Global Payments Network Technology Risk Advisor
Company: Capital One
Location: Mc Lean
Posted on: April 2, 2026
|
|
|
Job Description:
Global Payments Network Technology Risk Advisor Capital One is
one of the fastest growing organizations in the world today. The
growth of the business is accelerated by leveraging innovative and
emerging technologies. We are serious about technology, we dream
big, and we execute: Capital One moved our entire enterprise to the
public cloud over the course of five years, fully exiting our data
centers. Just as we prioritize driving innovation through
technology, we equally prioritize cybersecurity and managing
technology risk. Technology and Data Risk Management (TDRM) are
trusted expert advisers who shape decisions, challenge activities
to ensure they meet our standards, and generally oversee
technology, data and information security risk across the business
and the central technology organization. TDRM is a second line
organization, which means it is independent and reports up through
the Chief Enterprise Risk Officer. TDRM provides business leaders
with crucial technology risk information for informed
decision-making. Our highly-skilled associates specialize in areas
like information security, cybersecurity, SRE, technology, and risk
management, offering significant experience and delivering
high-impact results. As Global Payments Network Tech Risk Advisor
you will play a key second-line-of-defense role focused on
independent oversight of the organization's cybersecurity and
technology risk-taking, providing expert advice and constructive
challenge during assessments and throughout the Agile delivery
lifecycle. You will collaborate with partners (cybersecurity,
technology, lines of business, and other risk offices) to evaluate
the firm's risk posture and offer independent recommendations for
risk reduction. Success requires translating data, business
drivers, and priorities into meaningful risk analysis, establishing
you as a trusted advisor to stakeholders. For this role in
particular you will be focused on providing independent oversight
of the Global Payments Network, a newly formed line of business. A
strong candidate: Has a strong foundation, passion, and proficiency
in cybersecurity, technology risk management, regulatory
expectations within financial services Is intellectually curious
and stays current on emerging cyber threats, technologies, and
potential implications for the company. Has a team-first attitude
and is comfortable building relationships and collaborating with
the team and other partners and stakeholders to get the work done.
Is execution oriented, a self-motivator in an ambiguous
environment, can manage multiple projects while maintaining
superior results, can successfully work in a fast-paced
environment, and is able to quickly come up to speed with the
business and technology environments with which they will be
working. Demonstrates the ability to provide independent and
effective challenges. Has excellent verbal and written
communication skills (tailored to the audience) and can concisely
and logically explain complex/technical topics. Responsibilities:
Advisory/Team Responsibilities Be a trusted second-line Technology
& Data Risk advisor advisor and subject matter expert in your
assigned Lines of Business Guide/drive effective and relevant risk
conversations with Line of Business leadership and their teams to
enable meaningful insights into key technology and cybersecurity
risks (e.g., aligning to or providing insights in support of
strategic priorities or objectives for the business, increasing
risk accountability and visibility) Communicate in a compelling
manner, with a strong point of view, grounded in technology, cyber,
and data risk analysis Strong knowledge and proficiency in risk
management skills (i.e., risk analysis and assessment, risk
management, risk communication, risk quantification, threat
modeling, and technical writing) Navigate regulatory and compliance
requirements while providing independent and effective challenge
within a second-line-of-defense model Collaborate effectively and
build trusted relationships with colleagues, stakeholders, and
leaders across multiple organizations to achieve objectives.
Coordinate assessment activities and deliverables, ensuring
alignment between agile delivery milestones and independent risk
review timing Operate a continuous improvement approach by
reviewing and challenging the design and operation of processes
Support assessments for senior management and other stakeholders,
to include regulatory agencies and the Board of Directors, as
needed Core Risk Assessment Responsibilities Perform the review and
effective challenge of technology and cybersecurity risks through
business-driven assessment activities (e.g., risk and control self
assessment (RCSA) activities, scenario analysis, new products and
services, etc.), to include providing expertise and advice on risk
themes and mitigation strategies Monitor, report, and escalate
metric performance, identifying systemic control gaps, maturity
trends, and emerging payment network risk exposures Perform the
review and effective challenge of Capital One’s enterprise
cybersecurity capability maturity assessments through first-line
assessment activities (i.e., NIST CSF assessments) Connect the dots
across assessments to inform strategic decision-making, investment
prioritization, and long-term technology and data risk posture
improvements Basic Qualifications: Bachelor’s degree or military
experience At least 5 years of experience managing, or consulting,
or auditing At least 5 years of experience working in the fields of
cybersecurity, or technology, or risk management At least 5 years
of experience with cybersecurity or technology risk assessments
Professional Security Certification or Professional Risk Management
Certification (Certified Information Systems Security Professional
(CISSP), or Certified Information Systems Auditor (CISA), or
Certified Information Security Manager (CISM), or Certified in Risk
and Information Systems Control (CRISC), or Open FAIR Certified)
Preferred Qualifications: Master’s degree Prior experience working
directly within or extensively collaborating with the technology
and/or operations teams of a major global payment network (e.g.,
Visa, Mastercard, American Express), understanding their unique
operational models and resilience challenges At least 5 years of
experience in a second-line or oversight role at a financial
institution or regulatory agency Knowledge of, or experience
working with agile methodology and tools (Jira, or Confluence)
Knowledge of National Institute of Standards and Technology
Cybersecurity Framework (NIST CSF) At this time, Capital One will
not sponsor a new applicant for employment authorization for this
position. The minimum and maximum full-time annual salaries for
this role are listed below, by location. Please note that this
salary information is solely for candidates hired to perform work
within one of these locations, and refers to the amount Capital One
is willing to pay at the time of this posting. Salaries for
part-time roles will be prorated based upon the agreed upon number
of hours to be regularly worked. Chicago, IL: $149,800 - $171,000
for Manager, Cyber Risk & Analysis McLean, VA: $164,800 - $188,100
for Manager, Cyber Risk & Analysis New York, NY: $179,700 -
$205,100 for Manager, Cyber Risk & Analysis Richmond, VA: $149,800
- $171,000 for Manager, Cyber Risk & Analysis Riverwoods, IL:
$149,800 - $171,000 for Manager, Cyber Risk & Analysis Candidates
hired to work in other locations will be subject to the pay range
associated with that location, and the actual annualized salary
amount offered to any candidate at the time of hire will be
reflected solely in the candidate’s offer letter. This role is also
eligible to earn performance based incentive compensation, which
may include cash bonus(es) and/or long term incentives (LTI).
Incentives could be discretionary or non discretionary depending on
the plan. Capital One offers a comprehensive, competitive, and
inclusive set of health, financial and other benefits that support
your total well-being. Learn more at the Capital One Careers
website . Eligibility varies based on full or part-time status,
exempt or non-exempt status, and management level. This role is
expected to accept applications for a minimum of 5 business days.
No agencies please. Capital One is an equal opportunity employer
(EOE, including disability/vet) committed to non-discrimination in
compliance with applicable federal, state, and local laws. Capital
One promotes a drug-free workplace. Capital One will consider for
employment qualified applicants with a criminal history in a manner
consistent with the requirements of applicable laws regarding
criminal background inquiries, including, to the extent applicable,
Article 23-A of the New York Correction Law; San Francisco,
California Police Code Article 49, Sections 4901-4920; New York
City’s Fair Chance Act; Philadelphia’s Fair Criminal Records
Screening Act; and other applicable federal, state, and local laws
and regulations regarding criminal background inquiries. If you
have visited our website in search of information on employment
opportunities or to apply for a position, and you require an
accommodation, please contact Capital One Recruiting at
1-800-304-9102 or via email at
RecruitingAccommodation@capitalone.com . All information you
provide will be kept confidential and will be used only to the
extent required to provide needed reasonable accommodations. For
technical support or questions about Capital One's recruiting
process, please send an email to Careers@capitalone.com Capital One
does not provide, endorse nor guarantee and is not liable for
third-party products, services, educational tools or other
information available through this site. Capital One Financial is
made up of several different entities. Please note that any
position posted in Canada is for Capital One Canada, any position
posted in the United Kingdom is for Capital One Europe and any
position posted in the Philippines is for Capital One Philippines
Service Corp. (COPSSC).
Keywords: Capital One, Franconia , Global Payments Network Technology Risk Advisor, IT / Software / Systems , Mc Lean, Virginia