Senior Manager, Information Security Office (ISO) Consultant
Company: Capital One
Location: Mc Lean
Posted on: October 28, 2025
|
|
|
Job Description:
Senior Manager, Information Security Office (ISO) Consultant At
Capital One, you will help consult on initiatives, programs, and
projects to raise their game in Information Security. You are
pragmatic and practical in your understanding of risk and security,
but also willing to know when to pull in experts and escalate. You
collaborate and innovate with other teams within Capital One to
push the envelope. You are comfortable with Cloud Service
technologies like Storage Services, Security & Access Control
Management, Container Services, and API Implementation and
Management. You are familiar with various Cloud computing models to
include IaaS, PaaS, and SaaS along with their architectural
differences. Security is essential to what we do here, from
protecting our customers to our associates. Responsibilities: The
Senior Manager, ISO Consultant will provide cybersecurity
architecture advisory support needed to build the Technology &
Business capabilities on a novel Modern platform, that will enable
customer set-up, use, and management of a Capital One Credit Card,
including Data Product. In this role, the responsibilities will
include: - Act as a central Information Security point of contact
for the Commercial line of business - Coordinate and execute
proactive Information Security consulting to the business and
technology teams covering Infrastructure Security, Resiliency, Data
Security, Network Architecture and Design, and User Access
Management - Serve as an expert in Capital One’s Information
Security capabilities, solutions, policies, procedures, and
standards - Collaborating with enterprise cyber teams and tech
architects in defining and driving the cyber architecture strategy
and guiding principles for the architecting and designing of the
modern platforms - Support security architecture and implementation
needs for technology modernization efforts - Overseeing all cyber
related dependencies across the multiple components being built for
the modernization effort - Influence customers to leverage security
capabilities and solutions to shift and integrate security to the
left in the development processes - Escalate and manage
cybersecurity risk - Provide ad hoc support on special Information
Security hot topics for the business - Provide regular updates to
executive leadership with your line of business on the overall
Information Security health and risk environment - Work with line
of business leadership to anticipate their objectives and needs to
better serve the line of business - Support the team on
collectively mapping technologies to a standardized framework in
order to identify and execute on best practices in risk reduction
through the configuration of cybersecurity tools and platforms -
Support the development, modification, and use of capability, risk,
or threat classification frameworks and standardization
methodologies to facilitate the conduct of correlative capability,
maturity, and effectiveness evaluations - Support data validation
and communications on the impact of identified operational,
compliance, process, control, and tooling gaps and potential
remediation courses of action to multiple audiences, including
leadership, to support the enhancement of their cybersecurity
postures About You: - You have a desire to work in a very fast
moving, forward leaning, and modern computing environment - You
have a deep passion for Securing modern computing platforms - You
have a strong desire to continually learn about new technologies -
You possess strong conceptual thinking and communication skills -
You are able to work well under minimal supervision - You are a
demonstrated leader with team-oriented interpersonal skills and the
ability to interface effectively with a broad range of people and
roles, including upper management, IT leaders, and technology
vendors - You maintain calmness and clarity of thought under
pressure and ability to maintain confidentiality - You have a deep
understanding of strategic business objectives and the ability to
drive results toward those objectives Basic Qualifications: - High
School Diploma, GED or equivalent certification - At least 6 years
of experience working in cybersecurity or information technology -
At least 5 years of experience providing guidance and oversight of
cybersecurity concepts - At least 5 years of experience performing
cybersecurity risk assessments or cybersecurity architecture
reviews - At least 4 years of experience with cloud security - At
least 3 years of experience in Cyber Risk Management - At least 2
years of experience in Cyber Technical Program Management Preferred
Qualifications: - Bachelor’s Degree - 7 years of experience in
securing a public cloud environment - AWS Certified Solutions
Architect or Certified Information Systems Security Professional
(CISSP) certification At this time, Capital One will not sponsor a
new applicant for employment authorization, or offer any
immigration related support for this position (i.e. H1B, F-1 OPT,
F-1 STEM OPT, F-1 CPT, J-1, TN, E-2, E-3, L-1 and O-1, or any EADs
or other forms of work authorization that require immigration
support from an employer). The minimum and maximum full-time annual
salaries for this role are listed below, by location. Please note
that this salary information is solely for candidates hired to
perform work within one of these locations, and refers to the
amount Capital One is willing to pay at the time of this posting.
Salaries for part-time roles will be prorated based upon the agreed
upon number of hours to be regularly worked. McLean, VA: $225,400 -
$257,200 for Sr Manager, Cyber Technical New York, NY: $245,900 -
$280,600 for Sr Manager, Cyber Technical Plano, TX: $204,900 -
$233,800 for Sr Manager, Cyber Technical Richmond, VA: $204,900 -
$233,800 for Sr Manager, Cyber Technical Candidates hired to work
in other locations will be subject to the pay range associated with
that location, and the actual annualized salary amount offered to
any candidate at the time of hire will be reflected solely in the
candidate’s offer letter. This role is also eligible to earn
performance based incentive compensation, which may include cash
bonus(es) and/or long term incentives (LTI). Incentives could be
discretionary or non discretionary depending on the plan. Capital
One offers a comprehensive, competitive, and inclusive set of
health, financial and other benefits that support your total
well-being. Learn more at theCapital One Careers website.
Eligibility varies based on full or part-time status, exempt or
non-exempt status, and management level. This role is expected to
accept applications for a minimum of 5 business days.No agencies
please. Capital One is an equal opportunity employer (EOE,
including disability/vet) committed to non-discrimination in
compliance with applicable federal, state, and local laws. Capital
One promotes a drug-free workplace. Capital One will consider for
employment qualified applicants with a criminal history in a manner
consistent with the requirements of applicable laws regarding
criminal background inquiries, including, to the extent applicable,
Article 23-A of the New York Correction Law; San Francisco,
California Police Code Article 49, Sections 4901-4920; New York
City’s Fair Chance Act; Philadelphia’s Fair Criminal Records
Screening Act; and other applicable federal, state, and local laws
and regulations regarding criminal background inquiries. If you
have visited our website in search of information on employment
opportunities or to apply for a position, and you require an
accommodation, please contact Capital One Recruiting at
1-800-304-9102 or via email at
RecruitingAccommodation@capitalone.com. All information you provide
will be kept confidential and will be used only to the extent
required to provide needed reasonable accommodations. For technical
support or questions about Capital One's recruiting process, please
send an email to Careers@capitalone.com Capital One does not
provide, endorse nor guarantee and is not liable for third-party
products, services, educational tools or other information
available through this site. Capital One Financial is made up of
several different entities. Please note that any position posted in
Canada is for Capital One Canada, any position posted in the United
Kingdom is for Capital One Europe and any position posted in the
Philippines is for Capital One Philippines Service Corp.
(COPSSC).
Keywords: Capital One, Arlington , Senior Manager, Information Security Office (ISO) Consultant, IT / Software / Systems , Mc Lean, Virginia