Lead, Third Party Cyber Risk & Analysis

Capital One Financial

Confirmed live yesterday High trust

Quick summary

Work type
On-site
Location
McLean, VARichmond, VA
Salary
$164,800–$188,100 / yr
Posted
9 days ago
Freshness
Confirmed live yesterday

Market check

Salary context

Competitive pay

How this pay compares to similar roles

Similar $167k
This role $176k
$116k most similar roles pay here $208k

This role pays more than 60% of similar roles. Most pay $140,000–$193,637 — the shaded band above. At the midpoint, this role pays about $176k versus about $167k for comparable roles.

Based on 239 similar postings.

Employer

About Capital One Financial

Capital One Financial is a bank holding company specializing in credit cards, auto loans, banking, and savings products, known for its data-driven approach to consumer and commercial finance. Industry: Financial Services & Banking

Capital One Financial currently has 998 open roles on FindRole.

Listed pay typically runs $197,300–$225,100 across 992 roles with salary data.

Most-posted roles

View all roles at Capital One Financial

At a glance

TL;DR · Lead, Third Party Cyber Risk & Analysis

Lead, Third Party Cyber Risk & Analysis serves as a central Information Security point of contact for the Card line of business to identify and mitigate third-party risks. The role involves collaborating with internal leaders and external partners to provide risk consulting, influence business decisions, and drive process improvements. Day-to-day responsibilities include performing security risk assessments, managing cyber risk escalations, and integrating security into vendor procurement and contract renewal processes. Candidates must possess expertise in cybersecurity or information technology, specifically regarding security concepts and third-party risk management. Preferred qualifications include experience with PCI DSS, NIST, ISO, Physical Security, or IT Operations Management within a regulated environment. The role requires strong communication skills to translate technical issues for non-technical audiences while ensuring all third parties meet the established security bar for protecting customers and associates.

What you'll do

  • Act as the primary Information Security point of contact for identifying and mitigating third-party risks in the Card business line.
  • Proactively identify information security risks and partner with stakeholders to eliminate potential threats from third parties.
  • Provide consulting to internal and external teams regarding third-party information security risks.
  • Influence business decisions by promoting the integration of security capabilities into vendor procurement and contract renewal processes.
  • Report the status of the third-party management health and risk environment to executive leadership.
  • Escalate and manage cybersecurity risks introduced by Capital One’s third-party partners.
  • Drive process improvements to increase the efficiency of the Third Party Risk Management program.

What we're looking for

  • High School Diploma, GED, or equivalent certification.
  • At least 6 years of experience working in cybersecurity or information technology.
  • At least 2 years of experience providing guidance and oversight of security concepts.
  • At least 2 years of experience performing security risk assessments.
  • Bachelor's Degree is preferred.
  • 4+ years of experience in PCI DSS, NIST, ISO, Physical Security, or IT Operations Management.
  • 2+ years of experience at a Financial Institution and 2+ years of experience in Third Party Risk.
  • Work authorization that require immigration support from an employer.

More like this

Similar roles

Principal Associate, Cyber Risk & Analysis

Capital One Financial

McLean, VA 2 days ago $131,300$149,800
AI Prompt Engineering Multi-agent Systems Databricks Spark AWS GCP Azure CI/CD APIs Containers NIST CSF PCI DSS SOX ITGC FFIEC SIEM SOAR
3+ yrs exp

Manager, Cyber Risk & Analysis

Capital One Financial

McLean, VA +1 32 days ago $164,800$188,100
NIST 800-53 NIST CSF ISO COBIT Cybersecurity Risk Management Audit System Transformation Software Engineering
4+ yrs exp

Lead, Cyber Defense & Response

Prudential Financial

Newark, NJ 36 days ago $123,700$204,100
Splunk KQL SIEM XDR AWS Azure M365 Active Directory Entra Cyber Kill Chain Detection Engineering Incident Response Threat Hunting Log Analytics
5+ yrs exp

Lead, Insider Risk - Cyber Defense & Response

Prudential Financial

Newark, NJ 59 days ago $123,700$204,100
Digital Forensics SIEM Behavioral Analytics User Activity Monitoring Cyber Threat Intelligence Data Integration Information Security Risk Management chain-of-custody GCFA GCFR GCTI CITPM CISSP

Lead Cyber Sec Engineer

Northern Trust

Chicago, IL 46 days ago
Zscaler Data Loss Prevention (DLP) Azure Security AIP MIP MCAS Network Security Firewalls CASB Security Automation Scripting PCI-DSS SOX FFIEC
5+ yrs exp

Lead IT SOX Risk Advisory

Intuit

Mountain View, CA +2 71 days ago $175,500$237,000
SOX ITGC ICFR PCAOB Risk Management Project Management AI Tools ChatGPT Claude Copilot Audit Internal Audit Control Design Automated Controls Information Systems CISA CISSP AWS Certified Cloud Practitioner
8+ yrs exp Hybrid