Risk Manager, Endpoint Security

Capital One Financial

Quick summary

Work type
On-site
Location
McLean, VA · Richmond, VA · New York, NY · Plano, TX
Salary
$197,300–$225,100 / yr
Posted
30 days ago

Market check

Salary context

Above market

How this pay compares to similar roles

Similar $178k
This role $211k
$125k most similar roles pay here $236k

This role pays more than 76% of similar roles. Most pay $145,700–$211,200 — the shaded band above. At the midpoint, this role pays about $211k versus about $178k for comparable roles.

Based on 239 similar postings.

Employer

About Capital One Financial

Capital One Financial is a bank holding company specializing in credit cards, auto loans, banking, and savings products, known for its data-driven approach to consumer and commercial finance. Industry: Financial Services & Banking

Capital One Financial currently has 498 open roles on FindRole.

Listed pay typically runs $197,300–$225,100 across 495 roles with salary data.

Most-posted roles

View all roles at Capital One Financial

At a glance

TL;DR · Risk Manager, Endpoint Security

The Risk Manager, Endpoint Security at Capital One is a senior-level position within the Technology Delivery and Reliability Management (TDRM) team, which oversees cybersecurity, reliability, and data management risks across approximately 14,000 developers. This role involves providing technical oversight and credible challenge to first-line defense teams by assessing cybersecurity controls and operational effectiveness in the endpoint security domain, including user endpoints and servers. The individual will draft comprehensive assessments for senior leadership and regulatory bodies while staying abreast of emerging cyber threats. Key responsibilities include implementing EDR tools, application whitelisting technologies, next-generation endpoint platforms, data removal processes, MDM/MAM solutions, and PAM tools. Ideal candidates possess extensive experience in these areas along with certifications such as CISSP or CRISC, and familiarity with NIST Cybersecurity Framework controls and ISO standards.

What you'll do

  • Provide technical assessments of cybersecurity controls design and effectiveness.
  • Draft risk assessment reports for senior management and regulatory agencies.
  • Stay current on emerging cyber threats and their implications for the firm.
  • Coordinate program-related activities to ensure effective collaboration across teams.
  • Oversee and challenge 1st Line of defense in endpoint security operations.
  • Mentor and influence others to enhance cybersecurity capabilities within the organization.

What we're looking for

  • At least 5 years of experience implementing endpoint detection and response (EDR) tools.
  • At least 3 years each in application whitelisting technologies and next-generation endpoint platforms like VDI.
  • Experience with data removal from endpoints and Mobile Device Management (MDM)/Mobile Application Management (MAM).
  • At least 2 years of Privileged Access Management (PAM) tool experience and consulting, audit, or risk management background.
  • Familiarity with NIST Cybersecurity Framework controls and cybersecurity certifications like CISSP, CISM, or CRISC.

More like this

Similar roles

Sr. Manager, Tech & Cyber Risk

Capital One Financial

McLean, VA 60 days ago $200,700$229,100
AI CI/CD Kubernetes AWS Azure GCP Terraform Python SQL PostgreSQL Docker Prometheus Grafana GitLab DevSecOps NIST ISO27001 PCI-DSS SOC2

Sr. Risk Manager, Data Protection

Capital One Financial

Richmond, VA 32 days ago $229,900$262,400
AWS NIST_Cybersecurity_Framework NIST_800_53 ISO_27001 CISSP CISM CRISC Encryption Tokenization Data_Labeling Cryptography Cyber_Risk_Management Data_Protection Technical_Assessments

Manager, Cyber Risk & Analysis

Capital One Financial

McLean, VA 24 days ago $164,800$188,100
NIST PCI DSS ISO 27001 CI/CD Kubernetes AWS Azure GCP Terraform Python SQL PostgreSQL Docker Prometheus Grafana GitLab Jira Confluence Visio PowerPoint Tableau Splunk SIEM SOC 2 CIS Controls FFIEC ENS Lince NIST CSF NIST 800-53 CISSP CISM CRISC