Job Posting:JR101263 Director of Information Security / Chief Information Security Officer (CISO) (Open)Department:BSU Business Operations, PMPosition Type:RegularOpen Date:09-30-2025Close Date:$150,000 - $170,000Job Description:The Director of Information Security / Chief Information Security Officer (CISO) is responsible for developing and executing a comprehensive information security strategy supporting academic, research, and administrative functions. This strategic leader will direct the Information Security Office (ISO), manage audits, oversee compliance, and serve as the primary authority on institutional cybersecurity. Key Responsibilities Lead the development of a campus-wide security program Oversee ISO and Info Assurance Specialists Implement secure cloud and zero-trust architectures Direct GRC (Governance, Risk, Compliance) efforts Manage audits and incident response Promote cybersecurity awareness Advise senior leadership and external partners Manage security vendors and budgets Support grant and research cybersecurity needs Minimum Qualifications Bachelor's in Computer Science or related field 10+ years of cybersecurity leadership experience Strong understanding of NIST, ISO 27001, SOC 2, GDPR, CCPA CISSP certification required Preferred Qualifications Master's degree Experience with higher ed data compliance Familiarity with research security standards CONDITIONS OF EMPLOYMENT: Visas and labor certification will not be sponsored for this position. Application only accepted from citizens or permanent residents. Note: Position excluded from Union Representation and Collective Bargaining Additional Job Information: Benefits include medical, dental, prescription, long-term disability, accidental death and dismemberment insurance and life insurance; paid time for paid sick leave, annual leave, and personal leave; 12 paid holidays per year, tuition remission; employer-funded pension and supplemental retirement accounts Bowie State University shall not discriminate against any individual on the basis of race, color, religion, age, ancestry or national origin, sex, sexual orientation, disability, marital status or veteran status. All policies, programs, and activities of Bowie State University are and shall be in conformity with all pertinent Federal and state laws of nondiscrimination including, but not limited to: Title VII of the Civil Rights Act of 1964, as amended, Title IX of the Education Amendments of 1972, the Equal Pay Act of 1963, the Age Discrimination Act, Sections 503 and 504 of the Rehabilitation Act of 1973, the Americans with Disabilities Act of 1990, Federal Executive Order No. 11375, and Article 49B of the Annotated Code of Maryland. This commitment applies in all areas and embraces faculty, staff, and students.Equal opportunity of access to academic and related programs shall be extended to all persons. Bowie State University shall have as its firm objective equal opportunity in recruitment and hiring, rate of pay, all other promotions, training, retention and dismissals, for all employees and applicants for employment. The University will stress equal access for employees and applicants for employment to all programs and services provided by the University both on and off campus. The University will also provide equal opportunity and an atmosphere of nondiscrimination with respect to women and members of minority groups in all its operations. In addition, the University shall promote equal opportunity and equal treatment through a positive and continuing Affirmative Action Program.The University makes, and will continue to make, reasonable accommodations to promote the employment of qualified individuals with disabilities and disabled veterans, unless such accommodations would impose an undue hardship on the University's business. In addition, employees and applicants will not be subjected to harassment, intimidation, threats, coercion, or discrimination because they have engaged in, or may have engaged in, activities such as filing a complaint, assisting or participating in an investigation, compliance review or hearing, or opposing any act or practice made unlawful, or exercising any other right protected by Section 503 of the Rehabilitation Act of 1973, as amended or the Vietnam Era Veterans Readjustment Assistance Act of 1974, as amended.
01/14/2026
Full time
Job Posting:JR101263 Director of Information Security / Chief Information Security Officer (CISO) (Open)Department:BSU Business Operations, PMPosition Type:RegularOpen Date:09-30-2025Close Date:$150,000 - $170,000Job Description:The Director of Information Security / Chief Information Security Officer (CISO) is responsible for developing and executing a comprehensive information security strategy supporting academic, research, and administrative functions. This strategic leader will direct the Information Security Office (ISO), manage audits, oversee compliance, and serve as the primary authority on institutional cybersecurity. Key Responsibilities Lead the development of a campus-wide security program Oversee ISO and Info Assurance Specialists Implement secure cloud and zero-trust architectures Direct GRC (Governance, Risk, Compliance) efforts Manage audits and incident response Promote cybersecurity awareness Advise senior leadership and external partners Manage security vendors and budgets Support grant and research cybersecurity needs Minimum Qualifications Bachelor's in Computer Science or related field 10+ years of cybersecurity leadership experience Strong understanding of NIST, ISO 27001, SOC 2, GDPR, CCPA CISSP certification required Preferred Qualifications Master's degree Experience with higher ed data compliance Familiarity with research security standards CONDITIONS OF EMPLOYMENT: Visas and labor certification will not be sponsored for this position. Application only accepted from citizens or permanent residents. Note: Position excluded from Union Representation and Collective Bargaining Additional Job Information: Benefits include medical, dental, prescription, long-term disability, accidental death and dismemberment insurance and life insurance; paid time for paid sick leave, annual leave, and personal leave; 12 paid holidays per year, tuition remission; employer-funded pension and supplemental retirement accounts Bowie State University shall not discriminate against any individual on the basis of race, color, religion, age, ancestry or national origin, sex, sexual orientation, disability, marital status or veteran status. All policies, programs, and activities of Bowie State University are and shall be in conformity with all pertinent Federal and state laws of nondiscrimination including, but not limited to: Title VII of the Civil Rights Act of 1964, as amended, Title IX of the Education Amendments of 1972, the Equal Pay Act of 1963, the Age Discrimination Act, Sections 503 and 504 of the Rehabilitation Act of 1973, the Americans with Disabilities Act of 1990, Federal Executive Order No. 11375, and Article 49B of the Annotated Code of Maryland. This commitment applies in all areas and embraces faculty, staff, and students.Equal opportunity of access to academic and related programs shall be extended to all persons. Bowie State University shall have as its firm objective equal opportunity in recruitment and hiring, rate of pay, all other promotions, training, retention and dismissals, for all employees and applicants for employment. The University will stress equal access for employees and applicants for employment to all programs and services provided by the University both on and off campus. The University will also provide equal opportunity and an atmosphere of nondiscrimination with respect to women and members of minority groups in all its operations. In addition, the University shall promote equal opportunity and equal treatment through a positive and continuing Affirmative Action Program.The University makes, and will continue to make, reasonable accommodations to promote the employment of qualified individuals with disabilities and disabled veterans, unless such accommodations would impose an undue hardship on the University's business. In addition, employees and applicants will not be subjected to harassment, intimidation, threats, coercion, or discrimination because they have engaged in, or may have engaged in, activities such as filing a complaint, assisting or participating in an investigation, compliance review or hearing, or opposing any act or practice made unlawful, or exercising any other right protected by Section 503 of the Rehabilitation Act of 1973, as amended or the Vietnam Era Veterans Readjustment Assistance Act of 1974, as amended.
Manager, Network Security, Tech & Data Risk Management Capital One is one of the fastest growing organizations in the world today, powered by our passion for our customers. We are serious about technology, we dream big, and we execute: Capital One moved our entire enterprise to the public cloud over the course of five years. Just as we prioritize driving innovation through technology, we equally prioritize cybersecurity, reliability, software quality, and data management. Technology & Data Risk Management (TDRM) is a small organization that packs a big punch. The 200 professionals in TDRM are trusted experts who oversee 14,000 developers at Capital One. We raise the bar for excellence in cybersecurity, reliability, and tech risk, and data management risk. We shape strategy and decisions, challenge activities to ensure they meet our standards, and perform independent tests of our security and technology risk. For years, the cybersecurity community has debated whether the CISO should report to the CIO or not. In regulated financial services, the answer is: both. The first-line CISO has operational responsibilities and reports to the CIO. The second-line Chief Tech Risk Officer (CTRO) and the Tech & Data Risk Management (TRM) organization have broader responsibilities for cybersecurity but also reliability, software quality, resilience, and the risk of failing to manage our data. The CTRO is independent and oversees the work of the CISO, the CIO/CTO, and the Chief Data Officer. The CTRO reports to the Chief Risk Officer, who reports directly to the CEO. Our business leaders must make technology decisions constantly. TDRM makes sure they have the tech and data risk information they need to make good decisions. Associates within TDRM are highly-skilled information security, cybersecurity, site reliability engineering, technology, data analyst, data scientist, and risk management professionals. They have a wealth of experience and a demonstrated ability to add value with their advice and to deliver high-impact results. Role-specific text This position - Manager, Network Security - is a unique opportunity for candidates with technical cybersecurity experience who have a desire to expand that expertise in a risk management organization. This individual will have the opportunity to leverage their technical subject matter expertise to provide advisory, oversight, and effective challenge to stakeholders within the first line of defense. This role will engage with and build relationships across multiple lines of defense while overseeing network security across Capital One's private and public cloud footprints. Responsibilities: Provide advisory, oversight, and effective challenge to the first line of defense. Provide technical assessments of cybersecurity controls design and effectiveness. Draft assessments for senior management and other stakeholders, to include regulatory agencies and the Board of Directors, as needed. Stay current on emerging cyber threats and potential implications to the firm. Collaborate effectively with colleagues, stakeholders, and leaders across multiple organizations to achieve objectives. Coordinate program-related activities and deliverables to ensure effective collaboration within the team and across stakeholder groups. Proven track record of leading, mentoring, and influencing others. Ability to communicate clearly in written and verbal form. Ability to manage multiple projects while maintaining superior results. Ability to work individually and cross-functionally. Execution oriented and a self-motivator. Basic Qualifications: Bachelor's degree or military experience 3+ years of experience in the financial services industry or highly regulated industry (healthcare, energy, telecommunications) 3+ years of experience implementing network defenses (firewalls, network access control, intrusion detection, intrusion prevention, web application firewalls, web gateways, and proxies) in AWS (Amazon Web Services) or GCP (Google Cloud Platform) 2+ years of experience implementing Zero Trust or Secure Access Service Edge (SASE) in AWS or GCP 1+ certifications for AWS or GCP 2+ years of audit or risk management experience Preferred Qualifications: 2+ years of experience with Palo Alto Networks technologies 1 or more audit or risk-focused certification: CRISC (Certified in Risk and Information Systems Control), CISA (Certified Information Systems Auditor), CISM (Certified Information Security Manager), or CISSP (Certified Information System Security Professional) 2+ years of experience implementing network defenses for global payment networks At this time, Capital One will not sponsor a new applicant for employment authorization for this position. The minimum and maximum full-time annual salaries for this role are listed below, by location. Please note that this salary information is solely for candidates hired to perform work within one of these locations, and refers to the amount Capital One is willing to pay at the time of this posting. Salaries for part-time roles will be prorated based upon the agreed upon number of hours to be regularly worked. McLean, VA: $193,400 - $220,700 for Manager, Cyber Technical New York, NY: $211,000 - $240,800 for Manager, Cyber Technical Plano, TX: $175,800 - $200,700 for Manager, Cyber Technical Richmond, VA: $175,800 - $200,700 for Manager, Cyber Technical Candidates hired to work in other locations will be subject to the pay range associated with that location, and the actual annualized salary amount offered to any candidate at the time of hire will be reflected solely in the candidate's offer letter. This role is also eligible to earn performance based incentive compensation, which may include cash bonus(es) and/or long term incentives (LTI). Incentives could be discretionary or non discretionary depending on the plan. Capital One offers a comprehensive, competitive, and inclusive set of health, financial and other benefits that support your total well-being. Learn more at the Capital One Careers website . Eligibility varies based on full or part-time status, exempt or non-exempt status, and management level. This role is expected to accept applications for a minimum of 5 business days.No agencies please. Capital One is an equal opportunity employer (EOE, including disability/vet) committed to non-discrimination in compliance with applicable federal, state, and local laws. Capital One promotes a drug-free workplace. Capital One will consider for employment qualified applicants with a criminal history in a manner consistent with the requirements of applicable laws regarding criminal background inquiries, including, to the extent applicable, Article 23-A of the New York Correction Law; San Francisco, California Police Code Article 49, Sections ; New York City's Fair Chance Act; Philadelphia's Fair Criminal Records Screening Act; and other applicable federal, state, and local laws and regulations regarding criminal background inquiries. If you have visited our website in search of information on employment opportunities or to apply for a position, and you require an accommodation, please contact Capital One Recruiting at 1- or via email at . All information you provide will be kept confidential and will be used only to the extent required to provide needed reasonable accommodations. For technical support or questions about Capital One's recruiting process, please send an email to Capital One does not provide, endorse nor guarantee and is not liable for third-party products, services, educational tools or other information available through this site. Capital One Financial is made up of several different entities. Please note that any position posted in Canada is for Capital One Canada, any position posted in the United Kingdom is for Capital One Europe and any position posted in the Philippines is for Capital One Philippines Service Corp. (COPSSC).
12/17/2025
Full time
Manager, Network Security, Tech & Data Risk Management Capital One is one of the fastest growing organizations in the world today, powered by our passion for our customers. We are serious about technology, we dream big, and we execute: Capital One moved our entire enterprise to the public cloud over the course of five years. Just as we prioritize driving innovation through technology, we equally prioritize cybersecurity, reliability, software quality, and data management. Technology & Data Risk Management (TDRM) is a small organization that packs a big punch. The 200 professionals in TDRM are trusted experts who oversee 14,000 developers at Capital One. We raise the bar for excellence in cybersecurity, reliability, and tech risk, and data management risk. We shape strategy and decisions, challenge activities to ensure they meet our standards, and perform independent tests of our security and technology risk. For years, the cybersecurity community has debated whether the CISO should report to the CIO or not. In regulated financial services, the answer is: both. The first-line CISO has operational responsibilities and reports to the CIO. The second-line Chief Tech Risk Officer (CTRO) and the Tech & Data Risk Management (TRM) organization have broader responsibilities for cybersecurity but also reliability, software quality, resilience, and the risk of failing to manage our data. The CTRO is independent and oversees the work of the CISO, the CIO/CTO, and the Chief Data Officer. The CTRO reports to the Chief Risk Officer, who reports directly to the CEO. Our business leaders must make technology decisions constantly. TDRM makes sure they have the tech and data risk information they need to make good decisions. Associates within TDRM are highly-skilled information security, cybersecurity, site reliability engineering, technology, data analyst, data scientist, and risk management professionals. They have a wealth of experience and a demonstrated ability to add value with their advice and to deliver high-impact results. Role-specific text This position - Manager, Network Security - is a unique opportunity for candidates with technical cybersecurity experience who have a desire to expand that expertise in a risk management organization. This individual will have the opportunity to leverage their technical subject matter expertise to provide advisory, oversight, and effective challenge to stakeholders within the first line of defense. This role will engage with and build relationships across multiple lines of defense while overseeing network security across Capital One's private and public cloud footprints. Responsibilities: Provide advisory, oversight, and effective challenge to the first line of defense. Provide technical assessments of cybersecurity controls design and effectiveness. Draft assessments for senior management and other stakeholders, to include regulatory agencies and the Board of Directors, as needed. Stay current on emerging cyber threats and potential implications to the firm. Collaborate effectively with colleagues, stakeholders, and leaders across multiple organizations to achieve objectives. Coordinate program-related activities and deliverables to ensure effective collaboration within the team and across stakeholder groups. Proven track record of leading, mentoring, and influencing others. Ability to communicate clearly in written and verbal form. Ability to manage multiple projects while maintaining superior results. Ability to work individually and cross-functionally. Execution oriented and a self-motivator. Basic Qualifications: Bachelor's degree or military experience 3+ years of experience in the financial services industry or highly regulated industry (healthcare, energy, telecommunications) 3+ years of experience implementing network defenses (firewalls, network access control, intrusion detection, intrusion prevention, web application firewalls, web gateways, and proxies) in AWS (Amazon Web Services) or GCP (Google Cloud Platform) 2+ years of experience implementing Zero Trust or Secure Access Service Edge (SASE) in AWS or GCP 1+ certifications for AWS or GCP 2+ years of audit or risk management experience Preferred Qualifications: 2+ years of experience with Palo Alto Networks technologies 1 or more audit or risk-focused certification: CRISC (Certified in Risk and Information Systems Control), CISA (Certified Information Systems Auditor), CISM (Certified Information Security Manager), or CISSP (Certified Information System Security Professional) 2+ years of experience implementing network defenses for global payment networks At this time, Capital One will not sponsor a new applicant for employment authorization for this position. The minimum and maximum full-time annual salaries for this role are listed below, by location. Please note that this salary information is solely for candidates hired to perform work within one of these locations, and refers to the amount Capital One is willing to pay at the time of this posting. Salaries for part-time roles will be prorated based upon the agreed upon number of hours to be regularly worked. McLean, VA: $193,400 - $220,700 for Manager, Cyber Technical New York, NY: $211,000 - $240,800 for Manager, Cyber Technical Plano, TX: $175,800 - $200,700 for Manager, Cyber Technical Richmond, VA: $175,800 - $200,700 for Manager, Cyber Technical Candidates hired to work in other locations will be subject to the pay range associated with that location, and the actual annualized salary amount offered to any candidate at the time of hire will be reflected solely in the candidate's offer letter. This role is also eligible to earn performance based incentive compensation, which may include cash bonus(es) and/or long term incentives (LTI). Incentives could be discretionary or non discretionary depending on the plan. Capital One offers a comprehensive, competitive, and inclusive set of health, financial and other benefits that support your total well-being. Learn more at the Capital One Careers website . Eligibility varies based on full or part-time status, exempt or non-exempt status, and management level. This role is expected to accept applications for a minimum of 5 business days.No agencies please. Capital One is an equal opportunity employer (EOE, including disability/vet) committed to non-discrimination in compliance with applicable federal, state, and local laws. Capital One promotes a drug-free workplace. Capital One will consider for employment qualified applicants with a criminal history in a manner consistent with the requirements of applicable laws regarding criminal background inquiries, including, to the extent applicable, Article 23-A of the New York Correction Law; San Francisco, California Police Code Article 49, Sections ; New York City's Fair Chance Act; Philadelphia's Fair Criminal Records Screening Act; and other applicable federal, state, and local laws and regulations regarding criminal background inquiries. If you have visited our website in search of information on employment opportunities or to apply for a position, and you require an accommodation, please contact Capital One Recruiting at 1- or via email at . All information you provide will be kept confidential and will be used only to the extent required to provide needed reasonable accommodations. For technical support or questions about Capital One's recruiting process, please send an email to Capital One does not provide, endorse nor guarantee and is not liable for third-party products, services, educational tools or other information available through this site. Capital One Financial is made up of several different entities. Please note that any position posted in Canada is for Capital One Canada, any position posted in the United Kingdom is for Capital One Europe and any position posted in the Philippines is for Capital One Philippines Service Corp. (COPSSC).
Manager, Network Security, Tech & Data Risk Management Capital One is one of the fastest growing organizations in the world today, powered by our passion for our customers. We are serious about technology, we dream big, and we execute: Capital One moved our entire enterprise to the public cloud over the course of five years. Just as we prioritize driving innovation through technology, we equally prioritize cybersecurity, reliability, software quality, and data management. Technology & Data Risk Management (TDRM) is a small organization that packs a big punch. The 200 professionals in TDRM are trusted experts who oversee 14,000 developers at Capital One. We raise the bar for excellence in cybersecurity, reliability, and tech risk, and data management risk. We shape strategy and decisions, challenge activities to ensure they meet our standards, and perform independent tests of our security and technology risk. For years, the cybersecurity community has debated whether the CISO should report to the CIO or not. In regulated financial services, the answer is: both. The first-line CISO has operational responsibilities and reports to the CIO. The second-line Chief Tech Risk Officer (CTRO) and the Tech & Data Risk Management (TRM) organization have broader responsibilities for cybersecurity but also reliability, software quality, resilience, and the risk of failing to manage our data. The CTRO is independent and oversees the work of the CISO, the CIO/CTO, and the Chief Data Officer. The CTRO reports to the Chief Risk Officer, who reports directly to the CEO. Our business leaders must make technology decisions constantly. TDRM makes sure they have the tech and data risk information they need to make good decisions. Associates within TDRM are highly-skilled information security, cybersecurity, site reliability engineering, technology, data analyst, data scientist, and risk management professionals. They have a wealth of experience and a demonstrated ability to add value with their advice and to deliver high-impact results. Role-specific text This position - Manager, Network Security - is a unique opportunity for candidates with technical cybersecurity experience who have a desire to expand that expertise in a risk management organization. This individual will have the opportunity to leverage their technical subject matter expertise to provide advisory, oversight, and effective challenge to stakeholders within the first line of defense. This role will engage with and build relationships across multiple lines of defense while overseeing network security across Capital One's private and public cloud footprints. Responsibilities: Provide advisory, oversight, and effective challenge to the first line of defense. Provide technical assessments of cybersecurity controls design and effectiveness. Draft assessments for senior management and other stakeholders, to include regulatory agencies and the Board of Directors, as needed. Stay current on emerging cyber threats and potential implications to the firm. Collaborate effectively with colleagues, stakeholders, and leaders across multiple organizations to achieve objectives. Coordinate program-related activities and deliverables to ensure effective collaboration within the team and across stakeholder groups. Proven track record of leading, mentoring, and influencing others. Ability to communicate clearly in written and verbal form. Ability to manage multiple projects while maintaining superior results. Ability to work individually and cross-functionally. Execution oriented and a self-motivator. Basic Qualifications: Bachelor's degree or military experience 3+ years of experience in the financial services industry or highly regulated industry (healthcare, energy, telecommunications) 3+ years of experience implementing network defenses (firewalls, network access control, intrusion detection, intrusion prevention, web application firewalls, web gateways, and proxies) in AWS (Amazon Web Services) or GCP (Google Cloud Platform) 2+ years of experience implementing Zero Trust or Secure Access Service Edge (SASE) in AWS or GCP 1+ certifications for AWS or GCP 2+ years of audit or risk management experience Preferred Qualifications: 2+ years of experience with Palo Alto Networks technologies 1 or more audit or risk-focused certification: CRISC (Certified in Risk and Information Systems Control), CISA (Certified Information Systems Auditor), CISM (Certified Information Security Manager), or CISSP (Certified Information System Security Professional) 2+ years of experience implementing network defenses for global payment networks At this time, Capital One will not sponsor a new applicant for employment authorization for this position. The minimum and maximum full-time annual salaries for this role are listed below, by location. Please note that this salary information is solely for candidates hired to perform work within one of these locations, and refers to the amount Capital One is willing to pay at the time of this posting. Salaries for part-time roles will be prorated based upon the agreed upon number of hours to be regularly worked. McLean, VA: $193,400 - $220,700 for Manager, Cyber Technical New York, NY: $211,000 - $240,800 for Manager, Cyber Technical Plano, TX: $175,800 - $200,700 for Manager, Cyber Technical Richmond, VA: $175,800 - $200,700 for Manager, Cyber Technical Candidates hired to work in other locations will be subject to the pay range associated with that location, and the actual annualized salary amount offered to any candidate at the time of hire will be reflected solely in the candidate's offer letter. This role is also eligible to earn performance based incentive compensation, which may include cash bonus(es) and/or long term incentives (LTI). Incentives could be discretionary or non discretionary depending on the plan. Capital One offers a comprehensive, competitive, and inclusive set of health, financial and other benefits that support your total well-being. Learn more at the Capital One Careers website . Eligibility varies based on full or part-time status, exempt or non-exempt status, and management level. This role is expected to accept applications for a minimum of 5 business days.No agencies please. Capital One is an equal opportunity employer (EOE, including disability/vet) committed to non-discrimination in compliance with applicable federal, state, and local laws. Capital One promotes a drug-free workplace. Capital One will consider for employment qualified applicants with a criminal history in a manner consistent with the requirements of applicable laws regarding criminal background inquiries, including, to the extent applicable, Article 23-A of the New York Correction Law; San Francisco, California Police Code Article 49, Sections ; New York City's Fair Chance Act; Philadelphia's Fair Criminal Records Screening Act; and other applicable federal, state, and local laws and regulations regarding criminal background inquiries. If you have visited our website in search of information on employment opportunities or to apply for a position, and you require an accommodation, please contact Capital One Recruiting at 1- or via email at . All information you provide will be kept confidential and will be used only to the extent required to provide needed reasonable accommodations. For technical support or questions about Capital One's recruiting process, please send an email to Capital One does not provide, endorse nor guarantee and is not liable for third-party products, services, educational tools or other information available through this site. Capital One Financial is made up of several different entities. Please note that any position posted in Canada is for Capital One Canada, any position posted in the United Kingdom is for Capital One Europe and any position posted in the Philippines is for Capital One Philippines Service Corp. (COPSSC).
12/17/2025
Full time
Manager, Network Security, Tech & Data Risk Management Capital One is one of the fastest growing organizations in the world today, powered by our passion for our customers. We are serious about technology, we dream big, and we execute: Capital One moved our entire enterprise to the public cloud over the course of five years. Just as we prioritize driving innovation through technology, we equally prioritize cybersecurity, reliability, software quality, and data management. Technology & Data Risk Management (TDRM) is a small organization that packs a big punch. The 200 professionals in TDRM are trusted experts who oversee 14,000 developers at Capital One. We raise the bar for excellence in cybersecurity, reliability, and tech risk, and data management risk. We shape strategy and decisions, challenge activities to ensure they meet our standards, and perform independent tests of our security and technology risk. For years, the cybersecurity community has debated whether the CISO should report to the CIO or not. In regulated financial services, the answer is: both. The first-line CISO has operational responsibilities and reports to the CIO. The second-line Chief Tech Risk Officer (CTRO) and the Tech & Data Risk Management (TRM) organization have broader responsibilities for cybersecurity but also reliability, software quality, resilience, and the risk of failing to manage our data. The CTRO is independent and oversees the work of the CISO, the CIO/CTO, and the Chief Data Officer. The CTRO reports to the Chief Risk Officer, who reports directly to the CEO. Our business leaders must make technology decisions constantly. TDRM makes sure they have the tech and data risk information they need to make good decisions. Associates within TDRM are highly-skilled information security, cybersecurity, site reliability engineering, technology, data analyst, data scientist, and risk management professionals. They have a wealth of experience and a demonstrated ability to add value with their advice and to deliver high-impact results. Role-specific text This position - Manager, Network Security - is a unique opportunity for candidates with technical cybersecurity experience who have a desire to expand that expertise in a risk management organization. This individual will have the opportunity to leverage their technical subject matter expertise to provide advisory, oversight, and effective challenge to stakeholders within the first line of defense. This role will engage with and build relationships across multiple lines of defense while overseeing network security across Capital One's private and public cloud footprints. Responsibilities: Provide advisory, oversight, and effective challenge to the first line of defense. Provide technical assessments of cybersecurity controls design and effectiveness. Draft assessments for senior management and other stakeholders, to include regulatory agencies and the Board of Directors, as needed. Stay current on emerging cyber threats and potential implications to the firm. Collaborate effectively with colleagues, stakeholders, and leaders across multiple organizations to achieve objectives. Coordinate program-related activities and deliverables to ensure effective collaboration within the team and across stakeholder groups. Proven track record of leading, mentoring, and influencing others. Ability to communicate clearly in written and verbal form. Ability to manage multiple projects while maintaining superior results. Ability to work individually and cross-functionally. Execution oriented and a self-motivator. Basic Qualifications: Bachelor's degree or military experience 3+ years of experience in the financial services industry or highly regulated industry (healthcare, energy, telecommunications) 3+ years of experience implementing network defenses (firewalls, network access control, intrusion detection, intrusion prevention, web application firewalls, web gateways, and proxies) in AWS (Amazon Web Services) or GCP (Google Cloud Platform) 2+ years of experience implementing Zero Trust or Secure Access Service Edge (SASE) in AWS or GCP 1+ certifications for AWS or GCP 2+ years of audit or risk management experience Preferred Qualifications: 2+ years of experience with Palo Alto Networks technologies 1 or more audit or risk-focused certification: CRISC (Certified in Risk and Information Systems Control), CISA (Certified Information Systems Auditor), CISM (Certified Information Security Manager), or CISSP (Certified Information System Security Professional) 2+ years of experience implementing network defenses for global payment networks At this time, Capital One will not sponsor a new applicant for employment authorization for this position. The minimum and maximum full-time annual salaries for this role are listed below, by location. Please note that this salary information is solely for candidates hired to perform work within one of these locations, and refers to the amount Capital One is willing to pay at the time of this posting. Salaries for part-time roles will be prorated based upon the agreed upon number of hours to be regularly worked. McLean, VA: $193,400 - $220,700 for Manager, Cyber Technical New York, NY: $211,000 - $240,800 for Manager, Cyber Technical Plano, TX: $175,800 - $200,700 for Manager, Cyber Technical Richmond, VA: $175,800 - $200,700 for Manager, Cyber Technical Candidates hired to work in other locations will be subject to the pay range associated with that location, and the actual annualized salary amount offered to any candidate at the time of hire will be reflected solely in the candidate's offer letter. This role is also eligible to earn performance based incentive compensation, which may include cash bonus(es) and/or long term incentives (LTI). Incentives could be discretionary or non discretionary depending on the plan. Capital One offers a comprehensive, competitive, and inclusive set of health, financial and other benefits that support your total well-being. Learn more at the Capital One Careers website . Eligibility varies based on full or part-time status, exempt or non-exempt status, and management level. This role is expected to accept applications for a minimum of 5 business days.No agencies please. Capital One is an equal opportunity employer (EOE, including disability/vet) committed to non-discrimination in compliance with applicable federal, state, and local laws. Capital One promotes a drug-free workplace. Capital One will consider for employment qualified applicants with a criminal history in a manner consistent with the requirements of applicable laws regarding criminal background inquiries, including, to the extent applicable, Article 23-A of the New York Correction Law; San Francisco, California Police Code Article 49, Sections ; New York City's Fair Chance Act; Philadelphia's Fair Criminal Records Screening Act; and other applicable federal, state, and local laws and regulations regarding criminal background inquiries. If you have visited our website in search of information on employment opportunities or to apply for a position, and you require an accommodation, please contact Capital One Recruiting at 1- or via email at . All information you provide will be kept confidential and will be used only to the extent required to provide needed reasonable accommodations. For technical support or questions about Capital One's recruiting process, please send an email to Capital One does not provide, endorse nor guarantee and is not liable for third-party products, services, educational tools or other information available through this site. Capital One Financial is made up of several different entities. Please note that any position posted in Canada is for Capital One Canada, any position posted in the United Kingdom is for Capital One Europe and any position posted in the Philippines is for Capital One Philippines Service Corp. (COPSSC).
Manager, Network Security, Tech & Data Risk Management Capital One is one of the fastest growing organizations in the world today, powered by our passion for our customers. We are serious about technology, we dream big, and we execute: Capital One moved our entire enterprise to the public cloud over the course of five years. Just as we prioritize driving innovation through technology, we equally prioritize cybersecurity, reliability, software quality, and data management. Technology & Data Risk Management (TDRM) is a small organization that packs a big punch. The 200 professionals in TDRM are trusted experts who oversee 14,000 developers at Capital One. We raise the bar for excellence in cybersecurity, reliability, and tech risk, and data management risk. We shape strategy and decisions, challenge activities to ensure they meet our standards, and perform independent tests of our security and technology risk. For years, the cybersecurity community has debated whether the CISO should report to the CIO or not. In regulated financial services, the answer is: both. The first-line CISO has operational responsibilities and reports to the CIO. The second-line Chief Tech Risk Officer (CTRO) and the Tech & Data Risk Management (TRM) organization have broader responsibilities for cybersecurity but also reliability, software quality, resilience, and the risk of failing to manage our data. The CTRO is independent and oversees the work of the CISO, the CIO/CTO, and the Chief Data Officer. The CTRO reports to the Chief Risk Officer, who reports directly to the CEO. Our business leaders must make technology decisions constantly. TDRM makes sure they have the tech and data risk information they need to make good decisions. Associates within TDRM are highly-skilled information security, cybersecurity, site reliability engineering, technology, data analyst, data scientist, and risk management professionals. They have a wealth of experience and a demonstrated ability to add value with their advice and to deliver high-impact results. Role-specific text This position - Manager, Network Security - is a unique opportunity for candidates with technical cybersecurity experience who have a desire to expand that expertise in a risk management organization. This individual will have the opportunity to leverage their technical subject matter expertise to provide advisory, oversight, and effective challenge to stakeholders within the first line of defense. This role will engage with and build relationships across multiple lines of defense while overseeing network security across Capital One's private and public cloud footprints. Responsibilities: Provide advisory, oversight, and effective challenge to the first line of defense. Provide technical assessments of cybersecurity controls design and effectiveness. Draft assessments for senior management and other stakeholders, to include regulatory agencies and the Board of Directors, as needed. Stay current on emerging cyber threats and potential implications to the firm. Collaborate effectively with colleagues, stakeholders, and leaders across multiple organizations to achieve objectives. Coordinate program-related activities and deliverables to ensure effective collaboration within the team and across stakeholder groups. Proven track record of leading, mentoring, and influencing others. Ability to communicate clearly in written and verbal form. Ability to manage multiple projects while maintaining superior results. Ability to work individually and cross-functionally. Execution oriented and a self-motivator. Basic Qualifications: Bachelor's degree or military experience 3+ years of experience in the financial services industry or highly regulated industry (healthcare, energy, telecommunications) 3+ years of experience implementing network defenses (firewalls, network access control, intrusion detection, intrusion prevention, web application firewalls, web gateways, and proxies) in AWS (Amazon Web Services) or GCP (Google Cloud Platform) 2+ years of experience implementing Zero Trust or Secure Access Service Edge (SASE) in AWS or GCP 1+ certifications for AWS or GCP 2+ years of audit or risk management experience Preferred Qualifications: 2+ years of experience with Palo Alto Networks technologies 1 or more audit or risk-focused certification: CRISC (Certified in Risk and Information Systems Control), CISA (Certified Information Systems Auditor), CISM (Certified Information Security Manager), or CISSP (Certified Information System Security Professional) 2+ years of experience implementing network defenses for global payment networks At this time, Capital One will not sponsor a new applicant for employment authorization for this position. The minimum and maximum full-time annual salaries for this role are listed below, by location. Please note that this salary information is solely for candidates hired to perform work within one of these locations, and refers to the amount Capital One is willing to pay at the time of this posting. Salaries for part-time roles will be prorated based upon the agreed upon number of hours to be regularly worked. McLean, VA: $193,400 - $220,700 for Manager, Cyber Technical New York, NY: $211,000 - $240,800 for Manager, Cyber Technical Plano, TX: $175,800 - $200,700 for Manager, Cyber Technical Richmond, VA: $175,800 - $200,700 for Manager, Cyber Technical Candidates hired to work in other locations will be subject to the pay range associated with that location, and the actual annualized salary amount offered to any candidate at the time of hire will be reflected solely in the candidate's offer letter. This role is also eligible to earn performance based incentive compensation, which may include cash bonus(es) and/or long term incentives (LTI). Incentives could be discretionary or non discretionary depending on the plan. Capital One offers a comprehensive, competitive, and inclusive set of health, financial and other benefits that support your total well-being. Learn more at the Capital One Careers website . Eligibility varies based on full or part-time status, exempt or non-exempt status, and management level. This role is expected to accept applications for a minimum of 5 business days.No agencies please. Capital One is an equal opportunity employer (EOE, including disability/vet) committed to non-discrimination in compliance with applicable federal, state, and local laws. Capital One promotes a drug-free workplace. Capital One will consider for employment qualified applicants with a criminal history in a manner consistent with the requirements of applicable laws regarding criminal background inquiries, including, to the extent applicable, Article 23-A of the New York Correction Law; San Francisco, California Police Code Article 49, Sections ; New York City's Fair Chance Act; Philadelphia's Fair Criminal Records Screening Act; and other applicable federal, state, and local laws and regulations regarding criminal background inquiries. If you have visited our website in search of information on employment opportunities or to apply for a position, and you require an accommodation, please contact Capital One Recruiting at 1- or via email at . All information you provide will be kept confidential and will be used only to the extent required to provide needed reasonable accommodations. For technical support or questions about Capital One's recruiting process, please send an email to Capital One does not provide, endorse nor guarantee and is not liable for third-party products, services, educational tools or other information available through this site. Capital One Financial is made up of several different entities. Please note that any position posted in Canada is for Capital One Canada, any position posted in the United Kingdom is for Capital One Europe and any position posted in the Philippines is for Capital One Philippines Service Corp. (COPSSC).
12/17/2025
Full time
Manager, Network Security, Tech & Data Risk Management Capital One is one of the fastest growing organizations in the world today, powered by our passion for our customers. We are serious about technology, we dream big, and we execute: Capital One moved our entire enterprise to the public cloud over the course of five years. Just as we prioritize driving innovation through technology, we equally prioritize cybersecurity, reliability, software quality, and data management. Technology & Data Risk Management (TDRM) is a small organization that packs a big punch. The 200 professionals in TDRM are trusted experts who oversee 14,000 developers at Capital One. We raise the bar for excellence in cybersecurity, reliability, and tech risk, and data management risk. We shape strategy and decisions, challenge activities to ensure they meet our standards, and perform independent tests of our security and technology risk. For years, the cybersecurity community has debated whether the CISO should report to the CIO or not. In regulated financial services, the answer is: both. The first-line CISO has operational responsibilities and reports to the CIO. The second-line Chief Tech Risk Officer (CTRO) and the Tech & Data Risk Management (TRM) organization have broader responsibilities for cybersecurity but also reliability, software quality, resilience, and the risk of failing to manage our data. The CTRO is independent and oversees the work of the CISO, the CIO/CTO, and the Chief Data Officer. The CTRO reports to the Chief Risk Officer, who reports directly to the CEO. Our business leaders must make technology decisions constantly. TDRM makes sure they have the tech and data risk information they need to make good decisions. Associates within TDRM are highly-skilled information security, cybersecurity, site reliability engineering, technology, data analyst, data scientist, and risk management professionals. They have a wealth of experience and a demonstrated ability to add value with their advice and to deliver high-impact results. Role-specific text This position - Manager, Network Security - is a unique opportunity for candidates with technical cybersecurity experience who have a desire to expand that expertise in a risk management organization. This individual will have the opportunity to leverage their technical subject matter expertise to provide advisory, oversight, and effective challenge to stakeholders within the first line of defense. This role will engage with and build relationships across multiple lines of defense while overseeing network security across Capital One's private and public cloud footprints. Responsibilities: Provide advisory, oversight, and effective challenge to the first line of defense. Provide technical assessments of cybersecurity controls design and effectiveness. Draft assessments for senior management and other stakeholders, to include regulatory agencies and the Board of Directors, as needed. Stay current on emerging cyber threats and potential implications to the firm. Collaborate effectively with colleagues, stakeholders, and leaders across multiple organizations to achieve objectives. Coordinate program-related activities and deliverables to ensure effective collaboration within the team and across stakeholder groups. Proven track record of leading, mentoring, and influencing others. Ability to communicate clearly in written and verbal form. Ability to manage multiple projects while maintaining superior results. Ability to work individually and cross-functionally. Execution oriented and a self-motivator. Basic Qualifications: Bachelor's degree or military experience 3+ years of experience in the financial services industry or highly regulated industry (healthcare, energy, telecommunications) 3+ years of experience implementing network defenses (firewalls, network access control, intrusion detection, intrusion prevention, web application firewalls, web gateways, and proxies) in AWS (Amazon Web Services) or GCP (Google Cloud Platform) 2+ years of experience implementing Zero Trust or Secure Access Service Edge (SASE) in AWS or GCP 1+ certifications for AWS or GCP 2+ years of audit or risk management experience Preferred Qualifications: 2+ years of experience with Palo Alto Networks technologies 1 or more audit or risk-focused certification: CRISC (Certified in Risk and Information Systems Control), CISA (Certified Information Systems Auditor), CISM (Certified Information Security Manager), or CISSP (Certified Information System Security Professional) 2+ years of experience implementing network defenses for global payment networks At this time, Capital One will not sponsor a new applicant for employment authorization for this position. The minimum and maximum full-time annual salaries for this role are listed below, by location. Please note that this salary information is solely for candidates hired to perform work within one of these locations, and refers to the amount Capital One is willing to pay at the time of this posting. Salaries for part-time roles will be prorated based upon the agreed upon number of hours to be regularly worked. McLean, VA: $193,400 - $220,700 for Manager, Cyber Technical New York, NY: $211,000 - $240,800 for Manager, Cyber Technical Plano, TX: $175,800 - $200,700 for Manager, Cyber Technical Richmond, VA: $175,800 - $200,700 for Manager, Cyber Technical Candidates hired to work in other locations will be subject to the pay range associated with that location, and the actual annualized salary amount offered to any candidate at the time of hire will be reflected solely in the candidate's offer letter. This role is also eligible to earn performance based incentive compensation, which may include cash bonus(es) and/or long term incentives (LTI). Incentives could be discretionary or non discretionary depending on the plan. Capital One offers a comprehensive, competitive, and inclusive set of health, financial and other benefits that support your total well-being. Learn more at the Capital One Careers website . Eligibility varies based on full or part-time status, exempt or non-exempt status, and management level. This role is expected to accept applications for a minimum of 5 business days.No agencies please. Capital One is an equal opportunity employer (EOE, including disability/vet) committed to non-discrimination in compliance with applicable federal, state, and local laws. Capital One promotes a drug-free workplace. Capital One will consider for employment qualified applicants with a criminal history in a manner consistent with the requirements of applicable laws regarding criminal background inquiries, including, to the extent applicable, Article 23-A of the New York Correction Law; San Francisco, California Police Code Article 49, Sections ; New York City's Fair Chance Act; Philadelphia's Fair Criminal Records Screening Act; and other applicable federal, state, and local laws and regulations regarding criminal background inquiries. If you have visited our website in search of information on employment opportunities or to apply for a position, and you require an accommodation, please contact Capital One Recruiting at 1- or via email at . All information you provide will be kept confidential and will be used only to the extent required to provide needed reasonable accommodations. For technical support or questions about Capital One's recruiting process, please send an email to Capital One does not provide, endorse nor guarantee and is not liable for third-party products, services, educational tools or other information available through this site. Capital One Financial is made up of several different entities. Please note that any position posted in Canada is for Capital One Canada, any position posted in the United Kingdom is for Capital One Europe and any position posted in the Philippines is for Capital One Philippines Service Corp. (COPSSC).
Manager, Network Security, Tech & Data Risk Management Capital One is one of the fastest growing organizations in the world today, powered by our passion for our customers. We are serious about technology, we dream big, and we execute: Capital One moved our entire enterprise to the public cloud over the course of five years. Just as we prioritize driving innovation through technology, we equally prioritize cybersecurity, reliability, software quality, and data management. Technology & Data Risk Management (TDRM) is a small organization that packs a big punch. The 200 professionals in TDRM are trusted experts who oversee 14,000 developers at Capital One. We raise the bar for excellence in cybersecurity, reliability, and tech risk, and data management risk. We shape strategy and decisions, challenge activities to ensure they meet our standards, and perform independent tests of our security and technology risk. For years, the cybersecurity community has debated whether the CISO should report to the CIO or not. In regulated financial services, the answer is: both. The first-line CISO has operational responsibilities and reports to the CIO. The second-line Chief Tech Risk Officer (CTRO) and the Tech & Data Risk Management (TRM) organization have broader responsibilities for cybersecurity but also reliability, software quality, resilience, and the risk of failing to manage our data. The CTRO is independent and oversees the work of the CISO, the CIO/CTO, and the Chief Data Officer. The CTRO reports to the Chief Risk Officer, who reports directly to the CEO. Our business leaders must make technology decisions constantly. TDRM makes sure they have the tech and data risk information they need to make good decisions. Associates within TDRM are highly-skilled information security, cybersecurity, site reliability engineering, technology, data analyst, data scientist, and risk management professionals. They have a wealth of experience and a demonstrated ability to add value with their advice and to deliver high-impact results. Role-specific text This position - Manager, Network Security - is a unique opportunity for candidates with technical cybersecurity experience who have a desire to expand that expertise in a risk management organization. This individual will have the opportunity to leverage their technical subject matter expertise to provide advisory, oversight, and effective challenge to stakeholders within the first line of defense. This role will engage with and build relationships across multiple lines of defense while overseeing network security across Capital One's private and public cloud footprints. Responsibilities: Provide advisory, oversight, and effective challenge to the first line of defense. Provide technical assessments of cybersecurity controls design and effectiveness. Draft assessments for senior management and other stakeholders, to include regulatory agencies and the Board of Directors, as needed. Stay current on emerging cyber threats and potential implications to the firm. Collaborate effectively with colleagues, stakeholders, and leaders across multiple organizations to achieve objectives. Coordinate program-related activities and deliverables to ensure effective collaboration within the team and across stakeholder groups. Proven track record of leading, mentoring, and influencing others. Ability to communicate clearly in written and verbal form. Ability to manage multiple projects while maintaining superior results. Ability to work individually and cross-functionally. Execution oriented and a self-motivator. Basic Qualifications: Bachelor's degree or military experience 3+ years of experience in the financial services industry or highly regulated industry (healthcare, energy, telecommunications) 3+ years of experience implementing network defenses (firewalls, network access control, intrusion detection, intrusion prevention, web application firewalls, web gateways, and proxies) in AWS (Amazon Web Services) or GCP (Google Cloud Platform) 2+ years of experience implementing Zero Trust or Secure Access Service Edge (SASE) in AWS or GCP 1+ certifications for AWS or GCP 2+ years of audit or risk management experience Preferred Qualifications: 2+ years of experience with Palo Alto Networks technologies 1 or more audit or risk-focused certification: CRISC (Certified in Risk and Information Systems Control), CISA (Certified Information Systems Auditor), CISM (Certified Information Security Manager), or CISSP (Certified Information System Security Professional) 2+ years of experience implementing network defenses for global payment networks At this time, Capital One will not sponsor a new applicant for employment authorization for this position. The minimum and maximum full-time annual salaries for this role are listed below, by location. Please note that this salary information is solely for candidates hired to perform work within one of these locations, and refers to the amount Capital One is willing to pay at the time of this posting. Salaries for part-time roles will be prorated based upon the agreed upon number of hours to be regularly worked. McLean, VA: $193,400 - $220,700 for Manager, Cyber Technical New York, NY: $211,000 - $240,800 for Manager, Cyber Technical Plano, TX: $175,800 - $200,700 for Manager, Cyber Technical Richmond, VA: $175,800 - $200,700 for Manager, Cyber Technical Candidates hired to work in other locations will be subject to the pay range associated with that location, and the actual annualized salary amount offered to any candidate at the time of hire will be reflected solely in the candidate's offer letter. This role is also eligible to earn performance based incentive compensation, which may include cash bonus(es) and/or long term incentives (LTI). Incentives could be discretionary or non discretionary depending on the plan. Capital One offers a comprehensive, competitive, and inclusive set of health, financial and other benefits that support your total well-being. Learn more at the Capital One Careers website . Eligibility varies based on full or part-time status, exempt or non-exempt status, and management level. This role is expected to accept applications for a minimum of 5 business days.No agencies please. Capital One is an equal opportunity employer (EOE, including disability/vet) committed to non-discrimination in compliance with applicable federal, state, and local laws. Capital One promotes a drug-free workplace. Capital One will consider for employment qualified applicants with a criminal history in a manner consistent with the requirements of applicable laws regarding criminal background inquiries, including, to the extent applicable, Article 23-A of the New York Correction Law; San Francisco, California Police Code Article 49, Sections ; New York City's Fair Chance Act; Philadelphia's Fair Criminal Records Screening Act; and other applicable federal, state, and local laws and regulations regarding criminal background inquiries. If you have visited our website in search of information on employment opportunities or to apply for a position, and you require an accommodation, please contact Capital One Recruiting at 1- or via email at . All information you provide will be kept confidential and will be used only to the extent required to provide needed reasonable accommodations. For technical support or questions about Capital One's recruiting process, please send an email to Capital One does not provide, endorse nor guarantee and is not liable for third-party products, services, educational tools or other information available through this site. Capital One Financial is made up of several different entities. Please note that any position posted in Canada is for Capital One Canada, any position posted in the United Kingdom is for Capital One Europe and any position posted in the Philippines is for Capital One Philippines Service Corp. (COPSSC).
12/17/2025
Full time
Manager, Network Security, Tech & Data Risk Management Capital One is one of the fastest growing organizations in the world today, powered by our passion for our customers. We are serious about technology, we dream big, and we execute: Capital One moved our entire enterprise to the public cloud over the course of five years. Just as we prioritize driving innovation through technology, we equally prioritize cybersecurity, reliability, software quality, and data management. Technology & Data Risk Management (TDRM) is a small organization that packs a big punch. The 200 professionals in TDRM are trusted experts who oversee 14,000 developers at Capital One. We raise the bar for excellence in cybersecurity, reliability, and tech risk, and data management risk. We shape strategy and decisions, challenge activities to ensure they meet our standards, and perform independent tests of our security and technology risk. For years, the cybersecurity community has debated whether the CISO should report to the CIO or not. In regulated financial services, the answer is: both. The first-line CISO has operational responsibilities and reports to the CIO. The second-line Chief Tech Risk Officer (CTRO) and the Tech & Data Risk Management (TRM) organization have broader responsibilities for cybersecurity but also reliability, software quality, resilience, and the risk of failing to manage our data. The CTRO is independent and oversees the work of the CISO, the CIO/CTO, and the Chief Data Officer. The CTRO reports to the Chief Risk Officer, who reports directly to the CEO. Our business leaders must make technology decisions constantly. TDRM makes sure they have the tech and data risk information they need to make good decisions. Associates within TDRM are highly-skilled information security, cybersecurity, site reliability engineering, technology, data analyst, data scientist, and risk management professionals. They have a wealth of experience and a demonstrated ability to add value with their advice and to deliver high-impact results. Role-specific text This position - Manager, Network Security - is a unique opportunity for candidates with technical cybersecurity experience who have a desire to expand that expertise in a risk management organization. This individual will have the opportunity to leverage their technical subject matter expertise to provide advisory, oversight, and effective challenge to stakeholders within the first line of defense. This role will engage with and build relationships across multiple lines of defense while overseeing network security across Capital One's private and public cloud footprints. Responsibilities: Provide advisory, oversight, and effective challenge to the first line of defense. Provide technical assessments of cybersecurity controls design and effectiveness. Draft assessments for senior management and other stakeholders, to include regulatory agencies and the Board of Directors, as needed. Stay current on emerging cyber threats and potential implications to the firm. Collaborate effectively with colleagues, stakeholders, and leaders across multiple organizations to achieve objectives. Coordinate program-related activities and deliverables to ensure effective collaboration within the team and across stakeholder groups. Proven track record of leading, mentoring, and influencing others. Ability to communicate clearly in written and verbal form. Ability to manage multiple projects while maintaining superior results. Ability to work individually and cross-functionally. Execution oriented and a self-motivator. Basic Qualifications: Bachelor's degree or military experience 3+ years of experience in the financial services industry or highly regulated industry (healthcare, energy, telecommunications) 3+ years of experience implementing network defenses (firewalls, network access control, intrusion detection, intrusion prevention, web application firewalls, web gateways, and proxies) in AWS (Amazon Web Services) or GCP (Google Cloud Platform) 2+ years of experience implementing Zero Trust or Secure Access Service Edge (SASE) in AWS or GCP 1+ certifications for AWS or GCP 2+ years of audit or risk management experience Preferred Qualifications: 2+ years of experience with Palo Alto Networks technologies 1 or more audit or risk-focused certification: CRISC (Certified in Risk and Information Systems Control), CISA (Certified Information Systems Auditor), CISM (Certified Information Security Manager), or CISSP (Certified Information System Security Professional) 2+ years of experience implementing network defenses for global payment networks At this time, Capital One will not sponsor a new applicant for employment authorization for this position. The minimum and maximum full-time annual salaries for this role are listed below, by location. Please note that this salary information is solely for candidates hired to perform work within one of these locations, and refers to the amount Capital One is willing to pay at the time of this posting. Salaries for part-time roles will be prorated based upon the agreed upon number of hours to be regularly worked. McLean, VA: $193,400 - $220,700 for Manager, Cyber Technical New York, NY: $211,000 - $240,800 for Manager, Cyber Technical Plano, TX: $175,800 - $200,700 for Manager, Cyber Technical Richmond, VA: $175,800 - $200,700 for Manager, Cyber Technical Candidates hired to work in other locations will be subject to the pay range associated with that location, and the actual annualized salary amount offered to any candidate at the time of hire will be reflected solely in the candidate's offer letter. This role is also eligible to earn performance based incentive compensation, which may include cash bonus(es) and/or long term incentives (LTI). Incentives could be discretionary or non discretionary depending on the plan. Capital One offers a comprehensive, competitive, and inclusive set of health, financial and other benefits that support your total well-being. Learn more at the Capital One Careers website . Eligibility varies based on full or part-time status, exempt or non-exempt status, and management level. This role is expected to accept applications for a minimum of 5 business days.No agencies please. Capital One is an equal opportunity employer (EOE, including disability/vet) committed to non-discrimination in compliance with applicable federal, state, and local laws. Capital One promotes a drug-free workplace. Capital One will consider for employment qualified applicants with a criminal history in a manner consistent with the requirements of applicable laws regarding criminal background inquiries, including, to the extent applicable, Article 23-A of the New York Correction Law; San Francisco, California Police Code Article 49, Sections ; New York City's Fair Chance Act; Philadelphia's Fair Criminal Records Screening Act; and other applicable federal, state, and local laws and regulations regarding criminal background inquiries. If you have visited our website in search of information on employment opportunities or to apply for a position, and you require an accommodation, please contact Capital One Recruiting at 1- or via email at . All information you provide will be kept confidential and will be used only to the extent required to provide needed reasonable accommodations. For technical support or questions about Capital One's recruiting process, please send an email to Capital One does not provide, endorse nor guarantee and is not liable for third-party products, services, educational tools or other information available through this site. Capital One Financial is made up of several different entities. Please note that any position posted in Canada is for Capital One Canada, any position posted in the United Kingdom is for Capital One Europe and any position posted in the Philippines is for Capital One Philippines Service Corp. (COPSSC).
Manager, Network Security, Tech & Data Risk Management Capital One is one of the fastest growing organizations in the world today, powered by our passion for our customers. We are serious about technology, we dream big, and we execute: Capital One moved our entire enterprise to the public cloud over the course of five years. Just as we prioritize driving innovation through technology, we equally prioritize cybersecurity, reliability, software quality, and data management. Technology & Data Risk Management (TDRM) is a small organization that packs a big punch. The 200 professionals in TDRM are trusted experts who oversee 14,000 developers at Capital One. We raise the bar for excellence in cybersecurity, reliability, and tech risk, and data management risk. We shape strategy and decisions, challenge activities to ensure they meet our standards, and perform independent tests of our security and technology risk. For years, the cybersecurity community has debated whether the CISO should report to the CIO or not. In regulated financial services, the answer is: both. The first-line CISO has operational responsibilities and reports to the CIO. The second-line Chief Tech Risk Officer (CTRO) and the Tech & Data Risk Management (TRM) organization have broader responsibilities for cybersecurity but also reliability, software quality, resilience, and the risk of failing to manage our data. The CTRO is independent and oversees the work of the CISO, the CIO/CTO, and the Chief Data Officer. The CTRO reports to the Chief Risk Officer, who reports directly to the CEO. Our business leaders must make technology decisions constantly. TDRM makes sure they have the tech and data risk information they need to make good decisions. Associates within TDRM are highly-skilled information security, cybersecurity, site reliability engineering, technology, data analyst, data scientist, and risk management professionals. They have a wealth of experience and a demonstrated ability to add value with their advice and to deliver high-impact results. Role-specific text This position - Manager, Network Security - is a unique opportunity for candidates with technical cybersecurity experience who have a desire to expand that expertise in a risk management organization. This individual will have the opportunity to leverage their technical subject matter expertise to provide advisory, oversight, and effective challenge to stakeholders within the first line of defense. This role will engage with and build relationships across multiple lines of defense while overseeing network security across Capital One's private and public cloud footprints. Responsibilities: Provide advisory, oversight, and effective challenge to the first line of defense. Provide technical assessments of cybersecurity controls design and effectiveness. Draft assessments for senior management and other stakeholders, to include regulatory agencies and the Board of Directors, as needed. Stay current on emerging cyber threats and potential implications to the firm. Collaborate effectively with colleagues, stakeholders, and leaders across multiple organizations to achieve objectives. Coordinate program-related activities and deliverables to ensure effective collaboration within the team and across stakeholder groups. Proven track record of leading, mentoring, and influencing others. Ability to communicate clearly in written and verbal form. Ability to manage multiple projects while maintaining superior results. Ability to work individually and cross-functionally. Execution oriented and a self-motivator. Basic Qualifications: Bachelor's degree or military experience 3+ years of experience in the financial services industry or highly regulated industry (healthcare, energy, telecommunications) 3+ years of experience implementing network defenses (firewalls, network access control, intrusion detection, intrusion prevention, web application firewalls, web gateways, and proxies) in AWS (Amazon Web Services) or GCP (Google Cloud Platform) 2+ years of experience implementing Zero Trust or Secure Access Service Edge (SASE) in AWS or GCP 1+ certifications for AWS or GCP 2+ years of audit or risk management experience Preferred Qualifications: 2+ years of experience with Palo Alto Networks technologies 1 or more audit or risk-focused certification: CRISC (Certified in Risk and Information Systems Control), CISA (Certified Information Systems Auditor), CISM (Certified Information Security Manager), or CISSP (Certified Information System Security Professional) 2+ years of experience implementing network defenses for global payment networks At this time, Capital One will not sponsor a new applicant for employment authorization for this position. The minimum and maximum full-time annual salaries for this role are listed below, by location. Please note that this salary information is solely for candidates hired to perform work within one of these locations, and refers to the amount Capital One is willing to pay at the time of this posting. Salaries for part-time roles will be prorated based upon the agreed upon number of hours to be regularly worked. McLean, VA: $193,400 - $220,700 for Manager, Cyber Technical New York, NY: $211,000 - $240,800 for Manager, Cyber Technical Plano, TX: $175,800 - $200,700 for Manager, Cyber Technical Richmond, VA: $175,800 - $200,700 for Manager, Cyber Technical Candidates hired to work in other locations will be subject to the pay range associated with that location, and the actual annualized salary amount offered to any candidate at the time of hire will be reflected solely in the candidate's offer letter. This role is also eligible to earn performance based incentive compensation, which may include cash bonus(es) and/or long term incentives (LTI). Incentives could be discretionary or non discretionary depending on the plan. Capital One offers a comprehensive, competitive, and inclusive set of health, financial and other benefits that support your total well-being. Learn more at the Capital One Careers website . Eligibility varies based on full or part-time status, exempt or non-exempt status, and management level. This role is expected to accept applications for a minimum of 5 business days.No agencies please. Capital One is an equal opportunity employer (EOE, including disability/vet) committed to non-discrimination in compliance with applicable federal, state, and local laws. Capital One promotes a drug-free workplace. Capital One will consider for employment qualified applicants with a criminal history in a manner consistent with the requirements of applicable laws regarding criminal background inquiries, including, to the extent applicable, Article 23-A of the New York Correction Law; San Francisco, California Police Code Article 49, Sections ; New York City's Fair Chance Act; Philadelphia's Fair Criminal Records Screening Act; and other applicable federal, state, and local laws and regulations regarding criminal background inquiries. If you have visited our website in search of information on employment opportunities or to apply for a position, and you require an accommodation, please contact Capital One Recruiting at 1- or via email at . All information you provide will be kept confidential and will be used only to the extent required to provide needed reasonable accommodations. For technical support or questions about Capital One's recruiting process, please send an email to Capital One does not provide, endorse nor guarantee and is not liable for third-party products, services, educational tools or other information available through this site. Capital One Financial is made up of several different entities. Please note that any position posted in Canada is for Capital One Canada, any position posted in the United Kingdom is for Capital One Europe and any position posted in the Philippines is for Capital One Philippines Service Corp. (COPSSC).
12/17/2025
Full time
Manager, Network Security, Tech & Data Risk Management Capital One is one of the fastest growing organizations in the world today, powered by our passion for our customers. We are serious about technology, we dream big, and we execute: Capital One moved our entire enterprise to the public cloud over the course of five years. Just as we prioritize driving innovation through technology, we equally prioritize cybersecurity, reliability, software quality, and data management. Technology & Data Risk Management (TDRM) is a small organization that packs a big punch. The 200 professionals in TDRM are trusted experts who oversee 14,000 developers at Capital One. We raise the bar for excellence in cybersecurity, reliability, and tech risk, and data management risk. We shape strategy and decisions, challenge activities to ensure they meet our standards, and perform independent tests of our security and technology risk. For years, the cybersecurity community has debated whether the CISO should report to the CIO or not. In regulated financial services, the answer is: both. The first-line CISO has operational responsibilities and reports to the CIO. The second-line Chief Tech Risk Officer (CTRO) and the Tech & Data Risk Management (TRM) organization have broader responsibilities for cybersecurity but also reliability, software quality, resilience, and the risk of failing to manage our data. The CTRO is independent and oversees the work of the CISO, the CIO/CTO, and the Chief Data Officer. The CTRO reports to the Chief Risk Officer, who reports directly to the CEO. Our business leaders must make technology decisions constantly. TDRM makes sure they have the tech and data risk information they need to make good decisions. Associates within TDRM are highly-skilled information security, cybersecurity, site reliability engineering, technology, data analyst, data scientist, and risk management professionals. They have a wealth of experience and a demonstrated ability to add value with their advice and to deliver high-impact results. Role-specific text This position - Manager, Network Security - is a unique opportunity for candidates with technical cybersecurity experience who have a desire to expand that expertise in a risk management organization. This individual will have the opportunity to leverage their technical subject matter expertise to provide advisory, oversight, and effective challenge to stakeholders within the first line of defense. This role will engage with and build relationships across multiple lines of defense while overseeing network security across Capital One's private and public cloud footprints. Responsibilities: Provide advisory, oversight, and effective challenge to the first line of defense. Provide technical assessments of cybersecurity controls design and effectiveness. Draft assessments for senior management and other stakeholders, to include regulatory agencies and the Board of Directors, as needed. Stay current on emerging cyber threats and potential implications to the firm. Collaborate effectively with colleagues, stakeholders, and leaders across multiple organizations to achieve objectives. Coordinate program-related activities and deliverables to ensure effective collaboration within the team and across stakeholder groups. Proven track record of leading, mentoring, and influencing others. Ability to communicate clearly in written and verbal form. Ability to manage multiple projects while maintaining superior results. Ability to work individually and cross-functionally. Execution oriented and a self-motivator. Basic Qualifications: Bachelor's degree or military experience 3+ years of experience in the financial services industry or highly regulated industry (healthcare, energy, telecommunications) 3+ years of experience implementing network defenses (firewalls, network access control, intrusion detection, intrusion prevention, web application firewalls, web gateways, and proxies) in AWS (Amazon Web Services) or GCP (Google Cloud Platform) 2+ years of experience implementing Zero Trust or Secure Access Service Edge (SASE) in AWS or GCP 1+ certifications for AWS or GCP 2+ years of audit or risk management experience Preferred Qualifications: 2+ years of experience with Palo Alto Networks technologies 1 or more audit or risk-focused certification: CRISC (Certified in Risk and Information Systems Control), CISA (Certified Information Systems Auditor), CISM (Certified Information Security Manager), or CISSP (Certified Information System Security Professional) 2+ years of experience implementing network defenses for global payment networks At this time, Capital One will not sponsor a new applicant for employment authorization for this position. The minimum and maximum full-time annual salaries for this role are listed below, by location. Please note that this salary information is solely for candidates hired to perform work within one of these locations, and refers to the amount Capital One is willing to pay at the time of this posting. Salaries for part-time roles will be prorated based upon the agreed upon number of hours to be regularly worked. McLean, VA: $193,400 - $220,700 for Manager, Cyber Technical New York, NY: $211,000 - $240,800 for Manager, Cyber Technical Plano, TX: $175,800 - $200,700 for Manager, Cyber Technical Richmond, VA: $175,800 - $200,700 for Manager, Cyber Technical Candidates hired to work in other locations will be subject to the pay range associated with that location, and the actual annualized salary amount offered to any candidate at the time of hire will be reflected solely in the candidate's offer letter. This role is also eligible to earn performance based incentive compensation, which may include cash bonus(es) and/or long term incentives (LTI). Incentives could be discretionary or non discretionary depending on the plan. Capital One offers a comprehensive, competitive, and inclusive set of health, financial and other benefits that support your total well-being. Learn more at the Capital One Careers website . Eligibility varies based on full or part-time status, exempt or non-exempt status, and management level. This role is expected to accept applications for a minimum of 5 business days.No agencies please. Capital One is an equal opportunity employer (EOE, including disability/vet) committed to non-discrimination in compliance with applicable federal, state, and local laws. Capital One promotes a drug-free workplace. Capital One will consider for employment qualified applicants with a criminal history in a manner consistent with the requirements of applicable laws regarding criminal background inquiries, including, to the extent applicable, Article 23-A of the New York Correction Law; San Francisco, California Police Code Article 49, Sections ; New York City's Fair Chance Act; Philadelphia's Fair Criminal Records Screening Act; and other applicable federal, state, and local laws and regulations regarding criminal background inquiries. If you have visited our website in search of information on employment opportunities or to apply for a position, and you require an accommodation, please contact Capital One Recruiting at 1- or via email at . All information you provide will be kept confidential and will be used only to the extent required to provide needed reasonable accommodations. For technical support or questions about Capital One's recruiting process, please send an email to Capital One does not provide, endorse nor guarantee and is not liable for third-party products, services, educational tools or other information available through this site. Capital One Financial is made up of several different entities. Please note that any position posted in Canada is for Capital One Canada, any position posted in the United Kingdom is for Capital One Europe and any position posted in the Philippines is for Capital One Philippines Service Corp. (COPSSC).
Manager, Network Security, Tech & Data Risk Management Capital One is one of the fastest growing organizations in the world today, powered by our passion for our customers. We are serious about technology, we dream big, and we execute: Capital One moved our entire enterprise to the public cloud over the course of five years. Just as we prioritize driving innovation through technology, we equally prioritize cybersecurity, reliability, software quality, and data management. Technology & Data Risk Management (TDRM) is a small organization that packs a big punch. The 200 professionals in TDRM are trusted experts who oversee 14,000 developers at Capital One. We raise the bar for excellence in cybersecurity, reliability, and tech risk, and data management risk. We shape strategy and decisions, challenge activities to ensure they meet our standards, and perform independent tests of our security and technology risk. For years, the cybersecurity community has debated whether the CISO should report to the CIO or not. In regulated financial services, the answer is: both. The first-line CISO has operational responsibilities and reports to the CIO. The second-line Chief Tech Risk Officer (CTRO) and the Tech & Data Risk Management (TRM) organization have broader responsibilities for cybersecurity but also reliability, software quality, resilience, and the risk of failing to manage our data. The CTRO is independent and oversees the work of the CISO, the CIO/CTO, and the Chief Data Officer. The CTRO reports to the Chief Risk Officer, who reports directly to the CEO. Our business leaders must make technology decisions constantly. TDRM makes sure they have the tech and data risk information they need to make good decisions. Associates within TDRM are highly-skilled information security, cybersecurity, site reliability engineering, technology, data analyst, data scientist, and risk management professionals. They have a wealth of experience and a demonstrated ability to add value with their advice and to deliver high-impact results. Role-specific text This position - Manager, Network Security - is a unique opportunity for candidates with technical cybersecurity experience who have a desire to expand that expertise in a risk management organization. This individual will have the opportunity to leverage their technical subject matter expertise to provide advisory, oversight, and effective challenge to stakeholders within the first line of defense. This role will engage with and build relationships across multiple lines of defense while overseeing network security across Capital One's private and public cloud footprints. Responsibilities: Provide advisory, oversight, and effective challenge to the first line of defense. Provide technical assessments of cybersecurity controls design and effectiveness. Draft assessments for senior management and other stakeholders, to include regulatory agencies and the Board of Directors, as needed. Stay current on emerging cyber threats and potential implications to the firm. Collaborate effectively with colleagues, stakeholders, and leaders across multiple organizations to achieve objectives. Coordinate program-related activities and deliverables to ensure effective collaboration within the team and across stakeholder groups. Proven track record of leading, mentoring, and influencing others. Ability to communicate clearly in written and verbal form. Ability to manage multiple projects while maintaining superior results. Ability to work individually and cross-functionally. Execution oriented and a self-motivator. Basic Qualifications: Bachelor's degree or military experience 3+ years of experience in the financial services industry or highly regulated industry (healthcare, energy, telecommunications) 3+ years of experience implementing network defenses (firewalls, network access control, intrusion detection, intrusion prevention, web application firewalls, web gateways, and proxies) in AWS (Amazon Web Services) or GCP (Google Cloud Platform) 2+ years of experience implementing Zero Trust or Secure Access Service Edge (SASE) in AWS or GCP 1+ certifications for AWS or GCP 2+ years of audit or risk management experience Preferred Qualifications: 2+ years of experience with Palo Alto Networks technologies 1 or more audit or risk-focused certification: CRISC (Certified in Risk and Information Systems Control), CISA (Certified Information Systems Auditor), CISM (Certified Information Security Manager), or CISSP (Certified Information System Security Professional) 2+ years of experience implementing network defenses for global payment networks At this time, Capital One will not sponsor a new applicant for employment authorization for this position. The minimum and maximum full-time annual salaries for this role are listed below, by location. Please note that this salary information is solely for candidates hired to perform work within one of these locations, and refers to the amount Capital One is willing to pay at the time of this posting. Salaries for part-time roles will be prorated based upon the agreed upon number of hours to be regularly worked. McLean, VA: $193,400 - $220,700 for Manager, Cyber Technical New York, NY: $211,000 - $240,800 for Manager, Cyber Technical Plano, TX: $175,800 - $200,700 for Manager, Cyber Technical Richmond, VA: $175,800 - $200,700 for Manager, Cyber Technical Candidates hired to work in other locations will be subject to the pay range associated with that location, and the actual annualized salary amount offered to any candidate at the time of hire will be reflected solely in the candidate's offer letter. This role is also eligible to earn performance based incentive compensation, which may include cash bonus(es) and/or long term incentives (LTI). Incentives could be discretionary or non discretionary depending on the plan. Capital One offers a comprehensive, competitive, and inclusive set of health, financial and other benefits that support your total well-being. Learn more at the Capital One Careers website . Eligibility varies based on full or part-time status, exempt or non-exempt status, and management level. This role is expected to accept applications for a minimum of 5 business days.No agencies please. Capital One is an equal opportunity employer (EOE, including disability/vet) committed to non-discrimination in compliance with applicable federal, state, and local laws. Capital One promotes a drug-free workplace. Capital One will consider for employment qualified applicants with a criminal history in a manner consistent with the requirements of applicable laws regarding criminal background inquiries, including, to the extent applicable, Article 23-A of the New York Correction Law; San Francisco, California Police Code Article 49, Sections ; New York City's Fair Chance Act; Philadelphia's Fair Criminal Records Screening Act; and other applicable federal, state, and local laws and regulations regarding criminal background inquiries. If you have visited our website in search of information on employment opportunities or to apply for a position, and you require an accommodation, please contact Capital One Recruiting at 1- or via email at . All information you provide will be kept confidential and will be used only to the extent required to provide needed reasonable accommodations. For technical support or questions about Capital One's recruiting process, please send an email to Capital One does not provide, endorse nor guarantee and is not liable for third-party products, services, educational tools or other information available through this site. Capital One Financial is made up of several different entities. Please note that any position posted in Canada is for Capital One Canada, any position posted in the United Kingdom is for Capital One Europe and any position posted in the Philippines is for Capital One Philippines Service Corp. (COPSSC).
12/17/2025
Full time
Manager, Network Security, Tech & Data Risk Management Capital One is one of the fastest growing organizations in the world today, powered by our passion for our customers. We are serious about technology, we dream big, and we execute: Capital One moved our entire enterprise to the public cloud over the course of five years. Just as we prioritize driving innovation through technology, we equally prioritize cybersecurity, reliability, software quality, and data management. Technology & Data Risk Management (TDRM) is a small organization that packs a big punch. The 200 professionals in TDRM are trusted experts who oversee 14,000 developers at Capital One. We raise the bar for excellence in cybersecurity, reliability, and tech risk, and data management risk. We shape strategy and decisions, challenge activities to ensure they meet our standards, and perform independent tests of our security and technology risk. For years, the cybersecurity community has debated whether the CISO should report to the CIO or not. In regulated financial services, the answer is: both. The first-line CISO has operational responsibilities and reports to the CIO. The second-line Chief Tech Risk Officer (CTRO) and the Tech & Data Risk Management (TRM) organization have broader responsibilities for cybersecurity but also reliability, software quality, resilience, and the risk of failing to manage our data. The CTRO is independent and oversees the work of the CISO, the CIO/CTO, and the Chief Data Officer. The CTRO reports to the Chief Risk Officer, who reports directly to the CEO. Our business leaders must make technology decisions constantly. TDRM makes sure they have the tech and data risk information they need to make good decisions. Associates within TDRM are highly-skilled information security, cybersecurity, site reliability engineering, technology, data analyst, data scientist, and risk management professionals. They have a wealth of experience and a demonstrated ability to add value with their advice and to deliver high-impact results. Role-specific text This position - Manager, Network Security - is a unique opportunity for candidates with technical cybersecurity experience who have a desire to expand that expertise in a risk management organization. This individual will have the opportunity to leverage their technical subject matter expertise to provide advisory, oversight, and effective challenge to stakeholders within the first line of defense. This role will engage with and build relationships across multiple lines of defense while overseeing network security across Capital One's private and public cloud footprints. Responsibilities: Provide advisory, oversight, and effective challenge to the first line of defense. Provide technical assessments of cybersecurity controls design and effectiveness. Draft assessments for senior management and other stakeholders, to include regulatory agencies and the Board of Directors, as needed. Stay current on emerging cyber threats and potential implications to the firm. Collaborate effectively with colleagues, stakeholders, and leaders across multiple organizations to achieve objectives. Coordinate program-related activities and deliverables to ensure effective collaboration within the team and across stakeholder groups. Proven track record of leading, mentoring, and influencing others. Ability to communicate clearly in written and verbal form. Ability to manage multiple projects while maintaining superior results. Ability to work individually and cross-functionally. Execution oriented and a self-motivator. Basic Qualifications: Bachelor's degree or military experience 3+ years of experience in the financial services industry or highly regulated industry (healthcare, energy, telecommunications) 3+ years of experience implementing network defenses (firewalls, network access control, intrusion detection, intrusion prevention, web application firewalls, web gateways, and proxies) in AWS (Amazon Web Services) or GCP (Google Cloud Platform) 2+ years of experience implementing Zero Trust or Secure Access Service Edge (SASE) in AWS or GCP 1+ certifications for AWS or GCP 2+ years of audit or risk management experience Preferred Qualifications: 2+ years of experience with Palo Alto Networks technologies 1 or more audit or risk-focused certification: CRISC (Certified in Risk and Information Systems Control), CISA (Certified Information Systems Auditor), CISM (Certified Information Security Manager), or CISSP (Certified Information System Security Professional) 2+ years of experience implementing network defenses for global payment networks At this time, Capital One will not sponsor a new applicant for employment authorization for this position. The minimum and maximum full-time annual salaries for this role are listed below, by location. Please note that this salary information is solely for candidates hired to perform work within one of these locations, and refers to the amount Capital One is willing to pay at the time of this posting. Salaries for part-time roles will be prorated based upon the agreed upon number of hours to be regularly worked. McLean, VA: $193,400 - $220,700 for Manager, Cyber Technical New York, NY: $211,000 - $240,800 for Manager, Cyber Technical Plano, TX: $175,800 - $200,700 for Manager, Cyber Technical Richmond, VA: $175,800 - $200,700 for Manager, Cyber Technical Candidates hired to work in other locations will be subject to the pay range associated with that location, and the actual annualized salary amount offered to any candidate at the time of hire will be reflected solely in the candidate's offer letter. This role is also eligible to earn performance based incentive compensation, which may include cash bonus(es) and/or long term incentives (LTI). Incentives could be discretionary or non discretionary depending on the plan. Capital One offers a comprehensive, competitive, and inclusive set of health, financial and other benefits that support your total well-being. Learn more at the Capital One Careers website . Eligibility varies based on full or part-time status, exempt or non-exempt status, and management level. This role is expected to accept applications for a minimum of 5 business days.No agencies please. Capital One is an equal opportunity employer (EOE, including disability/vet) committed to non-discrimination in compliance with applicable federal, state, and local laws. Capital One promotes a drug-free workplace. Capital One will consider for employment qualified applicants with a criminal history in a manner consistent with the requirements of applicable laws regarding criminal background inquiries, including, to the extent applicable, Article 23-A of the New York Correction Law; San Francisco, California Police Code Article 49, Sections ; New York City's Fair Chance Act; Philadelphia's Fair Criminal Records Screening Act; and other applicable federal, state, and local laws and regulations regarding criminal background inquiries. If you have visited our website in search of information on employment opportunities or to apply for a position, and you require an accommodation, please contact Capital One Recruiting at 1- or via email at . All information you provide will be kept confidential and will be used only to the extent required to provide needed reasonable accommodations. For technical support or questions about Capital One's recruiting process, please send an email to Capital One does not provide, endorse nor guarantee and is not liable for third-party products, services, educational tools or other information available through this site. Capital One Financial is made up of several different entities. Please note that any position posted in Canada is for Capital One Canada, any position posted in the United Kingdom is for Capital One Europe and any position posted in the Philippines is for Capital One Philippines Service Corp. (COPSSC).
Manager, Network Security, Tech & Data Risk Management Capital One is one of the fastest growing organizations in the world today, powered by our passion for our customers. We are serious about technology, we dream big, and we execute: Capital One moved our entire enterprise to the public cloud over the course of five years. Just as we prioritize driving innovation through technology, we equally prioritize cybersecurity, reliability, software quality, and data management. Technology & Data Risk Management (TDRM) is a small organization that packs a big punch. The 200 professionals in TDRM are trusted experts who oversee 14,000 developers at Capital One. We raise the bar for excellence in cybersecurity, reliability, and tech risk, and data management risk. We shape strategy and decisions, challenge activities to ensure they meet our standards, and perform independent tests of our security and technology risk. For years, the cybersecurity community has debated whether the CISO should report to the CIO or not. In regulated financial services, the answer is: both. The first-line CISO has operational responsibilities and reports to the CIO. The second-line Chief Tech Risk Officer (CTRO) and the Tech & Data Risk Management (TRM) organization have broader responsibilities for cybersecurity but also reliability, software quality, resilience, and the risk of failing to manage our data. The CTRO is independent and oversees the work of the CISO, the CIO/CTO, and the Chief Data Officer. The CTRO reports to the Chief Risk Officer, who reports directly to the CEO. Our business leaders must make technology decisions constantly. TDRM makes sure they have the tech and data risk information they need to make good decisions. Associates within TDRM are highly-skilled information security, cybersecurity, site reliability engineering, technology, data analyst, data scientist, and risk management professionals. They have a wealth of experience and a demonstrated ability to add value with their advice and to deliver high-impact results. Role-specific text This position - Manager, Network Security - is a unique opportunity for candidates with technical cybersecurity experience who have a desire to expand that expertise in a risk management organization. This individual will have the opportunity to leverage their technical subject matter expertise to provide advisory, oversight, and effective challenge to stakeholders within the first line of defense. This role will engage with and build relationships across multiple lines of defense while overseeing network security across Capital One's private and public cloud footprints. Responsibilities: Provide advisory, oversight, and effective challenge to the first line of defense. Provide technical assessments of cybersecurity controls design and effectiveness. Draft assessments for senior management and other stakeholders, to include regulatory agencies and the Board of Directors, as needed. Stay current on emerging cyber threats and potential implications to the firm. Collaborate effectively with colleagues, stakeholders, and leaders across multiple organizations to achieve objectives. Coordinate program-related activities and deliverables to ensure effective collaboration within the team and across stakeholder groups. Proven track record of leading, mentoring, and influencing others. Ability to communicate clearly in written and verbal form. Ability to manage multiple projects while maintaining superior results. Ability to work individually and cross-functionally. Execution oriented and a self-motivator. Basic Qualifications: Bachelor's degree or military experience 3+ years of experience in the financial services industry or highly regulated industry (healthcare, energy, telecommunications) 3+ years of experience implementing network defenses (firewalls, network access control, intrusion detection, intrusion prevention, web application firewalls, web gateways, and proxies) in AWS (Amazon Web Services) or GCP (Google Cloud Platform) 2+ years of experience implementing Zero Trust or Secure Access Service Edge (SASE) in AWS or GCP 1+ certifications for AWS or GCP 2+ years of audit or risk management experience Preferred Qualifications: 2+ years of experience with Palo Alto Networks technologies 1 or more audit or risk-focused certification: CRISC (Certified in Risk and Information Systems Control), CISA (Certified Information Systems Auditor), CISM (Certified Information Security Manager), or CISSP (Certified Information System Security Professional) 2+ years of experience implementing network defenses for global payment networks At this time, Capital One will not sponsor a new applicant for employment authorization for this position. The minimum and maximum full-time annual salaries for this role are listed below, by location. Please note that this salary information is solely for candidates hired to perform work within one of these locations, and refers to the amount Capital One is willing to pay at the time of this posting. Salaries for part-time roles will be prorated based upon the agreed upon number of hours to be regularly worked. McLean, VA: $193,400 - $220,700 for Manager, Cyber Technical New York, NY: $211,000 - $240,800 for Manager, Cyber Technical Plano, TX: $175,800 - $200,700 for Manager, Cyber Technical Richmond, VA: $175,800 - $200,700 for Manager, Cyber Technical Candidates hired to work in other locations will be subject to the pay range associated with that location, and the actual annualized salary amount offered to any candidate at the time of hire will be reflected solely in the candidate's offer letter. This role is also eligible to earn performance based incentive compensation, which may include cash bonus(es) and/or long term incentives (LTI). Incentives could be discretionary or non discretionary depending on the plan. Capital One offers a comprehensive, competitive, and inclusive set of health, financial and other benefits that support your total well-being. Learn more at the Capital One Careers website . Eligibility varies based on full or part-time status, exempt or non-exempt status, and management level. This role is expected to accept applications for a minimum of 5 business days.No agencies please. Capital One is an equal opportunity employer (EOE, including disability/vet) committed to non-discrimination in compliance with applicable federal, state, and local laws. Capital One promotes a drug-free workplace. Capital One will consider for employment qualified applicants with a criminal history in a manner consistent with the requirements of applicable laws regarding criminal background inquiries, including, to the extent applicable, Article 23-A of the New York Correction Law; San Francisco, California Police Code Article 49, Sections ; New York City's Fair Chance Act; Philadelphia's Fair Criminal Records Screening Act; and other applicable federal, state, and local laws and regulations regarding criminal background inquiries. If you have visited our website in search of information on employment opportunities or to apply for a position, and you require an accommodation, please contact Capital One Recruiting at 1- or via email at . All information you provide will be kept confidential and will be used only to the extent required to provide needed reasonable accommodations. For technical support or questions about Capital One's recruiting process, please send an email to Capital One does not provide, endorse nor guarantee and is not liable for third-party products, services, educational tools or other information available through this site. Capital One Financial is made up of several different entities. Please note that any position posted in Canada is for Capital One Canada, any position posted in the United Kingdom is for Capital One Europe and any position posted in the Philippines is for Capital One Philippines Service Corp. (COPSSC).
12/17/2025
Full time
Manager, Network Security, Tech & Data Risk Management Capital One is one of the fastest growing organizations in the world today, powered by our passion for our customers. We are serious about technology, we dream big, and we execute: Capital One moved our entire enterprise to the public cloud over the course of five years. Just as we prioritize driving innovation through technology, we equally prioritize cybersecurity, reliability, software quality, and data management. Technology & Data Risk Management (TDRM) is a small organization that packs a big punch. The 200 professionals in TDRM are trusted experts who oversee 14,000 developers at Capital One. We raise the bar for excellence in cybersecurity, reliability, and tech risk, and data management risk. We shape strategy and decisions, challenge activities to ensure they meet our standards, and perform independent tests of our security and technology risk. For years, the cybersecurity community has debated whether the CISO should report to the CIO or not. In regulated financial services, the answer is: both. The first-line CISO has operational responsibilities and reports to the CIO. The second-line Chief Tech Risk Officer (CTRO) and the Tech & Data Risk Management (TRM) organization have broader responsibilities for cybersecurity but also reliability, software quality, resilience, and the risk of failing to manage our data. The CTRO is independent and oversees the work of the CISO, the CIO/CTO, and the Chief Data Officer. The CTRO reports to the Chief Risk Officer, who reports directly to the CEO. Our business leaders must make technology decisions constantly. TDRM makes sure they have the tech and data risk information they need to make good decisions. Associates within TDRM are highly-skilled information security, cybersecurity, site reliability engineering, technology, data analyst, data scientist, and risk management professionals. They have a wealth of experience and a demonstrated ability to add value with their advice and to deliver high-impact results. Role-specific text This position - Manager, Network Security - is a unique opportunity for candidates with technical cybersecurity experience who have a desire to expand that expertise in a risk management organization. This individual will have the opportunity to leverage their technical subject matter expertise to provide advisory, oversight, and effective challenge to stakeholders within the first line of defense. This role will engage with and build relationships across multiple lines of defense while overseeing network security across Capital One's private and public cloud footprints. Responsibilities: Provide advisory, oversight, and effective challenge to the first line of defense. Provide technical assessments of cybersecurity controls design and effectiveness. Draft assessments for senior management and other stakeholders, to include regulatory agencies and the Board of Directors, as needed. Stay current on emerging cyber threats and potential implications to the firm. Collaborate effectively with colleagues, stakeholders, and leaders across multiple organizations to achieve objectives. Coordinate program-related activities and deliverables to ensure effective collaboration within the team and across stakeholder groups. Proven track record of leading, mentoring, and influencing others. Ability to communicate clearly in written and verbal form. Ability to manage multiple projects while maintaining superior results. Ability to work individually and cross-functionally. Execution oriented and a self-motivator. Basic Qualifications: Bachelor's degree or military experience 3+ years of experience in the financial services industry or highly regulated industry (healthcare, energy, telecommunications) 3+ years of experience implementing network defenses (firewalls, network access control, intrusion detection, intrusion prevention, web application firewalls, web gateways, and proxies) in AWS (Amazon Web Services) or GCP (Google Cloud Platform) 2+ years of experience implementing Zero Trust or Secure Access Service Edge (SASE) in AWS or GCP 1+ certifications for AWS or GCP 2+ years of audit or risk management experience Preferred Qualifications: 2+ years of experience with Palo Alto Networks technologies 1 or more audit or risk-focused certification: CRISC (Certified in Risk and Information Systems Control), CISA (Certified Information Systems Auditor), CISM (Certified Information Security Manager), or CISSP (Certified Information System Security Professional) 2+ years of experience implementing network defenses for global payment networks At this time, Capital One will not sponsor a new applicant for employment authorization for this position. The minimum and maximum full-time annual salaries for this role are listed below, by location. Please note that this salary information is solely for candidates hired to perform work within one of these locations, and refers to the amount Capital One is willing to pay at the time of this posting. Salaries for part-time roles will be prorated based upon the agreed upon number of hours to be regularly worked. McLean, VA: $193,400 - $220,700 for Manager, Cyber Technical New York, NY: $211,000 - $240,800 for Manager, Cyber Technical Plano, TX: $175,800 - $200,700 for Manager, Cyber Technical Richmond, VA: $175,800 - $200,700 for Manager, Cyber Technical Candidates hired to work in other locations will be subject to the pay range associated with that location, and the actual annualized salary amount offered to any candidate at the time of hire will be reflected solely in the candidate's offer letter. This role is also eligible to earn performance based incentive compensation, which may include cash bonus(es) and/or long term incentives (LTI). Incentives could be discretionary or non discretionary depending on the plan. Capital One offers a comprehensive, competitive, and inclusive set of health, financial and other benefits that support your total well-being. Learn more at the Capital One Careers website . Eligibility varies based on full or part-time status, exempt or non-exempt status, and management level. This role is expected to accept applications for a minimum of 5 business days.No agencies please. Capital One is an equal opportunity employer (EOE, including disability/vet) committed to non-discrimination in compliance with applicable federal, state, and local laws. Capital One promotes a drug-free workplace. Capital One will consider for employment qualified applicants with a criminal history in a manner consistent with the requirements of applicable laws regarding criminal background inquiries, including, to the extent applicable, Article 23-A of the New York Correction Law; San Francisco, California Police Code Article 49, Sections ; New York City's Fair Chance Act; Philadelphia's Fair Criminal Records Screening Act; and other applicable federal, state, and local laws and regulations regarding criminal background inquiries. If you have visited our website in search of information on employment opportunities or to apply for a position, and you require an accommodation, please contact Capital One Recruiting at 1- or via email at . All information you provide will be kept confidential and will be used only to the extent required to provide needed reasonable accommodations. For technical support or questions about Capital One's recruiting process, please send an email to Capital One does not provide, endorse nor guarantee and is not liable for third-party products, services, educational tools or other information available through this site. Capital One Financial is made up of several different entities. Please note that any position posted in Canada is for Capital One Canada, any position posted in the United Kingdom is for Capital One Europe and any position posted in the Philippines is for Capital One Philippines Service Corp. (COPSSC).
Manager, Network Security, Tech & Data Risk Management Capital One is one of the fastest growing organizations in the world today, powered by our passion for our customers. We are serious about technology, we dream big, and we execute: Capital One moved our entire enterprise to the public cloud over the course of five years. Just as we prioritize driving innovation through technology, we equally prioritize cybersecurity, reliability, software quality, and data management. Technology & Data Risk Management (TDRM) is a small organization that packs a big punch. The 200 professionals in TDRM are trusted experts who oversee 14,000 developers at Capital One. We raise the bar for excellence in cybersecurity, reliability, and tech risk, and data management risk. We shape strategy and decisions, challenge activities to ensure they meet our standards, and perform independent tests of our security and technology risk. For years, the cybersecurity community has debated whether the CISO should report to the CIO or not. In regulated financial services, the answer is: both. The first-line CISO has operational responsibilities and reports to the CIO. The second-line Chief Tech Risk Officer (CTRO) and the Tech & Data Risk Management (TRM) organization have broader responsibilities for cybersecurity but also reliability, software quality, resilience, and the risk of failing to manage our data. The CTRO is independent and oversees the work of the CISO, the CIO/CTO, and the Chief Data Officer. The CTRO reports to the Chief Risk Officer, who reports directly to the CEO. Our business leaders must make technology decisions constantly. TDRM makes sure they have the tech and data risk information they need to make good decisions. Associates within TDRM are highly-skilled information security, cybersecurity, site reliability engineering, technology, data analyst, data scientist, and risk management professionals. They have a wealth of experience and a demonstrated ability to add value with their advice and to deliver high-impact results. Role-specific text This position - Manager, Network Security - is a unique opportunity for candidates with technical cybersecurity experience who have a desire to expand that expertise in a risk management organization. This individual will have the opportunity to leverage their technical subject matter expertise to provide advisory, oversight, and effective challenge to stakeholders within the first line of defense. This role will engage with and build relationships across multiple lines of defense while overseeing network security across Capital One's private and public cloud footprints. Responsibilities: Provide advisory, oversight, and effective challenge to the first line of defense. Provide technical assessments of cybersecurity controls design and effectiveness. Draft assessments for senior management and other stakeholders, to include regulatory agencies and the Board of Directors, as needed. Stay current on emerging cyber threats and potential implications to the firm. Collaborate effectively with colleagues, stakeholders, and leaders across multiple organizations to achieve objectives. Coordinate program-related activities and deliverables to ensure effective collaboration within the team and across stakeholder groups. Proven track record of leading, mentoring, and influencing others. Ability to communicate clearly in written and verbal form. Ability to manage multiple projects while maintaining superior results. Ability to work individually and cross-functionally. Execution oriented and a self-motivator. Basic Qualifications: Bachelor's degree or military experience 3+ years of experience in the financial services industry or highly regulated industry (healthcare, energy, telecommunications) 3+ years of experience implementing network defenses (firewalls, network access control, intrusion detection, intrusion prevention, web application firewalls, web gateways, and proxies) in AWS (Amazon Web Services) or GCP (Google Cloud Platform) 2+ years of experience implementing Zero Trust or Secure Access Service Edge (SASE) in AWS or GCP 1+ certifications for AWS or GCP 2+ years of audit or risk management experience Preferred Qualifications: 2+ years of experience with Palo Alto Networks technologies 1 or more audit or risk-focused certification: CRISC (Certified in Risk and Information Systems Control), CISA (Certified Information Systems Auditor), CISM (Certified Information Security Manager), or CISSP (Certified Information System Security Professional) 2+ years of experience implementing network defenses for global payment networks At this time, Capital One will not sponsor a new applicant for employment authorization for this position. The minimum and maximum full-time annual salaries for this role are listed below, by location. Please note that this salary information is solely for candidates hired to perform work within one of these locations, and refers to the amount Capital One is willing to pay at the time of this posting. Salaries for part-time roles will be prorated based upon the agreed upon number of hours to be regularly worked. McLean, VA: $193,400 - $220,700 for Manager, Cyber Technical New York, NY: $211,000 - $240,800 for Manager, Cyber Technical Plano, TX: $175,800 - $200,700 for Manager, Cyber Technical Richmond, VA: $175,800 - $200,700 for Manager, Cyber Technical Candidates hired to work in other locations will be subject to the pay range associated with that location, and the actual annualized salary amount offered to any candidate at the time of hire will be reflected solely in the candidate's offer letter. This role is also eligible to earn performance based incentive compensation, which may include cash bonus(es) and/or long term incentives (LTI). Incentives could be discretionary or non discretionary depending on the plan. Capital One offers a comprehensive, competitive, and inclusive set of health, financial and other benefits that support your total well-being. Learn more at the Capital One Careers website . Eligibility varies based on full or part-time status, exempt or non-exempt status, and management level. This role is expected to accept applications for a minimum of 5 business days.No agencies please. Capital One is an equal opportunity employer (EOE, including disability/vet) committed to non-discrimination in compliance with applicable federal, state, and local laws. Capital One promotes a drug-free workplace. Capital One will consider for employment qualified applicants with a criminal history in a manner consistent with the requirements of applicable laws regarding criminal background inquiries, including, to the extent applicable, Article 23-A of the New York Correction Law; San Francisco, California Police Code Article 49, Sections ; New York City's Fair Chance Act; Philadelphia's Fair Criminal Records Screening Act; and other applicable federal, state, and local laws and regulations regarding criminal background inquiries. If you have visited our website in search of information on employment opportunities or to apply for a position, and you require an accommodation, please contact Capital One Recruiting at 1- or via email at . All information you provide will be kept confidential and will be used only to the extent required to provide needed reasonable accommodations. For technical support or questions about Capital One's recruiting process, please send an email to Capital One does not provide, endorse nor guarantee and is not liable for third-party products, services, educational tools or other information available through this site. Capital One Financial is made up of several different entities. Please note that any position posted in Canada is for Capital One Canada, any position posted in the United Kingdom is for Capital One Europe and any position posted in the Philippines is for Capital One Philippines Service Corp. (COPSSC).
12/17/2025
Full time
Manager, Network Security, Tech & Data Risk Management Capital One is one of the fastest growing organizations in the world today, powered by our passion for our customers. We are serious about technology, we dream big, and we execute: Capital One moved our entire enterprise to the public cloud over the course of five years. Just as we prioritize driving innovation through technology, we equally prioritize cybersecurity, reliability, software quality, and data management. Technology & Data Risk Management (TDRM) is a small organization that packs a big punch. The 200 professionals in TDRM are trusted experts who oversee 14,000 developers at Capital One. We raise the bar for excellence in cybersecurity, reliability, and tech risk, and data management risk. We shape strategy and decisions, challenge activities to ensure they meet our standards, and perform independent tests of our security and technology risk. For years, the cybersecurity community has debated whether the CISO should report to the CIO or not. In regulated financial services, the answer is: both. The first-line CISO has operational responsibilities and reports to the CIO. The second-line Chief Tech Risk Officer (CTRO) and the Tech & Data Risk Management (TRM) organization have broader responsibilities for cybersecurity but also reliability, software quality, resilience, and the risk of failing to manage our data. The CTRO is independent and oversees the work of the CISO, the CIO/CTO, and the Chief Data Officer. The CTRO reports to the Chief Risk Officer, who reports directly to the CEO. Our business leaders must make technology decisions constantly. TDRM makes sure they have the tech and data risk information they need to make good decisions. Associates within TDRM are highly-skilled information security, cybersecurity, site reliability engineering, technology, data analyst, data scientist, and risk management professionals. They have a wealth of experience and a demonstrated ability to add value with their advice and to deliver high-impact results. Role-specific text This position - Manager, Network Security - is a unique opportunity for candidates with technical cybersecurity experience who have a desire to expand that expertise in a risk management organization. This individual will have the opportunity to leverage their technical subject matter expertise to provide advisory, oversight, and effective challenge to stakeholders within the first line of defense. This role will engage with and build relationships across multiple lines of defense while overseeing network security across Capital One's private and public cloud footprints. Responsibilities: Provide advisory, oversight, and effective challenge to the first line of defense. Provide technical assessments of cybersecurity controls design and effectiveness. Draft assessments for senior management and other stakeholders, to include regulatory agencies and the Board of Directors, as needed. Stay current on emerging cyber threats and potential implications to the firm. Collaborate effectively with colleagues, stakeholders, and leaders across multiple organizations to achieve objectives. Coordinate program-related activities and deliverables to ensure effective collaboration within the team and across stakeholder groups. Proven track record of leading, mentoring, and influencing others. Ability to communicate clearly in written and verbal form. Ability to manage multiple projects while maintaining superior results. Ability to work individually and cross-functionally. Execution oriented and a self-motivator. Basic Qualifications: Bachelor's degree or military experience 3+ years of experience in the financial services industry or highly regulated industry (healthcare, energy, telecommunications) 3+ years of experience implementing network defenses (firewalls, network access control, intrusion detection, intrusion prevention, web application firewalls, web gateways, and proxies) in AWS (Amazon Web Services) or GCP (Google Cloud Platform) 2+ years of experience implementing Zero Trust or Secure Access Service Edge (SASE) in AWS or GCP 1+ certifications for AWS or GCP 2+ years of audit or risk management experience Preferred Qualifications: 2+ years of experience with Palo Alto Networks technologies 1 or more audit or risk-focused certification: CRISC (Certified in Risk and Information Systems Control), CISA (Certified Information Systems Auditor), CISM (Certified Information Security Manager), or CISSP (Certified Information System Security Professional) 2+ years of experience implementing network defenses for global payment networks At this time, Capital One will not sponsor a new applicant for employment authorization for this position. The minimum and maximum full-time annual salaries for this role are listed below, by location. Please note that this salary information is solely for candidates hired to perform work within one of these locations, and refers to the amount Capital One is willing to pay at the time of this posting. Salaries for part-time roles will be prorated based upon the agreed upon number of hours to be regularly worked. McLean, VA: $193,400 - $220,700 for Manager, Cyber Technical New York, NY: $211,000 - $240,800 for Manager, Cyber Technical Plano, TX: $175,800 - $200,700 for Manager, Cyber Technical Richmond, VA: $175,800 - $200,700 for Manager, Cyber Technical Candidates hired to work in other locations will be subject to the pay range associated with that location, and the actual annualized salary amount offered to any candidate at the time of hire will be reflected solely in the candidate's offer letter. This role is also eligible to earn performance based incentive compensation, which may include cash bonus(es) and/or long term incentives (LTI). Incentives could be discretionary or non discretionary depending on the plan. Capital One offers a comprehensive, competitive, and inclusive set of health, financial and other benefits that support your total well-being. Learn more at the Capital One Careers website . Eligibility varies based on full or part-time status, exempt or non-exempt status, and management level. This role is expected to accept applications for a minimum of 5 business days.No agencies please. Capital One is an equal opportunity employer (EOE, including disability/vet) committed to non-discrimination in compliance with applicable federal, state, and local laws. Capital One promotes a drug-free workplace. Capital One will consider for employment qualified applicants with a criminal history in a manner consistent with the requirements of applicable laws regarding criminal background inquiries, including, to the extent applicable, Article 23-A of the New York Correction Law; San Francisco, California Police Code Article 49, Sections ; New York City's Fair Chance Act; Philadelphia's Fair Criminal Records Screening Act; and other applicable federal, state, and local laws and regulations regarding criminal background inquiries. If you have visited our website in search of information on employment opportunities or to apply for a position, and you require an accommodation, please contact Capital One Recruiting at 1- or via email at . All information you provide will be kept confidential and will be used only to the extent required to provide needed reasonable accommodations. For technical support or questions about Capital One's recruiting process, please send an email to Capital One does not provide, endorse nor guarantee and is not liable for third-party products, services, educational tools or other information available through this site. Capital One Financial is made up of several different entities. Please note that any position posted in Canada is for Capital One Canada, any position posted in the United Kingdom is for Capital One Europe and any position posted in the Philippines is for Capital One Philippines Service Corp. (COPSSC).
Manager, Network Security, Tech & Data Risk Management Capital One is one of the fastest growing organizations in the world today, powered by our passion for our customers. We are serious about technology, we dream big, and we execute: Capital One moved our entire enterprise to the public cloud over the course of five years. Just as we prioritize driving innovation through technology, we equally prioritize cybersecurity, reliability, software quality, and data management. Technology & Data Risk Management (TDRM) is a small organization that packs a big punch. The 200 professionals in TDRM are trusted experts who oversee 14,000 developers at Capital One. We raise the bar for excellence in cybersecurity, reliability, and tech risk, and data management risk. We shape strategy and decisions, challenge activities to ensure they meet our standards, and perform independent tests of our security and technology risk. For years, the cybersecurity community has debated whether the CISO should report to the CIO or not. In regulated financial services, the answer is: both. The first-line CISO has operational responsibilities and reports to the CIO. The second-line Chief Tech Risk Officer (CTRO) and the Tech & Data Risk Management (TRM) organization have broader responsibilities for cybersecurity but also reliability, software quality, resilience, and the risk of failing to manage our data. The CTRO is independent and oversees the work of the CISO, the CIO/CTO, and the Chief Data Officer. The CTRO reports to the Chief Risk Officer, who reports directly to the CEO. Our business leaders must make technology decisions constantly. TDRM makes sure they have the tech and data risk information they need to make good decisions. Associates within TDRM are highly-skilled information security, cybersecurity, site reliability engineering, technology, data analyst, data scientist, and risk management professionals. They have a wealth of experience and a demonstrated ability to add value with their advice and to deliver high-impact results. Role-specific text This position - Manager, Network Security - is a unique opportunity for candidates with technical cybersecurity experience who have a desire to expand that expertise in a risk management organization. This individual will have the opportunity to leverage their technical subject matter expertise to provide advisory, oversight, and effective challenge to stakeholders within the first line of defense. This role will engage with and build relationships across multiple lines of defense while overseeing network security across Capital One's private and public cloud footprints. Responsibilities: Provide advisory, oversight, and effective challenge to the first line of defense. Provide technical assessments of cybersecurity controls design and effectiveness. Draft assessments for senior management and other stakeholders, to include regulatory agencies and the Board of Directors, as needed. Stay current on emerging cyber threats and potential implications to the firm. Collaborate effectively with colleagues, stakeholders, and leaders across multiple organizations to achieve objectives. Coordinate program-related activities and deliverables to ensure effective collaboration within the team and across stakeholder groups. Proven track record of leading, mentoring, and influencing others. Ability to communicate clearly in written and verbal form. Ability to manage multiple projects while maintaining superior results. Ability to work individually and cross-functionally. Execution oriented and a self-motivator. Basic Qualifications: Bachelor's degree or military experience 3+ years of experience in the financial services industry or highly regulated industry (healthcare, energy, telecommunications) 3+ years of experience implementing network defenses (firewalls, network access control, intrusion detection, intrusion prevention, web application firewalls, web gateways, and proxies) in AWS (Amazon Web Services) or GCP (Google Cloud Platform) 2+ years of experience implementing Zero Trust or Secure Access Service Edge (SASE) in AWS or GCP 1+ certifications for AWS or GCP 2+ years of audit or risk management experience Preferred Qualifications: 2+ years of experience with Palo Alto Networks technologies 1 or more audit or risk-focused certification: CRISC (Certified in Risk and Information Systems Control), CISA (Certified Information Systems Auditor), CISM (Certified Information Security Manager), or CISSP (Certified Information System Security Professional) 2+ years of experience implementing network defenses for global payment networks At this time, Capital One will not sponsor a new applicant for employment authorization for this position. The minimum and maximum full-time annual salaries for this role are listed below, by location. Please note that this salary information is solely for candidates hired to perform work within one of these locations, and refers to the amount Capital One is willing to pay at the time of this posting. Salaries for part-time roles will be prorated based upon the agreed upon number of hours to be regularly worked. McLean, VA: $193,400 - $220,700 for Manager, Cyber Technical New York, NY: $211,000 - $240,800 for Manager, Cyber Technical Plano, TX: $175,800 - $200,700 for Manager, Cyber Technical Richmond, VA: $175,800 - $200,700 for Manager, Cyber Technical Candidates hired to work in other locations will be subject to the pay range associated with that location, and the actual annualized salary amount offered to any candidate at the time of hire will be reflected solely in the candidate's offer letter. This role is also eligible to earn performance based incentive compensation, which may include cash bonus(es) and/or long term incentives (LTI). Incentives could be discretionary or non discretionary depending on the plan. Capital One offers a comprehensive, competitive, and inclusive set of health, financial and other benefits that support your total well-being. Learn more at the Capital One Careers website . Eligibility varies based on full or part-time status, exempt or non-exempt status, and management level. This role is expected to accept applications for a minimum of 5 business days.No agencies please. Capital One is an equal opportunity employer (EOE, including disability/vet) committed to non-discrimination in compliance with applicable federal, state, and local laws. Capital One promotes a drug-free workplace. Capital One will consider for employment qualified applicants with a criminal history in a manner consistent with the requirements of applicable laws regarding criminal background inquiries, including, to the extent applicable, Article 23-A of the New York Correction Law; San Francisco, California Police Code Article 49, Sections ; New York City's Fair Chance Act; Philadelphia's Fair Criminal Records Screening Act; and other applicable federal, state, and local laws and regulations regarding criminal background inquiries. If you have visited our website in search of information on employment opportunities or to apply for a position, and you require an accommodation, please contact Capital One Recruiting at 1- or via email at . All information you provide will be kept confidential and will be used only to the extent required to provide needed reasonable accommodations. For technical support or questions about Capital One's recruiting process, please send an email to Capital One does not provide, endorse nor guarantee and is not liable for third-party products, services, educational tools or other information available through this site. Capital One Financial is made up of several different entities. Please note that any position posted in Canada is for Capital One Canada, any position posted in the United Kingdom is for Capital One Europe and any position posted in the Philippines is for Capital One Philippines Service Corp. (COPSSC).
12/17/2025
Full time
Manager, Network Security, Tech & Data Risk Management Capital One is one of the fastest growing organizations in the world today, powered by our passion for our customers. We are serious about technology, we dream big, and we execute: Capital One moved our entire enterprise to the public cloud over the course of five years. Just as we prioritize driving innovation through technology, we equally prioritize cybersecurity, reliability, software quality, and data management. Technology & Data Risk Management (TDRM) is a small organization that packs a big punch. The 200 professionals in TDRM are trusted experts who oversee 14,000 developers at Capital One. We raise the bar for excellence in cybersecurity, reliability, and tech risk, and data management risk. We shape strategy and decisions, challenge activities to ensure they meet our standards, and perform independent tests of our security and technology risk. For years, the cybersecurity community has debated whether the CISO should report to the CIO or not. In regulated financial services, the answer is: both. The first-line CISO has operational responsibilities and reports to the CIO. The second-line Chief Tech Risk Officer (CTRO) and the Tech & Data Risk Management (TRM) organization have broader responsibilities for cybersecurity but also reliability, software quality, resilience, and the risk of failing to manage our data. The CTRO is independent and oversees the work of the CISO, the CIO/CTO, and the Chief Data Officer. The CTRO reports to the Chief Risk Officer, who reports directly to the CEO. Our business leaders must make technology decisions constantly. TDRM makes sure they have the tech and data risk information they need to make good decisions. Associates within TDRM are highly-skilled information security, cybersecurity, site reliability engineering, technology, data analyst, data scientist, and risk management professionals. They have a wealth of experience and a demonstrated ability to add value with their advice and to deliver high-impact results. Role-specific text This position - Manager, Network Security - is a unique opportunity for candidates with technical cybersecurity experience who have a desire to expand that expertise in a risk management organization. This individual will have the opportunity to leverage their technical subject matter expertise to provide advisory, oversight, and effective challenge to stakeholders within the first line of defense. This role will engage with and build relationships across multiple lines of defense while overseeing network security across Capital One's private and public cloud footprints. Responsibilities: Provide advisory, oversight, and effective challenge to the first line of defense. Provide technical assessments of cybersecurity controls design and effectiveness. Draft assessments for senior management and other stakeholders, to include regulatory agencies and the Board of Directors, as needed. Stay current on emerging cyber threats and potential implications to the firm. Collaborate effectively with colleagues, stakeholders, and leaders across multiple organizations to achieve objectives. Coordinate program-related activities and deliverables to ensure effective collaboration within the team and across stakeholder groups. Proven track record of leading, mentoring, and influencing others. Ability to communicate clearly in written and verbal form. Ability to manage multiple projects while maintaining superior results. Ability to work individually and cross-functionally. Execution oriented and a self-motivator. Basic Qualifications: Bachelor's degree or military experience 3+ years of experience in the financial services industry or highly regulated industry (healthcare, energy, telecommunications) 3+ years of experience implementing network defenses (firewalls, network access control, intrusion detection, intrusion prevention, web application firewalls, web gateways, and proxies) in AWS (Amazon Web Services) or GCP (Google Cloud Platform) 2+ years of experience implementing Zero Trust or Secure Access Service Edge (SASE) in AWS or GCP 1+ certifications for AWS or GCP 2+ years of audit or risk management experience Preferred Qualifications: 2+ years of experience with Palo Alto Networks technologies 1 or more audit or risk-focused certification: CRISC (Certified in Risk and Information Systems Control), CISA (Certified Information Systems Auditor), CISM (Certified Information Security Manager), or CISSP (Certified Information System Security Professional) 2+ years of experience implementing network defenses for global payment networks At this time, Capital One will not sponsor a new applicant for employment authorization for this position. The minimum and maximum full-time annual salaries for this role are listed below, by location. Please note that this salary information is solely for candidates hired to perform work within one of these locations, and refers to the amount Capital One is willing to pay at the time of this posting. Salaries for part-time roles will be prorated based upon the agreed upon number of hours to be regularly worked. McLean, VA: $193,400 - $220,700 for Manager, Cyber Technical New York, NY: $211,000 - $240,800 for Manager, Cyber Technical Plano, TX: $175,800 - $200,700 for Manager, Cyber Technical Richmond, VA: $175,800 - $200,700 for Manager, Cyber Technical Candidates hired to work in other locations will be subject to the pay range associated with that location, and the actual annualized salary amount offered to any candidate at the time of hire will be reflected solely in the candidate's offer letter. This role is also eligible to earn performance based incentive compensation, which may include cash bonus(es) and/or long term incentives (LTI). Incentives could be discretionary or non discretionary depending on the plan. Capital One offers a comprehensive, competitive, and inclusive set of health, financial and other benefits that support your total well-being. Learn more at the Capital One Careers website . Eligibility varies based on full or part-time status, exempt or non-exempt status, and management level. This role is expected to accept applications for a minimum of 5 business days.No agencies please. Capital One is an equal opportunity employer (EOE, including disability/vet) committed to non-discrimination in compliance with applicable federal, state, and local laws. Capital One promotes a drug-free workplace. Capital One will consider for employment qualified applicants with a criminal history in a manner consistent with the requirements of applicable laws regarding criminal background inquiries, including, to the extent applicable, Article 23-A of the New York Correction Law; San Francisco, California Police Code Article 49, Sections ; New York City's Fair Chance Act; Philadelphia's Fair Criminal Records Screening Act; and other applicable federal, state, and local laws and regulations regarding criminal background inquiries. If you have visited our website in search of information on employment opportunities or to apply for a position, and you require an accommodation, please contact Capital One Recruiting at 1- or via email at . All information you provide will be kept confidential and will be used only to the extent required to provide needed reasonable accommodations. For technical support or questions about Capital One's recruiting process, please send an email to Capital One does not provide, endorse nor guarantee and is not liable for third-party products, services, educational tools or other information available through this site. Capital One Financial is made up of several different entities. Please note that any position posted in Canada is for Capital One Canada, any position posted in the United Kingdom is for Capital One Europe and any position posted in the Philippines is for Capital One Philippines Service Corp. (COPSSC).
Manager, Network Security, Tech & Data Risk Management Capital One is one of the fastest growing organizations in the world today, powered by our passion for our customers. We are serious about technology, we dream big, and we execute: Capital One moved our entire enterprise to the public cloud over the course of five years. Just as we prioritize driving innovation through technology, we equally prioritize cybersecurity, reliability, software quality, and data management. Technology & Data Risk Management (TDRM) is a small organization that packs a big punch. The 200 professionals in TDRM are trusted experts who oversee 14,000 developers at Capital One. We raise the bar for excellence in cybersecurity, reliability, and tech risk, and data management risk. We shape strategy and decisions, challenge activities to ensure they meet our standards, and perform independent tests of our security and technology risk. For years, the cybersecurity community has debated whether the CISO should report to the CIO or not. In regulated financial services, the answer is: both. The first-line CISO has operational responsibilities and reports to the CIO. The second-line Chief Tech Risk Officer (CTRO) and the Tech & Data Risk Management (TRM) organization have broader responsibilities for cybersecurity but also reliability, software quality, resilience, and the risk of failing to manage our data. The CTRO is independent and oversees the work of the CISO, the CIO/CTO, and the Chief Data Officer. The CTRO reports to the Chief Risk Officer, who reports directly to the CEO. Our business leaders must make technology decisions constantly. TDRM makes sure they have the tech and data risk information they need to make good decisions. Associates within TDRM are highly-skilled information security, cybersecurity, site reliability engineering, technology, data analyst, data scientist, and risk management professionals. They have a wealth of experience and a demonstrated ability to add value with their advice and to deliver high-impact results. Role-specific text This position - Manager, Network Security - is a unique opportunity for candidates with technical cybersecurity experience who have a desire to expand that expertise in a risk management organization. This individual will have the opportunity to leverage their technical subject matter expertise to provide advisory, oversight, and effective challenge to stakeholders within the first line of defense. This role will engage with and build relationships across multiple lines of defense while overseeing network security across Capital One's private and public cloud footprints. Responsibilities: Provide advisory, oversight, and effective challenge to the first line of defense. Provide technical assessments of cybersecurity controls design and effectiveness. Draft assessments for senior management and other stakeholders, to include regulatory agencies and the Board of Directors, as needed. Stay current on emerging cyber threats and potential implications to the firm. Collaborate effectively with colleagues, stakeholders, and leaders across multiple organizations to achieve objectives. Coordinate program-related activities and deliverables to ensure effective collaboration within the team and across stakeholder groups. Proven track record of leading, mentoring, and influencing others. Ability to communicate clearly in written and verbal form. Ability to manage multiple projects while maintaining superior results. Ability to work individually and cross-functionally. Execution oriented and a self-motivator. Basic Qualifications: Bachelor's degree or military experience 3+ years of experience in the financial services industry or highly regulated industry (healthcare, energy, telecommunications) 3+ years of experience implementing network defenses (firewalls, network access control, intrusion detection, intrusion prevention, web application firewalls, web gateways, and proxies) in AWS (Amazon Web Services) or GCP (Google Cloud Platform) 2+ years of experience implementing Zero Trust or Secure Access Service Edge (SASE) in AWS or GCP 1+ certifications for AWS or GCP 2+ years of audit or risk management experience Preferred Qualifications: 2+ years of experience with Palo Alto Networks technologies 1 or more audit or risk-focused certification: CRISC (Certified in Risk and Information Systems Control), CISA (Certified Information Systems Auditor), CISM (Certified Information Security Manager), or CISSP (Certified Information System Security Professional) 2+ years of experience implementing network defenses for global payment networks At this time, Capital One will not sponsor a new applicant for employment authorization for this position. The minimum and maximum full-time annual salaries for this role are listed below, by location. Please note that this salary information is solely for candidates hired to perform work within one of these locations, and refers to the amount Capital One is willing to pay at the time of this posting. Salaries for part-time roles will be prorated based upon the agreed upon number of hours to be regularly worked. McLean, VA: $193,400 - $220,700 for Manager, Cyber Technical New York, NY: $211,000 - $240,800 for Manager, Cyber Technical Plano, TX: $175,800 - $200,700 for Manager, Cyber Technical Richmond, VA: $175,800 - $200,700 for Manager, Cyber Technical Candidates hired to work in other locations will be subject to the pay range associated with that location, and the actual annualized salary amount offered to any candidate at the time of hire will be reflected solely in the candidate's offer letter. This role is also eligible to earn performance based incentive compensation, which may include cash bonus(es) and/or long term incentives (LTI). Incentives could be discretionary or non discretionary depending on the plan. Capital One offers a comprehensive, competitive, and inclusive set of health, financial and other benefits that support your total well-being. Learn more at the Capital One Careers website . Eligibility varies based on full or part-time status, exempt or non-exempt status, and management level. This role is expected to accept applications for a minimum of 5 business days.No agencies please. Capital One is an equal opportunity employer (EOE, including disability/vet) committed to non-discrimination in compliance with applicable federal, state, and local laws. Capital One promotes a drug-free workplace. Capital One will consider for employment qualified applicants with a criminal history in a manner consistent with the requirements of applicable laws regarding criminal background inquiries, including, to the extent applicable, Article 23-A of the New York Correction Law; San Francisco, California Police Code Article 49, Sections ; New York City's Fair Chance Act; Philadelphia's Fair Criminal Records Screening Act; and other applicable federal, state, and local laws and regulations regarding criminal background inquiries. If you have visited our website in search of information on employment opportunities or to apply for a position, and you require an accommodation, please contact Capital One Recruiting at 1- or via email at . All information you provide will be kept confidential and will be used only to the extent required to provide needed reasonable accommodations. For technical support or questions about Capital One's recruiting process, please send an email to Capital One does not provide, endorse nor guarantee and is not liable for third-party products, services, educational tools or other information available through this site. Capital One Financial is made up of several different entities. Please note that any position posted in Canada is for Capital One Canada, any position posted in the United Kingdom is for Capital One Europe and any position posted in the Philippines is for Capital One Philippines Service Corp. (COPSSC).
12/17/2025
Full time
Manager, Network Security, Tech & Data Risk Management Capital One is one of the fastest growing organizations in the world today, powered by our passion for our customers. We are serious about technology, we dream big, and we execute: Capital One moved our entire enterprise to the public cloud over the course of five years. Just as we prioritize driving innovation through technology, we equally prioritize cybersecurity, reliability, software quality, and data management. Technology & Data Risk Management (TDRM) is a small organization that packs a big punch. The 200 professionals in TDRM are trusted experts who oversee 14,000 developers at Capital One. We raise the bar for excellence in cybersecurity, reliability, and tech risk, and data management risk. We shape strategy and decisions, challenge activities to ensure they meet our standards, and perform independent tests of our security and technology risk. For years, the cybersecurity community has debated whether the CISO should report to the CIO or not. In regulated financial services, the answer is: both. The first-line CISO has operational responsibilities and reports to the CIO. The second-line Chief Tech Risk Officer (CTRO) and the Tech & Data Risk Management (TRM) organization have broader responsibilities for cybersecurity but also reliability, software quality, resilience, and the risk of failing to manage our data. The CTRO is independent and oversees the work of the CISO, the CIO/CTO, and the Chief Data Officer. The CTRO reports to the Chief Risk Officer, who reports directly to the CEO. Our business leaders must make technology decisions constantly. TDRM makes sure they have the tech and data risk information they need to make good decisions. Associates within TDRM are highly-skilled information security, cybersecurity, site reliability engineering, technology, data analyst, data scientist, and risk management professionals. They have a wealth of experience and a demonstrated ability to add value with their advice and to deliver high-impact results. Role-specific text This position - Manager, Network Security - is a unique opportunity for candidates with technical cybersecurity experience who have a desire to expand that expertise in a risk management organization. This individual will have the opportunity to leverage their technical subject matter expertise to provide advisory, oversight, and effective challenge to stakeholders within the first line of defense. This role will engage with and build relationships across multiple lines of defense while overseeing network security across Capital One's private and public cloud footprints. Responsibilities: Provide advisory, oversight, and effective challenge to the first line of defense. Provide technical assessments of cybersecurity controls design and effectiveness. Draft assessments for senior management and other stakeholders, to include regulatory agencies and the Board of Directors, as needed. Stay current on emerging cyber threats and potential implications to the firm. Collaborate effectively with colleagues, stakeholders, and leaders across multiple organizations to achieve objectives. Coordinate program-related activities and deliverables to ensure effective collaboration within the team and across stakeholder groups. Proven track record of leading, mentoring, and influencing others. Ability to communicate clearly in written and verbal form. Ability to manage multiple projects while maintaining superior results. Ability to work individually and cross-functionally. Execution oriented and a self-motivator. Basic Qualifications: Bachelor's degree or military experience 3+ years of experience in the financial services industry or highly regulated industry (healthcare, energy, telecommunications) 3+ years of experience implementing network defenses (firewalls, network access control, intrusion detection, intrusion prevention, web application firewalls, web gateways, and proxies) in AWS (Amazon Web Services) or GCP (Google Cloud Platform) 2+ years of experience implementing Zero Trust or Secure Access Service Edge (SASE) in AWS or GCP 1+ certifications for AWS or GCP 2+ years of audit or risk management experience Preferred Qualifications: 2+ years of experience with Palo Alto Networks technologies 1 or more audit or risk-focused certification: CRISC (Certified in Risk and Information Systems Control), CISA (Certified Information Systems Auditor), CISM (Certified Information Security Manager), or CISSP (Certified Information System Security Professional) 2+ years of experience implementing network defenses for global payment networks At this time, Capital One will not sponsor a new applicant for employment authorization for this position. The minimum and maximum full-time annual salaries for this role are listed below, by location. Please note that this salary information is solely for candidates hired to perform work within one of these locations, and refers to the amount Capital One is willing to pay at the time of this posting. Salaries for part-time roles will be prorated based upon the agreed upon number of hours to be regularly worked. McLean, VA: $193,400 - $220,700 for Manager, Cyber Technical New York, NY: $211,000 - $240,800 for Manager, Cyber Technical Plano, TX: $175,800 - $200,700 for Manager, Cyber Technical Richmond, VA: $175,800 - $200,700 for Manager, Cyber Technical Candidates hired to work in other locations will be subject to the pay range associated with that location, and the actual annualized salary amount offered to any candidate at the time of hire will be reflected solely in the candidate's offer letter. This role is also eligible to earn performance based incentive compensation, which may include cash bonus(es) and/or long term incentives (LTI). Incentives could be discretionary or non discretionary depending on the plan. Capital One offers a comprehensive, competitive, and inclusive set of health, financial and other benefits that support your total well-being. Learn more at the Capital One Careers website . Eligibility varies based on full or part-time status, exempt or non-exempt status, and management level. This role is expected to accept applications for a minimum of 5 business days.No agencies please. Capital One is an equal opportunity employer (EOE, including disability/vet) committed to non-discrimination in compliance with applicable federal, state, and local laws. Capital One promotes a drug-free workplace. Capital One will consider for employment qualified applicants with a criminal history in a manner consistent with the requirements of applicable laws regarding criminal background inquiries, including, to the extent applicable, Article 23-A of the New York Correction Law; San Francisco, California Police Code Article 49, Sections ; New York City's Fair Chance Act; Philadelphia's Fair Criminal Records Screening Act; and other applicable federal, state, and local laws and regulations regarding criminal background inquiries. If you have visited our website in search of information on employment opportunities or to apply for a position, and you require an accommodation, please contact Capital One Recruiting at 1- or via email at . All information you provide will be kept confidential and will be used only to the extent required to provide needed reasonable accommodations. For technical support or questions about Capital One's recruiting process, please send an email to Capital One does not provide, endorse nor guarantee and is not liable for third-party products, services, educational tools or other information available through this site. Capital One Financial is made up of several different entities. Please note that any position posted in Canada is for Capital One Canada, any position posted in the United Kingdom is for Capital One Europe and any position posted in the Philippines is for Capital One Philippines Service Corp. (COPSSC).
Manager, Network Security, Tech & Data Risk Management Capital One is one of the fastest growing organizations in the world today, powered by our passion for our customers. We are serious about technology, we dream big, and we execute: Capital One moved our entire enterprise to the public cloud over the course of five years. Just as we prioritize driving innovation through technology, we equally prioritize cybersecurity, reliability, software quality, and data management. Technology & Data Risk Management (TDRM) is a small organization that packs a big punch. The 200 professionals in TDRM are trusted experts who oversee 14,000 developers at Capital One. We raise the bar for excellence in cybersecurity, reliability, and tech risk, and data management risk. We shape strategy and decisions, challenge activities to ensure they meet our standards, and perform independent tests of our security and technology risk. For years, the cybersecurity community has debated whether the CISO should report to the CIO or not. In regulated financial services, the answer is: both. The first-line CISO has operational responsibilities and reports to the CIO. The second-line Chief Tech Risk Officer (CTRO) and the Tech & Data Risk Management (TRM) organization have broader responsibilities for cybersecurity but also reliability, software quality, resilience, and the risk of failing to manage our data. The CTRO is independent and oversees the work of the CISO, the CIO/CTO, and the Chief Data Officer. The CTRO reports to the Chief Risk Officer, who reports directly to the CEO. Our business leaders must make technology decisions constantly. TDRM makes sure they have the tech and data risk information they need to make good decisions. Associates within TDRM are highly-skilled information security, cybersecurity, site reliability engineering, technology, data analyst, data scientist, and risk management professionals. They have a wealth of experience and a demonstrated ability to add value with their advice and to deliver high-impact results. Role-specific text This position - Manager, Network Security - is a unique opportunity for candidates with technical cybersecurity experience who have a desire to expand that expertise in a risk management organization. This individual will have the opportunity to leverage their technical subject matter expertise to provide advisory, oversight, and effective challenge to stakeholders within the first line of defense. This role will engage with and build relationships across multiple lines of defense while overseeing network security across Capital One's private and public cloud footprints. Responsibilities: Provide advisory, oversight, and effective challenge to the first line of defense. Provide technical assessments of cybersecurity controls design and effectiveness. Draft assessments for senior management and other stakeholders, to include regulatory agencies and the Board of Directors, as needed. Stay current on emerging cyber threats and potential implications to the firm. Collaborate effectively with colleagues, stakeholders, and leaders across multiple organizations to achieve objectives. Coordinate program-related activities and deliverables to ensure effective collaboration within the team and across stakeholder groups. Proven track record of leading, mentoring, and influencing others. Ability to communicate clearly in written and verbal form. Ability to manage multiple projects while maintaining superior results. Ability to work individually and cross-functionally. Execution oriented and a self-motivator. Basic Qualifications: Bachelor's degree or military experience 3+ years of experience in the financial services industry or highly regulated industry (healthcare, energy, telecommunications) 3+ years of experience implementing network defenses (firewalls, network access control, intrusion detection, intrusion prevention, web application firewalls, web gateways, and proxies) in AWS (Amazon Web Services) or GCP (Google Cloud Platform) 2+ years of experience implementing Zero Trust or Secure Access Service Edge (SASE) in AWS or GCP 1+ certifications for AWS or GCP 2+ years of audit or risk management experience Preferred Qualifications: 2+ years of experience with Palo Alto Networks technologies 1 or more audit or risk-focused certification: CRISC (Certified in Risk and Information Systems Control), CISA (Certified Information Systems Auditor), CISM (Certified Information Security Manager), or CISSP (Certified Information System Security Professional) 2+ years of experience implementing network defenses for global payment networks At this time, Capital One will not sponsor a new applicant for employment authorization for this position. The minimum and maximum full-time annual salaries for this role are listed below, by location. Please note that this salary information is solely for candidates hired to perform work within one of these locations, and refers to the amount Capital One is willing to pay at the time of this posting. Salaries for part-time roles will be prorated based upon the agreed upon number of hours to be regularly worked. McLean, VA: $193,400 - $220,700 for Manager, Cyber Technical New York, NY: $211,000 - $240,800 for Manager, Cyber Technical Plano, TX: $175,800 - $200,700 for Manager, Cyber Technical Richmond, VA: $175,800 - $200,700 for Manager, Cyber Technical Candidates hired to work in other locations will be subject to the pay range associated with that location, and the actual annualized salary amount offered to any candidate at the time of hire will be reflected solely in the candidate's offer letter. This role is also eligible to earn performance based incentive compensation, which may include cash bonus(es) and/or long term incentives (LTI). Incentives could be discretionary or non discretionary depending on the plan. Capital One offers a comprehensive, competitive, and inclusive set of health, financial and other benefits that support your total well-being. Learn more at the Capital One Careers website . Eligibility varies based on full or part-time status, exempt or non-exempt status, and management level. This role is expected to accept applications for a minimum of 5 business days.No agencies please. Capital One is an equal opportunity employer (EOE, including disability/vet) committed to non-discrimination in compliance with applicable federal, state, and local laws. Capital One promotes a drug-free workplace. Capital One will consider for employment qualified applicants with a criminal history in a manner consistent with the requirements of applicable laws regarding criminal background inquiries, including, to the extent applicable, Article 23-A of the New York Correction Law; San Francisco, California Police Code Article 49, Sections ; New York City's Fair Chance Act; Philadelphia's Fair Criminal Records Screening Act; and other applicable federal, state, and local laws and regulations regarding criminal background inquiries. If you have visited our website in search of information on employment opportunities or to apply for a position, and you require an accommodation, please contact Capital One Recruiting at 1- or via email at . All information you provide will be kept confidential and will be used only to the extent required to provide needed reasonable accommodations. For technical support or questions about Capital One's recruiting process, please send an email to Capital One does not provide, endorse nor guarantee and is not liable for third-party products, services, educational tools or other information available through this site. Capital One Financial is made up of several different entities. Please note that any position posted in Canada is for Capital One Canada, any position posted in the United Kingdom is for Capital One Europe and any position posted in the Philippines is for Capital One Philippines Service Corp. (COPSSC).
12/17/2025
Full time
Manager, Network Security, Tech & Data Risk Management Capital One is one of the fastest growing organizations in the world today, powered by our passion for our customers. We are serious about technology, we dream big, and we execute: Capital One moved our entire enterprise to the public cloud over the course of five years. Just as we prioritize driving innovation through technology, we equally prioritize cybersecurity, reliability, software quality, and data management. Technology & Data Risk Management (TDRM) is a small organization that packs a big punch. The 200 professionals in TDRM are trusted experts who oversee 14,000 developers at Capital One. We raise the bar for excellence in cybersecurity, reliability, and tech risk, and data management risk. We shape strategy and decisions, challenge activities to ensure they meet our standards, and perform independent tests of our security and technology risk. For years, the cybersecurity community has debated whether the CISO should report to the CIO or not. In regulated financial services, the answer is: both. The first-line CISO has operational responsibilities and reports to the CIO. The second-line Chief Tech Risk Officer (CTRO) and the Tech & Data Risk Management (TRM) organization have broader responsibilities for cybersecurity but also reliability, software quality, resilience, and the risk of failing to manage our data. The CTRO is independent and oversees the work of the CISO, the CIO/CTO, and the Chief Data Officer. The CTRO reports to the Chief Risk Officer, who reports directly to the CEO. Our business leaders must make technology decisions constantly. TDRM makes sure they have the tech and data risk information they need to make good decisions. Associates within TDRM are highly-skilled information security, cybersecurity, site reliability engineering, technology, data analyst, data scientist, and risk management professionals. They have a wealth of experience and a demonstrated ability to add value with their advice and to deliver high-impact results. Role-specific text This position - Manager, Network Security - is a unique opportunity for candidates with technical cybersecurity experience who have a desire to expand that expertise in a risk management organization. This individual will have the opportunity to leverage their technical subject matter expertise to provide advisory, oversight, and effective challenge to stakeholders within the first line of defense. This role will engage with and build relationships across multiple lines of defense while overseeing network security across Capital One's private and public cloud footprints. Responsibilities: Provide advisory, oversight, and effective challenge to the first line of defense. Provide technical assessments of cybersecurity controls design and effectiveness. Draft assessments for senior management and other stakeholders, to include regulatory agencies and the Board of Directors, as needed. Stay current on emerging cyber threats and potential implications to the firm. Collaborate effectively with colleagues, stakeholders, and leaders across multiple organizations to achieve objectives. Coordinate program-related activities and deliverables to ensure effective collaboration within the team and across stakeholder groups. Proven track record of leading, mentoring, and influencing others. Ability to communicate clearly in written and verbal form. Ability to manage multiple projects while maintaining superior results. Ability to work individually and cross-functionally. Execution oriented and a self-motivator. Basic Qualifications: Bachelor's degree or military experience 3+ years of experience in the financial services industry or highly regulated industry (healthcare, energy, telecommunications) 3+ years of experience implementing network defenses (firewalls, network access control, intrusion detection, intrusion prevention, web application firewalls, web gateways, and proxies) in AWS (Amazon Web Services) or GCP (Google Cloud Platform) 2+ years of experience implementing Zero Trust or Secure Access Service Edge (SASE) in AWS or GCP 1+ certifications for AWS or GCP 2+ years of audit or risk management experience Preferred Qualifications: 2+ years of experience with Palo Alto Networks technologies 1 or more audit or risk-focused certification: CRISC (Certified in Risk and Information Systems Control), CISA (Certified Information Systems Auditor), CISM (Certified Information Security Manager), or CISSP (Certified Information System Security Professional) 2+ years of experience implementing network defenses for global payment networks At this time, Capital One will not sponsor a new applicant for employment authorization for this position. The minimum and maximum full-time annual salaries for this role are listed below, by location. Please note that this salary information is solely for candidates hired to perform work within one of these locations, and refers to the amount Capital One is willing to pay at the time of this posting. Salaries for part-time roles will be prorated based upon the agreed upon number of hours to be regularly worked. McLean, VA: $193,400 - $220,700 for Manager, Cyber Technical New York, NY: $211,000 - $240,800 for Manager, Cyber Technical Plano, TX: $175,800 - $200,700 for Manager, Cyber Technical Richmond, VA: $175,800 - $200,700 for Manager, Cyber Technical Candidates hired to work in other locations will be subject to the pay range associated with that location, and the actual annualized salary amount offered to any candidate at the time of hire will be reflected solely in the candidate's offer letter. This role is also eligible to earn performance based incentive compensation, which may include cash bonus(es) and/or long term incentives (LTI). Incentives could be discretionary or non discretionary depending on the plan. Capital One offers a comprehensive, competitive, and inclusive set of health, financial and other benefits that support your total well-being. Learn more at the Capital One Careers website . Eligibility varies based on full or part-time status, exempt or non-exempt status, and management level. This role is expected to accept applications for a minimum of 5 business days.No agencies please. Capital One is an equal opportunity employer (EOE, including disability/vet) committed to non-discrimination in compliance with applicable federal, state, and local laws. Capital One promotes a drug-free workplace. Capital One will consider for employment qualified applicants with a criminal history in a manner consistent with the requirements of applicable laws regarding criminal background inquiries, including, to the extent applicable, Article 23-A of the New York Correction Law; San Francisco, California Police Code Article 49, Sections ; New York City's Fair Chance Act; Philadelphia's Fair Criminal Records Screening Act; and other applicable federal, state, and local laws and regulations regarding criminal background inquiries. If you have visited our website in search of information on employment opportunities or to apply for a position, and you require an accommodation, please contact Capital One Recruiting at 1- or via email at . All information you provide will be kept confidential and will be used only to the extent required to provide needed reasonable accommodations. For technical support or questions about Capital One's recruiting process, please send an email to Capital One does not provide, endorse nor guarantee and is not liable for third-party products, services, educational tools or other information available through this site. Capital One Financial is made up of several different entities. Please note that any position posted in Canada is for Capital One Canada, any position posted in the United Kingdom is for Capital One Europe and any position posted in the Philippines is for Capital One Philippines Service Corp. (COPSSC).
Manager, Network Security, Tech & Data Risk Management Capital One is one of the fastest growing organizations in the world today, powered by our passion for our customers. We are serious about technology, we dream big, and we execute: Capital One moved our entire enterprise to the public cloud over the course of five years. Just as we prioritize driving innovation through technology, we equally prioritize cybersecurity, reliability, software quality, and data management. Technology & Data Risk Management (TDRM) is a small organization that packs a big punch. The 200 professionals in TDRM are trusted experts who oversee 14,000 developers at Capital One. We raise the bar for excellence in cybersecurity, reliability, and tech risk, and data management risk. We shape strategy and decisions, challenge activities to ensure they meet our standards, and perform independent tests of our security and technology risk. For years, the cybersecurity community has debated whether the CISO should report to the CIO or not. In regulated financial services, the answer is: both. The first-line CISO has operational responsibilities and reports to the CIO. The second-line Chief Tech Risk Officer (CTRO) and the Tech & Data Risk Management (TRM) organization have broader responsibilities for cybersecurity but also reliability, software quality, resilience, and the risk of failing to manage our data. The CTRO is independent and oversees the work of the CISO, the CIO/CTO, and the Chief Data Officer. The CTRO reports to the Chief Risk Officer, who reports directly to the CEO. Our business leaders must make technology decisions constantly. TDRM makes sure they have the tech and data risk information they need to make good decisions. Associates within TDRM are highly-skilled information security, cybersecurity, site reliability engineering, technology, data analyst, data scientist, and risk management professionals. They have a wealth of experience and a demonstrated ability to add value with their advice and to deliver high-impact results. Role-specific text This position - Manager, Network Security - is a unique opportunity for candidates with technical cybersecurity experience who have a desire to expand that expertise in a risk management organization. This individual will have the opportunity to leverage their technical subject matter expertise to provide advisory, oversight, and effective challenge to stakeholders within the first line of defense. This role will engage with and build relationships across multiple lines of defense while overseeing network security across Capital One's private and public cloud footprints. Responsibilities: Provide advisory, oversight, and effective challenge to the first line of defense. Provide technical assessments of cybersecurity controls design and effectiveness. Draft assessments for senior management and other stakeholders, to include regulatory agencies and the Board of Directors, as needed. Stay current on emerging cyber threats and potential implications to the firm. Collaborate effectively with colleagues, stakeholders, and leaders across multiple organizations to achieve objectives. Coordinate program-related activities and deliverables to ensure effective collaboration within the team and across stakeholder groups. Proven track record of leading, mentoring, and influencing others. Ability to communicate clearly in written and verbal form. Ability to manage multiple projects while maintaining superior results. Ability to work individually and cross-functionally. Execution oriented and a self-motivator. Basic Qualifications: Bachelor's degree or military experience 3+ years of experience in the financial services industry or highly regulated industry (healthcare, energy, telecommunications) 3+ years of experience implementing network defenses (firewalls, network access control, intrusion detection, intrusion prevention, web application firewalls, web gateways, and proxies) in AWS (Amazon Web Services) or GCP (Google Cloud Platform) 2+ years of experience implementing Zero Trust or Secure Access Service Edge (SASE) in AWS or GCP 1+ certifications for AWS or GCP 2+ years of audit or risk management experience Preferred Qualifications: 2+ years of experience with Palo Alto Networks technologies 1 or more audit or risk-focused certification: CRISC (Certified in Risk and Information Systems Control), CISA (Certified Information Systems Auditor), CISM (Certified Information Security Manager), or CISSP (Certified Information System Security Professional) 2+ years of experience implementing network defenses for global payment networks At this time, Capital One will not sponsor a new applicant for employment authorization for this position. The minimum and maximum full-time annual salaries for this role are listed below, by location. Please note that this salary information is solely for candidates hired to perform work within one of these locations, and refers to the amount Capital One is willing to pay at the time of this posting. Salaries for part-time roles will be prorated based upon the agreed upon number of hours to be regularly worked. McLean, VA: $193,400 - $220,700 for Manager, Cyber Technical New York, NY: $211,000 - $240,800 for Manager, Cyber Technical Plano, TX: $175,800 - $200,700 for Manager, Cyber Technical Richmond, VA: $175,800 - $200,700 for Manager, Cyber Technical Candidates hired to work in other locations will be subject to the pay range associated with that location, and the actual annualized salary amount offered to any candidate at the time of hire will be reflected solely in the candidate's offer letter. This role is also eligible to earn performance based incentive compensation, which may include cash bonus(es) and/or long term incentives (LTI). Incentives could be discretionary or non discretionary depending on the plan. Capital One offers a comprehensive, competitive, and inclusive set of health, financial and other benefits that support your total well-being. Learn more at the Capital One Careers website . Eligibility varies based on full or part-time status, exempt or non-exempt status, and management level. This role is expected to accept applications for a minimum of 5 business days.No agencies please. Capital One is an equal opportunity employer (EOE, including disability/vet) committed to non-discrimination in compliance with applicable federal, state, and local laws. Capital One promotes a drug-free workplace. Capital One will consider for employment qualified applicants with a criminal history in a manner consistent with the requirements of applicable laws regarding criminal background inquiries, including, to the extent applicable, Article 23-A of the New York Correction Law; San Francisco, California Police Code Article 49, Sections ; New York City's Fair Chance Act; Philadelphia's Fair Criminal Records Screening Act; and other applicable federal, state, and local laws and regulations regarding criminal background inquiries. If you have visited our website in search of information on employment opportunities or to apply for a position, and you require an accommodation, please contact Capital One Recruiting at 1- or via email at . All information you provide will be kept confidential and will be used only to the extent required to provide needed reasonable accommodations. For technical support or questions about Capital One's recruiting process, please send an email to Capital One does not provide, endorse nor guarantee and is not liable for third-party products, services, educational tools or other information available through this site. Capital One Financial is made up of several different entities. Please note that any position posted in Canada is for Capital One Canada, any position posted in the United Kingdom is for Capital One Europe and any position posted in the Philippines is for Capital One Philippines Service Corp. (COPSSC).
12/17/2025
Full time
Manager, Network Security, Tech & Data Risk Management Capital One is one of the fastest growing organizations in the world today, powered by our passion for our customers. We are serious about technology, we dream big, and we execute: Capital One moved our entire enterprise to the public cloud over the course of five years. Just as we prioritize driving innovation through technology, we equally prioritize cybersecurity, reliability, software quality, and data management. Technology & Data Risk Management (TDRM) is a small organization that packs a big punch. The 200 professionals in TDRM are trusted experts who oversee 14,000 developers at Capital One. We raise the bar for excellence in cybersecurity, reliability, and tech risk, and data management risk. We shape strategy and decisions, challenge activities to ensure they meet our standards, and perform independent tests of our security and technology risk. For years, the cybersecurity community has debated whether the CISO should report to the CIO or not. In regulated financial services, the answer is: both. The first-line CISO has operational responsibilities and reports to the CIO. The second-line Chief Tech Risk Officer (CTRO) and the Tech & Data Risk Management (TRM) organization have broader responsibilities for cybersecurity but also reliability, software quality, resilience, and the risk of failing to manage our data. The CTRO is independent and oversees the work of the CISO, the CIO/CTO, and the Chief Data Officer. The CTRO reports to the Chief Risk Officer, who reports directly to the CEO. Our business leaders must make technology decisions constantly. TDRM makes sure they have the tech and data risk information they need to make good decisions. Associates within TDRM are highly-skilled information security, cybersecurity, site reliability engineering, technology, data analyst, data scientist, and risk management professionals. They have a wealth of experience and a demonstrated ability to add value with their advice and to deliver high-impact results. Role-specific text This position - Manager, Network Security - is a unique opportunity for candidates with technical cybersecurity experience who have a desire to expand that expertise in a risk management organization. This individual will have the opportunity to leverage their technical subject matter expertise to provide advisory, oversight, and effective challenge to stakeholders within the first line of defense. This role will engage with and build relationships across multiple lines of defense while overseeing network security across Capital One's private and public cloud footprints. Responsibilities: Provide advisory, oversight, and effective challenge to the first line of defense. Provide technical assessments of cybersecurity controls design and effectiveness. Draft assessments for senior management and other stakeholders, to include regulatory agencies and the Board of Directors, as needed. Stay current on emerging cyber threats and potential implications to the firm. Collaborate effectively with colleagues, stakeholders, and leaders across multiple organizations to achieve objectives. Coordinate program-related activities and deliverables to ensure effective collaboration within the team and across stakeholder groups. Proven track record of leading, mentoring, and influencing others. Ability to communicate clearly in written and verbal form. Ability to manage multiple projects while maintaining superior results. Ability to work individually and cross-functionally. Execution oriented and a self-motivator. Basic Qualifications: Bachelor's degree or military experience 3+ years of experience in the financial services industry or highly regulated industry (healthcare, energy, telecommunications) 3+ years of experience implementing network defenses (firewalls, network access control, intrusion detection, intrusion prevention, web application firewalls, web gateways, and proxies) in AWS (Amazon Web Services) or GCP (Google Cloud Platform) 2+ years of experience implementing Zero Trust or Secure Access Service Edge (SASE) in AWS or GCP 1+ certifications for AWS or GCP 2+ years of audit or risk management experience Preferred Qualifications: 2+ years of experience with Palo Alto Networks technologies 1 or more audit or risk-focused certification: CRISC (Certified in Risk and Information Systems Control), CISA (Certified Information Systems Auditor), CISM (Certified Information Security Manager), or CISSP (Certified Information System Security Professional) 2+ years of experience implementing network defenses for global payment networks At this time, Capital One will not sponsor a new applicant for employment authorization for this position. The minimum and maximum full-time annual salaries for this role are listed below, by location. Please note that this salary information is solely for candidates hired to perform work within one of these locations, and refers to the amount Capital One is willing to pay at the time of this posting. Salaries for part-time roles will be prorated based upon the agreed upon number of hours to be regularly worked. McLean, VA: $193,400 - $220,700 for Manager, Cyber Technical New York, NY: $211,000 - $240,800 for Manager, Cyber Technical Plano, TX: $175,800 - $200,700 for Manager, Cyber Technical Richmond, VA: $175,800 - $200,700 for Manager, Cyber Technical Candidates hired to work in other locations will be subject to the pay range associated with that location, and the actual annualized salary amount offered to any candidate at the time of hire will be reflected solely in the candidate's offer letter. This role is also eligible to earn performance based incentive compensation, which may include cash bonus(es) and/or long term incentives (LTI). Incentives could be discretionary or non discretionary depending on the plan. Capital One offers a comprehensive, competitive, and inclusive set of health, financial and other benefits that support your total well-being. Learn more at the Capital One Careers website . Eligibility varies based on full or part-time status, exempt or non-exempt status, and management level. This role is expected to accept applications for a minimum of 5 business days.No agencies please. Capital One is an equal opportunity employer (EOE, including disability/vet) committed to non-discrimination in compliance with applicable federal, state, and local laws. Capital One promotes a drug-free workplace. Capital One will consider for employment qualified applicants with a criminal history in a manner consistent with the requirements of applicable laws regarding criminal background inquiries, including, to the extent applicable, Article 23-A of the New York Correction Law; San Francisco, California Police Code Article 49, Sections ; New York City's Fair Chance Act; Philadelphia's Fair Criminal Records Screening Act; and other applicable federal, state, and local laws and regulations regarding criminal background inquiries. If you have visited our website in search of information on employment opportunities or to apply for a position, and you require an accommodation, please contact Capital One Recruiting at 1- or via email at . All information you provide will be kept confidential and will be used only to the extent required to provide needed reasonable accommodations. For technical support or questions about Capital One's recruiting process, please send an email to Capital One does not provide, endorse nor guarantee and is not liable for third-party products, services, educational tools or other information available through this site. Capital One Financial is made up of several different entities. Please note that any position posted in Canada is for Capital One Canada, any position posted in the United Kingdom is for Capital One Europe and any position posted in the Philippines is for Capital One Philippines Service Corp. (COPSSC).
Manager, Network Security, Tech & Data Risk Management Capital One is one of the fastest growing organizations in the world today, powered by our passion for our customers. We are serious about technology, we dream big, and we execute: Capital One moved our entire enterprise to the public cloud over the course of five years. Just as we prioritize driving innovation through technology, we equally prioritize cybersecurity, reliability, software quality, and data management. Technology & Data Risk Management (TDRM) is a small organization that packs a big punch. The 200 professionals in TDRM are trusted experts who oversee 14,000 developers at Capital One. We raise the bar for excellence in cybersecurity, reliability, and tech risk, and data management risk. We shape strategy and decisions, challenge activities to ensure they meet our standards, and perform independent tests of our security and technology risk. For years, the cybersecurity community has debated whether the CISO should report to the CIO or not. In regulated financial services, the answer is: both. The first-line CISO has operational responsibilities and reports to the CIO. The second-line Chief Tech Risk Officer (CTRO) and the Tech & Data Risk Management (TRM) organization have broader responsibilities for cybersecurity but also reliability, software quality, resilience, and the risk of failing to manage our data. The CTRO is independent and oversees the work of the CISO, the CIO/CTO, and the Chief Data Officer. The CTRO reports to the Chief Risk Officer, who reports directly to the CEO. Our business leaders must make technology decisions constantly. TDRM makes sure they have the tech and data risk information they need to make good decisions. Associates within TDRM are highly-skilled information security, cybersecurity, site reliability engineering, technology, data analyst, data scientist, and risk management professionals. They have a wealth of experience and a demonstrated ability to add value with their advice and to deliver high-impact results. Role-specific text This position - Manager, Network Security - is a unique opportunity for candidates with technical cybersecurity experience who have a desire to expand that expertise in a risk management organization. This individual will have the opportunity to leverage their technical subject matter expertise to provide advisory, oversight, and effective challenge to stakeholders within the first line of defense. This role will engage with and build relationships across multiple lines of defense while overseeing network security across Capital One's private and public cloud footprints. Responsibilities: Provide advisory, oversight, and effective challenge to the first line of defense. Provide technical assessments of cybersecurity controls design and effectiveness. Draft assessments for senior management and other stakeholders, to include regulatory agencies and the Board of Directors, as needed. Stay current on emerging cyber threats and potential implications to the firm. Collaborate effectively with colleagues, stakeholders, and leaders across multiple organizations to achieve objectives. Coordinate program-related activities and deliverables to ensure effective collaboration within the team and across stakeholder groups. Proven track record of leading, mentoring, and influencing others. Ability to communicate clearly in written and verbal form. Ability to manage multiple projects while maintaining superior results. Ability to work individually and cross-functionally. Execution oriented and a self-motivator. Basic Qualifications: Bachelor's degree or military experience 3+ years of experience in the financial services industry or highly regulated industry (healthcare, energy, telecommunications) 3+ years of experience implementing network defenses (firewalls, network access control, intrusion detection, intrusion prevention, web application firewalls, web gateways, and proxies) in AWS (Amazon Web Services) or GCP (Google Cloud Platform) 2+ years of experience implementing Zero Trust or Secure Access Service Edge (SASE) in AWS or GCP 1+ certifications for AWS or GCP 2+ years of audit or risk management experience Preferred Qualifications: 2+ years of experience with Palo Alto Networks technologies 1 or more audit or risk-focused certification: CRISC (Certified in Risk and Information Systems Control), CISA (Certified Information Systems Auditor), CISM (Certified Information Security Manager), or CISSP (Certified Information System Security Professional) 2+ years of experience implementing network defenses for global payment networks At this time, Capital One will not sponsor a new applicant for employment authorization for this position. The minimum and maximum full-time annual salaries for this role are listed below, by location. Please note that this salary information is solely for candidates hired to perform work within one of these locations, and refers to the amount Capital One is willing to pay at the time of this posting. Salaries for part-time roles will be prorated based upon the agreed upon number of hours to be regularly worked. McLean, VA: $193,400 - $220,700 for Manager, Cyber Technical New York, NY: $211,000 - $240,800 for Manager, Cyber Technical Plano, TX: $175,800 - $200,700 for Manager, Cyber Technical Richmond, VA: $175,800 - $200,700 for Manager, Cyber Technical Candidates hired to work in other locations will be subject to the pay range associated with that location, and the actual annualized salary amount offered to any candidate at the time of hire will be reflected solely in the candidate's offer letter. This role is also eligible to earn performance based incentive compensation, which may include cash bonus(es) and/or long term incentives (LTI). Incentives could be discretionary or non discretionary depending on the plan. Capital One offers a comprehensive, competitive, and inclusive set of health, financial and other benefits that support your total well-being. Learn more at the Capital One Careers website . Eligibility varies based on full or part-time status, exempt or non-exempt status, and management level. This role is expected to accept applications for a minimum of 5 business days.No agencies please. Capital One is an equal opportunity employer (EOE, including disability/vet) committed to non-discrimination in compliance with applicable federal, state, and local laws. Capital One promotes a drug-free workplace. Capital One will consider for employment qualified applicants with a criminal history in a manner consistent with the requirements of applicable laws regarding criminal background inquiries, including, to the extent applicable, Article 23-A of the New York Correction Law; San Francisco, California Police Code Article 49, Sections ; New York City's Fair Chance Act; Philadelphia's Fair Criminal Records Screening Act; and other applicable federal, state, and local laws and regulations regarding criminal background inquiries. If you have visited our website in search of information on employment opportunities or to apply for a position, and you require an accommodation, please contact Capital One Recruiting at 1- or via email at . All information you provide will be kept confidential and will be used only to the extent required to provide needed reasonable accommodations. For technical support or questions about Capital One's recruiting process, please send an email to Capital One does not provide, endorse nor guarantee and is not liable for third-party products, services, educational tools or other information available through this site. Capital One Financial is made up of several different entities. Please note that any position posted in Canada is for Capital One Canada, any position posted in the United Kingdom is for Capital One Europe and any position posted in the Philippines is for Capital One Philippines Service Corp. (COPSSC).
12/17/2025
Full time
Manager, Network Security, Tech & Data Risk Management Capital One is one of the fastest growing organizations in the world today, powered by our passion for our customers. We are serious about technology, we dream big, and we execute: Capital One moved our entire enterprise to the public cloud over the course of five years. Just as we prioritize driving innovation through technology, we equally prioritize cybersecurity, reliability, software quality, and data management. Technology & Data Risk Management (TDRM) is a small organization that packs a big punch. The 200 professionals in TDRM are trusted experts who oversee 14,000 developers at Capital One. We raise the bar for excellence in cybersecurity, reliability, and tech risk, and data management risk. We shape strategy and decisions, challenge activities to ensure they meet our standards, and perform independent tests of our security and technology risk. For years, the cybersecurity community has debated whether the CISO should report to the CIO or not. In regulated financial services, the answer is: both. The first-line CISO has operational responsibilities and reports to the CIO. The second-line Chief Tech Risk Officer (CTRO) and the Tech & Data Risk Management (TRM) organization have broader responsibilities for cybersecurity but also reliability, software quality, resilience, and the risk of failing to manage our data. The CTRO is independent and oversees the work of the CISO, the CIO/CTO, and the Chief Data Officer. The CTRO reports to the Chief Risk Officer, who reports directly to the CEO. Our business leaders must make technology decisions constantly. TDRM makes sure they have the tech and data risk information they need to make good decisions. Associates within TDRM are highly-skilled information security, cybersecurity, site reliability engineering, technology, data analyst, data scientist, and risk management professionals. They have a wealth of experience and a demonstrated ability to add value with their advice and to deliver high-impact results. Role-specific text This position - Manager, Network Security - is a unique opportunity for candidates with technical cybersecurity experience who have a desire to expand that expertise in a risk management organization. This individual will have the opportunity to leverage their technical subject matter expertise to provide advisory, oversight, and effective challenge to stakeholders within the first line of defense. This role will engage with and build relationships across multiple lines of defense while overseeing network security across Capital One's private and public cloud footprints. Responsibilities: Provide advisory, oversight, and effective challenge to the first line of defense. Provide technical assessments of cybersecurity controls design and effectiveness. Draft assessments for senior management and other stakeholders, to include regulatory agencies and the Board of Directors, as needed. Stay current on emerging cyber threats and potential implications to the firm. Collaborate effectively with colleagues, stakeholders, and leaders across multiple organizations to achieve objectives. Coordinate program-related activities and deliverables to ensure effective collaboration within the team and across stakeholder groups. Proven track record of leading, mentoring, and influencing others. Ability to communicate clearly in written and verbal form. Ability to manage multiple projects while maintaining superior results. Ability to work individually and cross-functionally. Execution oriented and a self-motivator. Basic Qualifications: Bachelor's degree or military experience 3+ years of experience in the financial services industry or highly regulated industry (healthcare, energy, telecommunications) 3+ years of experience implementing network defenses (firewalls, network access control, intrusion detection, intrusion prevention, web application firewalls, web gateways, and proxies) in AWS (Amazon Web Services) or GCP (Google Cloud Platform) 2+ years of experience implementing Zero Trust or Secure Access Service Edge (SASE) in AWS or GCP 1+ certifications for AWS or GCP 2+ years of audit or risk management experience Preferred Qualifications: 2+ years of experience with Palo Alto Networks technologies 1 or more audit or risk-focused certification: CRISC (Certified in Risk and Information Systems Control), CISA (Certified Information Systems Auditor), CISM (Certified Information Security Manager), or CISSP (Certified Information System Security Professional) 2+ years of experience implementing network defenses for global payment networks At this time, Capital One will not sponsor a new applicant for employment authorization for this position. The minimum and maximum full-time annual salaries for this role are listed below, by location. Please note that this salary information is solely for candidates hired to perform work within one of these locations, and refers to the amount Capital One is willing to pay at the time of this posting. Salaries for part-time roles will be prorated based upon the agreed upon number of hours to be regularly worked. McLean, VA: $193,400 - $220,700 for Manager, Cyber Technical New York, NY: $211,000 - $240,800 for Manager, Cyber Technical Plano, TX: $175,800 - $200,700 for Manager, Cyber Technical Richmond, VA: $175,800 - $200,700 for Manager, Cyber Technical Candidates hired to work in other locations will be subject to the pay range associated with that location, and the actual annualized salary amount offered to any candidate at the time of hire will be reflected solely in the candidate's offer letter. This role is also eligible to earn performance based incentive compensation, which may include cash bonus(es) and/or long term incentives (LTI). Incentives could be discretionary or non discretionary depending on the plan. Capital One offers a comprehensive, competitive, and inclusive set of health, financial and other benefits that support your total well-being. Learn more at the Capital One Careers website . Eligibility varies based on full or part-time status, exempt or non-exempt status, and management level. This role is expected to accept applications for a minimum of 5 business days.No agencies please. Capital One is an equal opportunity employer (EOE, including disability/vet) committed to non-discrimination in compliance with applicable federal, state, and local laws. Capital One promotes a drug-free workplace. Capital One will consider for employment qualified applicants with a criminal history in a manner consistent with the requirements of applicable laws regarding criminal background inquiries, including, to the extent applicable, Article 23-A of the New York Correction Law; San Francisco, California Police Code Article 49, Sections ; New York City's Fair Chance Act; Philadelphia's Fair Criminal Records Screening Act; and other applicable federal, state, and local laws and regulations regarding criminal background inquiries. If you have visited our website in search of information on employment opportunities or to apply for a position, and you require an accommodation, please contact Capital One Recruiting at 1- or via email at . All information you provide will be kept confidential and will be used only to the extent required to provide needed reasonable accommodations. For technical support or questions about Capital One's recruiting process, please send an email to Capital One does not provide, endorse nor guarantee and is not liable for third-party products, services, educational tools or other information available through this site. Capital One Financial is made up of several different entities. Please note that any position posted in Canada is for Capital One Canada, any position posted in the United Kingdom is for Capital One Europe and any position posted in the Philippines is for Capital One Philippines Service Corp. (COPSSC).
Manager, Network Security, Tech & Data Risk Management Capital One is one of the fastest growing organizations in the world today, powered by our passion for our customers. We are serious about technology, we dream big, and we execute: Capital One moved our entire enterprise to the public cloud over the course of five years. Just as we prioritize driving innovation through technology, we equally prioritize cybersecurity, reliability, software quality, and data management. Technology & Data Risk Management (TDRM) is a small organization that packs a big punch. The 200 professionals in TDRM are trusted experts who oversee 14,000 developers at Capital One. We raise the bar for excellence in cybersecurity, reliability, and tech risk, and data management risk. We shape strategy and decisions, challenge activities to ensure they meet our standards, and perform independent tests of our security and technology risk. For years, the cybersecurity community has debated whether the CISO should report to the CIO or not. In regulated financial services, the answer is: both. The first-line CISO has operational responsibilities and reports to the CIO. The second-line Chief Tech Risk Officer (CTRO) and the Tech & Data Risk Management (TRM) organization have broader responsibilities for cybersecurity but also reliability, software quality, resilience, and the risk of failing to manage our data. The CTRO is independent and oversees the work of the CISO, the CIO/CTO, and the Chief Data Officer. The CTRO reports to the Chief Risk Officer, who reports directly to the CEO. Our business leaders must make technology decisions constantly. TDRM makes sure they have the tech and data risk information they need to make good decisions. Associates within TDRM are highly-skilled information security, cybersecurity, site reliability engineering, technology, data analyst, data scientist, and risk management professionals. They have a wealth of experience and a demonstrated ability to add value with their advice and to deliver high-impact results. Role-specific text This position - Manager, Network Security - is a unique opportunity for candidates with technical cybersecurity experience who have a desire to expand that expertise in a risk management organization. This individual will have the opportunity to leverage their technical subject matter expertise to provide advisory, oversight, and effective challenge to stakeholders within the first line of defense. This role will engage with and build relationships across multiple lines of defense while overseeing network security across Capital One's private and public cloud footprints. Responsibilities: Provide advisory, oversight, and effective challenge to the first line of defense. Provide technical assessments of cybersecurity controls design and effectiveness. Draft assessments for senior management and other stakeholders, to include regulatory agencies and the Board of Directors, as needed. Stay current on emerging cyber threats and potential implications to the firm. Collaborate effectively with colleagues, stakeholders, and leaders across multiple organizations to achieve objectives. Coordinate program-related activities and deliverables to ensure effective collaboration within the team and across stakeholder groups. Proven track record of leading, mentoring, and influencing others. Ability to communicate clearly in written and verbal form. Ability to manage multiple projects while maintaining superior results. Ability to work individually and cross-functionally. Execution oriented and a self-motivator. Basic Qualifications: Bachelor's degree or military experience 3+ years of experience in the financial services industry or highly regulated industry (healthcare, energy, telecommunications) 3+ years of experience implementing network defenses (firewalls, network access control, intrusion detection, intrusion prevention, web application firewalls, web gateways, and proxies) in AWS (Amazon Web Services) or GCP (Google Cloud Platform) 2+ years of experience implementing Zero Trust or Secure Access Service Edge (SASE) in AWS or GCP 1+ certifications for AWS or GCP 2+ years of audit or risk management experience Preferred Qualifications: 2+ years of experience with Palo Alto Networks technologies 1 or more audit or risk-focused certification: CRISC (Certified in Risk and Information Systems Control), CISA (Certified Information Systems Auditor), CISM (Certified Information Security Manager), or CISSP (Certified Information System Security Professional) 2+ years of experience implementing network defenses for global payment networks At this time, Capital One will not sponsor a new applicant for employment authorization for this position. The minimum and maximum full-time annual salaries for this role are listed below, by location. Please note that this salary information is solely for candidates hired to perform work within one of these locations, and refers to the amount Capital One is willing to pay at the time of this posting. Salaries for part-time roles will be prorated based upon the agreed upon number of hours to be regularly worked. McLean, VA: $193,400 - $220,700 for Manager, Cyber Technical New York, NY: $211,000 - $240,800 for Manager, Cyber Technical Plano, TX: $175,800 - $200,700 for Manager, Cyber Technical Richmond, VA: $175,800 - $200,700 for Manager, Cyber Technical Candidates hired to work in other locations will be subject to the pay range associated with that location, and the actual annualized salary amount offered to any candidate at the time of hire will be reflected solely in the candidate's offer letter. This role is also eligible to earn performance based incentive compensation, which may include cash bonus(es) and/or long term incentives (LTI). Incentives could be discretionary or non discretionary depending on the plan. Capital One offers a comprehensive, competitive, and inclusive set of health, financial and other benefits that support your total well-being. Learn more at the Capital One Careers website . Eligibility varies based on full or part-time status, exempt or non-exempt status, and management level. This role is expected to accept applications for a minimum of 5 business days.No agencies please. Capital One is an equal opportunity employer (EOE, including disability/vet) committed to non-discrimination in compliance with applicable federal, state, and local laws. Capital One promotes a drug-free workplace. Capital One will consider for employment qualified applicants with a criminal history in a manner consistent with the requirements of applicable laws regarding criminal background inquiries, including, to the extent applicable, Article 23-A of the New York Correction Law; San Francisco, California Police Code Article 49, Sections ; New York City's Fair Chance Act; Philadelphia's Fair Criminal Records Screening Act; and other applicable federal, state, and local laws and regulations regarding criminal background inquiries. If you have visited our website in search of information on employment opportunities or to apply for a position, and you require an accommodation, please contact Capital One Recruiting at 1- or via email at . All information you provide will be kept confidential and will be used only to the extent required to provide needed reasonable accommodations. For technical support or questions about Capital One's recruiting process, please send an email to Capital One does not provide, endorse nor guarantee and is not liable for third-party products, services, educational tools or other information available through this site. Capital One Financial is made up of several different entities. Please note that any position posted in Canada is for Capital One Canada, any position posted in the United Kingdom is for Capital One Europe and any position posted in the Philippines is for Capital One Philippines Service Corp. (COPSSC).
12/17/2025
Full time
Manager, Network Security, Tech & Data Risk Management Capital One is one of the fastest growing organizations in the world today, powered by our passion for our customers. We are serious about technology, we dream big, and we execute: Capital One moved our entire enterprise to the public cloud over the course of five years. Just as we prioritize driving innovation through technology, we equally prioritize cybersecurity, reliability, software quality, and data management. Technology & Data Risk Management (TDRM) is a small organization that packs a big punch. The 200 professionals in TDRM are trusted experts who oversee 14,000 developers at Capital One. We raise the bar for excellence in cybersecurity, reliability, and tech risk, and data management risk. We shape strategy and decisions, challenge activities to ensure they meet our standards, and perform independent tests of our security and technology risk. For years, the cybersecurity community has debated whether the CISO should report to the CIO or not. In regulated financial services, the answer is: both. The first-line CISO has operational responsibilities and reports to the CIO. The second-line Chief Tech Risk Officer (CTRO) and the Tech & Data Risk Management (TRM) organization have broader responsibilities for cybersecurity but also reliability, software quality, resilience, and the risk of failing to manage our data. The CTRO is independent and oversees the work of the CISO, the CIO/CTO, and the Chief Data Officer. The CTRO reports to the Chief Risk Officer, who reports directly to the CEO. Our business leaders must make technology decisions constantly. TDRM makes sure they have the tech and data risk information they need to make good decisions. Associates within TDRM are highly-skilled information security, cybersecurity, site reliability engineering, technology, data analyst, data scientist, and risk management professionals. They have a wealth of experience and a demonstrated ability to add value with their advice and to deliver high-impact results. Role-specific text This position - Manager, Network Security - is a unique opportunity for candidates with technical cybersecurity experience who have a desire to expand that expertise in a risk management organization. This individual will have the opportunity to leverage their technical subject matter expertise to provide advisory, oversight, and effective challenge to stakeholders within the first line of defense. This role will engage with and build relationships across multiple lines of defense while overseeing network security across Capital One's private and public cloud footprints. Responsibilities: Provide advisory, oversight, and effective challenge to the first line of defense. Provide technical assessments of cybersecurity controls design and effectiveness. Draft assessments for senior management and other stakeholders, to include regulatory agencies and the Board of Directors, as needed. Stay current on emerging cyber threats and potential implications to the firm. Collaborate effectively with colleagues, stakeholders, and leaders across multiple organizations to achieve objectives. Coordinate program-related activities and deliverables to ensure effective collaboration within the team and across stakeholder groups. Proven track record of leading, mentoring, and influencing others. Ability to communicate clearly in written and verbal form. Ability to manage multiple projects while maintaining superior results. Ability to work individually and cross-functionally. Execution oriented and a self-motivator. Basic Qualifications: Bachelor's degree or military experience 3+ years of experience in the financial services industry or highly regulated industry (healthcare, energy, telecommunications) 3+ years of experience implementing network defenses (firewalls, network access control, intrusion detection, intrusion prevention, web application firewalls, web gateways, and proxies) in AWS (Amazon Web Services) or GCP (Google Cloud Platform) 2+ years of experience implementing Zero Trust or Secure Access Service Edge (SASE) in AWS or GCP 1+ certifications for AWS or GCP 2+ years of audit or risk management experience Preferred Qualifications: 2+ years of experience with Palo Alto Networks technologies 1 or more audit or risk-focused certification: CRISC (Certified in Risk and Information Systems Control), CISA (Certified Information Systems Auditor), CISM (Certified Information Security Manager), or CISSP (Certified Information System Security Professional) 2+ years of experience implementing network defenses for global payment networks At this time, Capital One will not sponsor a new applicant for employment authorization for this position. The minimum and maximum full-time annual salaries for this role are listed below, by location. Please note that this salary information is solely for candidates hired to perform work within one of these locations, and refers to the amount Capital One is willing to pay at the time of this posting. Salaries for part-time roles will be prorated based upon the agreed upon number of hours to be regularly worked. McLean, VA: $193,400 - $220,700 for Manager, Cyber Technical New York, NY: $211,000 - $240,800 for Manager, Cyber Technical Plano, TX: $175,800 - $200,700 for Manager, Cyber Technical Richmond, VA: $175,800 - $200,700 for Manager, Cyber Technical Candidates hired to work in other locations will be subject to the pay range associated with that location, and the actual annualized salary amount offered to any candidate at the time of hire will be reflected solely in the candidate's offer letter. This role is also eligible to earn performance based incentive compensation, which may include cash bonus(es) and/or long term incentives (LTI). Incentives could be discretionary or non discretionary depending on the plan. Capital One offers a comprehensive, competitive, and inclusive set of health, financial and other benefits that support your total well-being. Learn more at the Capital One Careers website . Eligibility varies based on full or part-time status, exempt or non-exempt status, and management level. This role is expected to accept applications for a minimum of 5 business days.No agencies please. Capital One is an equal opportunity employer (EOE, including disability/vet) committed to non-discrimination in compliance with applicable federal, state, and local laws. Capital One promotes a drug-free workplace. Capital One will consider for employment qualified applicants with a criminal history in a manner consistent with the requirements of applicable laws regarding criminal background inquiries, including, to the extent applicable, Article 23-A of the New York Correction Law; San Francisco, California Police Code Article 49, Sections ; New York City's Fair Chance Act; Philadelphia's Fair Criminal Records Screening Act; and other applicable federal, state, and local laws and regulations regarding criminal background inquiries. If you have visited our website in search of information on employment opportunities or to apply for a position, and you require an accommodation, please contact Capital One Recruiting at 1- or via email at . All information you provide will be kept confidential and will be used only to the extent required to provide needed reasonable accommodations. For technical support or questions about Capital One's recruiting process, please send an email to Capital One does not provide, endorse nor guarantee and is not liable for third-party products, services, educational tools or other information available through this site. Capital One Financial is made up of several different entities. Please note that any position posted in Canada is for Capital One Canada, any position posted in the United Kingdom is for Capital One Europe and any position posted in the Philippines is for Capital One Philippines Service Corp. (COPSSC).
Manager, Network Security, Tech & Data Risk Management Capital One is one of the fastest growing organizations in the world today, powered by our passion for our customers. We are serious about technology, we dream big, and we execute: Capital One moved our entire enterprise to the public cloud over the course of five years. Just as we prioritize driving innovation through technology, we equally prioritize cybersecurity, reliability, software quality, and data management. Technology & Data Risk Management (TDRM) is a small organization that packs a big punch. The 200 professionals in TDRM are trusted experts who oversee 14,000 developers at Capital One. We raise the bar for excellence in cybersecurity, reliability, and tech risk, and data management risk. We shape strategy and decisions, challenge activities to ensure they meet our standards, and perform independent tests of our security and technology risk. For years, the cybersecurity community has debated whether the CISO should report to the CIO or not. In regulated financial services, the answer is: both. The first-line CISO has operational responsibilities and reports to the CIO. The second-line Chief Tech Risk Officer (CTRO) and the Tech & Data Risk Management (TRM) organization have broader responsibilities for cybersecurity but also reliability, software quality, resilience, and the risk of failing to manage our data. The CTRO is independent and oversees the work of the CISO, the CIO/CTO, and the Chief Data Officer. The CTRO reports to the Chief Risk Officer, who reports directly to the CEO. Our business leaders must make technology decisions constantly. TDRM makes sure they have the tech and data risk information they need to make good decisions. Associates within TDRM are highly-skilled information security, cybersecurity, site reliability engineering, technology, data analyst, data scientist, and risk management professionals. They have a wealth of experience and a demonstrated ability to add value with their advice and to deliver high-impact results. Role-specific text This position - Manager, Network Security - is a unique opportunity for candidates with technical cybersecurity experience who have a desire to expand that expertise in a risk management organization. This individual will have the opportunity to leverage their technical subject matter expertise to provide advisory, oversight, and effective challenge to stakeholders within the first line of defense. This role will engage with and build relationships across multiple lines of defense while overseeing network security across Capital One's private and public cloud footprints. Responsibilities: Provide advisory, oversight, and effective challenge to the first line of defense. Provide technical assessments of cybersecurity controls design and effectiveness. Draft assessments for senior management and other stakeholders, to include regulatory agencies and the Board of Directors, as needed. Stay current on emerging cyber threats and potential implications to the firm. Collaborate effectively with colleagues, stakeholders, and leaders across multiple organizations to achieve objectives. Coordinate program-related activities and deliverables to ensure effective collaboration within the team and across stakeholder groups. Proven track record of leading, mentoring, and influencing others. Ability to communicate clearly in written and verbal form. Ability to manage multiple projects while maintaining superior results. Ability to work individually and cross-functionally. Execution oriented and a self-motivator. Basic Qualifications: Bachelor's degree or military experience 3+ years of experience in the financial services industry or highly regulated industry (healthcare, energy, telecommunications) 3+ years of experience implementing network defenses (firewalls, network access control, intrusion detection, intrusion prevention, web application firewalls, web gateways, and proxies) in AWS (Amazon Web Services) or GCP (Google Cloud Platform) 2+ years of experience implementing Zero Trust or Secure Access Service Edge (SASE) in AWS or GCP 1+ certifications for AWS or GCP 2+ years of audit or risk management experience Preferred Qualifications: 2+ years of experience with Palo Alto Networks technologies 1 or more audit or risk-focused certification: CRISC (Certified in Risk and Information Systems Control), CISA (Certified Information Systems Auditor), CISM (Certified Information Security Manager), or CISSP (Certified Information System Security Professional) 2+ years of experience implementing network defenses for global payment networks At this time, Capital One will not sponsor a new applicant for employment authorization for this position. The minimum and maximum full-time annual salaries for this role are listed below, by location. Please note that this salary information is solely for candidates hired to perform work within one of these locations, and refers to the amount Capital One is willing to pay at the time of this posting. Salaries for part-time roles will be prorated based upon the agreed upon number of hours to be regularly worked. McLean, VA: $193,400 - $220,700 for Manager, Cyber Technical New York, NY: $211,000 - $240,800 for Manager, Cyber Technical Plano, TX: $175,800 - $200,700 for Manager, Cyber Technical Richmond, VA: $175,800 - $200,700 for Manager, Cyber Technical Candidates hired to work in other locations will be subject to the pay range associated with that location, and the actual annualized salary amount offered to any candidate at the time of hire will be reflected solely in the candidate's offer letter. This role is also eligible to earn performance based incentive compensation, which may include cash bonus(es) and/or long term incentives (LTI). Incentives could be discretionary or non discretionary depending on the plan. Capital One offers a comprehensive, competitive, and inclusive set of health, financial and other benefits that support your total well-being. Learn more at the Capital One Careers website . Eligibility varies based on full or part-time status, exempt or non-exempt status, and management level. This role is expected to accept applications for a minimum of 5 business days.No agencies please. Capital One is an equal opportunity employer (EOE, including disability/vet) committed to non-discrimination in compliance with applicable federal, state, and local laws. Capital One promotes a drug-free workplace. Capital One will consider for employment qualified applicants with a criminal history in a manner consistent with the requirements of applicable laws regarding criminal background inquiries, including, to the extent applicable, Article 23-A of the New York Correction Law; San Francisco, California Police Code Article 49, Sections ; New York City's Fair Chance Act; Philadelphia's Fair Criminal Records Screening Act; and other applicable federal, state, and local laws and regulations regarding criminal background inquiries. If you have visited our website in search of information on employment opportunities or to apply for a position, and you require an accommodation, please contact Capital One Recruiting at 1- or via email at . All information you provide will be kept confidential and will be used only to the extent required to provide needed reasonable accommodations. For technical support or questions about Capital One's recruiting process, please send an email to Capital One does not provide, endorse nor guarantee and is not liable for third-party products, services, educational tools or other information available through this site. Capital One Financial is made up of several different entities. Please note that any position posted in Canada is for Capital One Canada, any position posted in the United Kingdom is for Capital One Europe and any position posted in the Philippines is for Capital One Philippines Service Corp. (COPSSC).
12/17/2025
Full time
Manager, Network Security, Tech & Data Risk Management Capital One is one of the fastest growing organizations in the world today, powered by our passion for our customers. We are serious about technology, we dream big, and we execute: Capital One moved our entire enterprise to the public cloud over the course of five years. Just as we prioritize driving innovation through technology, we equally prioritize cybersecurity, reliability, software quality, and data management. Technology & Data Risk Management (TDRM) is a small organization that packs a big punch. The 200 professionals in TDRM are trusted experts who oversee 14,000 developers at Capital One. We raise the bar for excellence in cybersecurity, reliability, and tech risk, and data management risk. We shape strategy and decisions, challenge activities to ensure they meet our standards, and perform independent tests of our security and technology risk. For years, the cybersecurity community has debated whether the CISO should report to the CIO or not. In regulated financial services, the answer is: both. The first-line CISO has operational responsibilities and reports to the CIO. The second-line Chief Tech Risk Officer (CTRO) and the Tech & Data Risk Management (TRM) organization have broader responsibilities for cybersecurity but also reliability, software quality, resilience, and the risk of failing to manage our data. The CTRO is independent and oversees the work of the CISO, the CIO/CTO, and the Chief Data Officer. The CTRO reports to the Chief Risk Officer, who reports directly to the CEO. Our business leaders must make technology decisions constantly. TDRM makes sure they have the tech and data risk information they need to make good decisions. Associates within TDRM are highly-skilled information security, cybersecurity, site reliability engineering, technology, data analyst, data scientist, and risk management professionals. They have a wealth of experience and a demonstrated ability to add value with their advice and to deliver high-impact results. Role-specific text This position - Manager, Network Security - is a unique opportunity for candidates with technical cybersecurity experience who have a desire to expand that expertise in a risk management organization. This individual will have the opportunity to leverage their technical subject matter expertise to provide advisory, oversight, and effective challenge to stakeholders within the first line of defense. This role will engage with and build relationships across multiple lines of defense while overseeing network security across Capital One's private and public cloud footprints. Responsibilities: Provide advisory, oversight, and effective challenge to the first line of defense. Provide technical assessments of cybersecurity controls design and effectiveness. Draft assessments for senior management and other stakeholders, to include regulatory agencies and the Board of Directors, as needed. Stay current on emerging cyber threats and potential implications to the firm. Collaborate effectively with colleagues, stakeholders, and leaders across multiple organizations to achieve objectives. Coordinate program-related activities and deliverables to ensure effective collaboration within the team and across stakeholder groups. Proven track record of leading, mentoring, and influencing others. Ability to communicate clearly in written and verbal form. Ability to manage multiple projects while maintaining superior results. Ability to work individually and cross-functionally. Execution oriented and a self-motivator. Basic Qualifications: Bachelor's degree or military experience 3+ years of experience in the financial services industry or highly regulated industry (healthcare, energy, telecommunications) 3+ years of experience implementing network defenses (firewalls, network access control, intrusion detection, intrusion prevention, web application firewalls, web gateways, and proxies) in AWS (Amazon Web Services) or GCP (Google Cloud Platform) 2+ years of experience implementing Zero Trust or Secure Access Service Edge (SASE) in AWS or GCP 1+ certifications for AWS or GCP 2+ years of audit or risk management experience Preferred Qualifications: 2+ years of experience with Palo Alto Networks technologies 1 or more audit or risk-focused certification: CRISC (Certified in Risk and Information Systems Control), CISA (Certified Information Systems Auditor), CISM (Certified Information Security Manager), or CISSP (Certified Information System Security Professional) 2+ years of experience implementing network defenses for global payment networks At this time, Capital One will not sponsor a new applicant for employment authorization for this position. The minimum and maximum full-time annual salaries for this role are listed below, by location. Please note that this salary information is solely for candidates hired to perform work within one of these locations, and refers to the amount Capital One is willing to pay at the time of this posting. Salaries for part-time roles will be prorated based upon the agreed upon number of hours to be regularly worked. McLean, VA: $193,400 - $220,700 for Manager, Cyber Technical New York, NY: $211,000 - $240,800 for Manager, Cyber Technical Plano, TX: $175,800 - $200,700 for Manager, Cyber Technical Richmond, VA: $175,800 - $200,700 for Manager, Cyber Technical Candidates hired to work in other locations will be subject to the pay range associated with that location, and the actual annualized salary amount offered to any candidate at the time of hire will be reflected solely in the candidate's offer letter. This role is also eligible to earn performance based incentive compensation, which may include cash bonus(es) and/or long term incentives (LTI). Incentives could be discretionary or non discretionary depending on the plan. Capital One offers a comprehensive, competitive, and inclusive set of health, financial and other benefits that support your total well-being. Learn more at the Capital One Careers website . Eligibility varies based on full or part-time status, exempt or non-exempt status, and management level. This role is expected to accept applications for a minimum of 5 business days.No agencies please. Capital One is an equal opportunity employer (EOE, including disability/vet) committed to non-discrimination in compliance with applicable federal, state, and local laws. Capital One promotes a drug-free workplace. Capital One will consider for employment qualified applicants with a criminal history in a manner consistent with the requirements of applicable laws regarding criminal background inquiries, including, to the extent applicable, Article 23-A of the New York Correction Law; San Francisco, California Police Code Article 49, Sections ; New York City's Fair Chance Act; Philadelphia's Fair Criminal Records Screening Act; and other applicable federal, state, and local laws and regulations regarding criminal background inquiries. If you have visited our website in search of information on employment opportunities or to apply for a position, and you require an accommodation, please contact Capital One Recruiting at 1- or via email at . All information you provide will be kept confidential and will be used only to the extent required to provide needed reasonable accommodations. For technical support or questions about Capital One's recruiting process, please send an email to Capital One does not provide, endorse nor guarantee and is not liable for third-party products, services, educational tools or other information available through this site. Capital One Financial is made up of several different entities. Please note that any position posted in Canada is for Capital One Canada, any position posted in the United Kingdom is for Capital One Europe and any position posted in the Philippines is for Capital One Philippines Service Corp. (COPSSC).
Manager, Network Security, Tech & Data Risk Management Capital One is one of the fastest growing organizations in the world today, powered by our passion for our customers. We are serious about technology, we dream big, and we execute: Capital One moved our entire enterprise to the public cloud over the course of five years. Just as we prioritize driving innovation through technology, we equally prioritize cybersecurity, reliability, software quality, and data management. Technology & Data Risk Management (TDRM) is a small organization that packs a big punch. The 200 professionals in TDRM are trusted experts who oversee 14,000 developers at Capital One. We raise the bar for excellence in cybersecurity, reliability, and tech risk, and data management risk. We shape strategy and decisions, challenge activities to ensure they meet our standards, and perform independent tests of our security and technology risk. For years, the cybersecurity community has debated whether the CISO should report to the CIO or not. In regulated financial services, the answer is: both. The first-line CISO has operational responsibilities and reports to the CIO. The second-line Chief Tech Risk Officer (CTRO) and the Tech & Data Risk Management (TRM) organization have broader responsibilities for cybersecurity but also reliability, software quality, resilience, and the risk of failing to manage our data. The CTRO is independent and oversees the work of the CISO, the CIO/CTO, and the Chief Data Officer. The CTRO reports to the Chief Risk Officer, who reports directly to the CEO. Our business leaders must make technology decisions constantly. TDRM makes sure they have the tech and data risk information they need to make good decisions. Associates within TDRM are highly-skilled information security, cybersecurity, site reliability engineering, technology, data analyst, data scientist, and risk management professionals. They have a wealth of experience and a demonstrated ability to add value with their advice and to deliver high-impact results. Role-specific text This position - Manager, Network Security - is a unique opportunity for candidates with technical cybersecurity experience who have a desire to expand that expertise in a risk management organization. This individual will have the opportunity to leverage their technical subject matter expertise to provide advisory, oversight, and effective challenge to stakeholders within the first line of defense. This role will engage with and build relationships across multiple lines of defense while overseeing network security across Capital One's private and public cloud footprints. Responsibilities: Provide advisory, oversight, and effective challenge to the first line of defense. Provide technical assessments of cybersecurity controls design and effectiveness. Draft assessments for senior management and other stakeholders, to include regulatory agencies and the Board of Directors, as needed. Stay current on emerging cyber threats and potential implications to the firm. Collaborate effectively with colleagues, stakeholders, and leaders across multiple organizations to achieve objectives. Coordinate program-related activities and deliverables to ensure effective collaboration within the team and across stakeholder groups. Proven track record of leading, mentoring, and influencing others. Ability to communicate clearly in written and verbal form. Ability to manage multiple projects while maintaining superior results. Ability to work individually and cross-functionally. Execution oriented and a self-motivator. Basic Qualifications: Bachelor's degree or military experience 3+ years of experience in the financial services industry or highly regulated industry (healthcare, energy, telecommunications) 3+ years of experience implementing network defenses (firewalls, network access control, intrusion detection, intrusion prevention, web application firewalls, web gateways, and proxies) in AWS (Amazon Web Services) or GCP (Google Cloud Platform) 2+ years of experience implementing Zero Trust or Secure Access Service Edge (SASE) in AWS or GCP 1+ certifications for AWS or GCP 2+ years of audit or risk management experience Preferred Qualifications: 2+ years of experience with Palo Alto Networks technologies 1 or more audit or risk-focused certification: CRISC (Certified in Risk and Information Systems Control), CISA (Certified Information Systems Auditor), CISM (Certified Information Security Manager), or CISSP (Certified Information System Security Professional) 2+ years of experience implementing network defenses for global payment networks At this time, Capital One will not sponsor a new applicant for employment authorization for this position. The minimum and maximum full-time annual salaries for this role are listed below, by location. Please note that this salary information is solely for candidates hired to perform work within one of these locations, and refers to the amount Capital One is willing to pay at the time of this posting. Salaries for part-time roles will be prorated based upon the agreed upon number of hours to be regularly worked. McLean, VA: $193,400 - $220,700 for Manager, Cyber Technical New York, NY: $211,000 - $240,800 for Manager, Cyber Technical Plano, TX: $175,800 - $200,700 for Manager, Cyber Technical Richmond, VA: $175,800 - $200,700 for Manager, Cyber Technical Candidates hired to work in other locations will be subject to the pay range associated with that location, and the actual annualized salary amount offered to any candidate at the time of hire will be reflected solely in the candidate's offer letter. This role is also eligible to earn performance based incentive compensation, which may include cash bonus(es) and/or long term incentives (LTI). Incentives could be discretionary or non discretionary depending on the plan. Capital One offers a comprehensive, competitive, and inclusive set of health, financial and other benefits that support your total well-being. Learn more at the Capital One Careers website . Eligibility varies based on full or part-time status, exempt or non-exempt status, and management level. This role is expected to accept applications for a minimum of 5 business days.No agencies please. Capital One is an equal opportunity employer (EOE, including disability/vet) committed to non-discrimination in compliance with applicable federal, state, and local laws. Capital One promotes a drug-free workplace. Capital One will consider for employment qualified applicants with a criminal history in a manner consistent with the requirements of applicable laws regarding criminal background inquiries, including, to the extent applicable, Article 23-A of the New York Correction Law; San Francisco, California Police Code Article 49, Sections ; New York City's Fair Chance Act; Philadelphia's Fair Criminal Records Screening Act; and other applicable federal, state, and local laws and regulations regarding criminal background inquiries. If you have visited our website in search of information on employment opportunities or to apply for a position, and you require an accommodation, please contact Capital One Recruiting at 1- or via email at . All information you provide will be kept confidential and will be used only to the extent required to provide needed reasonable accommodations. For technical support or questions about Capital One's recruiting process, please send an email to Capital One does not provide, endorse nor guarantee and is not liable for third-party products, services, educational tools or other information available through this site. Capital One Financial is made up of several different entities. Please note that any position posted in Canada is for Capital One Canada, any position posted in the United Kingdom is for Capital One Europe and any position posted in the Philippines is for Capital One Philippines Service Corp. (COPSSC).
12/17/2025
Full time
Manager, Network Security, Tech & Data Risk Management Capital One is one of the fastest growing organizations in the world today, powered by our passion for our customers. We are serious about technology, we dream big, and we execute: Capital One moved our entire enterprise to the public cloud over the course of five years. Just as we prioritize driving innovation through technology, we equally prioritize cybersecurity, reliability, software quality, and data management. Technology & Data Risk Management (TDRM) is a small organization that packs a big punch. The 200 professionals in TDRM are trusted experts who oversee 14,000 developers at Capital One. We raise the bar for excellence in cybersecurity, reliability, and tech risk, and data management risk. We shape strategy and decisions, challenge activities to ensure they meet our standards, and perform independent tests of our security and technology risk. For years, the cybersecurity community has debated whether the CISO should report to the CIO or not. In regulated financial services, the answer is: both. The first-line CISO has operational responsibilities and reports to the CIO. The second-line Chief Tech Risk Officer (CTRO) and the Tech & Data Risk Management (TRM) organization have broader responsibilities for cybersecurity but also reliability, software quality, resilience, and the risk of failing to manage our data. The CTRO is independent and oversees the work of the CISO, the CIO/CTO, and the Chief Data Officer. The CTRO reports to the Chief Risk Officer, who reports directly to the CEO. Our business leaders must make technology decisions constantly. TDRM makes sure they have the tech and data risk information they need to make good decisions. Associates within TDRM are highly-skilled information security, cybersecurity, site reliability engineering, technology, data analyst, data scientist, and risk management professionals. They have a wealth of experience and a demonstrated ability to add value with their advice and to deliver high-impact results. Role-specific text This position - Manager, Network Security - is a unique opportunity for candidates with technical cybersecurity experience who have a desire to expand that expertise in a risk management organization. This individual will have the opportunity to leverage their technical subject matter expertise to provide advisory, oversight, and effective challenge to stakeholders within the first line of defense. This role will engage with and build relationships across multiple lines of defense while overseeing network security across Capital One's private and public cloud footprints. Responsibilities: Provide advisory, oversight, and effective challenge to the first line of defense. Provide technical assessments of cybersecurity controls design and effectiveness. Draft assessments for senior management and other stakeholders, to include regulatory agencies and the Board of Directors, as needed. Stay current on emerging cyber threats and potential implications to the firm. Collaborate effectively with colleagues, stakeholders, and leaders across multiple organizations to achieve objectives. Coordinate program-related activities and deliverables to ensure effective collaboration within the team and across stakeholder groups. Proven track record of leading, mentoring, and influencing others. Ability to communicate clearly in written and verbal form. Ability to manage multiple projects while maintaining superior results. Ability to work individually and cross-functionally. Execution oriented and a self-motivator. Basic Qualifications: Bachelor's degree or military experience 3+ years of experience in the financial services industry or highly regulated industry (healthcare, energy, telecommunications) 3+ years of experience implementing network defenses (firewalls, network access control, intrusion detection, intrusion prevention, web application firewalls, web gateways, and proxies) in AWS (Amazon Web Services) or GCP (Google Cloud Platform) 2+ years of experience implementing Zero Trust or Secure Access Service Edge (SASE) in AWS or GCP 1+ certifications for AWS or GCP 2+ years of audit or risk management experience Preferred Qualifications: 2+ years of experience with Palo Alto Networks technologies 1 or more audit or risk-focused certification: CRISC (Certified in Risk and Information Systems Control), CISA (Certified Information Systems Auditor), CISM (Certified Information Security Manager), or CISSP (Certified Information System Security Professional) 2+ years of experience implementing network defenses for global payment networks At this time, Capital One will not sponsor a new applicant for employment authorization for this position. The minimum and maximum full-time annual salaries for this role are listed below, by location. Please note that this salary information is solely for candidates hired to perform work within one of these locations, and refers to the amount Capital One is willing to pay at the time of this posting. Salaries for part-time roles will be prorated based upon the agreed upon number of hours to be regularly worked. McLean, VA: $193,400 - $220,700 for Manager, Cyber Technical New York, NY: $211,000 - $240,800 for Manager, Cyber Technical Plano, TX: $175,800 - $200,700 for Manager, Cyber Technical Richmond, VA: $175,800 - $200,700 for Manager, Cyber Technical Candidates hired to work in other locations will be subject to the pay range associated with that location, and the actual annualized salary amount offered to any candidate at the time of hire will be reflected solely in the candidate's offer letter. This role is also eligible to earn performance based incentive compensation, which may include cash bonus(es) and/or long term incentives (LTI). Incentives could be discretionary or non discretionary depending on the plan. Capital One offers a comprehensive, competitive, and inclusive set of health, financial and other benefits that support your total well-being. Learn more at the Capital One Careers website . Eligibility varies based on full or part-time status, exempt or non-exempt status, and management level. This role is expected to accept applications for a minimum of 5 business days.No agencies please. Capital One is an equal opportunity employer (EOE, including disability/vet) committed to non-discrimination in compliance with applicable federal, state, and local laws. Capital One promotes a drug-free workplace. Capital One will consider for employment qualified applicants with a criminal history in a manner consistent with the requirements of applicable laws regarding criminal background inquiries, including, to the extent applicable, Article 23-A of the New York Correction Law; San Francisco, California Police Code Article 49, Sections ; New York City's Fair Chance Act; Philadelphia's Fair Criminal Records Screening Act; and other applicable federal, state, and local laws and regulations regarding criminal background inquiries. If you have visited our website in search of information on employment opportunities or to apply for a position, and you require an accommodation, please contact Capital One Recruiting at 1- or via email at . All information you provide will be kept confidential and will be used only to the extent required to provide needed reasonable accommodations. For technical support or questions about Capital One's recruiting process, please send an email to Capital One does not provide, endorse nor guarantee and is not liable for third-party products, services, educational tools or other information available through this site. Capital One Financial is made up of several different entities. Please note that any position posted in Canada is for Capital One Canada, any position posted in the United Kingdom is for Capital One Europe and any position posted in the Philippines is for Capital One Philippines Service Corp. (COPSSC).
Manager, Network Security, Tech & Data Risk Management Capital One is one of the fastest growing organizations in the world today, powered by our passion for our customers. We are serious about technology, we dream big, and we execute: Capital One moved our entire enterprise to the public cloud over the course of five years. Just as we prioritize driving innovation through technology, we equally prioritize cybersecurity, reliability, software quality, and data management. Technology & Data Risk Management (TDRM) is a small organization that packs a big punch. The 200 professionals in TDRM are trusted experts who oversee 14,000 developers at Capital One. We raise the bar for excellence in cybersecurity, reliability, and tech risk, and data management risk. We shape strategy and decisions, challenge activities to ensure they meet our standards, and perform independent tests of our security and technology risk. For years, the cybersecurity community has debated whether the CISO should report to the CIO or not. In regulated financial services, the answer is: both. The first-line CISO has operational responsibilities and reports to the CIO. The second-line Chief Tech Risk Officer (CTRO) and the Tech & Data Risk Management (TRM) organization have broader responsibilities for cybersecurity but also reliability, software quality, resilience, and the risk of failing to manage our data. The CTRO is independent and oversees the work of the CISO, the CIO/CTO, and the Chief Data Officer. The CTRO reports to the Chief Risk Officer, who reports directly to the CEO. Our business leaders must make technology decisions constantly. TDRM makes sure they have the tech and data risk information they need to make good decisions. Associates within TDRM are highly-skilled information security, cybersecurity, site reliability engineering, technology, data analyst, data scientist, and risk management professionals. They have a wealth of experience and a demonstrated ability to add value with their advice and to deliver high-impact results. Role-specific text This position - Manager, Network Security - is a unique opportunity for candidates with technical cybersecurity experience who have a desire to expand that expertise in a risk management organization. This individual will have the opportunity to leverage their technical subject matter expertise to provide advisory, oversight, and effective challenge to stakeholders within the first line of defense. This role will engage with and build relationships across multiple lines of defense while overseeing network security across Capital One's private and public cloud footprints. Responsibilities: Provide advisory, oversight, and effective challenge to the first line of defense. Provide technical assessments of cybersecurity controls design and effectiveness. Draft assessments for senior management and other stakeholders, to include regulatory agencies and the Board of Directors, as needed. Stay current on emerging cyber threats and potential implications to the firm. Collaborate effectively with colleagues, stakeholders, and leaders across multiple organizations to achieve objectives. Coordinate program-related activities and deliverables to ensure effective collaboration within the team and across stakeholder groups. Proven track record of leading, mentoring, and influencing others. Ability to communicate clearly in written and verbal form. Ability to manage multiple projects while maintaining superior results. Ability to work individually and cross-functionally. Execution oriented and a self-motivator. Basic Qualifications: Bachelor's degree or military experience 3+ years of experience in the financial services industry or highly regulated industry (healthcare, energy, telecommunications) 3+ years of experience implementing network defenses (firewalls, network access control, intrusion detection, intrusion prevention, web application firewalls, web gateways, and proxies) in AWS (Amazon Web Services) or GCP (Google Cloud Platform) 2+ years of experience implementing Zero Trust or Secure Access Service Edge (SASE) in AWS or GCP 1+ certifications for AWS or GCP 2+ years of audit or risk management experience Preferred Qualifications: 2+ years of experience with Palo Alto Networks technologies 1 or more audit or risk-focused certification: CRISC (Certified in Risk and Information Systems Control), CISA (Certified Information Systems Auditor), CISM (Certified Information Security Manager), or CISSP (Certified Information System Security Professional) 2+ years of experience implementing network defenses for global payment networks At this time, Capital One will not sponsor a new applicant for employment authorization for this position. The minimum and maximum full-time annual salaries for this role are listed below, by location. Please note that this salary information is solely for candidates hired to perform work within one of these locations, and refers to the amount Capital One is willing to pay at the time of this posting. Salaries for part-time roles will be prorated based upon the agreed upon number of hours to be regularly worked. McLean, VA: $193,400 - $220,700 for Manager, Cyber Technical New York, NY: $211,000 - $240,800 for Manager, Cyber Technical Plano, TX: $175,800 - $200,700 for Manager, Cyber Technical Richmond, VA: $175,800 - $200,700 for Manager, Cyber Technical Candidates hired to work in other locations will be subject to the pay range associated with that location, and the actual annualized salary amount offered to any candidate at the time of hire will be reflected solely in the candidate's offer letter. This role is also eligible to earn performance based incentive compensation, which may include cash bonus(es) and/or long term incentives (LTI). Incentives could be discretionary or non discretionary depending on the plan. Capital One offers a comprehensive, competitive, and inclusive set of health, financial and other benefits that support your total well-being. Learn more at the Capital One Careers website . Eligibility varies based on full or part-time status, exempt or non-exempt status, and management level. This role is expected to accept applications for a minimum of 5 business days.No agencies please. Capital One is an equal opportunity employer (EOE, including disability/vet) committed to non-discrimination in compliance with applicable federal, state, and local laws. Capital One promotes a drug-free workplace. Capital One will consider for employment qualified applicants with a criminal history in a manner consistent with the requirements of applicable laws regarding criminal background inquiries, including, to the extent applicable, Article 23-A of the New York Correction Law; San Francisco, California Police Code Article 49, Sections ; New York City's Fair Chance Act; Philadelphia's Fair Criminal Records Screening Act; and other applicable federal, state, and local laws and regulations regarding criminal background inquiries. If you have visited our website in search of information on employment opportunities or to apply for a position, and you require an accommodation, please contact Capital One Recruiting at 1- or via email at . All information you provide will be kept confidential and will be used only to the extent required to provide needed reasonable accommodations. For technical support or questions about Capital One's recruiting process, please send an email to Capital One does not provide, endorse nor guarantee and is not liable for third-party products, services, educational tools or other information available through this site. Capital One Financial is made up of several different entities. Please note that any position posted in Canada is for Capital One Canada, any position posted in the United Kingdom is for Capital One Europe and any position posted in the Philippines is for Capital One Philippines Service Corp. (COPSSC).
12/17/2025
Full time
Manager, Network Security, Tech & Data Risk Management Capital One is one of the fastest growing organizations in the world today, powered by our passion for our customers. We are serious about technology, we dream big, and we execute: Capital One moved our entire enterprise to the public cloud over the course of five years. Just as we prioritize driving innovation through technology, we equally prioritize cybersecurity, reliability, software quality, and data management. Technology & Data Risk Management (TDRM) is a small organization that packs a big punch. The 200 professionals in TDRM are trusted experts who oversee 14,000 developers at Capital One. We raise the bar for excellence in cybersecurity, reliability, and tech risk, and data management risk. We shape strategy and decisions, challenge activities to ensure they meet our standards, and perform independent tests of our security and technology risk. For years, the cybersecurity community has debated whether the CISO should report to the CIO or not. In regulated financial services, the answer is: both. The first-line CISO has operational responsibilities and reports to the CIO. The second-line Chief Tech Risk Officer (CTRO) and the Tech & Data Risk Management (TRM) organization have broader responsibilities for cybersecurity but also reliability, software quality, resilience, and the risk of failing to manage our data. The CTRO is independent and oversees the work of the CISO, the CIO/CTO, and the Chief Data Officer. The CTRO reports to the Chief Risk Officer, who reports directly to the CEO. Our business leaders must make technology decisions constantly. TDRM makes sure they have the tech and data risk information they need to make good decisions. Associates within TDRM are highly-skilled information security, cybersecurity, site reliability engineering, technology, data analyst, data scientist, and risk management professionals. They have a wealth of experience and a demonstrated ability to add value with their advice and to deliver high-impact results. Role-specific text This position - Manager, Network Security - is a unique opportunity for candidates with technical cybersecurity experience who have a desire to expand that expertise in a risk management organization. This individual will have the opportunity to leverage their technical subject matter expertise to provide advisory, oversight, and effective challenge to stakeholders within the first line of defense. This role will engage with and build relationships across multiple lines of defense while overseeing network security across Capital One's private and public cloud footprints. Responsibilities: Provide advisory, oversight, and effective challenge to the first line of defense. Provide technical assessments of cybersecurity controls design and effectiveness. Draft assessments for senior management and other stakeholders, to include regulatory agencies and the Board of Directors, as needed. Stay current on emerging cyber threats and potential implications to the firm. Collaborate effectively with colleagues, stakeholders, and leaders across multiple organizations to achieve objectives. Coordinate program-related activities and deliverables to ensure effective collaboration within the team and across stakeholder groups. Proven track record of leading, mentoring, and influencing others. Ability to communicate clearly in written and verbal form. Ability to manage multiple projects while maintaining superior results. Ability to work individually and cross-functionally. Execution oriented and a self-motivator. Basic Qualifications: Bachelor's degree or military experience 3+ years of experience in the financial services industry or highly regulated industry (healthcare, energy, telecommunications) 3+ years of experience implementing network defenses (firewalls, network access control, intrusion detection, intrusion prevention, web application firewalls, web gateways, and proxies) in AWS (Amazon Web Services) or GCP (Google Cloud Platform) 2+ years of experience implementing Zero Trust or Secure Access Service Edge (SASE) in AWS or GCP 1+ certifications for AWS or GCP 2+ years of audit or risk management experience Preferred Qualifications: 2+ years of experience with Palo Alto Networks technologies 1 or more audit or risk-focused certification: CRISC (Certified in Risk and Information Systems Control), CISA (Certified Information Systems Auditor), CISM (Certified Information Security Manager), or CISSP (Certified Information System Security Professional) 2+ years of experience implementing network defenses for global payment networks At this time, Capital One will not sponsor a new applicant for employment authorization for this position. The minimum and maximum full-time annual salaries for this role are listed below, by location. Please note that this salary information is solely for candidates hired to perform work within one of these locations, and refers to the amount Capital One is willing to pay at the time of this posting. Salaries for part-time roles will be prorated based upon the agreed upon number of hours to be regularly worked. McLean, VA: $193,400 - $220,700 for Manager, Cyber Technical New York, NY: $211,000 - $240,800 for Manager, Cyber Technical Plano, TX: $175,800 - $200,700 for Manager, Cyber Technical Richmond, VA: $175,800 - $200,700 for Manager, Cyber Technical Candidates hired to work in other locations will be subject to the pay range associated with that location, and the actual annualized salary amount offered to any candidate at the time of hire will be reflected solely in the candidate's offer letter. This role is also eligible to earn performance based incentive compensation, which may include cash bonus(es) and/or long term incentives (LTI). Incentives could be discretionary or non discretionary depending on the plan. Capital One offers a comprehensive, competitive, and inclusive set of health, financial and other benefits that support your total well-being. Learn more at the Capital One Careers website . Eligibility varies based on full or part-time status, exempt or non-exempt status, and management level. This role is expected to accept applications for a minimum of 5 business days.No agencies please. Capital One is an equal opportunity employer (EOE, including disability/vet) committed to non-discrimination in compliance with applicable federal, state, and local laws. Capital One promotes a drug-free workplace. Capital One will consider for employment qualified applicants with a criminal history in a manner consistent with the requirements of applicable laws regarding criminal background inquiries, including, to the extent applicable, Article 23-A of the New York Correction Law; San Francisco, California Police Code Article 49, Sections ; New York City's Fair Chance Act; Philadelphia's Fair Criminal Records Screening Act; and other applicable federal, state, and local laws and regulations regarding criminal background inquiries. If you have visited our website in search of information on employment opportunities or to apply for a position, and you require an accommodation, please contact Capital One Recruiting at 1- or via email at . All information you provide will be kept confidential and will be used only to the extent required to provide needed reasonable accommodations. For technical support or questions about Capital One's recruiting process, please send an email to Capital One does not provide, endorse nor guarantee and is not liable for third-party products, services, educational tools or other information available through this site. Capital One Financial is made up of several different entities. Please note that any position posted in Canada is for Capital One Canada, any position posted in the United Kingdom is for Capital One Europe and any position posted in the Philippines is for Capital One Philippines Service Corp. (COPSSC).
Manager, Network Security, Tech & Data Risk Management Capital One is one of the fastest growing organizations in the world today, powered by our passion for our customers. We are serious about technology, we dream big, and we execute: Capital One moved our entire enterprise to the public cloud over the course of five years. Just as we prioritize driving innovation through technology, we equally prioritize cybersecurity, reliability, software quality, and data management. Technology & Data Risk Management (TDRM) is a small organization that packs a big punch. The 200 professionals in TDRM are trusted experts who oversee 14,000 developers at Capital One. We raise the bar for excellence in cybersecurity, reliability, and tech risk, and data management risk. We shape strategy and decisions, challenge activities to ensure they meet our standards, and perform independent tests of our security and technology risk. For years, the cybersecurity community has debated whether the CISO should report to the CIO or not. In regulated financial services, the answer is: both. The first-line CISO has operational responsibilities and reports to the CIO. The second-line Chief Tech Risk Officer (CTRO) and the Tech & Data Risk Management (TRM) organization have broader responsibilities for cybersecurity but also reliability, software quality, resilience, and the risk of failing to manage our data. The CTRO is independent and oversees the work of the CISO, the CIO/CTO, and the Chief Data Officer. The CTRO reports to the Chief Risk Officer, who reports directly to the CEO. Our business leaders must make technology decisions constantly. TDRM makes sure they have the tech and data risk information they need to make good decisions. Associates within TDRM are highly-skilled information security, cybersecurity, site reliability engineering, technology, data analyst, data scientist, and risk management professionals. They have a wealth of experience and a demonstrated ability to add value with their advice and to deliver high-impact results. Role-specific text This position - Manager, Network Security - is a unique opportunity for candidates with technical cybersecurity experience who have a desire to expand that expertise in a risk management organization. This individual will have the opportunity to leverage their technical subject matter expertise to provide advisory, oversight, and effective challenge to stakeholders within the first line of defense. This role will engage with and build relationships across multiple lines of defense while overseeing network security across Capital One's private and public cloud footprints. Responsibilities: Provide advisory, oversight, and effective challenge to the first line of defense. Provide technical assessments of cybersecurity controls design and effectiveness. Draft assessments for senior management and other stakeholders, to include regulatory agencies and the Board of Directors, as needed. Stay current on emerging cyber threats and potential implications to the firm. Collaborate effectively with colleagues, stakeholders, and leaders across multiple organizations to achieve objectives. Coordinate program-related activities and deliverables to ensure effective collaboration within the team and across stakeholder groups. Proven track record of leading, mentoring, and influencing others. Ability to communicate clearly in written and verbal form. Ability to manage multiple projects while maintaining superior results. Ability to work individually and cross-functionally. Execution oriented and a self-motivator. Basic Qualifications: Bachelor's degree or military experience 3+ years of experience in the financial services industry or highly regulated industry (healthcare, energy, telecommunications) 3+ years of experience implementing network defenses (firewalls, network access control, intrusion detection, intrusion prevention, web application firewalls, web gateways, and proxies) in AWS (Amazon Web Services) or GCP (Google Cloud Platform) 2+ years of experience implementing Zero Trust or Secure Access Service Edge (SASE) in AWS or GCP 1+ certifications for AWS or GCP 2+ years of audit or risk management experience Preferred Qualifications: 2+ years of experience with Palo Alto Networks technologies 1 or more audit or risk-focused certification: CRISC (Certified in Risk and Information Systems Control), CISA (Certified Information Systems Auditor), CISM (Certified Information Security Manager), or CISSP (Certified Information System Security Professional) 2+ years of experience implementing network defenses for global payment networks At this time, Capital One will not sponsor a new applicant for employment authorization for this position. The minimum and maximum full-time annual salaries for this role are listed below, by location. Please note that this salary information is solely for candidates hired to perform work within one of these locations, and refers to the amount Capital One is willing to pay at the time of this posting. Salaries for part-time roles will be prorated based upon the agreed upon number of hours to be regularly worked. McLean, VA: $193,400 - $220,700 for Manager, Cyber Technical New York, NY: $211,000 - $240,800 for Manager, Cyber Technical Plano, TX: $175,800 - $200,700 for Manager, Cyber Technical Richmond, VA: $175,800 - $200,700 for Manager, Cyber Technical Candidates hired to work in other locations will be subject to the pay range associated with that location, and the actual annualized salary amount offered to any candidate at the time of hire will be reflected solely in the candidate's offer letter. This role is also eligible to earn performance based incentive compensation, which may include cash bonus(es) and/or long term incentives (LTI). Incentives could be discretionary or non discretionary depending on the plan. Capital One offers a comprehensive, competitive, and inclusive set of health, financial and other benefits that support your total well-being. Learn more at the Capital One Careers website . Eligibility varies based on full or part-time status, exempt or non-exempt status, and management level. This role is expected to accept applications for a minimum of 5 business days.No agencies please. Capital One is an equal opportunity employer (EOE, including disability/vet) committed to non-discrimination in compliance with applicable federal, state, and local laws. Capital One promotes a drug-free workplace. Capital One will consider for employment qualified applicants with a criminal history in a manner consistent with the requirements of applicable laws regarding criminal background inquiries, including, to the extent applicable, Article 23-A of the New York Correction Law; San Francisco, California Police Code Article 49, Sections ; New York City's Fair Chance Act; Philadelphia's Fair Criminal Records Screening Act; and other applicable federal, state, and local laws and regulations regarding criminal background inquiries. If you have visited our website in search of information on employment opportunities or to apply for a position, and you require an accommodation, please contact Capital One Recruiting at 1- or via email at . All information you provide will be kept confidential and will be used only to the extent required to provide needed reasonable accommodations. For technical support or questions about Capital One's recruiting process, please send an email to Capital One does not provide, endorse nor guarantee and is not liable for third-party products, services, educational tools or other information available through this site. Capital One Financial is made up of several different entities. Please note that any position posted in Canada is for Capital One Canada, any position posted in the United Kingdom is for Capital One Europe and any position posted in the Philippines is for Capital One Philippines Service Corp. (COPSSC).
12/17/2025
Full time
Manager, Network Security, Tech & Data Risk Management Capital One is one of the fastest growing organizations in the world today, powered by our passion for our customers. We are serious about technology, we dream big, and we execute: Capital One moved our entire enterprise to the public cloud over the course of five years. Just as we prioritize driving innovation through technology, we equally prioritize cybersecurity, reliability, software quality, and data management. Technology & Data Risk Management (TDRM) is a small organization that packs a big punch. The 200 professionals in TDRM are trusted experts who oversee 14,000 developers at Capital One. We raise the bar for excellence in cybersecurity, reliability, and tech risk, and data management risk. We shape strategy and decisions, challenge activities to ensure they meet our standards, and perform independent tests of our security and technology risk. For years, the cybersecurity community has debated whether the CISO should report to the CIO or not. In regulated financial services, the answer is: both. The first-line CISO has operational responsibilities and reports to the CIO. The second-line Chief Tech Risk Officer (CTRO) and the Tech & Data Risk Management (TRM) organization have broader responsibilities for cybersecurity but also reliability, software quality, resilience, and the risk of failing to manage our data. The CTRO is independent and oversees the work of the CISO, the CIO/CTO, and the Chief Data Officer. The CTRO reports to the Chief Risk Officer, who reports directly to the CEO. Our business leaders must make technology decisions constantly. TDRM makes sure they have the tech and data risk information they need to make good decisions. Associates within TDRM are highly-skilled information security, cybersecurity, site reliability engineering, technology, data analyst, data scientist, and risk management professionals. They have a wealth of experience and a demonstrated ability to add value with their advice and to deliver high-impact results. Role-specific text This position - Manager, Network Security - is a unique opportunity for candidates with technical cybersecurity experience who have a desire to expand that expertise in a risk management organization. This individual will have the opportunity to leverage their technical subject matter expertise to provide advisory, oversight, and effective challenge to stakeholders within the first line of defense. This role will engage with and build relationships across multiple lines of defense while overseeing network security across Capital One's private and public cloud footprints. Responsibilities: Provide advisory, oversight, and effective challenge to the first line of defense. Provide technical assessments of cybersecurity controls design and effectiveness. Draft assessments for senior management and other stakeholders, to include regulatory agencies and the Board of Directors, as needed. Stay current on emerging cyber threats and potential implications to the firm. Collaborate effectively with colleagues, stakeholders, and leaders across multiple organizations to achieve objectives. Coordinate program-related activities and deliverables to ensure effective collaboration within the team and across stakeholder groups. Proven track record of leading, mentoring, and influencing others. Ability to communicate clearly in written and verbal form. Ability to manage multiple projects while maintaining superior results. Ability to work individually and cross-functionally. Execution oriented and a self-motivator. Basic Qualifications: Bachelor's degree or military experience 3+ years of experience in the financial services industry or highly regulated industry (healthcare, energy, telecommunications) 3+ years of experience implementing network defenses (firewalls, network access control, intrusion detection, intrusion prevention, web application firewalls, web gateways, and proxies) in AWS (Amazon Web Services) or GCP (Google Cloud Platform) 2+ years of experience implementing Zero Trust or Secure Access Service Edge (SASE) in AWS or GCP 1+ certifications for AWS or GCP 2+ years of audit or risk management experience Preferred Qualifications: 2+ years of experience with Palo Alto Networks technologies 1 or more audit or risk-focused certification: CRISC (Certified in Risk and Information Systems Control), CISA (Certified Information Systems Auditor), CISM (Certified Information Security Manager), or CISSP (Certified Information System Security Professional) 2+ years of experience implementing network defenses for global payment networks At this time, Capital One will not sponsor a new applicant for employment authorization for this position. The minimum and maximum full-time annual salaries for this role are listed below, by location. Please note that this salary information is solely for candidates hired to perform work within one of these locations, and refers to the amount Capital One is willing to pay at the time of this posting. Salaries for part-time roles will be prorated based upon the agreed upon number of hours to be regularly worked. McLean, VA: $193,400 - $220,700 for Manager, Cyber Technical New York, NY: $211,000 - $240,800 for Manager, Cyber Technical Plano, TX: $175,800 - $200,700 for Manager, Cyber Technical Richmond, VA: $175,800 - $200,700 for Manager, Cyber Technical Candidates hired to work in other locations will be subject to the pay range associated with that location, and the actual annualized salary amount offered to any candidate at the time of hire will be reflected solely in the candidate's offer letter. This role is also eligible to earn performance based incentive compensation, which may include cash bonus(es) and/or long term incentives (LTI). Incentives could be discretionary or non discretionary depending on the plan. Capital One offers a comprehensive, competitive, and inclusive set of health, financial and other benefits that support your total well-being. Learn more at the Capital One Careers website . Eligibility varies based on full or part-time status, exempt or non-exempt status, and management level. This role is expected to accept applications for a minimum of 5 business days.No agencies please. Capital One is an equal opportunity employer (EOE, including disability/vet) committed to non-discrimination in compliance with applicable federal, state, and local laws. Capital One promotes a drug-free workplace. Capital One will consider for employment qualified applicants with a criminal history in a manner consistent with the requirements of applicable laws regarding criminal background inquiries, including, to the extent applicable, Article 23-A of the New York Correction Law; San Francisco, California Police Code Article 49, Sections ; New York City's Fair Chance Act; Philadelphia's Fair Criminal Records Screening Act; and other applicable federal, state, and local laws and regulations regarding criminal background inquiries. If you have visited our website in search of information on employment opportunities or to apply for a position, and you require an accommodation, please contact Capital One Recruiting at 1- or via email at . All information you provide will be kept confidential and will be used only to the extent required to provide needed reasonable accommodations. For technical support or questions about Capital One's recruiting process, please send an email to Capital One does not provide, endorse nor guarantee and is not liable for third-party products, services, educational tools or other information available through this site. Capital One Financial is made up of several different entities. Please note that any position posted in Canada is for Capital One Canada, any position posted in the United Kingdom is for Capital One Europe and any position posted in the Philippines is for Capital One Philippines Service Corp. (COPSSC).
Manager, Network Security, Tech & Data Risk Management Capital One is one of the fastest growing organizations in the world today, powered by our passion for our customers. We are serious about technology, we dream big, and we execute: Capital One moved our entire enterprise to the public cloud over the course of five years. Just as we prioritize driving innovation through technology, we equally prioritize cybersecurity, reliability, software quality, and data management. Technology & Data Risk Management (TDRM) is a small organization that packs a big punch. The 200 professionals in TDRM are trusted experts who oversee 14,000 developers at Capital One. We raise the bar for excellence in cybersecurity, reliability, and tech risk, and data management risk. We shape strategy and decisions, challenge activities to ensure they meet our standards, and perform independent tests of our security and technology risk. For years, the cybersecurity community has debated whether the CISO should report to the CIO or not. In regulated financial services, the answer is: both. The first-line CISO has operational responsibilities and reports to the CIO. The second-line Chief Tech Risk Officer (CTRO) and the Tech & Data Risk Management (TRM) organization have broader responsibilities for cybersecurity but also reliability, software quality, resilience, and the risk of failing to manage our data. The CTRO is independent and oversees the work of the CISO, the CIO/CTO, and the Chief Data Officer. The CTRO reports to the Chief Risk Officer, who reports directly to the CEO. Our business leaders must make technology decisions constantly. TDRM makes sure they have the tech and data risk information they need to make good decisions. Associates within TDRM are highly-skilled information security, cybersecurity, site reliability engineering, technology, data analyst, data scientist, and risk management professionals. They have a wealth of experience and a demonstrated ability to add value with their advice and to deliver high-impact results. Role-specific text This position - Manager, Network Security - is a unique opportunity for candidates with technical cybersecurity experience who have a desire to expand that expertise in a risk management organization. This individual will have the opportunity to leverage their technical subject matter expertise to provide advisory, oversight, and effective challenge to stakeholders within the first line of defense. This role will engage with and build relationships across multiple lines of defense while overseeing network security across Capital One's private and public cloud footprints. Responsibilities: Provide advisory, oversight, and effective challenge to the first line of defense. Provide technical assessments of cybersecurity controls design and effectiveness. Draft assessments for senior management and other stakeholders, to include regulatory agencies and the Board of Directors, as needed. Stay current on emerging cyber threats and potential implications to the firm. Collaborate effectively with colleagues, stakeholders, and leaders across multiple organizations to achieve objectives. Coordinate program-related activities and deliverables to ensure effective collaboration within the team and across stakeholder groups. Proven track record of leading, mentoring, and influencing others. Ability to communicate clearly in written and verbal form. Ability to manage multiple projects while maintaining superior results. Ability to work individually and cross-functionally. Execution oriented and a self-motivator. Basic Qualifications: Bachelor's degree or military experience 3+ years of experience in the financial services industry or highly regulated industry (healthcare, energy, telecommunications) 3+ years of experience implementing network defenses (firewalls, network access control, intrusion detection, intrusion prevention, web application firewalls, web gateways, and proxies) in AWS (Amazon Web Services) or GCP (Google Cloud Platform) 2+ years of experience implementing Zero Trust or Secure Access Service Edge (SASE) in AWS or GCP 1+ certifications for AWS or GCP 2+ years of audit or risk management experience Preferred Qualifications: 2+ years of experience with Palo Alto Networks technologies 1 or more audit or risk-focused certification: CRISC (Certified in Risk and Information Systems Control), CISA (Certified Information Systems Auditor), CISM (Certified Information Security Manager), or CISSP (Certified Information System Security Professional) 2+ years of experience implementing network defenses for global payment networks At this time, Capital One will not sponsor a new applicant for employment authorization for this position. The minimum and maximum full-time annual salaries for this role are listed below, by location. Please note that this salary information is solely for candidates hired to perform work within one of these locations, and refers to the amount Capital One is willing to pay at the time of this posting. Salaries for part-time roles will be prorated based upon the agreed upon number of hours to be regularly worked. McLean, VA: $193,400 - $220,700 for Manager, Cyber Technical New York, NY: $211,000 - $240,800 for Manager, Cyber Technical Plano, TX: $175,800 - $200,700 for Manager, Cyber Technical Richmond, VA: $175,800 - $200,700 for Manager, Cyber Technical Candidates hired to work in other locations will be subject to the pay range associated with that location, and the actual annualized salary amount offered to any candidate at the time of hire will be reflected solely in the candidate's offer letter. This role is also eligible to earn performance based incentive compensation, which may include cash bonus(es) and/or long term incentives (LTI). Incentives could be discretionary or non discretionary depending on the plan. Capital One offers a comprehensive, competitive, and inclusive set of health, financial and other benefits that support your total well-being. Learn more at the Capital One Careers website . Eligibility varies based on full or part-time status, exempt or non-exempt status, and management level. This role is expected to accept applications for a minimum of 5 business days.No agencies please. Capital One is an equal opportunity employer (EOE, including disability/vet) committed to non-discrimination in compliance with applicable federal, state, and local laws. Capital One promotes a drug-free workplace. Capital One will consider for employment qualified applicants with a criminal history in a manner consistent with the requirements of applicable laws regarding criminal background inquiries, including, to the extent applicable, Article 23-A of the New York Correction Law; San Francisco, California Police Code Article 49, Sections ; New York City's Fair Chance Act; Philadelphia's Fair Criminal Records Screening Act; and other applicable federal, state, and local laws and regulations regarding criminal background inquiries. If you have visited our website in search of information on employment opportunities or to apply for a position, and you require an accommodation, please contact Capital One Recruiting at 1- or via email at . All information you provide will be kept confidential and will be used only to the extent required to provide needed reasonable accommodations. For technical support or questions about Capital One's recruiting process, please send an email to Capital One does not provide, endorse nor guarantee and is not liable for third-party products, services, educational tools or other information available through this site. Capital One Financial is made up of several different entities. Please note that any position posted in Canada is for Capital One Canada, any position posted in the United Kingdom is for Capital One Europe and any position posted in the Philippines is for Capital One Philippines Service Corp. (COPSSC).
12/17/2025
Full time
Manager, Network Security, Tech & Data Risk Management Capital One is one of the fastest growing organizations in the world today, powered by our passion for our customers. We are serious about technology, we dream big, and we execute: Capital One moved our entire enterprise to the public cloud over the course of five years. Just as we prioritize driving innovation through technology, we equally prioritize cybersecurity, reliability, software quality, and data management. Technology & Data Risk Management (TDRM) is a small organization that packs a big punch. The 200 professionals in TDRM are trusted experts who oversee 14,000 developers at Capital One. We raise the bar for excellence in cybersecurity, reliability, and tech risk, and data management risk. We shape strategy and decisions, challenge activities to ensure they meet our standards, and perform independent tests of our security and technology risk. For years, the cybersecurity community has debated whether the CISO should report to the CIO or not. In regulated financial services, the answer is: both. The first-line CISO has operational responsibilities and reports to the CIO. The second-line Chief Tech Risk Officer (CTRO) and the Tech & Data Risk Management (TRM) organization have broader responsibilities for cybersecurity but also reliability, software quality, resilience, and the risk of failing to manage our data. The CTRO is independent and oversees the work of the CISO, the CIO/CTO, and the Chief Data Officer. The CTRO reports to the Chief Risk Officer, who reports directly to the CEO. Our business leaders must make technology decisions constantly. TDRM makes sure they have the tech and data risk information they need to make good decisions. Associates within TDRM are highly-skilled information security, cybersecurity, site reliability engineering, technology, data analyst, data scientist, and risk management professionals. They have a wealth of experience and a demonstrated ability to add value with their advice and to deliver high-impact results. Role-specific text This position - Manager, Network Security - is a unique opportunity for candidates with technical cybersecurity experience who have a desire to expand that expertise in a risk management organization. This individual will have the opportunity to leverage their technical subject matter expertise to provide advisory, oversight, and effective challenge to stakeholders within the first line of defense. This role will engage with and build relationships across multiple lines of defense while overseeing network security across Capital One's private and public cloud footprints. Responsibilities: Provide advisory, oversight, and effective challenge to the first line of defense. Provide technical assessments of cybersecurity controls design and effectiveness. Draft assessments for senior management and other stakeholders, to include regulatory agencies and the Board of Directors, as needed. Stay current on emerging cyber threats and potential implications to the firm. Collaborate effectively with colleagues, stakeholders, and leaders across multiple organizations to achieve objectives. Coordinate program-related activities and deliverables to ensure effective collaboration within the team and across stakeholder groups. Proven track record of leading, mentoring, and influencing others. Ability to communicate clearly in written and verbal form. Ability to manage multiple projects while maintaining superior results. Ability to work individually and cross-functionally. Execution oriented and a self-motivator. Basic Qualifications: Bachelor's degree or military experience 3+ years of experience in the financial services industry or highly regulated industry (healthcare, energy, telecommunications) 3+ years of experience implementing network defenses (firewalls, network access control, intrusion detection, intrusion prevention, web application firewalls, web gateways, and proxies) in AWS (Amazon Web Services) or GCP (Google Cloud Platform) 2+ years of experience implementing Zero Trust or Secure Access Service Edge (SASE) in AWS or GCP 1+ certifications for AWS or GCP 2+ years of audit or risk management experience Preferred Qualifications: 2+ years of experience with Palo Alto Networks technologies 1 or more audit or risk-focused certification: CRISC (Certified in Risk and Information Systems Control), CISA (Certified Information Systems Auditor), CISM (Certified Information Security Manager), or CISSP (Certified Information System Security Professional) 2+ years of experience implementing network defenses for global payment networks At this time, Capital One will not sponsor a new applicant for employment authorization for this position. The minimum and maximum full-time annual salaries for this role are listed below, by location. Please note that this salary information is solely for candidates hired to perform work within one of these locations, and refers to the amount Capital One is willing to pay at the time of this posting. Salaries for part-time roles will be prorated based upon the agreed upon number of hours to be regularly worked. McLean, VA: $193,400 - $220,700 for Manager, Cyber Technical New York, NY: $211,000 - $240,800 for Manager, Cyber Technical Plano, TX: $175,800 - $200,700 for Manager, Cyber Technical Richmond, VA: $175,800 - $200,700 for Manager, Cyber Technical Candidates hired to work in other locations will be subject to the pay range associated with that location, and the actual annualized salary amount offered to any candidate at the time of hire will be reflected solely in the candidate's offer letter. This role is also eligible to earn performance based incentive compensation, which may include cash bonus(es) and/or long term incentives (LTI). Incentives could be discretionary or non discretionary depending on the plan. Capital One offers a comprehensive, competitive, and inclusive set of health, financial and other benefits that support your total well-being. Learn more at the Capital One Careers website . Eligibility varies based on full or part-time status, exempt or non-exempt status, and management level. This role is expected to accept applications for a minimum of 5 business days.No agencies please. Capital One is an equal opportunity employer (EOE, including disability/vet) committed to non-discrimination in compliance with applicable federal, state, and local laws. Capital One promotes a drug-free workplace. Capital One will consider for employment qualified applicants with a criminal history in a manner consistent with the requirements of applicable laws regarding criminal background inquiries, including, to the extent applicable, Article 23-A of the New York Correction Law; San Francisco, California Police Code Article 49, Sections ; New York City's Fair Chance Act; Philadelphia's Fair Criminal Records Screening Act; and other applicable federal, state, and local laws and regulations regarding criminal background inquiries. If you have visited our website in search of information on employment opportunities or to apply for a position, and you require an accommodation, please contact Capital One Recruiting at 1- or via email at . All information you provide will be kept confidential and will be used only to the extent required to provide needed reasonable accommodations. For technical support or questions about Capital One's recruiting process, please send an email to Capital One does not provide, endorse nor guarantee and is not liable for third-party products, services, educational tools or other information available through this site. Capital One Financial is made up of several different entities. Please note that any position posted in Canada is for Capital One Canada, any position posted in the United Kingdom is for Capital One Europe and any position posted in the Philippines is for Capital One Philippines Service Corp. (COPSSC).