Director Cyber Maturity Assessments

Capital One
McLean, Virginia
Jan 04, 2022
Feb 02, 2022
Full Time
Center 2 (19050), United States of America, McLean, Virginia

Director Cyber Maturity Assessments

The Director of Cyber Maturity Assessments leads the enterprise's central CoE for assessing and reporting on cyber maturity across the Capital One enterprise. The team's work is essential for meeting requirements from senior leadership, the board, and regulators. The Director leads the Cyber Assessment Maturity Program (CAMP) team through a series of dynamic and fast-paced engagements with high visibility and impact to the overall Cyber program at Capital One. The CAMP team is a flagship program in the first line Cyber organization with a trusted brand and track record of providing outstanding results over the past four years.

  • Oversee multiple project teams of cyber governance and risk professionals (comprising both internal associates and external contractors) conducting assessments to measure and report on the maturity and effectiveness of enterprise cyber capabilities.
  • Collaborate with stakeholders, executives and business partners to understand their perspectives, the implementation of current cyber capabilities, plans for improvement and road map initiatives, and facilitate next steps towards meeting analysis and target state maturity timelines.
  • Contribute to building a strong culture of inclusiveness and belonging among Capital One's teams; foster associate development through goal setting and support appropriate training to maintain a skilled staff.
  • Monitor the evolution of cyber best practices and use this knowledge to calibrate Capital One's maturity framework in an ongoing manner.
  • Understand best practices from multiple cybersecurity frameworks, standards, and models (e.g. NIST CSF, FFIEC Handbooks, NIST 800-53, CERT-RMM) and articulate how these best practices can be applied within the Capital One environment.
  • Coordinate and ensure success of specialized assessments on behalf of the enterprise to ensure compliance with international regulatory requirements.
  • Oversee day to day operations of the maturity program; engage with senior leaders to ensure commitment for program processes and improvements; build a program strategy, and budget.
  • Participate in and lead conversations with senior leadership about program strengths and maturity opportunities.

Basic Qualifications
  • Bachelor's degree
  • At least 7 years experience in information security
  • At least 5 years of people leadership experience
  • At least 1 year of experience in performing assessments supporting NIST frameworks

Preferred Qualifications
  • 5+ years of experience supporting, partnering, and interacting with internal business partners
  • 5+ years of experience evaluating cybersecurity capabilities through a maturity assessment lens or through controls testing processes
  • 5+ years of experience working with Cyber Security Frameworks (NIST CSF, NIST-800-53, CERT-RMM, ISO 27001)
  • 1+ year of experience in the IT Software Development Life Cycle
  • 1+ year of experience working in the financial sector
  • 2+ years of experience working in an Agile environment

At this time, Capital One will not sponsor a new applicant for employment authorization for this position.

No agencies please. Capital One is an Equal Opportunity Employer committed to diversity and inclusion in the workplace. All qualified applicants will receive consideration for employment without regard to sex, race, color, age, national origin, religion, physical and mental disability, genetic information, marital status, sexual orientation, gender identity/assignment, citizenship, pregnancy or maternity, protected veteran status, or any other status prohibited by applicable national, federal, state or local law. Capital One promotes a drug-free workplace. Capital One will consider for employment qualified applicants with a criminal history in a manner consistent with the requirements of applicable laws regarding criminal background inquiries, including, to the extent applicable, Article 23-A of the New York Correction Law; San Francisco, California Police Code Article 49, Sections 4901-4920; New York City's Fair Chance Act; Philadelphia's Fair Criminal Records Screening Act; and other applicable federal, state, and local laws and regulations regarding criminal background inquiries.

If you have visited our website in search of information on employment opportunities or to apply for a position, and you require an accommodation, please contact Capital One Recruiting at 1-800-304-9102 or via email at . All information you provide will be kept confidential and will be used only to the extent required to provide needed reasonable accommodations.

For technical support or questions about Capital One's recruiting process, please send an email to

Capital One does not provide, endorse nor guarantee and is not liable for third-party products, services, educational tools or other information available through this site.

Capital One Financial is made up of several different entities. Please note that any position posted in Canada is for Capital One Canada, any position posted in the United Kingdom is for Capital One Europe and any position posted in the Philippines is for Capital One Philippines Service Corp. (COPSSC).

Similar jobs