, and ensuring all engineered solutions are compliant. Guide the automation and orchestration of ServiceNow deployment activities using modern tools and methods (Ansible, Python, Terraform, PowerShell), and mentor the team in best practices for testing, validation, and verification. Manage the troubleshooting, diagnosis, and resolution of complex system and service issues, overseeing Root Cause Analysis (RCA) and driving continuous improvement. Direct system performance analysis and tuning activities, ensuring solutions are efficiently configured and optimized by the team. Lead engineering projects and technical processes through the Systems Development Life Cycle (SDLC), ensuring the team meets deliverables, achieves positive outcomes, and stays within scope and budget. Oversee the delivery of well-developed and engineered solutions as deployable packages, ensuring Operations teams can transition solutions to production environments with minimal manual intervention and high success rates. Perform additional duties as assigned and needed in a dynamic environment to support evolving business and technical requirements. Required Clearance: TS/SCI with polygraph. (/sci) () Required Qualifications: Candidate must have 16 years of experience that can be a combination of work history and education. This equates to a doctorate and 8 years of experience OR a master's and 10 years OR a bachelor's and 12 years OR an associate's and 14 years OR HS and 16 years . Must meet Information Assurance Technical (IAT) Level 2 certification requirements. Additional requirements include: Must have at least 5 years of relevant ServiceNow experience that can be a combination of work history, education, and training. Must have Certification: ServiceNow Certified System Administrator . Must have at least one other advanced ServiceNow certification. Team Leadership experience. The candidate must be highly motivated. Able to work independently with both local and geographically diverse team members. Using effective time management skills to meet deliverable timelines. The candidate must also have experience working within concept, design, engineering, production, and sustainment phases of ServiceNow system development lifecycle. Experience with at least one of (Agile, Scrum, SDLC). Must be able to work with minimal supervision to perform complex technical tasks and lead others effectively. Must be able to process and analyze information and trouble calls submitted by a customer (e.g., system administrator, developer, security specialist), make determinations, and provide and implement solutions. Proven experience automating the implementation and configuration of ServiceNow technologies to support large scale enterprise solution deployments and configuration management efforts. Hands-on experience with developing, evaluating, assessing, and refining automated testing, validation, and verifications methods. Excellent client-facing and internal communication skills. Exceptional organizational skills, including attention to detail, multitasking and critical thinking skills. Skilled in working within a team environment within a professional office setting. Skilled in the ability to focus study and research to rapidly solve specific problems. Excellent and clear written documentation skills. Excellent self-study to achieve advanced training as required by the team and the program. Thrive within a highly dynamic and changing environment while adapting and managing shifting customer priorities. Excellent verbal communication skills. Working knowledge of Service Now or other ITSM. Experience working with Microsoft Office products: Word, Excel, PowerPoint, and Outlook. Experience innovating in a collaborative environment. Advanced system architecture, design, and integration. Experience with databases. Ideally including MariaDB. Required Cross platform and integration experience including Windows, Linux, Juniper, and Cisco. Demonstrated experience developing and scripting within ServiceNow using languages such as JavaScript, as well as integrating ServiceNow with external systems using Java, Python, Perl, or PowerShell. Desired Qualifications: CompTIA Security+ or equivalent will meet the minimum requirement for the role. ISC2 CISSP or equivalent is strongly preferred and exceeds the minimum requirement for this role. Ready to join our team? Apply today! Our NMS ServiceNow Software Designer (IT Software Developer III) (Government) earns between $108,000 - $225,000 yearly. Not to mention all the other amazing rewards that working at AT&T offers. Individual starting salary within this range may depend on geography, experience, expertise, and education/training. Joining our team comes with amazing perks and benefits: Medical/Dental/Vision coverage 401(k) plan Tuition reimbursement program Paid Time Off and Holidays (based on date of hire, at least 23 days of vacation each year and 9 company-designated holidays) Pro-rated when working less than 40 hrs/wk. Paid Parental Leave Paid Caregiver Leave Additional sick leave beyond what state and local law require may be available but is unprotected Adoption Reimbursement Disability Benefits (short term and long term) Life and Accidental Death Insurance Supplemental benefit programs: critical illness/accident hospital indemnity/group legal Employee Assistance Programs (EAP) Extensive employee wellness programs Employee discounts up to 50% off on eligible AT&T mobility plans and accessories, AT&T internet (and fiber where available) and AT&T phone Weekly Hours: 40 Time Type: Regular Location: Chantilly, Virginia It is the policy of AT&T to provide equal employment opportunity (EEO) to all persons regardless of age, color, national origin, citizenship status, physical or mental disability, race, religion, creed, gender, sex, sexual orientation, gender identity and/or expression, genetic information, marital status, status with regard to public assistance, veteran status, or any other characteristic protected by federal, state or local law. In addition, AT&T will provide reasonable accommodations for qualified individuals with disabilities. AT&T is a fair chance employer and does not initiate a background check until an offer is made.
Senior Manager, Technology Change Risk Oversight
Capital One Fredericksburg, Virginia
Senior Manager, Technology Change Risk Oversight Capital One is one of the fastest growing organizations in the world today, powered by our passion for our customers. We are serious about technology, we dream big, and we execute: Capital One moved our entire enterprise to the public cloud over the course of five years. Just as we prioritize driving innovation through technology, we equally prioritize cybersecurity, reliability, and managing technology risk. Technology Risk Management (TRM) is a small organization that packs a big punch. The 100 professionals in TRM are trusted experts who oversee 14,000 developers at Capital One. We raise the bar for excellence in cybersecurity, reliability, and tech risk. We shape strategy and decisions, challenge activities to ensure they meet our standards, and perform independent tests of our security and technology risk. Our business leaders must make technology decisions constantly. TRM makes sure they have the tech risk information they need to make good decisions. Associates within TRM are highly-skilled information security, cybersecurity, site reliability engineering, technology, and risk management professionals. They have a wealth of experience and a demonstrated ability to add value with their advice and to deliver high-impact results. As the Senior Manager, Technology Change Risk Oversight you will play a key role in the review, risk identification, risk assessment, reporting, and effective challenge of technology processes, controls, and capabilities, including but not limited to material and high risk technology changes. You will provide subject matter expertise, oversight, and effective challenge of key Technology areas such as cloud services, enterprise architecture, cloud migrations, and overall technology deployments. As part of the second line of defense, this position will also collaborate closely with associates in first line Cyber, Technology, the Lines of Business, as well as other second line of defense risk management offices to perform and support evaluations of the effectiveness of the firm's controls infrastructure and offer independent advice and recommendations regarding ways to further mature the firm's cyber risk management capabilities. Finally, as a member of a growing organization, you will have the opportunity to shape and further refine your portfolio commensurate with the priorities of the organization and the company. The demands and high-visibility nature of this position requires an expert with a proven ability to work independently in a fast-paced environment and who can begin contributing immediately. Essential Functions (Responsibilities): Provide technical leadership in assessing the practices of designing, developing, testing and implementing cloud native solutions to crucial business problems through thoughtful use of industry best practices and Capital One policy. Evaluate proposed and approved cloud technical solutions for automation, resiliency, performance, scalability, and security including appropriate tradeoffs, risks and opportunities Evaluate/assess complex technological and business environment migrations to the cloud and integrated end-to-end solution options Build and maintain relationships with technical leaders, business owners, engineers and other stakeholders to understand and evaluate implementation plans, business priorities and technical solutions to ensure risk are well communicated and understood by the key stakeholders Keep up-to-date on cutting edge technology, standards, protocols and tools in areas relevant to the rapidly changing environment at Capital One, specifically cloud native architecture, serverless, and emerging AWS services Demonstrate strong analytical, problem-solving, and decision-making skills Communicate and drive highly complex technology solutions to broad audiences including executives, business leaders, product managers, legal experts, security specialists and software engineers Define, structure and plan work independently Perform independent risk assessment of our cloud environment focusing on architecture, engineering, networking, governance. Provide expertise and advice regarding the effectiveness of device configurations, IT architecture, or IT engineering solutions Consult with risk owners on the design and implementation or adjustment of mitigating controls associated with emerging technologies Draft and publish independent reports for risk owners, senior management, and other stakeholders regarding risks associated with new or emerging technologies Basic Qualifications: Bachelor's Degree or military experience At least 6 years of experience managing, consulting, auditing, or working in the fields of information security or information technology At least 3 years experience with Public Cloud implementations Preferred Qualifications: Master's Degree in Computer Science or in an Engineering discipline Professional certification (AWS Certified Solutions Architect, AWS Certified Security Speciality, AWS SysOps Administrator, or Certified Information Systems Security Professional (CISSP Experience with Information Security at the policy, architecture or implementation level Ability to communicate clearly and to interact effectively at all levels of the organization, and to influence as warranted and appropriate to drive to consensus Experience with identifying and communicating key risks related to cloud native implementations and architectures Experience drafting reports or analytic assessments for senior management Experience with analysis of emerging threats and reports that describe the implications of threat(s) and opportunities to executives or senior decision-makers Passion and expertise in cybersecurity and technology risk, with an ability to be confident, respectful, and articulate when registering dissenting or unpopular opinions Ability to manage multiple high-visibility and high-impact projects while maintaining superior results Execution oriented and a self-motivator Experience with threat modeling frameworks (STRIDE, OWASP Top 10, MITRE ATT&CK) Familiarity with controls and control frameworks ( NIST Cybersecurity Framework, NIST 800-53, CIS Top 20, ISO, COBIT.) Ability to work independently and in a team, taking a lead role on projects when necessary Prior experience working in financial services or other highly-regulated sectors Experience working in a hybrid IT environment that includes both traditional on-premises data centers and public cloud infrastructure (e.g., AWS, Azure, Google Cloud) Experience with OpenStack At this time, Capital One will not sponsor a new applicant for employment authorization for this position. This role is Hybrid, with associates expected to consistently spend three days per week in the office. The minimum and maximum full-time annual salaries for this role are listed below, by location. Please note that this salary information is solely for candidates hired to perform work within one of these locations, and refers to the amount Capital One is willing to pay at the time of this posting. Salaries for part-time roles will be prorated based upon the agreed upon number of hours to be regularly worked. McLean, VA: $225,400 - $257,200 for Sr Manager, Cyber Technical Richmond, VA: $204,900 - $233,800 for Sr Manager, Cyber Technical New York, NY: $245,900 - $280,600 for Sr Manager, Cyber Technical Riverwoods, IL: $204,900 - $233,800 for Sr Manager, Cyber Technical Candidates hired to work in other locations will be subject to the pay range associated with that location, and the actual annualized salary amount offered to any candidate at the time of hire will be reflected solely in the candidate's offer letter. This role is also eligible to earn performance based incentive compensation, which may include cash bonus(es) and/or long term incentives (LTI). Incentives could be discretionary or non discretionary depending on the plan. Capital One offers a comprehensive, competitive, and inclusive set of health, financial and other benefits that support your total well-being. Learn more at the Capital One Careers website . Eligibility varies based on full or part-time status, exempt or non-exempt status, and management level. This role is expected to accept applications for a minimum of 5 business days.No agencies please. Capital One is an equal opportunity employer (EOE, including disability/vet) committed to non-discrimination in compliance with applicable federal, state, and local laws. Capital One promotes a drug-free workplace. Capital One will consider for employment qualified applicants with a criminal history in a manner consistent with the requirements of applicable laws regarding criminal background inquiries, including, to the extent applicable, Article 23-A of the New York Correction Law; San Francisco, California Police Code Article 49, Sections ; New York City's Fair Chance Act; Philadelphia's Fair Criminal Records Screening Act; and other applicable federal, state, and local laws and regulations regarding criminal background inquiries. If you have visited our website in search of information on employment opportunities or to apply for a position, and you require an accommodation, please contact Capital One Recruiting at 1- or via email at . click apply for full job details
12/17/2025
Full time
Senior Manager, Technology Change Risk Oversight Capital One is one of the fastest growing organizations in the world today, powered by our passion for our customers. We are serious about technology, we dream big, and we execute: Capital One moved our entire enterprise to the public cloud over the course of five years. Just as we prioritize driving innovation through technology, we equally prioritize cybersecurity, reliability, and managing technology risk. Technology Risk Management (TRM) is a small organization that packs a big punch. The 100 professionals in TRM are trusted experts who oversee 14,000 developers at Capital One. We raise the bar for excellence in cybersecurity, reliability, and tech risk. We shape strategy and decisions, challenge activities to ensure they meet our standards, and perform independent tests of our security and technology risk. Our business leaders must make technology decisions constantly. TRM makes sure they have the tech risk information they need to make good decisions. Associates within TRM are highly-skilled information security, cybersecurity, site reliability engineering, technology, and risk management professionals. They have a wealth of experience and a demonstrated ability to add value with their advice and to deliver high-impact results. As the Senior Manager, Technology Change Risk Oversight you will play a key role in the review, risk identification, risk assessment, reporting, and effective challenge of technology processes, controls, and capabilities, including but not limited to material and high risk technology changes. You will provide subject matter expertise, oversight, and effective challenge of key Technology areas such as cloud services, enterprise architecture, cloud migrations, and overall technology deployments. As part of the second line of defense, this position will also collaborate closely with associates in first line Cyber, Technology, the Lines of Business, as well as other second line of defense risk management offices to perform and support evaluations of the effectiveness of the firm's controls infrastructure and offer independent advice and recommendations regarding ways to further mature the firm's cyber risk management capabilities. Finally, as a member of a growing organization, you will have the opportunity to shape and further refine your portfolio commensurate with the priorities of the organization and the company. The demands and high-visibility nature of this position requires an expert with a proven ability to work independently in a fast-paced environment and who can begin contributing immediately. Essential Functions (Responsibilities): Provide technical leadership in assessing the practices of designing, developing, testing and implementing cloud native solutions to crucial business problems through thoughtful use of industry best practices and Capital One policy. Evaluate proposed and approved cloud technical solutions for automation, resiliency, performance, scalability, and security including appropriate tradeoffs, risks and opportunities Evaluate/assess complex technological and business environment migrations to the cloud and integrated end-to-end solution options Build and maintain relationships with technical leaders, business owners, engineers and other stakeholders to understand and evaluate implementation plans, business priorities and technical solutions to ensure risk are well communicated and understood by the key stakeholders Keep up-to-date on cutting edge technology, standards, protocols and tools in areas relevant to the rapidly changing environment at Capital One, specifically cloud native architecture, serverless, and emerging AWS services Demonstrate strong analytical, problem-solving, and decision-making skills Communicate and drive highly complex technology solutions to broad audiences including executives, business leaders, product managers, legal experts, security specialists and software engineers Define, structure and plan work independently Perform independent risk assessment of our cloud environment focusing on architecture, engineering, networking, governance. Provide expertise and advice regarding the effectiveness of device configurations, IT architecture, or IT engineering solutions Consult with risk owners on the design and implementation or adjustment of mitigating controls associated with emerging technologies Draft and publish independent reports for risk owners, senior management, and other stakeholders regarding risks associated with new or emerging technologies Basic Qualifications: Bachelor's Degree or military experience At least 6 years of experience managing, consulting, auditing, or working in the fields of information security or information technology At least 3 years experience with Public Cloud implementations Preferred Qualifications: Master's Degree in Computer Science or in an Engineering discipline Professional certification (AWS Certified Solutions Architect, AWS Certified Security Speciality, AWS SysOps Administrator, or Certified Information Systems Security Professional (CISSP Experience with Information Security at the policy, architecture or implementation level Ability to communicate clearly and to interact effectively at all levels of the organization, and to influence as warranted and appropriate to drive to consensus Experience with identifying and communicating key risks related to cloud native implementations and architectures Experience drafting reports or analytic assessments for senior management Experience with analysis of emerging threats and reports that describe the implications of threat(s) and opportunities to executives or senior decision-makers Passion and expertise in cybersecurity and technology risk, with an ability to be confident, respectful, and articulate when registering dissenting or unpopular opinions Ability to manage multiple high-visibility and high-impact projects while maintaining superior results Execution oriented and a self-motivator Experience with threat modeling frameworks (STRIDE, OWASP Top 10, MITRE ATT&CK) Familiarity with controls and control frameworks ( NIST Cybersecurity Framework, NIST 800-53, CIS Top 20, ISO, COBIT.) Ability to work independently and in a team, taking a lead role on projects when necessary Prior experience working in financial services or other highly-regulated sectors Experience working in a hybrid IT environment that includes both traditional on-premises data centers and public cloud infrastructure (e.g., AWS, Azure, Google Cloud) Experience with OpenStack At this time, Capital One will not sponsor a new applicant for employment authorization for this position. This role is Hybrid, with associates expected to consistently spend three days per week in the office. The minimum and maximum full-time annual salaries for this role are listed below, by location. Please note that this salary information is solely for candidates hired to perform work within one of these locations, and refers to the amount Capital One is willing to pay at the time of this posting. Salaries for part-time roles will be prorated based upon the agreed upon number of hours to be regularly worked. McLean, VA: $225,400 - $257,200 for Sr Manager, Cyber Technical Richmond, VA: $204,900 - $233,800 for Sr Manager, Cyber Technical New York, NY: $245,900 - $280,600 for Sr Manager, Cyber Technical Riverwoods, IL: $204,900 - $233,800 for Sr Manager, Cyber Technical Candidates hired to work in other locations will be subject to the pay range associated with that location, and the actual annualized salary amount offered to any candidate at the time of hire will be reflected solely in the candidate's offer letter. This role is also eligible to earn performance based incentive compensation, which may include cash bonus(es) and/or long term incentives (LTI). Incentives could be discretionary or non discretionary depending on the plan. Capital One offers a comprehensive, competitive, and inclusive set of health, financial and other benefits that support your total well-being. Learn more at the Capital One Careers website . Eligibility varies based on full or part-time status, exempt or non-exempt status, and management level. This role is expected to accept applications for a minimum of 5 business days.No agencies please. Capital One is an equal opportunity employer (EOE, including disability/vet) committed to non-discrimination in compliance with applicable federal, state, and local laws. Capital One promotes a drug-free workplace. Capital One will consider for employment qualified applicants with a criminal history in a manner consistent with the requirements of applicable laws regarding criminal background inquiries, including, to the extent applicable, Article 23-A of the New York Correction Law; San Francisco, California Police Code Article 49, Sections ; New York City's Fair Chance Act; Philadelphia's Fair Criminal Records Screening Act; and other applicable federal, state, and local laws and regulations regarding criminal background inquiries. If you have visited our website in search of information on employment opportunities or to apply for a position, and you require an accommodation, please contact Capital One Recruiting at 1- or via email at . click apply for full job details
Senior Manager, Technology Change Risk Oversight
Capital One Baltimore, Maryland
Senior Manager, Technology Change Risk Oversight Capital One is one of the fastest growing organizations in the world today, powered by our passion for our customers. We are serious about technology, we dream big, and we execute: Capital One moved our entire enterprise to the public cloud over the course of five years. Just as we prioritize driving innovation through technology, we equally prioritize cybersecurity, reliability, and managing technology risk. Technology Risk Management (TRM) is a small organization that packs a big punch. The 100 professionals in TRM are trusted experts who oversee 14,000 developers at Capital One. We raise the bar for excellence in cybersecurity, reliability, and tech risk. We shape strategy and decisions, challenge activities to ensure they meet our standards, and perform independent tests of our security and technology risk. Our business leaders must make technology decisions constantly. TRM makes sure they have the tech risk information they need to make good decisions. Associates within TRM are highly-skilled information security, cybersecurity, site reliability engineering, technology, and risk management professionals. They have a wealth of experience and a demonstrated ability to add value with their advice and to deliver high-impact results. As the Senior Manager, Technology Change Risk Oversight you will play a key role in the review, risk identification, risk assessment, reporting, and effective challenge of technology processes, controls, and capabilities, including but not limited to material and high risk technology changes. You will provide subject matter expertise, oversight, and effective challenge of key Technology areas such as cloud services, enterprise architecture, cloud migrations, and overall technology deployments. As part of the second line of defense, this position will also collaborate closely with associates in first line Cyber, Technology, the Lines of Business, as well as other second line of defense risk management offices to perform and support evaluations of the effectiveness of the firm's controls infrastructure and offer independent advice and recommendations regarding ways to further mature the firm's cyber risk management capabilities. Finally, as a member of a growing organization, you will have the opportunity to shape and further refine your portfolio commensurate with the priorities of the organization and the company. The demands and high-visibility nature of this position requires an expert with a proven ability to work independently in a fast-paced environment and who can begin contributing immediately. Essential Functions (Responsibilities): Provide technical leadership in assessing the practices of designing, developing, testing and implementing cloud native solutions to crucial business problems through thoughtful use of industry best practices and Capital One policy. Evaluate proposed and approved cloud technical solutions for automation, resiliency, performance, scalability, and security including appropriate tradeoffs, risks and opportunities Evaluate/assess complex technological and business environment migrations to the cloud and integrated end-to-end solution options Build and maintain relationships with technical leaders, business owners, engineers and other stakeholders to understand and evaluate implementation plans, business priorities and technical solutions to ensure risk are well communicated and understood by the key stakeholders Keep up-to-date on cutting edge technology, standards, protocols and tools in areas relevant to the rapidly changing environment at Capital One, specifically cloud native architecture, serverless, and emerging AWS services Demonstrate strong analytical, problem-solving, and decision-making skills Communicate and drive highly complex technology solutions to broad audiences including executives, business leaders, product managers, legal experts, security specialists and software engineers Define, structure and plan work independently Perform independent risk assessment of our cloud environment focusing on architecture, engineering, networking, governance. Provide expertise and advice regarding the effectiveness of device configurations, IT architecture, or IT engineering solutions Consult with risk owners on the design and implementation or adjustment of mitigating controls associated with emerging technologies Draft and publish independent reports for risk owners, senior management, and other stakeholders regarding risks associated with new or emerging technologies Basic Qualifications: Bachelor's Degree or military experience At least 6 years of experience managing, consulting, auditing, or working in the fields of information security or information technology At least 3 years experience with Public Cloud implementations Preferred Qualifications: Master's Degree in Computer Science or in an Engineering discipline Professional certification (AWS Certified Solutions Architect, AWS Certified Security Speciality, AWS SysOps Administrator, or Certified Information Systems Security Professional (CISSP Experience with Information Security at the policy, architecture or implementation level Ability to communicate clearly and to interact effectively at all levels of the organization, and to influence as warranted and appropriate to drive to consensus Experience with identifying and communicating key risks related to cloud native implementations and architectures Experience drafting reports or analytic assessments for senior management Experience with analysis of emerging threats and reports that describe the implications of threat(s) and opportunities to executives or senior decision-makers Passion and expertise in cybersecurity and technology risk, with an ability to be confident, respectful, and articulate when registering dissenting or unpopular opinions Ability to manage multiple high-visibility and high-impact projects while maintaining superior results Execution oriented and a self-motivator Experience with threat modeling frameworks (STRIDE, OWASP Top 10, MITRE ATT&CK) Familiarity with controls and control frameworks ( NIST Cybersecurity Framework, NIST 800-53, CIS Top 20, ISO, COBIT.) Ability to work independently and in a team, taking a lead role on projects when necessary Prior experience working in financial services or other highly-regulated sectors Experience working in a hybrid IT environment that includes both traditional on-premises data centers and public cloud infrastructure (e.g., AWS, Azure, Google Cloud) Experience with OpenStack At this time, Capital One will not sponsor a new applicant for employment authorization for this position. This role is Hybrid, with associates expected to consistently spend three days per week in the office. The minimum and maximum full-time annual salaries for this role are listed below, by location. Please note that this salary information is solely for candidates hired to perform work within one of these locations, and refers to the amount Capital One is willing to pay at the time of this posting. Salaries for part-time roles will be prorated based upon the agreed upon number of hours to be regularly worked. McLean, VA: $225,400 - $257,200 for Sr Manager, Cyber Technical Richmond, VA: $204,900 - $233,800 for Sr Manager, Cyber Technical New York, NY: $245,900 - $280,600 for Sr Manager, Cyber Technical Riverwoods, IL: $204,900 - $233,800 for Sr Manager, Cyber Technical Candidates hired to work in other locations will be subject to the pay range associated with that location, and the actual annualized salary amount offered to any candidate at the time of hire will be reflected solely in the candidate's offer letter. This role is also eligible to earn performance based incentive compensation, which may include cash bonus(es) and/or long term incentives (LTI). Incentives could be discretionary or non discretionary depending on the plan. Capital One offers a comprehensive, competitive, and inclusive set of health, financial and other benefits that support your total well-being. Learn more at the Capital One Careers website . Eligibility varies based on full or part-time status, exempt or non-exempt status, and management level. This role is expected to accept applications for a minimum of 5 business days.No agencies please. Capital One is an equal opportunity employer (EOE, including disability/vet) committed to non-discrimination in compliance with applicable federal, state, and local laws. Capital One promotes a drug-free workplace. Capital One will consider for employment qualified applicants with a criminal history in a manner consistent with the requirements of applicable laws regarding criminal background inquiries, including, to the extent applicable, Article 23-A of the New York Correction Law; San Francisco, California Police Code Article 49, Sections ; New York City's Fair Chance Act; Philadelphia's Fair Criminal Records Screening Act; and other applicable federal, state, and local laws and regulations regarding criminal background inquiries. If you have visited our website in search of information on employment opportunities or to apply for a position, and you require an accommodation, please contact Capital One Recruiting at 1- or via email at . click apply for full job details
12/17/2025
Full time
Senior Manager, Technology Change Risk Oversight Capital One is one of the fastest growing organizations in the world today, powered by our passion for our customers. We are serious about technology, we dream big, and we execute: Capital One moved our entire enterprise to the public cloud over the course of five years. Just as we prioritize driving innovation through technology, we equally prioritize cybersecurity, reliability, and managing technology risk. Technology Risk Management (TRM) is a small organization that packs a big punch. The 100 professionals in TRM are trusted experts who oversee 14,000 developers at Capital One. We raise the bar for excellence in cybersecurity, reliability, and tech risk. We shape strategy and decisions, challenge activities to ensure they meet our standards, and perform independent tests of our security and technology risk. Our business leaders must make technology decisions constantly. TRM makes sure they have the tech risk information they need to make good decisions. Associates within TRM are highly-skilled information security, cybersecurity, site reliability engineering, technology, and risk management professionals. They have a wealth of experience and a demonstrated ability to add value with their advice and to deliver high-impact results. As the Senior Manager, Technology Change Risk Oversight you will play a key role in the review, risk identification, risk assessment, reporting, and effective challenge of technology processes, controls, and capabilities, including but not limited to material and high risk technology changes. You will provide subject matter expertise, oversight, and effective challenge of key Technology areas such as cloud services, enterprise architecture, cloud migrations, and overall technology deployments. As part of the second line of defense, this position will also collaborate closely with associates in first line Cyber, Technology, the Lines of Business, as well as other second line of defense risk management offices to perform and support evaluations of the effectiveness of the firm's controls infrastructure and offer independent advice and recommendations regarding ways to further mature the firm's cyber risk management capabilities. Finally, as a member of a growing organization, you will have the opportunity to shape and further refine your portfolio commensurate with the priorities of the organization and the company. The demands and high-visibility nature of this position requires an expert with a proven ability to work independently in a fast-paced environment and who can begin contributing immediately. Essential Functions (Responsibilities): Provide technical leadership in assessing the practices of designing, developing, testing and implementing cloud native solutions to crucial business problems through thoughtful use of industry best practices and Capital One policy. Evaluate proposed and approved cloud technical solutions for automation, resiliency, performance, scalability, and security including appropriate tradeoffs, risks and opportunities Evaluate/assess complex technological and business environment migrations to the cloud and integrated end-to-end solution options Build and maintain relationships with technical leaders, business owners, engineers and other stakeholders to understand and evaluate implementation plans, business priorities and technical solutions to ensure risk are well communicated and understood by the key stakeholders Keep up-to-date on cutting edge technology, standards, protocols and tools in areas relevant to the rapidly changing environment at Capital One, specifically cloud native architecture, serverless, and emerging AWS services Demonstrate strong analytical, problem-solving, and decision-making skills Communicate and drive highly complex technology solutions to broad audiences including executives, business leaders, product managers, legal experts, security specialists and software engineers Define, structure and plan work independently Perform independent risk assessment of our cloud environment focusing on architecture, engineering, networking, governance. Provide expertise and advice regarding the effectiveness of device configurations, IT architecture, or IT engineering solutions Consult with risk owners on the design and implementation or adjustment of mitigating controls associated with emerging technologies Draft and publish independent reports for risk owners, senior management, and other stakeholders regarding risks associated with new or emerging technologies Basic Qualifications: Bachelor's Degree or military experience At least 6 years of experience managing, consulting, auditing, or working in the fields of information security or information technology At least 3 years experience with Public Cloud implementations Preferred Qualifications: Master's Degree in Computer Science or in an Engineering discipline Professional certification (AWS Certified Solutions Architect, AWS Certified Security Speciality, AWS SysOps Administrator, or Certified Information Systems Security Professional (CISSP Experience with Information Security at the policy, architecture or implementation level Ability to communicate clearly and to interact effectively at all levels of the organization, and to influence as warranted and appropriate to drive to consensus Experience with identifying and communicating key risks related to cloud native implementations and architectures Experience drafting reports or analytic assessments for senior management Experience with analysis of emerging threats and reports that describe the implications of threat(s) and opportunities to executives or senior decision-makers Passion and expertise in cybersecurity and technology risk, with an ability to be confident, respectful, and articulate when registering dissenting or unpopular opinions Ability to manage multiple high-visibility and high-impact projects while maintaining superior results Execution oriented and a self-motivator Experience with threat modeling frameworks (STRIDE, OWASP Top 10, MITRE ATT&CK) Familiarity with controls and control frameworks ( NIST Cybersecurity Framework, NIST 800-53, CIS Top 20, ISO, COBIT.) Ability to work independently and in a team, taking a lead role on projects when necessary Prior experience working in financial services or other highly-regulated sectors Experience working in a hybrid IT environment that includes both traditional on-premises data centers and public cloud infrastructure (e.g., AWS, Azure, Google Cloud) Experience with OpenStack At this time, Capital One will not sponsor a new applicant for employment authorization for this position. This role is Hybrid, with associates expected to consistently spend three days per week in the office. The minimum and maximum full-time annual salaries for this role are listed below, by location. Please note that this salary information is solely for candidates hired to perform work within one of these locations, and refers to the amount Capital One is willing to pay at the time of this posting. Salaries for part-time roles will be prorated based upon the agreed upon number of hours to be regularly worked. McLean, VA: $225,400 - $257,200 for Sr Manager, Cyber Technical Richmond, VA: $204,900 - $233,800 for Sr Manager, Cyber Technical New York, NY: $245,900 - $280,600 for Sr Manager, Cyber Technical Riverwoods, IL: $204,900 - $233,800 for Sr Manager, Cyber Technical Candidates hired to work in other locations will be subject to the pay range associated with that location, and the actual annualized salary amount offered to any candidate at the time of hire will be reflected solely in the candidate's offer letter. This role is also eligible to earn performance based incentive compensation, which may include cash bonus(es) and/or long term incentives (LTI). Incentives could be discretionary or non discretionary depending on the plan. Capital One offers a comprehensive, competitive, and inclusive set of health, financial and other benefits that support your total well-being. Learn more at the Capital One Careers website . Eligibility varies based on full or part-time status, exempt or non-exempt status, and management level. This role is expected to accept applications for a minimum of 5 business days.No agencies please. Capital One is an equal opportunity employer (EOE, including disability/vet) committed to non-discrimination in compliance with applicable federal, state, and local laws. Capital One promotes a drug-free workplace. Capital One will consider for employment qualified applicants with a criminal history in a manner consistent with the requirements of applicable laws regarding criminal background inquiries, including, to the extent applicable, Article 23-A of the New York Correction Law; San Francisco, California Police Code Article 49, Sections ; New York City's Fair Chance Act; Philadelphia's Fair Criminal Records Screening Act; and other applicable federal, state, and local laws and regulations regarding criminal background inquiries. If you have visited our website in search of information on employment opportunities or to apply for a position, and you require an accommodation, please contact Capital One Recruiting at 1- or via email at . click apply for full job details
Senior Manager, Technology Change Risk Oversight
Capital One Dover, Delaware
Senior Manager, Technology Change Risk Oversight Capital One is one of the fastest growing organizations in the world today, powered by our passion for our customers. We are serious about technology, we dream big, and we execute: Capital One moved our entire enterprise to the public cloud over the course of five years. Just as we prioritize driving innovation through technology, we equally prioritize cybersecurity, reliability, and managing technology risk. Technology Risk Management (TRM) is a small organization that packs a big punch. The 100 professionals in TRM are trusted experts who oversee 14,000 developers at Capital One. We raise the bar for excellence in cybersecurity, reliability, and tech risk. We shape strategy and decisions, challenge activities to ensure they meet our standards, and perform independent tests of our security and technology risk. Our business leaders must make technology decisions constantly. TRM makes sure they have the tech risk information they need to make good decisions. Associates within TRM are highly-skilled information security, cybersecurity, site reliability engineering, technology, and risk management professionals. They have a wealth of experience and a demonstrated ability to add value with their advice and to deliver high-impact results. As the Senior Manager, Technology Change Risk Oversight you will play a key role in the review, risk identification, risk assessment, reporting, and effective challenge of technology processes, controls, and capabilities, including but not limited to material and high risk technology changes. You will provide subject matter expertise, oversight, and effective challenge of key Technology areas such as cloud services, enterprise architecture, cloud migrations, and overall technology deployments. As part of the second line of defense, this position will also collaborate closely with associates in first line Cyber, Technology, the Lines of Business, as well as other second line of defense risk management offices to perform and support evaluations of the effectiveness of the firm's controls infrastructure and offer independent advice and recommendations regarding ways to further mature the firm's cyber risk management capabilities. Finally, as a member of a growing organization, you will have the opportunity to shape and further refine your portfolio commensurate with the priorities of the organization and the company. The demands and high-visibility nature of this position requires an expert with a proven ability to work independently in a fast-paced environment and who can begin contributing immediately. Essential Functions (Responsibilities): Provide technical leadership in assessing the practices of designing, developing, testing and implementing cloud native solutions to crucial business problems through thoughtful use of industry best practices and Capital One policy. Evaluate proposed and approved cloud technical solutions for automation, resiliency, performance, scalability, and security including appropriate tradeoffs, risks and opportunities Evaluate/assess complex technological and business environment migrations to the cloud and integrated end-to-end solution options Build and maintain relationships with technical leaders, business owners, engineers and other stakeholders to understand and evaluate implementation plans, business priorities and technical solutions to ensure risk are well communicated and understood by the key stakeholders Keep up-to-date on cutting edge technology, standards, protocols and tools in areas relevant to the rapidly changing environment at Capital One, specifically cloud native architecture, serverless, and emerging AWS services Demonstrate strong analytical, problem-solving, and decision-making skills Communicate and drive highly complex technology solutions to broad audiences including executives, business leaders, product managers, legal experts, security specialists and software engineers Define, structure and plan work independently Perform independent risk assessment of our cloud environment focusing on architecture, engineering, networking, governance. Provide expertise and advice regarding the effectiveness of device configurations, IT architecture, or IT engineering solutions Consult with risk owners on the design and implementation or adjustment of mitigating controls associated with emerging technologies Draft and publish independent reports for risk owners, senior management, and other stakeholders regarding risks associated with new or emerging technologies Basic Qualifications: Bachelor's Degree or military experience At least 6 years of experience managing, consulting, auditing, or working in the fields of information security or information technology At least 3 years experience with Public Cloud implementations Preferred Qualifications: Master's Degree in Computer Science or in an Engineering discipline Professional certification (AWS Certified Solutions Architect, AWS Certified Security Speciality, AWS SysOps Administrator, or Certified Information Systems Security Professional (CISSP Experience with Information Security at the policy, architecture or implementation level Ability to communicate clearly and to interact effectively at all levels of the organization, and to influence as warranted and appropriate to drive to consensus Experience with identifying and communicating key risks related to cloud native implementations and architectures Experience drafting reports or analytic assessments for senior management Experience with analysis of emerging threats and reports that describe the implications of threat(s) and opportunities to executives or senior decision-makers Passion and expertise in cybersecurity and technology risk, with an ability to be confident, respectful, and articulate when registering dissenting or unpopular opinions Ability to manage multiple high-visibility and high-impact projects while maintaining superior results Execution oriented and a self-motivator Experience with threat modeling frameworks (STRIDE, OWASP Top 10, MITRE ATT&CK) Familiarity with controls and control frameworks ( NIST Cybersecurity Framework, NIST 800-53, CIS Top 20, ISO, COBIT.) Ability to work independently and in a team, taking a lead role on projects when necessary Prior experience working in financial services or other highly-regulated sectors Experience working in a hybrid IT environment that includes both traditional on-premises data centers and public cloud infrastructure (e.g., AWS, Azure, Google Cloud) Experience with OpenStack At this time, Capital One will not sponsor a new applicant for employment authorization for this position. This role is Hybrid, with associates expected to consistently spend three days per week in the office. The minimum and maximum full-time annual salaries for this role are listed below, by location. Please note that this salary information is solely for candidates hired to perform work within one of these locations, and refers to the amount Capital One is willing to pay at the time of this posting. Salaries for part-time roles will be prorated based upon the agreed upon number of hours to be regularly worked. McLean, VA: $225,400 - $257,200 for Sr Manager, Cyber Technical Richmond, VA: $204,900 - $233,800 for Sr Manager, Cyber Technical New York, NY: $245,900 - $280,600 for Sr Manager, Cyber Technical Riverwoods, IL: $204,900 - $233,800 for Sr Manager, Cyber Technical Candidates hired to work in other locations will be subject to the pay range associated with that location, and the actual annualized salary amount offered to any candidate at the time of hire will be reflected solely in the candidate's offer letter. This role is also eligible to earn performance based incentive compensation, which may include cash bonus(es) and/or long term incentives (LTI). Incentives could be discretionary or non discretionary depending on the plan. Capital One offers a comprehensive, competitive, and inclusive set of health, financial and other benefits that support your total well-being. Learn more at the Capital One Careers website . Eligibility varies based on full or part-time status, exempt or non-exempt status, and management level. This role is expected to accept applications for a minimum of 5 business days.No agencies please. Capital One is an equal opportunity employer (EOE, including disability/vet) committed to non-discrimination in compliance with applicable federal, state, and local laws. Capital One promotes a drug-free workplace. Capital One will consider for employment qualified applicants with a criminal history in a manner consistent with the requirements of applicable laws regarding criminal background inquiries, including, to the extent applicable, Article 23-A of the New York Correction Law; San Francisco, California Police Code Article 49, Sections ; New York City's Fair Chance Act; Philadelphia's Fair Criminal Records Screening Act; and other applicable federal, state, and local laws and regulations regarding criminal background inquiries. If you have visited our website in search of information on employment opportunities or to apply for a position, and you require an accommodation, please contact Capital One Recruiting at 1- or via email at . click apply for full job details
12/17/2025
Full time
Senior Manager, Technology Change Risk Oversight Capital One is one of the fastest growing organizations in the world today, powered by our passion for our customers. We are serious about technology, we dream big, and we execute: Capital One moved our entire enterprise to the public cloud over the course of five years. Just as we prioritize driving innovation through technology, we equally prioritize cybersecurity, reliability, and managing technology risk. Technology Risk Management (TRM) is a small organization that packs a big punch. The 100 professionals in TRM are trusted experts who oversee 14,000 developers at Capital One. We raise the bar for excellence in cybersecurity, reliability, and tech risk. We shape strategy and decisions, challenge activities to ensure they meet our standards, and perform independent tests of our security and technology risk. Our business leaders must make technology decisions constantly. TRM makes sure they have the tech risk information they need to make good decisions. Associates within TRM are highly-skilled information security, cybersecurity, site reliability engineering, technology, and risk management professionals. They have a wealth of experience and a demonstrated ability to add value with their advice and to deliver high-impact results. As the Senior Manager, Technology Change Risk Oversight you will play a key role in the review, risk identification, risk assessment, reporting, and effective challenge of technology processes, controls, and capabilities, including but not limited to material and high risk technology changes. You will provide subject matter expertise, oversight, and effective challenge of key Technology areas such as cloud services, enterprise architecture, cloud migrations, and overall technology deployments. As part of the second line of defense, this position will also collaborate closely with associates in first line Cyber, Technology, the Lines of Business, as well as other second line of defense risk management offices to perform and support evaluations of the effectiveness of the firm's controls infrastructure and offer independent advice and recommendations regarding ways to further mature the firm's cyber risk management capabilities. Finally, as a member of a growing organization, you will have the opportunity to shape and further refine your portfolio commensurate with the priorities of the organization and the company. The demands and high-visibility nature of this position requires an expert with a proven ability to work independently in a fast-paced environment and who can begin contributing immediately. Essential Functions (Responsibilities): Provide technical leadership in assessing the practices of designing, developing, testing and implementing cloud native solutions to crucial business problems through thoughtful use of industry best practices and Capital One policy. Evaluate proposed and approved cloud technical solutions for automation, resiliency, performance, scalability, and security including appropriate tradeoffs, risks and opportunities Evaluate/assess complex technological and business environment migrations to the cloud and integrated end-to-end solution options Build and maintain relationships with technical leaders, business owners, engineers and other stakeholders to understand and evaluate implementation plans, business priorities and technical solutions to ensure risk are well communicated and understood by the key stakeholders Keep up-to-date on cutting edge technology, standards, protocols and tools in areas relevant to the rapidly changing environment at Capital One, specifically cloud native architecture, serverless, and emerging AWS services Demonstrate strong analytical, problem-solving, and decision-making skills Communicate and drive highly complex technology solutions to broad audiences including executives, business leaders, product managers, legal experts, security specialists and software engineers Define, structure and plan work independently Perform independent risk assessment of our cloud environment focusing on architecture, engineering, networking, governance. Provide expertise and advice regarding the effectiveness of device configurations, IT architecture, or IT engineering solutions Consult with risk owners on the design and implementation or adjustment of mitigating controls associated with emerging technologies Draft and publish independent reports for risk owners, senior management, and other stakeholders regarding risks associated with new or emerging technologies Basic Qualifications: Bachelor's Degree or military experience At least 6 years of experience managing, consulting, auditing, or working in the fields of information security or information technology At least 3 years experience with Public Cloud implementations Preferred Qualifications: Master's Degree in Computer Science or in an Engineering discipline Professional certification (AWS Certified Solutions Architect, AWS Certified Security Speciality, AWS SysOps Administrator, or Certified Information Systems Security Professional (CISSP Experience with Information Security at the policy, architecture or implementation level Ability to communicate clearly and to interact effectively at all levels of the organization, and to influence as warranted and appropriate to drive to consensus Experience with identifying and communicating key risks related to cloud native implementations and architectures Experience drafting reports or analytic assessments for senior management Experience with analysis of emerging threats and reports that describe the implications of threat(s) and opportunities to executives or senior decision-makers Passion and expertise in cybersecurity and technology risk, with an ability to be confident, respectful, and articulate when registering dissenting or unpopular opinions Ability to manage multiple high-visibility and high-impact projects while maintaining superior results Execution oriented and a self-motivator Experience with threat modeling frameworks (STRIDE, OWASP Top 10, MITRE ATT&CK) Familiarity with controls and control frameworks ( NIST Cybersecurity Framework, NIST 800-53, CIS Top 20, ISO, COBIT.) Ability to work independently and in a team, taking a lead role on projects when necessary Prior experience working in financial services or other highly-regulated sectors Experience working in a hybrid IT environment that includes both traditional on-premises data centers and public cloud infrastructure (e.g., AWS, Azure, Google Cloud) Experience with OpenStack At this time, Capital One will not sponsor a new applicant for employment authorization for this position. This role is Hybrid, with associates expected to consistently spend three days per week in the office. The minimum and maximum full-time annual salaries for this role are listed below, by location. Please note that this salary information is solely for candidates hired to perform work within one of these locations, and refers to the amount Capital One is willing to pay at the time of this posting. Salaries for part-time roles will be prorated based upon the agreed upon number of hours to be regularly worked. McLean, VA: $225,400 - $257,200 for Sr Manager, Cyber Technical Richmond, VA: $204,900 - $233,800 for Sr Manager, Cyber Technical New York, NY: $245,900 - $280,600 for Sr Manager, Cyber Technical Riverwoods, IL: $204,900 - $233,800 for Sr Manager, Cyber Technical Candidates hired to work in other locations will be subject to the pay range associated with that location, and the actual annualized salary amount offered to any candidate at the time of hire will be reflected solely in the candidate's offer letter. This role is also eligible to earn performance based incentive compensation, which may include cash bonus(es) and/or long term incentives (LTI). Incentives could be discretionary or non discretionary depending on the plan. Capital One offers a comprehensive, competitive, and inclusive set of health, financial and other benefits that support your total well-being. Learn more at the Capital One Careers website . Eligibility varies based on full or part-time status, exempt or non-exempt status, and management level. This role is expected to accept applications for a minimum of 5 business days.No agencies please. Capital One is an equal opportunity employer (EOE, including disability/vet) committed to non-discrimination in compliance with applicable federal, state, and local laws. Capital One promotes a drug-free workplace. Capital One will consider for employment qualified applicants with a criminal history in a manner consistent with the requirements of applicable laws regarding criminal background inquiries, including, to the extent applicable, Article 23-A of the New York Correction Law; San Francisco, California Police Code Article 49, Sections ; New York City's Fair Chance Act; Philadelphia's Fair Criminal Records Screening Act; and other applicable federal, state, and local laws and regulations regarding criminal background inquiries. If you have visited our website in search of information on employment opportunities or to apply for a position, and you require an accommodation, please contact Capital One Recruiting at 1- or via email at . click apply for full job details
Senior Manager, Technology Change Risk Oversight
Capital One New York, New York
Senior Manager, Technology Change Risk Oversight Capital One is one of the fastest growing organizations in the world today, powered by our passion for our customers. We are serious about technology, we dream big, and we execute: Capital One moved our entire enterprise to the public cloud over the course of five years. Just as we prioritize driving innovation through technology, we equally prioritize cybersecurity, reliability, and managing technology risk. Technology Risk Management (TRM) is a small organization that packs a big punch. The 100 professionals in TRM are trusted experts who oversee 14,000 developers at Capital One. We raise the bar for excellence in cybersecurity, reliability, and tech risk. We shape strategy and decisions, challenge activities to ensure they meet our standards, and perform independent tests of our security and technology risk. Our business leaders must make technology decisions constantly. TRM makes sure they have the tech risk information they need to make good decisions. Associates within TRM are highly-skilled information security, cybersecurity, site reliability engineering, technology, and risk management professionals. They have a wealth of experience and a demonstrated ability to add value with their advice and to deliver high-impact results. As the Senior Manager, Technology Change Risk Oversight you will play a key role in the review, risk identification, risk assessment, reporting, and effective challenge of technology processes, controls, and capabilities, including but not limited to material and high risk technology changes. You will provide subject matter expertise, oversight, and effective challenge of key Technology areas such as cloud services, enterprise architecture, cloud migrations, and overall technology deployments. As part of the second line of defense, this position will also collaborate closely with associates in first line Cyber, Technology, the Lines of Business, as well as other second line of defense risk management offices to perform and support evaluations of the effectiveness of the firm's controls infrastructure and offer independent advice and recommendations regarding ways to further mature the firm's cyber risk management capabilities. Finally, as a member of a growing organization, you will have the opportunity to shape and further refine your portfolio commensurate with the priorities of the organization and the company. The demands and high-visibility nature of this position requires an expert with a proven ability to work independently in a fast-paced environment and who can begin contributing immediately. Essential Functions (Responsibilities): Provide technical leadership in assessing the practices of designing, developing, testing and implementing cloud native solutions to crucial business problems through thoughtful use of industry best practices and Capital One policy. Evaluate proposed and approved cloud technical solutions for automation, resiliency, performance, scalability, and security including appropriate tradeoffs, risks and opportunities Evaluate/assess complex technological and business environment migrations to the cloud and integrated end-to-end solution options Build and maintain relationships with technical leaders, business owners, engineers and other stakeholders to understand and evaluate implementation plans, business priorities and technical solutions to ensure risk are well communicated and understood by the key stakeholders Keep up-to-date on cutting edge technology, standards, protocols and tools in areas relevant to the rapidly changing environment at Capital One, specifically cloud native architecture, serverless, and emerging AWS services Demonstrate strong analytical, problem-solving, and decision-making skills Communicate and drive highly complex technology solutions to broad audiences including executives, business leaders, product managers, legal experts, security specialists and software engineers Define, structure and plan work independently Perform independent risk assessment of our cloud environment focusing on architecture, engineering, networking, governance. Provide expertise and advice regarding the effectiveness of device configurations, IT architecture, or IT engineering solutions Consult with risk owners on the design and implementation or adjustment of mitigating controls associated with emerging technologies Draft and publish independent reports for risk owners, senior management, and other stakeholders regarding risks associated with new or emerging technologies Basic Qualifications: Bachelor's Degree or military experience At least 6 years of experience managing, consulting, auditing, or working in the fields of information security or information technology At least 3 years experience with Public Cloud implementations Preferred Qualifications: Master's Degree in Computer Science or in an Engineering discipline Professional certification (AWS Certified Solutions Architect, AWS Certified Security Speciality, AWS SysOps Administrator, or Certified Information Systems Security Professional (CISSP Experience with Information Security at the policy, architecture or implementation level Ability to communicate clearly and to interact effectively at all levels of the organization, and to influence as warranted and appropriate to drive to consensus Experience with identifying and communicating key risks related to cloud native implementations and architectures Experience drafting reports or analytic assessments for senior management Experience with analysis of emerging threats and reports that describe the implications of threat(s) and opportunities to executives or senior decision-makers Passion and expertise in cybersecurity and technology risk, with an ability to be confident, respectful, and articulate when registering dissenting or unpopular opinions Ability to manage multiple high-visibility and high-impact projects while maintaining superior results Execution oriented and a self-motivator Experience with threat modeling frameworks (STRIDE, OWASP Top 10, MITRE ATT&CK) Familiarity with controls and control frameworks ( NIST Cybersecurity Framework, NIST 800-53, CIS Top 20, ISO, COBIT.) Ability to work independently and in a team, taking a lead role on projects when necessary Prior experience working in financial services or other highly-regulated sectors Experience working in a hybrid IT environment that includes both traditional on-premises data centers and public cloud infrastructure (e.g., AWS, Azure, Google Cloud) Experience with OpenStack At this time, Capital One will not sponsor a new applicant for employment authorization for this position. This role is Hybrid, with associates expected to consistently spend three days per week in the office. The minimum and maximum full-time annual salaries for this role are listed below, by location. Please note that this salary information is solely for candidates hired to perform work within one of these locations, and refers to the amount Capital One is willing to pay at the time of this posting. Salaries for part-time roles will be prorated based upon the agreed upon number of hours to be regularly worked. McLean, VA: $225,400 - $257,200 for Sr Manager, Cyber Technical Richmond, VA: $204,900 - $233,800 for Sr Manager, Cyber Technical New York, NY: $245,900 - $280,600 for Sr Manager, Cyber Technical Riverwoods, IL: $204,900 - $233,800 for Sr Manager, Cyber Technical Candidates hired to work in other locations will be subject to the pay range associated with that location, and the actual annualized salary amount offered to any candidate at the time of hire will be reflected solely in the candidate's offer letter. This role is also eligible to earn performance based incentive compensation, which may include cash bonus(es) and/or long term incentives (LTI). Incentives could be discretionary or non discretionary depending on the plan. Capital One offers a comprehensive, competitive, and inclusive set of health, financial and other benefits that support your total well-being. Learn more at the Capital One Careers website . Eligibility varies based on full or part-time status, exempt or non-exempt status, and management level. This role is expected to accept applications for a minimum of 5 business days.No agencies please. Capital One is an equal opportunity employer (EOE, including disability/vet) committed to non-discrimination in compliance with applicable federal, state, and local laws. Capital One promotes a drug-free workplace. Capital One will consider for employment qualified applicants with a criminal history in a manner consistent with the requirements of applicable laws regarding criminal background inquiries, including, to the extent applicable, Article 23-A of the New York Correction Law; San Francisco, California Police Code Article 49, Sections ; New York City's Fair Chance Act; Philadelphia's Fair Criminal Records Screening Act; and other applicable federal, state, and local laws and regulations regarding criminal background inquiries. If you have visited our website in search of information on employment opportunities or to apply for a position, and you require an accommodation, please contact Capital One Recruiting at 1- or via email at . click apply for full job details
12/17/2025
Full time
Senior Manager, Technology Change Risk Oversight Capital One is one of the fastest growing organizations in the world today, powered by our passion for our customers. We are serious about technology, we dream big, and we execute: Capital One moved our entire enterprise to the public cloud over the course of five years. Just as we prioritize driving innovation through technology, we equally prioritize cybersecurity, reliability, and managing technology risk. Technology Risk Management (TRM) is a small organization that packs a big punch. The 100 professionals in TRM are trusted experts who oversee 14,000 developers at Capital One. We raise the bar for excellence in cybersecurity, reliability, and tech risk. We shape strategy and decisions, challenge activities to ensure they meet our standards, and perform independent tests of our security and technology risk. Our business leaders must make technology decisions constantly. TRM makes sure they have the tech risk information they need to make good decisions. Associates within TRM are highly-skilled information security, cybersecurity, site reliability engineering, technology, and risk management professionals. They have a wealth of experience and a demonstrated ability to add value with their advice and to deliver high-impact results. As the Senior Manager, Technology Change Risk Oversight you will play a key role in the review, risk identification, risk assessment, reporting, and effective challenge of technology processes, controls, and capabilities, including but not limited to material and high risk technology changes. You will provide subject matter expertise, oversight, and effective challenge of key Technology areas such as cloud services, enterprise architecture, cloud migrations, and overall technology deployments. As part of the second line of defense, this position will also collaborate closely with associates in first line Cyber, Technology, the Lines of Business, as well as other second line of defense risk management offices to perform and support evaluations of the effectiveness of the firm's controls infrastructure and offer independent advice and recommendations regarding ways to further mature the firm's cyber risk management capabilities. Finally, as a member of a growing organization, you will have the opportunity to shape and further refine your portfolio commensurate with the priorities of the organization and the company. The demands and high-visibility nature of this position requires an expert with a proven ability to work independently in a fast-paced environment and who can begin contributing immediately. Essential Functions (Responsibilities): Provide technical leadership in assessing the practices of designing, developing, testing and implementing cloud native solutions to crucial business problems through thoughtful use of industry best practices and Capital One policy. Evaluate proposed and approved cloud technical solutions for automation, resiliency, performance, scalability, and security including appropriate tradeoffs, risks and opportunities Evaluate/assess complex technological and business environment migrations to the cloud and integrated end-to-end solution options Build and maintain relationships with technical leaders, business owners, engineers and other stakeholders to understand and evaluate implementation plans, business priorities and technical solutions to ensure risk are well communicated and understood by the key stakeholders Keep up-to-date on cutting edge technology, standards, protocols and tools in areas relevant to the rapidly changing environment at Capital One, specifically cloud native architecture, serverless, and emerging AWS services Demonstrate strong analytical, problem-solving, and decision-making skills Communicate and drive highly complex technology solutions to broad audiences including executives, business leaders, product managers, legal experts, security specialists and software engineers Define, structure and plan work independently Perform independent risk assessment of our cloud environment focusing on architecture, engineering, networking, governance. Provide expertise and advice regarding the effectiveness of device configurations, IT architecture, or IT engineering solutions Consult with risk owners on the design and implementation or adjustment of mitigating controls associated with emerging technologies Draft and publish independent reports for risk owners, senior management, and other stakeholders regarding risks associated with new or emerging technologies Basic Qualifications: Bachelor's Degree or military experience At least 6 years of experience managing, consulting, auditing, or working in the fields of information security or information technology At least 3 years experience with Public Cloud implementations Preferred Qualifications: Master's Degree in Computer Science or in an Engineering discipline Professional certification (AWS Certified Solutions Architect, AWS Certified Security Speciality, AWS SysOps Administrator, or Certified Information Systems Security Professional (CISSP Experience with Information Security at the policy, architecture or implementation level Ability to communicate clearly and to interact effectively at all levels of the organization, and to influence as warranted and appropriate to drive to consensus Experience with identifying and communicating key risks related to cloud native implementations and architectures Experience drafting reports or analytic assessments for senior management Experience with analysis of emerging threats and reports that describe the implications of threat(s) and opportunities to executives or senior decision-makers Passion and expertise in cybersecurity and technology risk, with an ability to be confident, respectful, and articulate when registering dissenting or unpopular opinions Ability to manage multiple high-visibility and high-impact projects while maintaining superior results Execution oriented and a self-motivator Experience with threat modeling frameworks (STRIDE, OWASP Top 10, MITRE ATT&CK) Familiarity with controls and control frameworks ( NIST Cybersecurity Framework, NIST 800-53, CIS Top 20, ISO, COBIT.) Ability to work independently and in a team, taking a lead role on projects when necessary Prior experience working in financial services or other highly-regulated sectors Experience working in a hybrid IT environment that includes both traditional on-premises data centers and public cloud infrastructure (e.g., AWS, Azure, Google Cloud) Experience with OpenStack At this time, Capital One will not sponsor a new applicant for employment authorization for this position. This role is Hybrid, with associates expected to consistently spend three days per week in the office. The minimum and maximum full-time annual salaries for this role are listed below, by location. Please note that this salary information is solely for candidates hired to perform work within one of these locations, and refers to the amount Capital One is willing to pay at the time of this posting. Salaries for part-time roles will be prorated based upon the agreed upon number of hours to be regularly worked. McLean, VA: $225,400 - $257,200 for Sr Manager, Cyber Technical Richmond, VA: $204,900 - $233,800 for Sr Manager, Cyber Technical New York, NY: $245,900 - $280,600 for Sr Manager, Cyber Technical Riverwoods, IL: $204,900 - $233,800 for Sr Manager, Cyber Technical Candidates hired to work in other locations will be subject to the pay range associated with that location, and the actual annualized salary amount offered to any candidate at the time of hire will be reflected solely in the candidate's offer letter. This role is also eligible to earn performance based incentive compensation, which may include cash bonus(es) and/or long term incentives (LTI). Incentives could be discretionary or non discretionary depending on the plan. Capital One offers a comprehensive, competitive, and inclusive set of health, financial and other benefits that support your total well-being. Learn more at the Capital One Careers website . Eligibility varies based on full or part-time status, exempt or non-exempt status, and management level. This role is expected to accept applications for a minimum of 5 business days.No agencies please. Capital One is an equal opportunity employer (EOE, including disability/vet) committed to non-discrimination in compliance with applicable federal, state, and local laws. Capital One promotes a drug-free workplace. Capital One will consider for employment qualified applicants with a criminal history in a manner consistent with the requirements of applicable laws regarding criminal background inquiries, including, to the extent applicable, Article 23-A of the New York Correction Law; San Francisco, California Police Code Article 49, Sections ; New York City's Fair Chance Act; Philadelphia's Fair Criminal Records Screening Act; and other applicable federal, state, and local laws and regulations regarding criminal background inquiries. If you have visited our website in search of information on employment opportunities or to apply for a position, and you require an accommodation, please contact Capital One Recruiting at 1- or via email at . click apply for full job details
Senior Manager, Technology Change Risk Oversight
Capital One Petersburg, Virginia
Senior Manager, Technology Change Risk Oversight Capital One is one of the fastest growing organizations in the world today, powered by our passion for our customers. We are serious about technology, we dream big, and we execute: Capital One moved our entire enterprise to the public cloud over the course of five years. Just as we prioritize driving innovation through technology, we equally prioritize cybersecurity, reliability, and managing technology risk. Technology Risk Management (TRM) is a small organization that packs a big punch. The 100 professionals in TRM are trusted experts who oversee 14,000 developers at Capital One. We raise the bar for excellence in cybersecurity, reliability, and tech risk. We shape strategy and decisions, challenge activities to ensure they meet our standards, and perform independent tests of our security and technology risk. Our business leaders must make technology decisions constantly. TRM makes sure they have the tech risk information they need to make good decisions. Associates within TRM are highly-skilled information security, cybersecurity, site reliability engineering, technology, and risk management professionals. They have a wealth of experience and a demonstrated ability to add value with their advice and to deliver high-impact results. As the Senior Manager, Technology Change Risk Oversight you will play a key role in the review, risk identification, risk assessment, reporting, and effective challenge of technology processes, controls, and capabilities, including but not limited to material and high risk technology changes. You will provide subject matter expertise, oversight, and effective challenge of key Technology areas such as cloud services, enterprise architecture, cloud migrations, and overall technology deployments. As part of the second line of defense, this position will also collaborate closely with associates in first line Cyber, Technology, the Lines of Business, as well as other second line of defense risk management offices to perform and support evaluations of the effectiveness of the firm's controls infrastructure and offer independent advice and recommendations regarding ways to further mature the firm's cyber risk management capabilities. Finally, as a member of a growing organization, you will have the opportunity to shape and further refine your portfolio commensurate with the priorities of the organization and the company. The demands and high-visibility nature of this position requires an expert with a proven ability to work independently in a fast-paced environment and who can begin contributing immediately. Essential Functions (Responsibilities): Provide technical leadership in assessing the practices of designing, developing, testing and implementing cloud native solutions to crucial business problems through thoughtful use of industry best practices and Capital One policy. Evaluate proposed and approved cloud technical solutions for automation, resiliency, performance, scalability, and security including appropriate tradeoffs, risks and opportunities Evaluate/assess complex technological and business environment migrations to the cloud and integrated end-to-end solution options Build and maintain relationships with technical leaders, business owners, engineers and other stakeholders to understand and evaluate implementation plans, business priorities and technical solutions to ensure risk are well communicated and understood by the key stakeholders Keep up-to-date on cutting edge technology, standards, protocols and tools in areas relevant to the rapidly changing environment at Capital One, specifically cloud native architecture, serverless, and emerging AWS services Demonstrate strong analytical, problem-solving, and decision-making skills Communicate and drive highly complex technology solutions to broad audiences including executives, business leaders, product managers, legal experts, security specialists and software engineers Define, structure and plan work independently Perform independent risk assessment of our cloud environment focusing on architecture, engineering, networking, governance. Provide expertise and advice regarding the effectiveness of device configurations, IT architecture, or IT engineering solutions Consult with risk owners on the design and implementation or adjustment of mitigating controls associated with emerging technologies Draft and publish independent reports for risk owners, senior management, and other stakeholders regarding risks associated with new or emerging technologies Basic Qualifications: Bachelor's Degree or military experience At least 6 years of experience managing, consulting, auditing, or working in the fields of information security or information technology At least 3 years experience with Public Cloud implementations Preferred Qualifications: Master's Degree in Computer Science or in an Engineering discipline Professional certification (AWS Certified Solutions Architect, AWS Certified Security Speciality, AWS SysOps Administrator, or Certified Information Systems Security Professional (CISSP Experience with Information Security at the policy, architecture or implementation level Ability to communicate clearly and to interact effectively at all levels of the organization, and to influence as warranted and appropriate to drive to consensus Experience with identifying and communicating key risks related to cloud native implementations and architectures Experience drafting reports or analytic assessments for senior management Experience with analysis of emerging threats and reports that describe the implications of threat(s) and opportunities to executives or senior decision-makers Passion and expertise in cybersecurity and technology risk, with an ability to be confident, respectful, and articulate when registering dissenting or unpopular opinions Ability to manage multiple high-visibility and high-impact projects while maintaining superior results Execution oriented and a self-motivator Experience with threat modeling frameworks (STRIDE, OWASP Top 10, MITRE ATT&CK) Familiarity with controls and control frameworks ( NIST Cybersecurity Framework, NIST 800-53, CIS Top 20, ISO, COBIT.) Ability to work independently and in a team, taking a lead role on projects when necessary Prior experience working in financial services or other highly-regulated sectors Experience working in a hybrid IT environment that includes both traditional on-premises data centers and public cloud infrastructure (e.g., AWS, Azure, Google Cloud) Experience with OpenStack At this time, Capital One will not sponsor a new applicant for employment authorization for this position. This role is Hybrid, with associates expected to consistently spend three days per week in the office. The minimum and maximum full-time annual salaries for this role are listed below, by location. Please note that this salary information is solely for candidates hired to perform work within one of these locations, and refers to the amount Capital One is willing to pay at the time of this posting. Salaries for part-time roles will be prorated based upon the agreed upon number of hours to be regularly worked. McLean, VA: $225,400 - $257,200 for Sr Manager, Cyber Technical Richmond, VA: $204,900 - $233,800 for Sr Manager, Cyber Technical New York, NY: $245,900 - $280,600 for Sr Manager, Cyber Technical Riverwoods, IL: $204,900 - $233,800 for Sr Manager, Cyber Technical Candidates hired to work in other locations will be subject to the pay range associated with that location, and the actual annualized salary amount offered to any candidate at the time of hire will be reflected solely in the candidate's offer letter. This role is also eligible to earn performance based incentive compensation, which may include cash bonus(es) and/or long term incentives (LTI). Incentives could be discretionary or non discretionary depending on the plan. Capital One offers a comprehensive, competitive, and inclusive set of health, financial and other benefits that support your total well-being. Learn more at the Capital One Careers website . Eligibility varies based on full or part-time status, exempt or non-exempt status, and management level. This role is expected to accept applications for a minimum of 5 business days.No agencies please. Capital One is an equal opportunity employer (EOE, including disability/vet) committed to non-discrimination in compliance with applicable federal, state, and local laws. Capital One promotes a drug-free workplace. Capital One will consider for employment qualified applicants with a criminal history in a manner consistent with the requirements of applicable laws regarding criminal background inquiries, including, to the extent applicable, Article 23-A of the New York Correction Law; San Francisco, California Police Code Article 49, Sections ; New York City's Fair Chance Act; Philadelphia's Fair Criminal Records Screening Act; and other applicable federal, state, and local laws and regulations regarding criminal background inquiries. If you have visited our website in search of information on employment opportunities or to apply for a position, and you require an accommodation, please contact Capital One Recruiting at 1- or via email at . click apply for full job details
12/17/2025
Full time
Senior Manager, Technology Change Risk Oversight Capital One is one of the fastest growing organizations in the world today, powered by our passion for our customers. We are serious about technology, we dream big, and we execute: Capital One moved our entire enterprise to the public cloud over the course of five years. Just as we prioritize driving innovation through technology, we equally prioritize cybersecurity, reliability, and managing technology risk. Technology Risk Management (TRM) is a small organization that packs a big punch. The 100 professionals in TRM are trusted experts who oversee 14,000 developers at Capital One. We raise the bar for excellence in cybersecurity, reliability, and tech risk. We shape strategy and decisions, challenge activities to ensure they meet our standards, and perform independent tests of our security and technology risk. Our business leaders must make technology decisions constantly. TRM makes sure they have the tech risk information they need to make good decisions. Associates within TRM are highly-skilled information security, cybersecurity, site reliability engineering, technology, and risk management professionals. They have a wealth of experience and a demonstrated ability to add value with their advice and to deliver high-impact results. As the Senior Manager, Technology Change Risk Oversight you will play a key role in the review, risk identification, risk assessment, reporting, and effective challenge of technology processes, controls, and capabilities, including but not limited to material and high risk technology changes. You will provide subject matter expertise, oversight, and effective challenge of key Technology areas such as cloud services, enterprise architecture, cloud migrations, and overall technology deployments. As part of the second line of defense, this position will also collaborate closely with associates in first line Cyber, Technology, the Lines of Business, as well as other second line of defense risk management offices to perform and support evaluations of the effectiveness of the firm's controls infrastructure and offer independent advice and recommendations regarding ways to further mature the firm's cyber risk management capabilities. Finally, as a member of a growing organization, you will have the opportunity to shape and further refine your portfolio commensurate with the priorities of the organization and the company. The demands and high-visibility nature of this position requires an expert with a proven ability to work independently in a fast-paced environment and who can begin contributing immediately. Essential Functions (Responsibilities): Provide technical leadership in assessing the practices of designing, developing, testing and implementing cloud native solutions to crucial business problems through thoughtful use of industry best practices and Capital One policy. Evaluate proposed and approved cloud technical solutions for automation, resiliency, performance, scalability, and security including appropriate tradeoffs, risks and opportunities Evaluate/assess complex technological and business environment migrations to the cloud and integrated end-to-end solution options Build and maintain relationships with technical leaders, business owners, engineers and other stakeholders to understand and evaluate implementation plans, business priorities and technical solutions to ensure risk are well communicated and understood by the key stakeholders Keep up-to-date on cutting edge technology, standards, protocols and tools in areas relevant to the rapidly changing environment at Capital One, specifically cloud native architecture, serverless, and emerging AWS services Demonstrate strong analytical, problem-solving, and decision-making skills Communicate and drive highly complex technology solutions to broad audiences including executives, business leaders, product managers, legal experts, security specialists and software engineers Define, structure and plan work independently Perform independent risk assessment of our cloud environment focusing on architecture, engineering, networking, governance. Provide expertise and advice regarding the effectiveness of device configurations, IT architecture, or IT engineering solutions Consult with risk owners on the design and implementation or adjustment of mitigating controls associated with emerging technologies Draft and publish independent reports for risk owners, senior management, and other stakeholders regarding risks associated with new or emerging technologies Basic Qualifications: Bachelor's Degree or military experience At least 6 years of experience managing, consulting, auditing, or working in the fields of information security or information technology At least 3 years experience with Public Cloud implementations Preferred Qualifications: Master's Degree in Computer Science or in an Engineering discipline Professional certification (AWS Certified Solutions Architect, AWS Certified Security Speciality, AWS SysOps Administrator, or Certified Information Systems Security Professional (CISSP Experience with Information Security at the policy, architecture or implementation level Ability to communicate clearly and to interact effectively at all levels of the organization, and to influence as warranted and appropriate to drive to consensus Experience with identifying and communicating key risks related to cloud native implementations and architectures Experience drafting reports or analytic assessments for senior management Experience with analysis of emerging threats and reports that describe the implications of threat(s) and opportunities to executives or senior decision-makers Passion and expertise in cybersecurity and technology risk, with an ability to be confident, respectful, and articulate when registering dissenting or unpopular opinions Ability to manage multiple high-visibility and high-impact projects while maintaining superior results Execution oriented and a self-motivator Experience with threat modeling frameworks (STRIDE, OWASP Top 10, MITRE ATT&CK) Familiarity with controls and control frameworks ( NIST Cybersecurity Framework, NIST 800-53, CIS Top 20, ISO, COBIT.) Ability to work independently and in a team, taking a lead role on projects when necessary Prior experience working in financial services or other highly-regulated sectors Experience working in a hybrid IT environment that includes both traditional on-premises data centers and public cloud infrastructure (e.g., AWS, Azure, Google Cloud) Experience with OpenStack At this time, Capital One will not sponsor a new applicant for employment authorization for this position. This role is Hybrid, with associates expected to consistently spend three days per week in the office. The minimum and maximum full-time annual salaries for this role are listed below, by location. Please note that this salary information is solely for candidates hired to perform work within one of these locations, and refers to the amount Capital One is willing to pay at the time of this posting. Salaries for part-time roles will be prorated based upon the agreed upon number of hours to be regularly worked. McLean, VA: $225,400 - $257,200 for Sr Manager, Cyber Technical Richmond, VA: $204,900 - $233,800 for Sr Manager, Cyber Technical New York, NY: $245,900 - $280,600 for Sr Manager, Cyber Technical Riverwoods, IL: $204,900 - $233,800 for Sr Manager, Cyber Technical Candidates hired to work in other locations will be subject to the pay range associated with that location, and the actual annualized salary amount offered to any candidate at the time of hire will be reflected solely in the candidate's offer letter. This role is also eligible to earn performance based incentive compensation, which may include cash bonus(es) and/or long term incentives (LTI). Incentives could be discretionary or non discretionary depending on the plan. Capital One offers a comprehensive, competitive, and inclusive set of health, financial and other benefits that support your total well-being. Learn more at the Capital One Careers website . Eligibility varies based on full or part-time status, exempt or non-exempt status, and management level. This role is expected to accept applications for a minimum of 5 business days.No agencies please. Capital One is an equal opportunity employer (EOE, including disability/vet) committed to non-discrimination in compliance with applicable federal, state, and local laws. Capital One promotes a drug-free workplace. Capital One will consider for employment qualified applicants with a criminal history in a manner consistent with the requirements of applicable laws regarding criminal background inquiries, including, to the extent applicable, Article 23-A of the New York Correction Law; San Francisco, California Police Code Article 49, Sections ; New York City's Fair Chance Act; Philadelphia's Fair Criminal Records Screening Act; and other applicable federal, state, and local laws and regulations regarding criminal background inquiries. If you have visited our website in search of information on employment opportunities or to apply for a position, and you require an accommodation, please contact Capital One Recruiting at 1- or via email at . click apply for full job details
Senior Manager, Technology Change Risk Oversight
Capital One Norfolk, Virginia
Senior Manager, Technology Change Risk Oversight Capital One is one of the fastest growing organizations in the world today, powered by our passion for our customers. We are serious about technology, we dream big, and we execute: Capital One moved our entire enterprise to the public cloud over the course of five years. Just as we prioritize driving innovation through technology, we equally prioritize cybersecurity, reliability, and managing technology risk. Technology Risk Management (TRM) is a small organization that packs a big punch. The 100 professionals in TRM are trusted experts who oversee 14,000 developers at Capital One. We raise the bar for excellence in cybersecurity, reliability, and tech risk. We shape strategy and decisions, challenge activities to ensure they meet our standards, and perform independent tests of our security and technology risk. Our business leaders must make technology decisions constantly. TRM makes sure they have the tech risk information they need to make good decisions. Associates within TRM are highly-skilled information security, cybersecurity, site reliability engineering, technology, and risk management professionals. They have a wealth of experience and a demonstrated ability to add value with their advice and to deliver high-impact results. As the Senior Manager, Technology Change Risk Oversight you will play a key role in the review, risk identification, risk assessment, reporting, and effective challenge of technology processes, controls, and capabilities, including but not limited to material and high risk technology changes. You will provide subject matter expertise, oversight, and effective challenge of key Technology areas such as cloud services, enterprise architecture, cloud migrations, and overall technology deployments. As part of the second line of defense, this position will also collaborate closely with associates in first line Cyber, Technology, the Lines of Business, as well as other second line of defense risk management offices to perform and support evaluations of the effectiveness of the firm's controls infrastructure and offer independent advice and recommendations regarding ways to further mature the firm's cyber risk management capabilities. Finally, as a member of a growing organization, you will have the opportunity to shape and further refine your portfolio commensurate with the priorities of the organization and the company. The demands and high-visibility nature of this position requires an expert with a proven ability to work independently in a fast-paced environment and who can begin contributing immediately. Essential Functions (Responsibilities): Provide technical leadership in assessing the practices of designing, developing, testing and implementing cloud native solutions to crucial business problems through thoughtful use of industry best practices and Capital One policy. Evaluate proposed and approved cloud technical solutions for automation, resiliency, performance, scalability, and security including appropriate tradeoffs, risks and opportunities Evaluate/assess complex technological and business environment migrations to the cloud and integrated end-to-end solution options Build and maintain relationships with technical leaders, business owners, engineers and other stakeholders to understand and evaluate implementation plans, business priorities and technical solutions to ensure risk are well communicated and understood by the key stakeholders Keep up-to-date on cutting edge technology, standards, protocols and tools in areas relevant to the rapidly changing environment at Capital One, specifically cloud native architecture, serverless, and emerging AWS services Demonstrate strong analytical, problem-solving, and decision-making skills Communicate and drive highly complex technology solutions to broad audiences including executives, business leaders, product managers, legal experts, security specialists and software engineers Define, structure and plan work independently Perform independent risk assessment of our cloud environment focusing on architecture, engineering, networking, governance. Provide expertise and advice regarding the effectiveness of device configurations, IT architecture, or IT engineering solutions Consult with risk owners on the design and implementation or adjustment of mitigating controls associated with emerging technologies Draft and publish independent reports for risk owners, senior management, and other stakeholders regarding risks associated with new or emerging technologies Basic Qualifications: Bachelor's Degree or military experience At least 6 years of experience managing, consulting, auditing, or working in the fields of information security or information technology At least 3 years experience with Public Cloud implementations Preferred Qualifications: Master's Degree in Computer Science or in an Engineering discipline Professional certification (AWS Certified Solutions Architect, AWS Certified Security Speciality, AWS SysOps Administrator, or Certified Information Systems Security Professional (CISSP Experience with Information Security at the policy, architecture or implementation level Ability to communicate clearly and to interact effectively at all levels of the organization, and to influence as warranted and appropriate to drive to consensus Experience with identifying and communicating key risks related to cloud native implementations and architectures Experience drafting reports or analytic assessments for senior management Experience with analysis of emerging threats and reports that describe the implications of threat(s) and opportunities to executives or senior decision-makers Passion and expertise in cybersecurity and technology risk, with an ability to be confident, respectful, and articulate when registering dissenting or unpopular opinions Ability to manage multiple high-visibility and high-impact projects while maintaining superior results Execution oriented and a self-motivator Experience with threat modeling frameworks (STRIDE, OWASP Top 10, MITRE ATT&CK) Familiarity with controls and control frameworks ( NIST Cybersecurity Framework, NIST 800-53, CIS Top 20, ISO, COBIT.) Ability to work independently and in a team, taking a lead role on projects when necessary Prior experience working in financial services or other highly-regulated sectors Experience working in a hybrid IT environment that includes both traditional on-premises data centers and public cloud infrastructure (e.g., AWS, Azure, Google Cloud) Experience with OpenStack At this time, Capital One will not sponsor a new applicant for employment authorization for this position. This role is Hybrid, with associates expected to consistently spend three days per week in the office. The minimum and maximum full-time annual salaries for this role are listed below, by location. Please note that this salary information is solely for candidates hired to perform work within one of these locations, and refers to the amount Capital One is willing to pay at the time of this posting. Salaries for part-time roles will be prorated based upon the agreed upon number of hours to be regularly worked. McLean, VA: $225,400 - $257,200 for Sr Manager, Cyber Technical Richmond, VA: $204,900 - $233,800 for Sr Manager, Cyber Technical New York, NY: $245,900 - $280,600 for Sr Manager, Cyber Technical Riverwoods, IL: $204,900 - $233,800 for Sr Manager, Cyber Technical Candidates hired to work in other locations will be subject to the pay range associated with that location, and the actual annualized salary amount offered to any candidate at the time of hire will be reflected solely in the candidate's offer letter. This role is also eligible to earn performance based incentive compensation, which may include cash bonus(es) and/or long term incentives (LTI). Incentives could be discretionary or non discretionary depending on the plan. Capital One offers a comprehensive, competitive, and inclusive set of health, financial and other benefits that support your total well-being. Learn more at the Capital One Careers website . Eligibility varies based on full or part-time status, exempt or non-exempt status, and management level. This role is expected to accept applications for a minimum of 5 business days.No agencies please. Capital One is an equal opportunity employer (EOE, including disability/vet) committed to non-discrimination in compliance with applicable federal, state, and local laws. Capital One promotes a drug-free workplace. Capital One will consider for employment qualified applicants with a criminal history in a manner consistent with the requirements of applicable laws regarding criminal background inquiries, including, to the extent applicable, Article 23-A of the New York Correction Law; San Francisco, California Police Code Article 49, Sections ; New York City's Fair Chance Act; Philadelphia's Fair Criminal Records Screening Act; and other applicable federal, state, and local laws and regulations regarding criminal background inquiries. If you have visited our website in search of information on employment opportunities or to apply for a position, and you require an accommodation, please contact Capital One Recruiting at 1- or via email at . click apply for full job details
12/17/2025
Full time
Senior Manager, Technology Change Risk Oversight Capital One is one of the fastest growing organizations in the world today, powered by our passion for our customers. We are serious about technology, we dream big, and we execute: Capital One moved our entire enterprise to the public cloud over the course of five years. Just as we prioritize driving innovation through technology, we equally prioritize cybersecurity, reliability, and managing technology risk. Technology Risk Management (TRM) is a small organization that packs a big punch. The 100 professionals in TRM are trusted experts who oversee 14,000 developers at Capital One. We raise the bar for excellence in cybersecurity, reliability, and tech risk. We shape strategy and decisions, challenge activities to ensure they meet our standards, and perform independent tests of our security and technology risk. Our business leaders must make technology decisions constantly. TRM makes sure they have the tech risk information they need to make good decisions. Associates within TRM are highly-skilled information security, cybersecurity, site reliability engineering, technology, and risk management professionals. They have a wealth of experience and a demonstrated ability to add value with their advice and to deliver high-impact results. As the Senior Manager, Technology Change Risk Oversight you will play a key role in the review, risk identification, risk assessment, reporting, and effective challenge of technology processes, controls, and capabilities, including but not limited to material and high risk technology changes. You will provide subject matter expertise, oversight, and effective challenge of key Technology areas such as cloud services, enterprise architecture, cloud migrations, and overall technology deployments. As part of the second line of defense, this position will also collaborate closely with associates in first line Cyber, Technology, the Lines of Business, as well as other second line of defense risk management offices to perform and support evaluations of the effectiveness of the firm's controls infrastructure and offer independent advice and recommendations regarding ways to further mature the firm's cyber risk management capabilities. Finally, as a member of a growing organization, you will have the opportunity to shape and further refine your portfolio commensurate with the priorities of the organization and the company. The demands and high-visibility nature of this position requires an expert with a proven ability to work independently in a fast-paced environment and who can begin contributing immediately. Essential Functions (Responsibilities): Provide technical leadership in assessing the practices of designing, developing, testing and implementing cloud native solutions to crucial business problems through thoughtful use of industry best practices and Capital One policy. Evaluate proposed and approved cloud technical solutions for automation, resiliency, performance, scalability, and security including appropriate tradeoffs, risks and opportunities Evaluate/assess complex technological and business environment migrations to the cloud and integrated end-to-end solution options Build and maintain relationships with technical leaders, business owners, engineers and other stakeholders to understand and evaluate implementation plans, business priorities and technical solutions to ensure risk are well communicated and understood by the key stakeholders Keep up-to-date on cutting edge technology, standards, protocols and tools in areas relevant to the rapidly changing environment at Capital One, specifically cloud native architecture, serverless, and emerging AWS services Demonstrate strong analytical, problem-solving, and decision-making skills Communicate and drive highly complex technology solutions to broad audiences including executives, business leaders, product managers, legal experts, security specialists and software engineers Define, structure and plan work independently Perform independent risk assessment of our cloud environment focusing on architecture, engineering, networking, governance. Provide expertise and advice regarding the effectiveness of device configurations, IT architecture, or IT engineering solutions Consult with risk owners on the design and implementation or adjustment of mitigating controls associated with emerging technologies Draft and publish independent reports for risk owners, senior management, and other stakeholders regarding risks associated with new or emerging technologies Basic Qualifications: Bachelor's Degree or military experience At least 6 years of experience managing, consulting, auditing, or working in the fields of information security or information technology At least 3 years experience with Public Cloud implementations Preferred Qualifications: Master's Degree in Computer Science or in an Engineering discipline Professional certification (AWS Certified Solutions Architect, AWS Certified Security Speciality, AWS SysOps Administrator, or Certified Information Systems Security Professional (CISSP Experience with Information Security at the policy, architecture or implementation level Ability to communicate clearly and to interact effectively at all levels of the organization, and to influence as warranted and appropriate to drive to consensus Experience with identifying and communicating key risks related to cloud native implementations and architectures Experience drafting reports or analytic assessments for senior management Experience with analysis of emerging threats and reports that describe the implications of threat(s) and opportunities to executives or senior decision-makers Passion and expertise in cybersecurity and technology risk, with an ability to be confident, respectful, and articulate when registering dissenting or unpopular opinions Ability to manage multiple high-visibility and high-impact projects while maintaining superior results Execution oriented and a self-motivator Experience with threat modeling frameworks (STRIDE, OWASP Top 10, MITRE ATT&CK) Familiarity with controls and control frameworks ( NIST Cybersecurity Framework, NIST 800-53, CIS Top 20, ISO, COBIT.) Ability to work independently and in a team, taking a lead role on projects when necessary Prior experience working in financial services or other highly-regulated sectors Experience working in a hybrid IT environment that includes both traditional on-premises data centers and public cloud infrastructure (e.g., AWS, Azure, Google Cloud) Experience with OpenStack At this time, Capital One will not sponsor a new applicant for employment authorization for this position. This role is Hybrid, with associates expected to consistently spend three days per week in the office. The minimum and maximum full-time annual salaries for this role are listed below, by location. Please note that this salary information is solely for candidates hired to perform work within one of these locations, and refers to the amount Capital One is willing to pay at the time of this posting. Salaries for part-time roles will be prorated based upon the agreed upon number of hours to be regularly worked. McLean, VA: $225,400 - $257,200 for Sr Manager, Cyber Technical Richmond, VA: $204,900 - $233,800 for Sr Manager, Cyber Technical New York, NY: $245,900 - $280,600 for Sr Manager, Cyber Technical Riverwoods, IL: $204,900 - $233,800 for Sr Manager, Cyber Technical Candidates hired to work in other locations will be subject to the pay range associated with that location, and the actual annualized salary amount offered to any candidate at the time of hire will be reflected solely in the candidate's offer letter. This role is also eligible to earn performance based incentive compensation, which may include cash bonus(es) and/or long term incentives (LTI). Incentives could be discretionary or non discretionary depending on the plan. Capital One offers a comprehensive, competitive, and inclusive set of health, financial and other benefits that support your total well-being. Learn more at the Capital One Careers website . Eligibility varies based on full or part-time status, exempt or non-exempt status, and management level. This role is expected to accept applications for a minimum of 5 business days.No agencies please. Capital One is an equal opportunity employer (EOE, including disability/vet) committed to non-discrimination in compliance with applicable federal, state, and local laws. Capital One promotes a drug-free workplace. Capital One will consider for employment qualified applicants with a criminal history in a manner consistent with the requirements of applicable laws regarding criminal background inquiries, including, to the extent applicable, Article 23-A of the New York Correction Law; San Francisco, California Police Code Article 49, Sections ; New York City's Fair Chance Act; Philadelphia's Fair Criminal Records Screening Act; and other applicable federal, state, and local laws and regulations regarding criminal background inquiries. If you have visited our website in search of information on employment opportunities or to apply for a position, and you require an accommodation, please contact Capital One Recruiting at 1- or via email at . click apply for full job details
Senior Manager, Technology Change Risk Oversight
Capital One Washington, Washington DC
Senior Manager, Technology Change Risk Oversight Capital One is one of the fastest growing organizations in the world today, powered by our passion for our customers. We are serious about technology, we dream big, and we execute: Capital One moved our entire enterprise to the public cloud over the course of five years. Just as we prioritize driving innovation through technology, we equally prioritize cybersecurity, reliability, and managing technology risk. Technology Risk Management (TRM) is a small organization that packs a big punch. The 100 professionals in TRM are trusted experts who oversee 14,000 developers at Capital One. We raise the bar for excellence in cybersecurity, reliability, and tech risk. We shape strategy and decisions, challenge activities to ensure they meet our standards, and perform independent tests of our security and technology risk. Our business leaders must make technology decisions constantly. TRM makes sure they have the tech risk information they need to make good decisions. Associates within TRM are highly-skilled information security, cybersecurity, site reliability engineering, technology, and risk management professionals. They have a wealth of experience and a demonstrated ability to add value with their advice and to deliver high-impact results. As the Senior Manager, Technology Change Risk Oversight you will play a key role in the review, risk identification, risk assessment, reporting, and effective challenge of technology processes, controls, and capabilities, including but not limited to material and high risk technology changes. You will provide subject matter expertise, oversight, and effective challenge of key Technology areas such as cloud services, enterprise architecture, cloud migrations, and overall technology deployments. As part of the second line of defense, this position will also collaborate closely with associates in first line Cyber, Technology, the Lines of Business, as well as other second line of defense risk management offices to perform and support evaluations of the effectiveness of the firm's controls infrastructure and offer independent advice and recommendations regarding ways to further mature the firm's cyber risk management capabilities. Finally, as a member of a growing organization, you will have the opportunity to shape and further refine your portfolio commensurate with the priorities of the organization and the company. The demands and high-visibility nature of this position requires an expert with a proven ability to work independently in a fast-paced environment and who can begin contributing immediately. Essential Functions (Responsibilities): Provide technical leadership in assessing the practices of designing, developing, testing and implementing cloud native solutions to crucial business problems through thoughtful use of industry best practices and Capital One policy. Evaluate proposed and approved cloud technical solutions for automation, resiliency, performance, scalability, and security including appropriate tradeoffs, risks and opportunities Evaluate/assess complex technological and business environment migrations to the cloud and integrated end-to-end solution options Build and maintain relationships with technical leaders, business owners, engineers and other stakeholders to understand and evaluate implementation plans, business priorities and technical solutions to ensure risk are well communicated and understood by the key stakeholders Keep up-to-date on cutting edge technology, standards, protocols and tools in areas relevant to the rapidly changing environment at Capital One, specifically cloud native architecture, serverless, and emerging AWS services Demonstrate strong analytical, problem-solving, and decision-making skills Communicate and drive highly complex technology solutions to broad audiences including executives, business leaders, product managers, legal experts, security specialists and software engineers Define, structure and plan work independently Perform independent risk assessment of our cloud environment focusing on architecture, engineering, networking, governance. Provide expertise and advice regarding the effectiveness of device configurations, IT architecture, or IT engineering solutions Consult with risk owners on the design and implementation or adjustment of mitigating controls associated with emerging technologies Draft and publish independent reports for risk owners, senior management, and other stakeholders regarding risks associated with new or emerging technologies Basic Qualifications: Bachelor's Degree or military experience At least 6 years of experience managing, consulting, auditing, or working in the fields of information security or information technology At least 3 years experience with Public Cloud implementations Preferred Qualifications: Master's Degree in Computer Science or in an Engineering discipline Professional certification (AWS Certified Solutions Architect, AWS Certified Security Speciality, AWS SysOps Administrator, or Certified Information Systems Security Professional (CISSP Experience with Information Security at the policy, architecture or implementation level Ability to communicate clearly and to interact effectively at all levels of the organization, and to influence as warranted and appropriate to drive to consensus Experience with identifying and communicating key risks related to cloud native implementations and architectures Experience drafting reports or analytic assessments for senior management Experience with analysis of emerging threats and reports that describe the implications of threat(s) and opportunities to executives or senior decision-makers Passion and expertise in cybersecurity and technology risk, with an ability to be confident, respectful, and articulate when registering dissenting or unpopular opinions Ability to manage multiple high-visibility and high-impact projects while maintaining superior results Execution oriented and a self-motivator Experience with threat modeling frameworks (STRIDE, OWASP Top 10, MITRE ATT&CK) Familiarity with controls and control frameworks ( NIST Cybersecurity Framework, NIST 800-53, CIS Top 20, ISO, COBIT.) Ability to work independently and in a team, taking a lead role on projects when necessary Prior experience working in financial services or other highly-regulated sectors Experience working in a hybrid IT environment that includes both traditional on-premises data centers and public cloud infrastructure (e.g., AWS, Azure, Google Cloud) Experience with OpenStack At this time, Capital One will not sponsor a new applicant for employment authorization for this position. This role is Hybrid, with associates expected to consistently spend three days per week in the office. The minimum and maximum full-time annual salaries for this role are listed below, by location. Please note that this salary information is solely for candidates hired to perform work within one of these locations, and refers to the amount Capital One is willing to pay at the time of this posting. Salaries for part-time roles will be prorated based upon the agreed upon number of hours to be regularly worked. McLean, VA: $225,400 - $257,200 for Sr Manager, Cyber Technical Richmond, VA: $204,900 - $233,800 for Sr Manager, Cyber Technical New York, NY: $245,900 - $280,600 for Sr Manager, Cyber Technical Riverwoods, IL: $204,900 - $233,800 for Sr Manager, Cyber Technical Candidates hired to work in other locations will be subject to the pay range associated with that location, and the actual annualized salary amount offered to any candidate at the time of hire will be reflected solely in the candidate's offer letter. This role is also eligible to earn performance based incentive compensation, which may include cash bonus(es) and/or long term incentives (LTI). Incentives could be discretionary or non discretionary depending on the plan. Capital One offers a comprehensive, competitive, and inclusive set of health, financial and other benefits that support your total well-being. Learn more at the Capital One Careers website . Eligibility varies based on full or part-time status, exempt or non-exempt status, and management level. This role is expected to accept applications for a minimum of 5 business days.No agencies please. Capital One is an equal opportunity employer (EOE, including disability/vet) committed to non-discrimination in compliance with applicable federal, state, and local laws. Capital One promotes a drug-free workplace. Capital One will consider for employment qualified applicants with a criminal history in a manner consistent with the requirements of applicable laws regarding criminal background inquiries, including, to the extent applicable, Article 23-A of the New York Correction Law; San Francisco, California Police Code Article 49, Sections ; New York City's Fair Chance Act; Philadelphia's Fair Criminal Records Screening Act; and other applicable federal, state, and local laws and regulations regarding criminal background inquiries. If you have visited our website in search of information on employment opportunities or to apply for a position, and you require an accommodation, please contact Capital One Recruiting at 1- or via email at . click apply for full job details
12/17/2025
Full time
Senior Manager, Technology Change Risk Oversight Capital One is one of the fastest growing organizations in the world today, powered by our passion for our customers. We are serious about technology, we dream big, and we execute: Capital One moved our entire enterprise to the public cloud over the course of five years. Just as we prioritize driving innovation through technology, we equally prioritize cybersecurity, reliability, and managing technology risk. Technology Risk Management (TRM) is a small organization that packs a big punch. The 100 professionals in TRM are trusted experts who oversee 14,000 developers at Capital One. We raise the bar for excellence in cybersecurity, reliability, and tech risk. We shape strategy and decisions, challenge activities to ensure they meet our standards, and perform independent tests of our security and technology risk. Our business leaders must make technology decisions constantly. TRM makes sure they have the tech risk information they need to make good decisions. Associates within TRM are highly-skilled information security, cybersecurity, site reliability engineering, technology, and risk management professionals. They have a wealth of experience and a demonstrated ability to add value with their advice and to deliver high-impact results. As the Senior Manager, Technology Change Risk Oversight you will play a key role in the review, risk identification, risk assessment, reporting, and effective challenge of technology processes, controls, and capabilities, including but not limited to material and high risk technology changes. You will provide subject matter expertise, oversight, and effective challenge of key Technology areas such as cloud services, enterprise architecture, cloud migrations, and overall technology deployments. As part of the second line of defense, this position will also collaborate closely with associates in first line Cyber, Technology, the Lines of Business, as well as other second line of defense risk management offices to perform and support evaluations of the effectiveness of the firm's controls infrastructure and offer independent advice and recommendations regarding ways to further mature the firm's cyber risk management capabilities. Finally, as a member of a growing organization, you will have the opportunity to shape and further refine your portfolio commensurate with the priorities of the organization and the company. The demands and high-visibility nature of this position requires an expert with a proven ability to work independently in a fast-paced environment and who can begin contributing immediately. Essential Functions (Responsibilities): Provide technical leadership in assessing the practices of designing, developing, testing and implementing cloud native solutions to crucial business problems through thoughtful use of industry best practices and Capital One policy. Evaluate proposed and approved cloud technical solutions for automation, resiliency, performance, scalability, and security including appropriate tradeoffs, risks and opportunities Evaluate/assess complex technological and business environment migrations to the cloud and integrated end-to-end solution options Build and maintain relationships with technical leaders, business owners, engineers and other stakeholders to understand and evaluate implementation plans, business priorities and technical solutions to ensure risk are well communicated and understood by the key stakeholders Keep up-to-date on cutting edge technology, standards, protocols and tools in areas relevant to the rapidly changing environment at Capital One, specifically cloud native architecture, serverless, and emerging AWS services Demonstrate strong analytical, problem-solving, and decision-making skills Communicate and drive highly complex technology solutions to broad audiences including executives, business leaders, product managers, legal experts, security specialists and software engineers Define, structure and plan work independently Perform independent risk assessment of our cloud environment focusing on architecture, engineering, networking, governance. Provide expertise and advice regarding the effectiveness of device configurations, IT architecture, or IT engineering solutions Consult with risk owners on the design and implementation or adjustment of mitigating controls associated with emerging technologies Draft and publish independent reports for risk owners, senior management, and other stakeholders regarding risks associated with new or emerging technologies Basic Qualifications: Bachelor's Degree or military experience At least 6 years of experience managing, consulting, auditing, or working in the fields of information security or information technology At least 3 years experience with Public Cloud implementations Preferred Qualifications: Master's Degree in Computer Science or in an Engineering discipline Professional certification (AWS Certified Solutions Architect, AWS Certified Security Speciality, AWS SysOps Administrator, or Certified Information Systems Security Professional (CISSP Experience with Information Security at the policy, architecture or implementation level Ability to communicate clearly and to interact effectively at all levels of the organization, and to influence as warranted and appropriate to drive to consensus Experience with identifying and communicating key risks related to cloud native implementations and architectures Experience drafting reports or analytic assessments for senior management Experience with analysis of emerging threats and reports that describe the implications of threat(s) and opportunities to executives or senior decision-makers Passion and expertise in cybersecurity and technology risk, with an ability to be confident, respectful, and articulate when registering dissenting or unpopular opinions Ability to manage multiple high-visibility and high-impact projects while maintaining superior results Execution oriented and a self-motivator Experience with threat modeling frameworks (STRIDE, OWASP Top 10, MITRE ATT&CK) Familiarity with controls and control frameworks ( NIST Cybersecurity Framework, NIST 800-53, CIS Top 20, ISO, COBIT.) Ability to work independently and in a team, taking a lead role on projects when necessary Prior experience working in financial services or other highly-regulated sectors Experience working in a hybrid IT environment that includes both traditional on-premises data centers and public cloud infrastructure (e.g., AWS, Azure, Google Cloud) Experience with OpenStack At this time, Capital One will not sponsor a new applicant for employment authorization for this position. This role is Hybrid, with associates expected to consistently spend three days per week in the office. The minimum and maximum full-time annual salaries for this role are listed below, by location. Please note that this salary information is solely for candidates hired to perform work within one of these locations, and refers to the amount Capital One is willing to pay at the time of this posting. Salaries for part-time roles will be prorated based upon the agreed upon number of hours to be regularly worked. McLean, VA: $225,400 - $257,200 for Sr Manager, Cyber Technical Richmond, VA: $204,900 - $233,800 for Sr Manager, Cyber Technical New York, NY: $245,900 - $280,600 for Sr Manager, Cyber Technical Riverwoods, IL: $204,900 - $233,800 for Sr Manager, Cyber Technical Candidates hired to work in other locations will be subject to the pay range associated with that location, and the actual annualized salary amount offered to any candidate at the time of hire will be reflected solely in the candidate's offer letter. This role is also eligible to earn performance based incentive compensation, which may include cash bonus(es) and/or long term incentives (LTI). Incentives could be discretionary or non discretionary depending on the plan. Capital One offers a comprehensive, competitive, and inclusive set of health, financial and other benefits that support your total well-being. Learn more at the Capital One Careers website . Eligibility varies based on full or part-time status, exempt or non-exempt status, and management level. This role is expected to accept applications for a minimum of 5 business days.No agencies please. Capital One is an equal opportunity employer (EOE, including disability/vet) committed to non-discrimination in compliance with applicable federal, state, and local laws. Capital One promotes a drug-free workplace. Capital One will consider for employment qualified applicants with a criminal history in a manner consistent with the requirements of applicable laws regarding criminal background inquiries, including, to the extent applicable, Article 23-A of the New York Correction Law; San Francisco, California Police Code Article 49, Sections ; New York City's Fair Chance Act; Philadelphia's Fair Criminal Records Screening Act; and other applicable federal, state, and local laws and regulations regarding criminal background inquiries. If you have visited our website in search of information on employment opportunities or to apply for a position, and you require an accommodation, please contact Capital One Recruiting at 1- or via email at . click apply for full job details
Senior Manager, Technology Change Risk Oversight
Capital One Deerfield, Illinois
Senior Manager, Technology Change Risk Oversight Capital One is one of the fastest growing organizations in the world today, powered by our passion for our customers. We are serious about technology, we dream big, and we execute: Capital One moved our entire enterprise to the public cloud over the course of five years. Just as we prioritize driving innovation through technology, we equally prioritize cybersecurity, reliability, and managing technology risk. Technology Risk Management (TRM) is a small organization that packs a big punch. The 100 professionals in TRM are trusted experts who oversee 14,000 developers at Capital One. We raise the bar for excellence in cybersecurity, reliability, and tech risk. We shape strategy and decisions, challenge activities to ensure they meet our standards, and perform independent tests of our security and technology risk. Our business leaders must make technology decisions constantly. TRM makes sure they have the tech risk information they need to make good decisions. Associates within TRM are highly-skilled information security, cybersecurity, site reliability engineering, technology, and risk management professionals. They have a wealth of experience and a demonstrated ability to add value with their advice and to deliver high-impact results. As the Senior Manager, Technology Change Risk Oversight you will play a key role in the review, risk identification, risk assessment, reporting, and effective challenge of technology processes, controls, and capabilities, including but not limited to material and high risk technology changes. You will provide subject matter expertise, oversight, and effective challenge of key Technology areas such as cloud services, enterprise architecture, cloud migrations, and overall technology deployments. As part of the second line of defense, this position will also collaborate closely with associates in first line Cyber, Technology, the Lines of Business, as well as other second line of defense risk management offices to perform and support evaluations of the effectiveness of the firm's controls infrastructure and offer independent advice and recommendations regarding ways to further mature the firm's cyber risk management capabilities. Finally, as a member of a growing organization, you will have the opportunity to shape and further refine your portfolio commensurate with the priorities of the organization and the company. The demands and high-visibility nature of this position requires an expert with a proven ability to work independently in a fast-paced environment and who can begin contributing immediately. Essential Functions (Responsibilities): Provide technical leadership in assessing the practices of designing, developing, testing and implementing cloud native solutions to crucial business problems through thoughtful use of industry best practices and Capital One policy. Evaluate proposed and approved cloud technical solutions for automation, resiliency, performance, scalability, and security including appropriate tradeoffs, risks and opportunities Evaluate/assess complex technological and business environment migrations to the cloud and integrated end-to-end solution options Build and maintain relationships with technical leaders, business owners, engineers and other stakeholders to understand and evaluate implementation plans, business priorities and technical solutions to ensure risk are well communicated and understood by the key stakeholders Keep up-to-date on cutting edge technology, standards, protocols and tools in areas relevant to the rapidly changing environment at Capital One, specifically cloud native architecture, serverless, and emerging AWS services Demonstrate strong analytical, problem-solving, and decision-making skills Communicate and drive highly complex technology solutions to broad audiences including executives, business leaders, product managers, legal experts, security specialists and software engineers Define, structure and plan work independently Perform independent risk assessment of our cloud environment focusing on architecture, engineering, networking, governance. Provide expertise and advice regarding the effectiveness of device configurations, IT architecture, or IT engineering solutions Consult with risk owners on the design and implementation or adjustment of mitigating controls associated with emerging technologies Draft and publish independent reports for risk owners, senior management, and other stakeholders regarding risks associated with new or emerging technologies Basic Qualifications: Bachelor's Degree or military experience At least 6 years of experience managing, consulting, auditing, or working in the fields of information security or information technology At least 3 years experience with Public Cloud implementations Preferred Qualifications: Master's Degree in Computer Science or in an Engineering discipline Professional certification (AWS Certified Solutions Architect, AWS Certified Security Speciality, AWS SysOps Administrator, or Certified Information Systems Security Professional (CISSP Experience with Information Security at the policy, architecture or implementation level Ability to communicate clearly and to interact effectively at all levels of the organization, and to influence as warranted and appropriate to drive to consensus Experience with identifying and communicating key risks related to cloud native implementations and architectures Experience drafting reports or analytic assessments for senior management Experience with analysis of emerging threats and reports that describe the implications of threat(s) and opportunities to executives or senior decision-makers Passion and expertise in cybersecurity and technology risk, with an ability to be confident, respectful, and articulate when registering dissenting or unpopular opinions Ability to manage multiple high-visibility and high-impact projects while maintaining superior results Execution oriented and a self-motivator Experience with threat modeling frameworks (STRIDE, OWASP Top 10, MITRE ATT&CK) Familiarity with controls and control frameworks ( NIST Cybersecurity Framework, NIST 800-53, CIS Top 20, ISO, COBIT.) Ability to work independently and in a team, taking a lead role on projects when necessary Prior experience working in financial services or other highly-regulated sectors Experience working in a hybrid IT environment that includes both traditional on-premises data centers and public cloud infrastructure (e.g., AWS, Azure, Google Cloud) Experience with OpenStack At this time, Capital One will not sponsor a new applicant for employment authorization for this position. This role is Hybrid, with associates expected to consistently spend three days per week in the office. The minimum and maximum full-time annual salaries for this role are listed below, by location. Please note that this salary information is solely for candidates hired to perform work within one of these locations, and refers to the amount Capital One is willing to pay at the time of this posting. Salaries for part-time roles will be prorated based upon the agreed upon number of hours to be regularly worked. McLean, VA: $225,400 - $257,200 for Sr Manager, Cyber Technical Richmond, VA: $204,900 - $233,800 for Sr Manager, Cyber Technical New York, NY: $245,900 - $280,600 for Sr Manager, Cyber Technical Riverwoods, IL: $204,900 - $233,800 for Sr Manager, Cyber Technical Candidates hired to work in other locations will be subject to the pay range associated with that location, and the actual annualized salary amount offered to any candidate at the time of hire will be reflected solely in the candidate's offer letter. This role is also eligible to earn performance based incentive compensation, which may include cash bonus(es) and/or long term incentives (LTI). Incentives could be discretionary or non discretionary depending on the plan. Capital One offers a comprehensive, competitive, and inclusive set of health, financial and other benefits that support your total well-being. Learn more at the Capital One Careers website . Eligibility varies based on full or part-time status, exempt or non-exempt status, and management level. This role is expected to accept applications for a minimum of 5 business days.No agencies please. Capital One is an equal opportunity employer (EOE, including disability/vet) committed to non-discrimination in compliance with applicable federal, state, and local laws. Capital One promotes a drug-free workplace. Capital One will consider for employment qualified applicants with a criminal history in a manner consistent with the requirements of applicable laws regarding criminal background inquiries, including, to the extent applicable, Article 23-A of the New York Correction Law; San Francisco, California Police Code Article 49, Sections ; New York City's Fair Chance Act; Philadelphia's Fair Criminal Records Screening Act; and other applicable federal, state, and local laws and regulations regarding criminal background inquiries. If you have visited our website in search of information on employment opportunities or to apply for a position, and you require an accommodation, please contact Capital One Recruiting at 1- or via email at . click apply for full job details
12/17/2025
Full time
Senior Manager, Technology Change Risk Oversight Capital One is one of the fastest growing organizations in the world today, powered by our passion for our customers. We are serious about technology, we dream big, and we execute: Capital One moved our entire enterprise to the public cloud over the course of five years. Just as we prioritize driving innovation through technology, we equally prioritize cybersecurity, reliability, and managing technology risk. Technology Risk Management (TRM) is a small organization that packs a big punch. The 100 professionals in TRM are trusted experts who oversee 14,000 developers at Capital One. We raise the bar for excellence in cybersecurity, reliability, and tech risk. We shape strategy and decisions, challenge activities to ensure they meet our standards, and perform independent tests of our security and technology risk. Our business leaders must make technology decisions constantly. TRM makes sure they have the tech risk information they need to make good decisions. Associates within TRM are highly-skilled information security, cybersecurity, site reliability engineering, technology, and risk management professionals. They have a wealth of experience and a demonstrated ability to add value with their advice and to deliver high-impact results. As the Senior Manager, Technology Change Risk Oversight you will play a key role in the review, risk identification, risk assessment, reporting, and effective challenge of technology processes, controls, and capabilities, including but not limited to material and high risk technology changes. You will provide subject matter expertise, oversight, and effective challenge of key Technology areas such as cloud services, enterprise architecture, cloud migrations, and overall technology deployments. As part of the second line of defense, this position will also collaborate closely with associates in first line Cyber, Technology, the Lines of Business, as well as other second line of defense risk management offices to perform and support evaluations of the effectiveness of the firm's controls infrastructure and offer independent advice and recommendations regarding ways to further mature the firm's cyber risk management capabilities. Finally, as a member of a growing organization, you will have the opportunity to shape and further refine your portfolio commensurate with the priorities of the organization and the company. The demands and high-visibility nature of this position requires an expert with a proven ability to work independently in a fast-paced environment and who can begin contributing immediately. Essential Functions (Responsibilities): Provide technical leadership in assessing the practices of designing, developing, testing and implementing cloud native solutions to crucial business problems through thoughtful use of industry best practices and Capital One policy. Evaluate proposed and approved cloud technical solutions for automation, resiliency, performance, scalability, and security including appropriate tradeoffs, risks and opportunities Evaluate/assess complex technological and business environment migrations to the cloud and integrated end-to-end solution options Build and maintain relationships with technical leaders, business owners, engineers and other stakeholders to understand and evaluate implementation plans, business priorities and technical solutions to ensure risk are well communicated and understood by the key stakeholders Keep up-to-date on cutting edge technology, standards, protocols and tools in areas relevant to the rapidly changing environment at Capital One, specifically cloud native architecture, serverless, and emerging AWS services Demonstrate strong analytical, problem-solving, and decision-making skills Communicate and drive highly complex technology solutions to broad audiences including executives, business leaders, product managers, legal experts, security specialists and software engineers Define, structure and plan work independently Perform independent risk assessment of our cloud environment focusing on architecture, engineering, networking, governance. Provide expertise and advice regarding the effectiveness of device configurations, IT architecture, or IT engineering solutions Consult with risk owners on the design and implementation or adjustment of mitigating controls associated with emerging technologies Draft and publish independent reports for risk owners, senior management, and other stakeholders regarding risks associated with new or emerging technologies Basic Qualifications: Bachelor's Degree or military experience At least 6 years of experience managing, consulting, auditing, or working in the fields of information security or information technology At least 3 years experience with Public Cloud implementations Preferred Qualifications: Master's Degree in Computer Science or in an Engineering discipline Professional certification (AWS Certified Solutions Architect, AWS Certified Security Speciality, AWS SysOps Administrator, or Certified Information Systems Security Professional (CISSP Experience with Information Security at the policy, architecture or implementation level Ability to communicate clearly and to interact effectively at all levels of the organization, and to influence as warranted and appropriate to drive to consensus Experience with identifying and communicating key risks related to cloud native implementations and architectures Experience drafting reports or analytic assessments for senior management Experience with analysis of emerging threats and reports that describe the implications of threat(s) and opportunities to executives or senior decision-makers Passion and expertise in cybersecurity and technology risk, with an ability to be confident, respectful, and articulate when registering dissenting or unpopular opinions Ability to manage multiple high-visibility and high-impact projects while maintaining superior results Execution oriented and a self-motivator Experience with threat modeling frameworks (STRIDE, OWASP Top 10, MITRE ATT&CK) Familiarity with controls and control frameworks ( NIST Cybersecurity Framework, NIST 800-53, CIS Top 20, ISO, COBIT.) Ability to work independently and in a team, taking a lead role on projects when necessary Prior experience working in financial services or other highly-regulated sectors Experience working in a hybrid IT environment that includes both traditional on-premises data centers and public cloud infrastructure (e.g., AWS, Azure, Google Cloud) Experience with OpenStack At this time, Capital One will not sponsor a new applicant for employment authorization for this position. This role is Hybrid, with associates expected to consistently spend three days per week in the office. The minimum and maximum full-time annual salaries for this role are listed below, by location. Please note that this salary information is solely for candidates hired to perform work within one of these locations, and refers to the amount Capital One is willing to pay at the time of this posting. Salaries for part-time roles will be prorated based upon the agreed upon number of hours to be regularly worked. McLean, VA: $225,400 - $257,200 for Sr Manager, Cyber Technical Richmond, VA: $204,900 - $233,800 for Sr Manager, Cyber Technical New York, NY: $245,900 - $280,600 for Sr Manager, Cyber Technical Riverwoods, IL: $204,900 - $233,800 for Sr Manager, Cyber Technical Candidates hired to work in other locations will be subject to the pay range associated with that location, and the actual annualized salary amount offered to any candidate at the time of hire will be reflected solely in the candidate's offer letter. This role is also eligible to earn performance based incentive compensation, which may include cash bonus(es) and/or long term incentives (LTI). Incentives could be discretionary or non discretionary depending on the plan. Capital One offers a comprehensive, competitive, and inclusive set of health, financial and other benefits that support your total well-being. Learn more at the Capital One Careers website . Eligibility varies based on full or part-time status, exempt or non-exempt status, and management level. This role is expected to accept applications for a minimum of 5 business days.No agencies please. Capital One is an equal opportunity employer (EOE, including disability/vet) committed to non-discrimination in compliance with applicable federal, state, and local laws. Capital One promotes a drug-free workplace. Capital One will consider for employment qualified applicants with a criminal history in a manner consistent with the requirements of applicable laws regarding criminal background inquiries, including, to the extent applicable, Article 23-A of the New York Correction Law; San Francisco, California Police Code Article 49, Sections ; New York City's Fair Chance Act; Philadelphia's Fair Criminal Records Screening Act; and other applicable federal, state, and local laws and regulations regarding criminal background inquiries. If you have visited our website in search of information on employment opportunities or to apply for a position, and you require an accommodation, please contact Capital One Recruiting at 1- or via email at . click apply for full job details
Senior Manager, Technology Change Risk Oversight
Capital One Charlottesville, Virginia
Senior Manager, Technology Change Risk Oversight Capital One is one of the fastest growing organizations in the world today, powered by our passion for our customers. We are serious about technology, we dream big, and we execute: Capital One moved our entire enterprise to the public cloud over the course of five years. Just as we prioritize driving innovation through technology, we equally prioritize cybersecurity, reliability, and managing technology risk. Technology Risk Management (TRM) is a small organization that packs a big punch. The 100 professionals in TRM are trusted experts who oversee 14,000 developers at Capital One. We raise the bar for excellence in cybersecurity, reliability, and tech risk. We shape strategy and decisions, challenge activities to ensure they meet our standards, and perform independent tests of our security and technology risk. Our business leaders must make technology decisions constantly. TRM makes sure they have the tech risk information they need to make good decisions. Associates within TRM are highly-skilled information security, cybersecurity, site reliability engineering, technology, and risk management professionals. They have a wealth of experience and a demonstrated ability to add value with their advice and to deliver high-impact results. As the Senior Manager, Technology Change Risk Oversight you will play a key role in the review, risk identification, risk assessment, reporting, and effective challenge of technology processes, controls, and capabilities, including but not limited to material and high risk technology changes. You will provide subject matter expertise, oversight, and effective challenge of key Technology areas such as cloud services, enterprise architecture, cloud migrations, and overall technology deployments. As part of the second line of defense, this position will also collaborate closely with associates in first line Cyber, Technology, the Lines of Business, as well as other second line of defense risk management offices to perform and support evaluations of the effectiveness of the firm's controls infrastructure and offer independent advice and recommendations regarding ways to further mature the firm's cyber risk management capabilities. Finally, as a member of a growing organization, you will have the opportunity to shape and further refine your portfolio commensurate with the priorities of the organization and the company. The demands and high-visibility nature of this position requires an expert with a proven ability to work independently in a fast-paced environment and who can begin contributing immediately. Essential Functions (Responsibilities): Provide technical leadership in assessing the practices of designing, developing, testing and implementing cloud native solutions to crucial business problems through thoughtful use of industry best practices and Capital One policy. Evaluate proposed and approved cloud technical solutions for automation, resiliency, performance, scalability, and security including appropriate tradeoffs, risks and opportunities Evaluate/assess complex technological and business environment migrations to the cloud and integrated end-to-end solution options Build and maintain relationships with technical leaders, business owners, engineers and other stakeholders to understand and evaluate implementation plans, business priorities and technical solutions to ensure risk are well communicated and understood by the key stakeholders Keep up-to-date on cutting edge technology, standards, protocols and tools in areas relevant to the rapidly changing environment at Capital One, specifically cloud native architecture, serverless, and emerging AWS services Demonstrate strong analytical, problem-solving, and decision-making skills Communicate and drive highly complex technology solutions to broad audiences including executives, business leaders, product managers, legal experts, security specialists and software engineers Define, structure and plan work independently Perform independent risk assessment of our cloud environment focusing on architecture, engineering, networking, governance. Provide expertise and advice regarding the effectiveness of device configurations, IT architecture, or IT engineering solutions Consult with risk owners on the design and implementation or adjustment of mitigating controls associated with emerging technologies Draft and publish independent reports for risk owners, senior management, and other stakeholders regarding risks associated with new or emerging technologies Basic Qualifications: Bachelor's Degree or military experience At least 6 years of experience managing, consulting, auditing, or working in the fields of information security or information technology At least 3 years experience with Public Cloud implementations Preferred Qualifications: Master's Degree in Computer Science or in an Engineering discipline Professional certification (AWS Certified Solutions Architect, AWS Certified Security Speciality, AWS SysOps Administrator, or Certified Information Systems Security Professional (CISSP Experience with Information Security at the policy, architecture or implementation level Ability to communicate clearly and to interact effectively at all levels of the organization, and to influence as warranted and appropriate to drive to consensus Experience with identifying and communicating key risks related to cloud native implementations and architectures Experience drafting reports or analytic assessments for senior management Experience with analysis of emerging threats and reports that describe the implications of threat(s) and opportunities to executives or senior decision-makers Passion and expertise in cybersecurity and technology risk, with an ability to be confident, respectful, and articulate when registering dissenting or unpopular opinions Ability to manage multiple high-visibility and high-impact projects while maintaining superior results Execution oriented and a self-motivator Experience with threat modeling frameworks (STRIDE, OWASP Top 10, MITRE ATT&CK) Familiarity with controls and control frameworks ( NIST Cybersecurity Framework, NIST 800-53, CIS Top 20, ISO, COBIT.) Ability to work independently and in a team, taking a lead role on projects when necessary Prior experience working in financial services or other highly-regulated sectors Experience working in a hybrid IT environment that includes both traditional on-premises data centers and public cloud infrastructure (e.g., AWS, Azure, Google Cloud) Experience with OpenStack At this time, Capital One will not sponsor a new applicant for employment authorization for this position. This role is Hybrid, with associates expected to consistently spend three days per week in the office. The minimum and maximum full-time annual salaries for this role are listed below, by location. Please note that this salary information is solely for candidates hired to perform work within one of these locations, and refers to the amount Capital One is willing to pay at the time of this posting. Salaries for part-time roles will be prorated based upon the agreed upon number of hours to be regularly worked. McLean, VA: $225,400 - $257,200 for Sr Manager, Cyber Technical Richmond, VA: $204,900 - $233,800 for Sr Manager, Cyber Technical New York, NY: $245,900 - $280,600 for Sr Manager, Cyber Technical Riverwoods, IL: $204,900 - $233,800 for Sr Manager, Cyber Technical Candidates hired to work in other locations will be subject to the pay range associated with that location, and the actual annualized salary amount offered to any candidate at the time of hire will be reflected solely in the candidate's offer letter. This role is also eligible to earn performance based incentive compensation, which may include cash bonus(es) and/or long term incentives (LTI). Incentives could be discretionary or non discretionary depending on the plan. Capital One offers a comprehensive, competitive, and inclusive set of health, financial and other benefits that support your total well-being. Learn more at the Capital One Careers website . Eligibility varies based on full or part-time status, exempt or non-exempt status, and management level. This role is expected to accept applications for a minimum of 5 business days.No agencies please. Capital One is an equal opportunity employer (EOE, including disability/vet) committed to non-discrimination in compliance with applicable federal, state, and local laws. Capital One promotes a drug-free workplace. Capital One will consider for employment qualified applicants with a criminal history in a manner consistent with the requirements of applicable laws regarding criminal background inquiries, including, to the extent applicable, Article 23-A of the New York Correction Law; San Francisco, California Police Code Article 49, Sections ; New York City's Fair Chance Act; Philadelphia's Fair Criminal Records Screening Act; and other applicable federal, state, and local laws and regulations regarding criminal background inquiries. If you have visited our website in search of information on employment opportunities or to apply for a position, and you require an accommodation, please contact Capital One Recruiting at 1- or via email at . click apply for full job details
12/17/2025
Full time
Senior Manager, Technology Change Risk Oversight Capital One is one of the fastest growing organizations in the world today, powered by our passion for our customers. We are serious about technology, we dream big, and we execute: Capital One moved our entire enterprise to the public cloud over the course of five years. Just as we prioritize driving innovation through technology, we equally prioritize cybersecurity, reliability, and managing technology risk. Technology Risk Management (TRM) is a small organization that packs a big punch. The 100 professionals in TRM are trusted experts who oversee 14,000 developers at Capital One. We raise the bar for excellence in cybersecurity, reliability, and tech risk. We shape strategy and decisions, challenge activities to ensure they meet our standards, and perform independent tests of our security and technology risk. Our business leaders must make technology decisions constantly. TRM makes sure they have the tech risk information they need to make good decisions. Associates within TRM are highly-skilled information security, cybersecurity, site reliability engineering, technology, and risk management professionals. They have a wealth of experience and a demonstrated ability to add value with their advice and to deliver high-impact results. As the Senior Manager, Technology Change Risk Oversight you will play a key role in the review, risk identification, risk assessment, reporting, and effective challenge of technology processes, controls, and capabilities, including but not limited to material and high risk technology changes. You will provide subject matter expertise, oversight, and effective challenge of key Technology areas such as cloud services, enterprise architecture, cloud migrations, and overall technology deployments. As part of the second line of defense, this position will also collaborate closely with associates in first line Cyber, Technology, the Lines of Business, as well as other second line of defense risk management offices to perform and support evaluations of the effectiveness of the firm's controls infrastructure and offer independent advice and recommendations regarding ways to further mature the firm's cyber risk management capabilities. Finally, as a member of a growing organization, you will have the opportunity to shape and further refine your portfolio commensurate with the priorities of the organization and the company. The demands and high-visibility nature of this position requires an expert with a proven ability to work independently in a fast-paced environment and who can begin contributing immediately. Essential Functions (Responsibilities): Provide technical leadership in assessing the practices of designing, developing, testing and implementing cloud native solutions to crucial business problems through thoughtful use of industry best practices and Capital One policy. Evaluate proposed and approved cloud technical solutions for automation, resiliency, performance, scalability, and security including appropriate tradeoffs, risks and opportunities Evaluate/assess complex technological and business environment migrations to the cloud and integrated end-to-end solution options Build and maintain relationships with technical leaders, business owners, engineers and other stakeholders to understand and evaluate implementation plans, business priorities and technical solutions to ensure risk are well communicated and understood by the key stakeholders Keep up-to-date on cutting edge technology, standards, protocols and tools in areas relevant to the rapidly changing environment at Capital One, specifically cloud native architecture, serverless, and emerging AWS services Demonstrate strong analytical, problem-solving, and decision-making skills Communicate and drive highly complex technology solutions to broad audiences including executives, business leaders, product managers, legal experts, security specialists and software engineers Define, structure and plan work independently Perform independent risk assessment of our cloud environment focusing on architecture, engineering, networking, governance. Provide expertise and advice regarding the effectiveness of device configurations, IT architecture, or IT engineering solutions Consult with risk owners on the design and implementation or adjustment of mitigating controls associated with emerging technologies Draft and publish independent reports for risk owners, senior management, and other stakeholders regarding risks associated with new or emerging technologies Basic Qualifications: Bachelor's Degree or military experience At least 6 years of experience managing, consulting, auditing, or working in the fields of information security or information technology At least 3 years experience with Public Cloud implementations Preferred Qualifications: Master's Degree in Computer Science or in an Engineering discipline Professional certification (AWS Certified Solutions Architect, AWS Certified Security Speciality, AWS SysOps Administrator, or Certified Information Systems Security Professional (CISSP Experience with Information Security at the policy, architecture or implementation level Ability to communicate clearly and to interact effectively at all levels of the organization, and to influence as warranted and appropriate to drive to consensus Experience with identifying and communicating key risks related to cloud native implementations and architectures Experience drafting reports or analytic assessments for senior management Experience with analysis of emerging threats and reports that describe the implications of threat(s) and opportunities to executives or senior decision-makers Passion and expertise in cybersecurity and technology risk, with an ability to be confident, respectful, and articulate when registering dissenting or unpopular opinions Ability to manage multiple high-visibility and high-impact projects while maintaining superior results Execution oriented and a self-motivator Experience with threat modeling frameworks (STRIDE, OWASP Top 10, MITRE ATT&CK) Familiarity with controls and control frameworks ( NIST Cybersecurity Framework, NIST 800-53, CIS Top 20, ISO, COBIT.) Ability to work independently and in a team, taking a lead role on projects when necessary Prior experience working in financial services or other highly-regulated sectors Experience working in a hybrid IT environment that includes both traditional on-premises data centers and public cloud infrastructure (e.g., AWS, Azure, Google Cloud) Experience with OpenStack At this time, Capital One will not sponsor a new applicant for employment authorization for this position. This role is Hybrid, with associates expected to consistently spend three days per week in the office. The minimum and maximum full-time annual salaries for this role are listed below, by location. Please note that this salary information is solely for candidates hired to perform work within one of these locations, and refers to the amount Capital One is willing to pay at the time of this posting. Salaries for part-time roles will be prorated based upon the agreed upon number of hours to be regularly worked. McLean, VA: $225,400 - $257,200 for Sr Manager, Cyber Technical Richmond, VA: $204,900 - $233,800 for Sr Manager, Cyber Technical New York, NY: $245,900 - $280,600 for Sr Manager, Cyber Technical Riverwoods, IL: $204,900 - $233,800 for Sr Manager, Cyber Technical Candidates hired to work in other locations will be subject to the pay range associated with that location, and the actual annualized salary amount offered to any candidate at the time of hire will be reflected solely in the candidate's offer letter. This role is also eligible to earn performance based incentive compensation, which may include cash bonus(es) and/or long term incentives (LTI). Incentives could be discretionary or non discretionary depending on the plan. Capital One offers a comprehensive, competitive, and inclusive set of health, financial and other benefits that support your total well-being. Learn more at the Capital One Careers website . Eligibility varies based on full or part-time status, exempt or non-exempt status, and management level. This role is expected to accept applications for a minimum of 5 business days.No agencies please. Capital One is an equal opportunity employer (EOE, including disability/vet) committed to non-discrimination in compliance with applicable federal, state, and local laws. Capital One promotes a drug-free workplace. Capital One will consider for employment qualified applicants with a criminal history in a manner consistent with the requirements of applicable laws regarding criminal background inquiries, including, to the extent applicable, Article 23-A of the New York Correction Law; San Francisco, California Police Code Article 49, Sections ; New York City's Fair Chance Act; Philadelphia's Fair Criminal Records Screening Act; and other applicable federal, state, and local laws and regulations regarding criminal background inquiries. If you have visited our website in search of information on employment opportunities or to apply for a position, and you require an accommodation, please contact Capital One Recruiting at 1- or via email at . click apply for full job details
Senior Manager, Technology Change Risk Oversight
Capital One Salisbury, Maryland
Senior Manager, Technology Change Risk Oversight Capital One is one of the fastest growing organizations in the world today, powered by our passion for our customers. We are serious about technology, we dream big, and we execute: Capital One moved our entire enterprise to the public cloud over the course of five years. Just as we prioritize driving innovation through technology, we equally prioritize cybersecurity, reliability, and managing technology risk. Technology Risk Management (TRM) is a small organization that packs a big punch. The 100 professionals in TRM are trusted experts who oversee 14,000 developers at Capital One. We raise the bar for excellence in cybersecurity, reliability, and tech risk. We shape strategy and decisions, challenge activities to ensure they meet our standards, and perform independent tests of our security and technology risk. Our business leaders must make technology decisions constantly. TRM makes sure they have the tech risk information they need to make good decisions. Associates within TRM are highly-skilled information security, cybersecurity, site reliability engineering, technology, and risk management professionals. They have a wealth of experience and a demonstrated ability to add value with their advice and to deliver high-impact results. As the Senior Manager, Technology Change Risk Oversight you will play a key role in the review, risk identification, risk assessment, reporting, and effective challenge of technology processes, controls, and capabilities, including but not limited to material and high risk technology changes. You will provide subject matter expertise, oversight, and effective challenge of key Technology areas such as cloud services, enterprise architecture, cloud migrations, and overall technology deployments. As part of the second line of defense, this position will also collaborate closely with associates in first line Cyber, Technology, the Lines of Business, as well as other second line of defense risk management offices to perform and support evaluations of the effectiveness of the firm's controls infrastructure and offer independent advice and recommendations regarding ways to further mature the firm's cyber risk management capabilities. Finally, as a member of a growing organization, you will have the opportunity to shape and further refine your portfolio commensurate with the priorities of the organization and the company. The demands and high-visibility nature of this position requires an expert with a proven ability to work independently in a fast-paced environment and who can begin contributing immediately. Essential Functions (Responsibilities): Provide technical leadership in assessing the practices of designing, developing, testing and implementing cloud native solutions to crucial business problems through thoughtful use of industry best practices and Capital One policy. Evaluate proposed and approved cloud technical solutions for automation, resiliency, performance, scalability, and security including appropriate tradeoffs, risks and opportunities Evaluate/assess complex technological and business environment migrations to the cloud and integrated end-to-end solution options Build and maintain relationships with technical leaders, business owners, engineers and other stakeholders to understand and evaluate implementation plans, business priorities and technical solutions to ensure risk are well communicated and understood by the key stakeholders Keep up-to-date on cutting edge technology, standards, protocols and tools in areas relevant to the rapidly changing environment at Capital One, specifically cloud native architecture, serverless, and emerging AWS services Demonstrate strong analytical, problem-solving, and decision-making skills Communicate and drive highly complex technology solutions to broad audiences including executives, business leaders, product managers, legal experts, security specialists and software engineers Define, structure and plan work independently Perform independent risk assessment of our cloud environment focusing on architecture, engineering, networking, governance. Provide expertise and advice regarding the effectiveness of device configurations, IT architecture, or IT engineering solutions Consult with risk owners on the design and implementation or adjustment of mitigating controls associated with emerging technologies Draft and publish independent reports for risk owners, senior management, and other stakeholders regarding risks associated with new or emerging technologies Basic Qualifications: Bachelor's Degree or military experience At least 6 years of experience managing, consulting, auditing, or working in the fields of information security or information technology At least 3 years experience with Public Cloud implementations Preferred Qualifications: Master's Degree in Computer Science or in an Engineering discipline Professional certification (AWS Certified Solutions Architect, AWS Certified Security Speciality, AWS SysOps Administrator, or Certified Information Systems Security Professional (CISSP Experience with Information Security at the policy, architecture or implementation level Ability to communicate clearly and to interact effectively at all levels of the organization, and to influence as warranted and appropriate to drive to consensus Experience with identifying and communicating key risks related to cloud native implementations and architectures Experience drafting reports or analytic assessments for senior management Experience with analysis of emerging threats and reports that describe the implications of threat(s) and opportunities to executives or senior decision-makers Passion and expertise in cybersecurity and technology risk, with an ability to be confident, respectful, and articulate when registering dissenting or unpopular opinions Ability to manage multiple high-visibility and high-impact projects while maintaining superior results Execution oriented and a self-motivator Experience with threat modeling frameworks (STRIDE, OWASP Top 10, MITRE ATT&CK) Familiarity with controls and control frameworks ( NIST Cybersecurity Framework, NIST 800-53, CIS Top 20, ISO, COBIT.) Ability to work independently and in a team, taking a lead role on projects when necessary Prior experience working in financial services or other highly-regulated sectors Experience working in a hybrid IT environment that includes both traditional on-premises data centers and public cloud infrastructure (e.g., AWS, Azure, Google Cloud) Experience with OpenStack At this time, Capital One will not sponsor a new applicant for employment authorization for this position. This role is Hybrid, with associates expected to consistently spend three days per week in the office. The minimum and maximum full-time annual salaries for this role are listed below, by location. Please note that this salary information is solely for candidates hired to perform work within one of these locations, and refers to the amount Capital One is willing to pay at the time of this posting. Salaries for part-time roles will be prorated based upon the agreed upon number of hours to be regularly worked. McLean, VA: $225,400 - $257,200 for Sr Manager, Cyber Technical Richmond, VA: $204,900 - $233,800 for Sr Manager, Cyber Technical New York, NY: $245,900 - $280,600 for Sr Manager, Cyber Technical Riverwoods, IL: $204,900 - $233,800 for Sr Manager, Cyber Technical Candidates hired to work in other locations will be subject to the pay range associated with that location, and the actual annualized salary amount offered to any candidate at the time of hire will be reflected solely in the candidate's offer letter. This role is also eligible to earn performance based incentive compensation, which may include cash bonus(es) and/or long term incentives (LTI). Incentives could be discretionary or non discretionary depending on the plan. Capital One offers a comprehensive, competitive, and inclusive set of health, financial and other benefits that support your total well-being. Learn more at the Capital One Careers website . Eligibility varies based on full or part-time status, exempt or non-exempt status, and management level. This role is expected to accept applications for a minimum of 5 business days.No agencies please. Capital One is an equal opportunity employer (EOE, including disability/vet) committed to non-discrimination in compliance with applicable federal, state, and local laws. Capital One promotes a drug-free workplace. Capital One will consider for employment qualified applicants with a criminal history in a manner consistent with the requirements of applicable laws regarding criminal background inquiries, including, to the extent applicable, Article 23-A of the New York Correction Law; San Francisco, California Police Code Article 49, Sections ; New York City's Fair Chance Act; Philadelphia's Fair Criminal Records Screening Act; and other applicable federal, state, and local laws and regulations regarding criminal background inquiries. If you have visited our website in search of information on employment opportunities or to apply for a position, and you require an accommodation, please contact Capital One Recruiting at 1- or via email at . click apply for full job details
12/17/2025
Full time
Senior Manager, Technology Change Risk Oversight Capital One is one of the fastest growing organizations in the world today, powered by our passion for our customers. We are serious about technology, we dream big, and we execute: Capital One moved our entire enterprise to the public cloud over the course of five years. Just as we prioritize driving innovation through technology, we equally prioritize cybersecurity, reliability, and managing technology risk. Technology Risk Management (TRM) is a small organization that packs a big punch. The 100 professionals in TRM are trusted experts who oversee 14,000 developers at Capital One. We raise the bar for excellence in cybersecurity, reliability, and tech risk. We shape strategy and decisions, challenge activities to ensure they meet our standards, and perform independent tests of our security and technology risk. Our business leaders must make technology decisions constantly. TRM makes sure they have the tech risk information they need to make good decisions. Associates within TRM are highly-skilled information security, cybersecurity, site reliability engineering, technology, and risk management professionals. They have a wealth of experience and a demonstrated ability to add value with their advice and to deliver high-impact results. As the Senior Manager, Technology Change Risk Oversight you will play a key role in the review, risk identification, risk assessment, reporting, and effective challenge of technology processes, controls, and capabilities, including but not limited to material and high risk technology changes. You will provide subject matter expertise, oversight, and effective challenge of key Technology areas such as cloud services, enterprise architecture, cloud migrations, and overall technology deployments. As part of the second line of defense, this position will also collaborate closely with associates in first line Cyber, Technology, the Lines of Business, as well as other second line of defense risk management offices to perform and support evaluations of the effectiveness of the firm's controls infrastructure and offer independent advice and recommendations regarding ways to further mature the firm's cyber risk management capabilities. Finally, as a member of a growing organization, you will have the opportunity to shape and further refine your portfolio commensurate with the priorities of the organization and the company. The demands and high-visibility nature of this position requires an expert with a proven ability to work independently in a fast-paced environment and who can begin contributing immediately. Essential Functions (Responsibilities): Provide technical leadership in assessing the practices of designing, developing, testing and implementing cloud native solutions to crucial business problems through thoughtful use of industry best practices and Capital One policy. Evaluate proposed and approved cloud technical solutions for automation, resiliency, performance, scalability, and security including appropriate tradeoffs, risks and opportunities Evaluate/assess complex technological and business environment migrations to the cloud and integrated end-to-end solution options Build and maintain relationships with technical leaders, business owners, engineers and other stakeholders to understand and evaluate implementation plans, business priorities and technical solutions to ensure risk are well communicated and understood by the key stakeholders Keep up-to-date on cutting edge technology, standards, protocols and tools in areas relevant to the rapidly changing environment at Capital One, specifically cloud native architecture, serverless, and emerging AWS services Demonstrate strong analytical, problem-solving, and decision-making skills Communicate and drive highly complex technology solutions to broad audiences including executives, business leaders, product managers, legal experts, security specialists and software engineers Define, structure and plan work independently Perform independent risk assessment of our cloud environment focusing on architecture, engineering, networking, governance. Provide expertise and advice regarding the effectiveness of device configurations, IT architecture, or IT engineering solutions Consult with risk owners on the design and implementation or adjustment of mitigating controls associated with emerging technologies Draft and publish independent reports for risk owners, senior management, and other stakeholders regarding risks associated with new or emerging technologies Basic Qualifications: Bachelor's Degree or military experience At least 6 years of experience managing, consulting, auditing, or working in the fields of information security or information technology At least 3 years experience with Public Cloud implementations Preferred Qualifications: Master's Degree in Computer Science or in an Engineering discipline Professional certification (AWS Certified Solutions Architect, AWS Certified Security Speciality, AWS SysOps Administrator, or Certified Information Systems Security Professional (CISSP Experience with Information Security at the policy, architecture or implementation level Ability to communicate clearly and to interact effectively at all levels of the organization, and to influence as warranted and appropriate to drive to consensus Experience with identifying and communicating key risks related to cloud native implementations and architectures Experience drafting reports or analytic assessments for senior management Experience with analysis of emerging threats and reports that describe the implications of threat(s) and opportunities to executives or senior decision-makers Passion and expertise in cybersecurity and technology risk, with an ability to be confident, respectful, and articulate when registering dissenting or unpopular opinions Ability to manage multiple high-visibility and high-impact projects while maintaining superior results Execution oriented and a self-motivator Experience with threat modeling frameworks (STRIDE, OWASP Top 10, MITRE ATT&CK) Familiarity with controls and control frameworks ( NIST Cybersecurity Framework, NIST 800-53, CIS Top 20, ISO, COBIT.) Ability to work independently and in a team, taking a lead role on projects when necessary Prior experience working in financial services or other highly-regulated sectors Experience working in a hybrid IT environment that includes both traditional on-premises data centers and public cloud infrastructure (e.g., AWS, Azure, Google Cloud) Experience with OpenStack At this time, Capital One will not sponsor a new applicant for employment authorization for this position. This role is Hybrid, with associates expected to consistently spend three days per week in the office. The minimum and maximum full-time annual salaries for this role are listed below, by location. Please note that this salary information is solely for candidates hired to perform work within one of these locations, and refers to the amount Capital One is willing to pay at the time of this posting. Salaries for part-time roles will be prorated based upon the agreed upon number of hours to be regularly worked. McLean, VA: $225,400 - $257,200 for Sr Manager, Cyber Technical Richmond, VA: $204,900 - $233,800 for Sr Manager, Cyber Technical New York, NY: $245,900 - $280,600 for Sr Manager, Cyber Technical Riverwoods, IL: $204,900 - $233,800 for Sr Manager, Cyber Technical Candidates hired to work in other locations will be subject to the pay range associated with that location, and the actual annualized salary amount offered to any candidate at the time of hire will be reflected solely in the candidate's offer letter. This role is also eligible to earn performance based incentive compensation, which may include cash bonus(es) and/or long term incentives (LTI). Incentives could be discretionary or non discretionary depending on the plan. Capital One offers a comprehensive, competitive, and inclusive set of health, financial and other benefits that support your total well-being. Learn more at the Capital One Careers website . Eligibility varies based on full or part-time status, exempt or non-exempt status, and management level. This role is expected to accept applications for a minimum of 5 business days.No agencies please. Capital One is an equal opportunity employer (EOE, including disability/vet) committed to non-discrimination in compliance with applicable federal, state, and local laws. Capital One promotes a drug-free workplace. Capital One will consider for employment qualified applicants with a criminal history in a manner consistent with the requirements of applicable laws regarding criminal background inquiries, including, to the extent applicable, Article 23-A of the New York Correction Law; San Francisco, California Police Code Article 49, Sections ; New York City's Fair Chance Act; Philadelphia's Fair Criminal Records Screening Act; and other applicable federal, state, and local laws and regulations regarding criminal background inquiries. If you have visited our website in search of information on employment opportunities or to apply for a position, and you require an accommodation, please contact Capital One Recruiting at 1- or via email at . click apply for full job details

Modal Window

  • Home
  • Contact
  • About Us
  • FAQs
  • Terms & Conditions
  • Privacy
  • Employer
  • Post a Job
  • Search Resumes
  • Sign in
  • Job Seeker
  • Find Jobs
  • Create Resume
  • Sign in
  • IT blog
  • Facebook
  • Twitter
  • LinkedIn
  • Youtube
© 2008-2026 IT Job Board