Senior Manager - Global Payment Network Information Security Office (ISO) C at Information Technology Senior Management Forum
McLean, Virginia, USA -
Full Time


Start Date

Immediate

Expiry Date

16 Nov, 25

Salary

257200.0

Posted On

16 Aug, 25

Experience

3 year(s) or above

Remote Job

Yes

Telecommute

Yes

Sponsor Visa

No

Skills

Ged, Oversight, Aws, Azure, Information Technology, Architecture Reviews, Hsms, Cloud Security, Cryptography, Infrastructure Technologies

Industry

Information Technology/IT

Description

Posted Date
8/15/2025
Description
Senior Manager - Global Payment Network Information Security Office (ISO) Consultant
At Capital One, you will help consult on initiatives, programs, and projects to raise their game in Information Security. You are pragmatic and practical in your understanding of risk and security, but also willing to know when to pull in experts and escalate. You collaborate and innovate with other teams within Capital One to push the envelope. You are comfortable with Cloud Service technologies like Storage Services, Security & Access Control Management, Container Services, and API Implementation and Management. You are familiar with various Cloud computing models to include IaaS, PaaS, and SaaS along with their architectural differences. Security is essential to what we do here, from protecting our customers to our associates.

BASIC QUALIFICATIONS:

  • High School Diploma, GED or equivalent certification
  • At least 6 years of experience working in cybersecurity or information technology
  • At least 5 years of experience providing guidance and oversight of cyber security concepts
  • At least 5 years of experience performing cyber security risk assessments or cyber security architecture reviews
  • At least 4 years of experience with cloud security

PREFERRED QUALIFICATIONS:

  • Bachelor’s Degree
  • 7+ years of experience in securing a public cloud environment (AWS, GCP, Azure)
  • 6+ years of cyber security advisory and technology consulting experience
  • 6+ years of experience in Cyber Risk Management
  • 3+ years of experience on cryptography, HSMs and similar systems
  • Knowledge of HPNS, ATM, Mainframe technologies and other payment networks infrastructure technologies
  • Experience in security integration for Mergers and Acquisitions
  • Experience with PCI and Payment Network Compliance.
  • Professional certifications AWS Certified Solutions Architect and Certified Information Systems Security Professional (CISSP)

BASIC QUALIFICATIONS:

  • High School Diploma, GED or equivalent certification
  • At least 6 years of experience working in cybersecurity or information technology
  • At least 5 years of experience providing guidance and oversight of cyber security concepts
  • At least 5 years of experience performing cyber security risk assessments or cyber security architecture reviews
  • At least 4 years of experience with cloud security

PREFERRED QUALIFICATIONS:

  • Bachelor’s Degree
  • 7+ years of experience in securing a public cloud environment (AWS, GCP, Azure)
  • 6+ years of cyber security advisory and technology consulting experience
  • 6+ years of experience in Cyber Risk Management
  • 3+ years of experience on cryptography, HSMs and similar systems
  • Knowledge of HPNS, ATM, Mainframe technologies and other payment networks infrastructure technologies
  • Experience in security integration for Mergers and Acquisitions
  • Experience with PCI and Payment Network Compliance.
  • Professional certifications AWS Certified Solutions Architect and Certified Information Systems Security Professional (CISSP)
Responsibilities

RESPONSIBILITIES:

The Senior Lead ISO Consultant will provide cyber security architecture advisory support needed to build the Technology & Business capabilities on a novel Modern platform, that will enable customer set-up, use, and management of a Capital One Credit Card, including Data Product. In this role, the responsibilities will include:

  • Act as a central Information Security point of contact for the Global Payment Networks line of business
  • Coordinate and execute proactive Information Security consulting to the business and technology teams covering Infrastructure Security, Resiliency, Data Security, Network Architecture and Design, and User Access Management
  • Serve as an expert in Capital One’s Information Security capabilities, solutions, policies, procedures and standards
  • Collaborating with enterprise cyber teams and tech architects in defining and driving the cyber architecture strategy and guiding principles for the architecting and designing of the modern platforms.
  • Support security architecture and implementation needs for technology modernization efforts
  • Overseeing all cyber related dependencies across the multiple components being built for the modernization effort.
  • Influence customers to leverage security capabilities and solutions to shift and integrate security to the left in the development processes
  • Escalate and manage cyber security risk
  • Provide ad-hoc support on special Information Security hot topics for the business
  • Provide regular updates to executive leadership with your line of business on the overall Information Security health and risk environment
  • Work with line of business leadership to anticipate their objectives and needs to better serve the line of business
  • Support the team on collectively mapping technologies to a standardized framework in order to identify and execute on best practices in risk reduction through the configuration of cybersecurity tools and platforms.
  • Support the development, modification, and use of capability, risk, or threat classification frameworks and standardization methodologies to facilitate the conduct of correlative capability, maturity, and effectiveness evaluations.
  • Support data validation and communications on the impact of identified operational, compliance, process, control, and tooling gaps and potential remediation courses of action to multiple audiences, including leadership, to support the enhancement of their cybersecurity postures.

RESPONSIBILITIES:

The Senior Lead ISO Consultant will provide cyber security architecture advisory support needed to build the Technology & Business capabilities on a novel Modern platform, that will enable customer set-up, use, and management of a Capital One Credit Card, including Data Product. In this role, the responsibilities will include:

  • Act as a central Information Security point of contact for the Global Payment Networks line of business
  • Coordinate and execute proactive Information Security consulting to the business and technology teams covering Infrastructure Security, Resiliency, Data Security, Network Architecture and Design, and User Access Management
  • Serve as an expert in Capital One’s Information Security capabilities, solutions, policies, procedures and standards
  • Collaborating with enterprise cyber teams and tech architects in defining and driving the cyber architecture strategy and guiding principles for the architecting and designing of the modern platforms.
  • Support security architecture and implementation needs for technology modernization efforts
  • Overseeing all cyber related dependencies across the multiple components being built for the modernization effort.
  • Influence customers to leverage security capabilities and solutions to shift and integrate security to the left in the development processes
  • Escalate and manage cyber security risk
  • Provide ad-hoc support on special Information Security hot topics for the business
  • Provide regular updates to executive leadership with your line of business on the overall Information Security health and risk environment
  • Work with line of business leadership to anticipate their objectives and needs to better serve the line of business
  • Support the team on collectively mapping technologies to a standardized framework in order to identify and execute on best practices in risk reduction through the configuration of cybersecurity tools and platforms.
  • Support the development, modification, and use of capability, risk, or threat classification frameworks and standardization methodologies to facilitate the conduct of correlative capability, maturity, and effectiveness evaluations.
  • Support data validation and communications on the impact of identified operational, compliance, process, control, and tooling gaps and potential remediation courses of action to multiple audiences, including leadership, to support the enhancement of their cybersecurity postures.
Loading...