Senior Risk Associate, Technology & Cyber Risk

Capital One Financial

Quick summary

Work type
On-site
Location
McLean, VACharlotte, NCRichmond, VA
Salary
$87,700–$100,100 / yr
Posted
4 days ago

Market check

Salary context

Below market

How this pay compares to similar roles

Similar $169k
This role $94k
$74k most similar roles pay here $213k

This role pays less than 99% of similar roles. Most pay $139,567–$199,150 — the shaded band above. At the midpoint, this role pays about $94k versus about $169k for comparable roles.

Based on 239 similar postings.

Employer

About Capital One Financial

Capital One Financial is a bank holding company specializing in credit cards, auto loans, banking, and savings products, known for its data-driven approach to consumer and commercial finance. Industry: Financial Services & Banking

Capital One Financial currently has 700 open roles on FindRole.

Listed pay typically runs $197,300–$225,100 across 693 roles with salary data.

Most-posted roles

View all roles at Capital One Financial

At a glance

TL;DR · Senior Risk Associate, Technology & Cyber Risk

As a Senior Risk Associate in the Commercial Risk Technology & Cyber Risk team, you will play a pivotal role in managing end-to-end risk by identifying and mitigating technology and cyber threats across the organization. Your responsibilities include conducting comprehensive risk assessments, evaluating control effectiveness, and driving remediation efforts to enhance overall security posture. You will collaborate with cross-functional teams to ensure compliance with internal standards and external regulations, influencing policy updates and optimizing controls for strategic alignment. Leveraging advanced project management and analytical skills, you will use reporting tools to analyze data and inform risk policies, while also serving as a key point of contact during audits and incident responses. Ideal candidates have at least 6 years of experience in technology risk management or cybersecurity within financial services, along with relevant certifications such as CISSP or CISA.

What you'll do

  • Manage the full lifecycle of technology and cyber risk assessments from identification to remediation.
  • Evaluate compliance against internal standards and external regulations, influencing policy updates.
  • Perform root cause analysis on recurring issues to identify systemic vulnerabilities.
  • Engage project teams early to integrate IT standards into system changes before implementation.
  • Serve as a point of contact for internal and external audit engagements, coordinating remediation responses.

What we're looking for

  • At least 3 years of experience in Technology or Cybersecurity risk management.
  • Deep understanding and application of technology and cyber controls to mitigate business risks.
  • Experience in performing Control Self Assessments (CSA) and Risk and Control Self Assessments (RCSA).
  • Strong project management, communication, and analytical skills for data-driven solutions.
  • Certification in cybersecurity or information systems such as CISSP, CISA, CRISC, or CISM.
  • Ability to engage stakeholders early in projects to integrate IT standards and audit procedures.
  • Experience in analyzing diverse datasets to inform risk policies and monitor threat environments.

More like this

Similar roles

Senior Manager, Tech & Cyber Risk

Capital One Financial

McLean, VA +1 82 days ago $200,700$229,100
AI CI/CD Kubernetes AWS Azure GCP Terraform Python SQL PostgreSQL Docker Prometheus Grafana GitLab DevSecOps NIST ISO27001 PCI-DSS SOC2

Manager, Cyber Risk & Analysis

Capital One Financial

McLean, VA +1 46 days ago $164,800$188,100
NIST PCI DSS ISO 27001 CI/CD Kubernetes AWS Azure GCP Terraform Python SQL PostgreSQL Docker Prometheus Grafana GitLab Jira Confluence Visio PowerPoint Tableau Splunk SIEM SOC 2 CIS Controls FFIEC ENS Lince NIST CSF NIST 800-53 CISSP CISM CRISC

Senior Associate, Risk Intelligence

DoorDash, Inc

Tempe, AZ 11 days ago
QGIS ESRI ArcGIS ATAK Python SQL Tableau PowerBI GitHub JIRA Trello Slack Zoom Google Suite Microsoft Office CI/CD AWS Azure GCP Docker Kubernetes Terraform Prometheus Grafana