Remediation Manager, Information Security Risk Management

Capital One
McLean, Virginia
Sep 18, 2021
Oct 18, 2021
Full Time
Center 2 (19050), United States of America, McLean, Virginia

Remediation Manager, Information Security Risk Management

The Cyber Remediation Manager is accountable for supporting remediation efforts and thematic data analysis and reporting within the Capital One Cyber Security organization. The manager will engage remediation teams to ensure that remediation efforts are documented and completed in a timely manner through coordination with internal teams. They will manage relationships with stakeholders, both within and outside Cyber, to deliver on the common goal of protecting Capital One.

This team:
  • Reviews, documents, and reports remediation actions and security gaps identified through the life cycle of issue identification and management through root cause investigation, taking ownership of the process to facilitate permanent resolution and closure
  • Works with all relevant internal technical teams, incident management, and the various lines of business to assist in the determination of root cause on incidents to prevent recurrence of issues
  • Maintains an inventory of problems under analysis and their current progress and status
  • Creates periodic reports on the remediation progress and problem trending
  • Creates, assigns, and tracks project timelines and actions to facilitate complete and accurate methodology or framework execution
  • Drives the resolution of technical problems where analysis requires evaluation of areas whose focus is driving the remediation of services with support teams
  • Works with reputation management vendors to review and remediate external security posture scoring metrics
  • Works to review, define, and develop cyber processes

A successful candidate on the team should:
  • Understand Cyber Security concepts and tools
  • Be team-oriented with the ability to effectively communicate and interact with a broad range of peoples and roles
  • Have the ability to work collaboratively, establish credibility, and build a working relationship with stakeholders and partners to ensure a shared outcome
  • Have the ability to present ideas in an easily digestible format
  • Be responsible for program metrics development, tracking, and automation
  • Be able to think 'outside of the box' to streamline processes and defend challenges to recommended changes
  • Be able to take similar case types and determine and document best path forward to centralize remediation efforts for efficiency
  • Be able to create, edit, and test process documentation to ensure accuracy
  • Be able to identify process efficiency opportunities leveraging an understanding of various frameworks, methodologies, and best practices (i.e. Six Sigma, Lean, ITIL, NIST, etc.)
  • Play an active role in the development of the team and organization by participating in process development, cross functional team leadership, and engagement with peers
  • Have a willingness to learn and support program areas requiring additional resources
  • Be able to work with team members and stakeholders to determine appropriate process and issue scoping

Basic Qualifications:
  • High School Diploma, GED, or equivalent certification
  • At least 5 years of experience in the Information Technology field
  • At least 4 years of experience with cybersecurity or technology remediation concepts and practices
  • At least 4 years of experience in a role leading or managing projects, initiatives, teams, or functions
  • At least 3 years of experience in analyzing security data and reporting out on themes and trends identified
  • At least 2 years of experience with process review and documentation within the cybersecurity space

Preferred Qualifications:
  • Bachelor's Degree
  • 5+ years of Project Management experience
  • 5+ years of experience with Lean principles
  • 3+ years of experience with audit or regulatory compliance and controls
  • 3+ years of experience in problem management, reputation management, process documentation, process improvement, or offensive security
  • Experience mentoring or coaching others
  • Experience managing multiple projects
  • Familiarity with cybersecurity and governance vendors and tools

At this time, Capital One will not sponsor a new applicant for employment authorization for this position.

No agencies please. Capital One is an Equal Opportunity Employer committed to diversity and inclusion in the workplace. All qualified applicants will receive consideration for employment without regard to sex, race, color, age, national origin, religion, physical and mental disability, genetic information, marital status, sexual orientation, gender identity/assignment, citizenship, pregnancy or maternity, protected veteran status, or any other status prohibited by applicable national, federal, state or local law. Capital One promotes a drug-free workplace. Capital One will consider for employment qualified applicants with a criminal history in a manner consistent with the requirements of applicable laws regarding criminal background inquiries, including, to the extent applicable, Article 23-A of the New York Correction Law; San Francisco, California Police Code Article 49, Sections 4901-4920; New York City's Fair Chance Act; Philadelphia's Fair Criminal Records Screening Act; and other applicable federal, state, and local laws and regulations regarding criminal background inquiries.

If you have visited our website in search of information on employment opportunities or to apply for a position, and you require an accommodation, please contact Capital One Recruiting at 1-800-304-9102 or via email at . All information you provide will be kept confidential and will be used only to the extent required to provide needed reasonable accommodations.

For technical support or questions about Capital One's recruiting process, please send an email to

Capital One does not provide, endorse nor guarantee and is not liable for third-party products, services, educational tools or other information available through this site.

Capital One Financial is made up of several different entities. Please note that any position posted in Canada is for Capital One Canada, any position posted in the United Kingdom is for Capital One Europe and any position posted in the Philippines is for Capital One Philippines Service Corp. (COPSSC).

Similar jobs