Principal Associate, Information Security Office Consultant at Capital One
Plano, TX 75023, USA -
Full Time


Start Date

Immediate

Expiry Date

20 Jun, 25

Salary

0.0

Posted On

20 Mar, 25

Experience

1 year(s) or above

Remote Job

Yes

Telecommute

Yes

Sponsor Visa

No

Skills

Agile Methodologies, Oversight, Vulnerability Management, Security, Ged, Information Technology, Architecture, Software, Security Engineering, Architecture Reviews, Threat Modeling, Application Security, Software Design, Penetration Testing

Industry

Information Technology/IT

Description

Principal Associate, Information Security Office Consultant
At Capital One, you will help consult on initiatives, programs, and projects to raise their game in Information Security. You are pragmatic and practical in your understanding of risk and security, but also willing to know when to pull in experts and escalate. You collaborate and innovate with other teams within Capital One to push the envelope. You are comfortable with Cloud Service technologies like Storage Services, Security and Access Control Management, Container Services, and API Implementation and Management. You are familiar with various Cloud computing models to include IaaS, PaaS, and SaaS along with their architectural differences. Security is essential to what we do here, from protecting our customers to our associates.

BASIC QUALIFICATIONS:

  • High School Diploma, GED, or equivalent certification
  • At least 3 years of experience working in cybersecurity or information technology
  • At least 1 year of experience providing guidance and oversight of Security concepts
  • At least 1 year of experience performing security risk assessments and security architecture reviews
  • At least 1 year of experience with architecture, software design, networking, cloud security engineering, or cloud infrastructure

PREFERRED QUALIFICATIONS:

  • Bachelor’s Degree
  • 2+ years of experience with Software Security Architecture, Application Security, Threat Modeling, Penetration Testing, or Vulnerability Management
  • 2+ years of experience in securing a public cloud environment and building software utilizing public cloud
  • 2+ years of experience with Cloud patch management practices such as system rehydration or image management
  • 1+ years of experience with DataLake, BI, and Consumption Tools
  • 1+ years of experience utilizing Agile methodologies
  • 1+ years of experience with API Security
  • 1+ years of experience with File Transfer systems
  • 1+ years of experience with data ecosystems, applications, privacy, and compliance
  • 1+ years of experience with integrating SaaS products into an Enterprise Environment
  • 1+ years of experience with securing Container services
  • 1+ years of experience with Splunk-Fu and Enterprise Monitoring
  • 1+ years of experience with Offensive or Defensive Security techniques
  • 1+ years of experience in a Financial services industry
  • AWS Certified Solutions Architect or Certified Information Systems Security Professional (CISSP) certification
Responsibilities
  • Act as a central Information Security point of contact for Capital One’s Enterprise Data organization
  • Coordinate and execute proactive Information Security consulting to the business and technology teams covering API Security, File Transfer, Infrastructure Security, Resiliency, Data Security, Network Architecture and Design, Datalake Architecture, BI, and consumption tools, and User Access Management
  • Serve as an expert in Capital One’s Information Security capabilities, solutions, policies, procedures, and standards
  • Influence customers to leverage security capabilities and solutions to shift and integrate security to the left in the development processes
  • Escalate and manage cyber security risk
  • Provide ad hoc support on special Information Security hot topics for the business
  • Provide regular updates to executive leadership with your line of business on the overall Information Security health and risk environment
  • Work with line of business leadership to anticipate their objectives and needs to better serve the line of business
Loading...