Manager, Cyber Process and Control Remediation

Capital One
Bethesda, MD
May 14, 2021
May 16, 2021
Full Time
Center 2 (19050), United States of America, McLean, VirginiaManager, Cyber Process and Control RemediationThe Manager of Cyber Process and Controls is accountable for supporting remediation efforts and thematic data analysis and reporting within the Capital One Cyber Security organization. The manager will engage remediation teams to ensure that remediation efforts are documented and completed in a timely manner through coordination with internal teams. They will manage relationships with stakeholders, both within and outside Cyber, to deliver on the common goal of protecting Capital One.This team:Reviews, documents, and reports remediation actions and security gaps identified through the life cycle of issue identification and management through root cause investigation, taking ownership of the process to facilitate permanent resolution and closureWorks with all relevant internal technical teams, incident management, and the various lines of business to assist in the determination of root cause on incidents to prevent recurrence of issuesMaintains an inventory of problems under analysis and their current progress and statusCreates periodic reports on the remediation progress and problem trendingCreates, assigns, and tracks project timelines and actions to facilitate complete and accurate methodology or framework executionDrives the resolution of technical problems where analysis requires evaluation of areas whose focus is driving the remediation of services with support teamsWorks with reputation management vendors to review and remediate external security posture scoring metrics Works to review, define, and develop cyber processesA successful candidate on the team should:Understand Cyber Security concepts and toolsBe team-oriented with the ability to effectively communicate and interact with a broad range of peoples and rolesHave the ability to work collaboratively, establish credibility, and build a working relationship with stakeholders and partners to ensure a shared outcomeHave the ability to present ideas in an easily digestible format Be responsible for program metrics development, tracking, and automationBe able to think 'outside of the box' to streamline processes and defend challenges to recommended changes Be able to take similar case types and determine and document best path forward to centralize remediation efforts for efficiency Be able to create, edit, and test process documentation to ensure accuracy Be able to identify process efficiency opportunities leveraging an understanding of various frameworks, methodologies, and best practices (ie Six Sigma, Lean, ITIL, NIST, etc.) Play an active role in the development of the team and organization by participating in process development, cross functional team leadership, and engagement with peersHave a willingness to learn and support program areas requiring additional resourcesBe able to work with team members and stakeholders to determine appropriate process and issue scoping Basic Qualifications:High School Diploma, GED, or equivalent certificationAt least 5 years of experience in the Information Technology fieldAt least 4 years of experience in a role leading or managing projects, initiatives, teams, or functionsAt least 4 years of experience with cybersecurity, GRC, or technology remediation concepts and practicesAt least 3 years of experience in analyzing data from a variety of sources and reporting out on themes and trends identifiedAt least 2 years of experience with process review and documentation within the cybersecurity space Preferred Qualifications:Bachelor's Degree5+ years of Project Management experience 5+ years of experience with Lean principles 3+ years of experience with audit or regulatory compliance and controls3+ years of experience in problem management, reputation management, process documentation, process improvement, or offensive securityExperience mentoring or coaching othersExperience managing multiple projects Familiarity with cybersecurity and governance vendors and toolsAt this time, Capital One will not sponsor a new applicant for employment authorization for this position.