Cyber Security Manager - ISO
Posted 1 day 9 hours ago by Capital One (Europe) plc
Nottingham Trent House (95002), United Kingdom, Nottingham, Nottinghamshire
Cyber Security Manager - ISO About this roleSecurity is an integral part of our culture at Capital One. It is essential to maintaining our position as an industry leader, and it is the responsibility of each employee to safeguard information, protect it from unauthorized access, and ensure regulatory compliance. Information Security has a significant effect on privacy, consumer confidence, external reputation, and it is a priority on everyone's agenda. Capital One's mission is to change banking for good by bringing humanity, ingenuity and simplicity to banking. The successful candidate will join the Information Security Office (ISO) function for the Capital One UK Division.
At Capital One, you will help consult on initiatives, programs, and projects to raise their game in Information Security. You are pragmatic and practical in your understanding of risk and security, but also willing to know when to pull in experts and escalating. You collaborate and innovate with other teams within Capital One to push the envelope. You are comfortable with Cloud Service technologies like Storage Services, Security & Access Control Management, Container Services, and API Implementation and Management. You are familiar with various Cloud computing models to include IaaS, PaaS, and SaaS along with their architectural differences. Security is essential to what we do here, from protecting our customers to our associates.
What you'll doThe role will involve working across teams within the UK, as well as with our peers in North American business units and teams supporting the company's global cyber security programme.
Responsibilities- Act as a central point of contact for your line of business to the rest of Capital One's Information Security Office Team.
- Coordinate and execute proactive Information Security consulting to the business and technology teams covering topics such as Cloud, Infrastructure Security, Data Security, and User Access Management.
- Influence customers via threat modeling to leverage security capabilities and solutions to shift and integrate security to the left in development processes.
- Support the identification, management, prioritization and reduction of cyber security risk.
- Work in an agile environment to deliver secure, robust solutions that meet business requirements and customer expectations.
- Coaching and mentoring of application owners, users and delivery teams where required.
- Set, articulate and safeguard the bar for appropriate compliance assurance and risk management in language that the business can understand and engage with.
- Be a stakeholder for Cloud Productivity Engineering teams and provide Cyber consultancy on topics such as information architecture and data management.
- Become an expert in Capital One's Information Security capabilities, solutions, policies, procedures and standards.
- Ability to articulate complex details in a simplified, concise manner upwards to senior leadership as well as sideways/downwards with your peers.
- Evidence of applying strong critical/analytical thinking and ability to challenge the status quo.
- Deep understanding of strategic business objectives and the ability to drive results toward those objectives.
- Ability to engage effectively with a broad range of people and roles, including upper management, IT leaders, and technology vendors.
- Deep passion for securing modern computing platforms.
- Practical experience and/or certifications with AWS-cloud is a key part of our work.
- Desire to work in a fast moving, forward leaning, and modern computing environment.
- Thirst to continually learn about new technologies.
- Experience of working well under minimal supervision and effectively navigating through ambiguity.
- Clear ability to demonstrate calmness and clarity of thought under pressure and maintain confidentiality.
- Effective written and verbal communication skills.
- Hands on experience in security architecture and consultancy.
- Experience in a financial or highly regulated environment.
- Threat Modeling using MITRE ATT&CK/STRIDE.
- Cloud Security - IaaS (AWS), PaaS (Salesforce) & SaaS.
- Experience implementing security solutions surrounding cloud transformation, data management, data storage.
- Experience with Application Security (OWASP Top 10).
- Experience utilizing Agile methodologies.
- PCI DSS, GDPR, PSD2.
- Information Assurance frameworks.
- Technical risk analysis, assessment and mitigation.
This is a permanent position based in our Nottingham office. We have a hybrid working model which gives you flexibility to work from our office and from home. You'll be based in our Nottingham office 3 days a week on Tuesdays, Wednesdays and Thursdays. Many of our associates have flexible working arrangements, and we're open to talking about an arrangement that works for you.
What's in it for you- Bring us all this - and you'll be well rewarded with a role contributing to the roadmap of an organisation committed to transformation.
- We offer high performers strong and diverse career progression, investing heavily in developing great people through our Capital One University training programmes.
- Immediate access to our core benefits including pension scheme, bonus, generous holiday entitlement and private medical insurance - with flexible benefits available including season-ticket loans, cycle to work scheme and enhanced parental leave.
- Open plan workspaces and accessible facilities designed to inspire and support you. Our Nottingham head office has a fully serviced gym, subsidised restaurant, mindfulness and music rooms. In London, you can heighten your mood with a run on our rooftop running track or an espresso at the Workshop Coffee café.
We pride ourselves on hiring the best people, not the same people. Building diverse and inclusive teams is the right thing to do and the smart thing to do. We want to work with top talent: whoever you are, whatever you look like, wherever you come from. We know it's about what you do, not just what you say. That's why we make our recruitment process fair and accessible and offer benefits that attract people at all ages and stages.
We also partner with organisations including the Women in Finance and Race At Work Charters, Stonewall and upReach to find people from every walk of life and help them thrive with us. For more information about our partnership programmes, please visit our Diversity & Inclusion page.
Contact information for reasonable adjustmentIf you require a reasonable adjustment, please contact . All information will be kept confidential and will only be used for the purpose of applying a reasonable adjustment.
Contact information for technical supportFor technical support or questions about Capital One's recruiting process, please send an email to .
Additional disclaimerCapital One does not provide, endorse nor guarantee and is not liable for third party products, services, educational tools or other information available through this site.
Capital One Financial is made up of several different entities. Please note that any position posted in Canada is for Capital One Canada, any position posted in the United Kingdom is for Capital One Europe and any position posted in the Philippines is for Capital One Philippines Service Corp. (COPSSC).
Who We AreAt Capital One, we're building a leading information based technology company. Still founded led by Chairman and Chief Executive Officer Richard Fairbank, Capital One is on a mission to help our customers succeed by bringing ingenuity, simplicity, and humanity to banking. We measure our efforts by the success our customers enjoy and the advocacy they exhibit. We are succeeding because they are succeeding. Guided by our shared values, we thrive in an environment where collaboration and openness are valued. We believe that innovation is powered by perspective and that teamwork and respect for each other lead to superior results. We elevate each other and obsess about doing the right thing. Our associates serve with humility and a deep respect for their responsibility in helping our customers achieve their goals and realize their dreams. Together, we are on a quest to change banking for good.
EEO StatementCapital One is committed to diversity in the workplace.