About this role
Director-level technology risk role on the Tech Risk & Product Risk team, owning the risk portfolio for Resiliency and Reliability Engineering (R2E) and leading risk guide activities across enterprise systems. Partner with executives and first-line teams to implement risk management practices that protect customers and assets while enabling innovation.
Key Responsibilities
- Serve as a Technology Risk Director for the R2E team to propel technology risk agenda
- Build relationships with Tech and other team members to understand impact of technology risk on critical business processes
- Lead risk reviews during processes such as Risk Control Self Assessments (RCSAs), Process Level Assessments (PLAs), Exceptions, Applications, Targeted Risk Assessments
- Influence leaders within Tech, Compliance, Cyber Security, second line risk, and Internal Audit on key technology risks
- Conduct monthly risk reviews with the executives and support reporting for technology risk metrics
Technical Overview
Expertise in cybersecurity and technology risk management, resilience and reliability practices, incident and problem management, and architecture governance. Experience with cloud-based environments and AI risk considerations, plus strong analytical and reporting capabilities.
Ideal Candidate
The ideal candidate is an executive-level technology risk leader with 7+ years of cybersecurity/tech risk, capable of directing risk programs across resilience and reliability, and experienced partnering with executives to drive risk-informed decisions.
Must-Have Skills
Bachelor's Degree or Military experienceAt least 7 years of experience in CybersecurityTechnologyRisk Managementor External AuditAt least 7 years of experience in projectprocessor program managementAt least 7 years of experience supportingpartneringand interacting with internal or external business clientsAt least 4 years of People Management experience
Nice-to-Have Skills
10+ years of experience in CybersecurityTechnologyRisk Managementor Project/Program ManagementConsulting experience with a Big 4 firm5+ years of experience leading cross-functional tech and cyber risk management projects specifically within public cloud-based environments3+ years of experience formally managing risksgovernanceand controls for technologydigital productsand solutions3+ years of experience in the Financial Services industryProfessional Certifications (AWSAzureGCPCCSPCCSK)Risk Certifications (CRISCCISACISMCRCMCAMSCIPPABA Risk Management Certification)Functionalin-depth knowledge of Cloud EnvironmentsCybersecurity toolingSaaSand enterprise technology platformsTechnical proficiency of resilience and reliability (incident managementproblem managementmeasuring customer impactarchitecture governance concepts)Ability to set directiondelegate tasksand influence cross-functional teams to deliver results
Required Skills
Bachelor's degree or Military experience7+ years in Cybersecurity/Technology Risk or External Audit7+ years in projectprocessor program management7+ years supporting and interacting with business clients4+ years people managementleadershipstakeholder managementcommunicationrisk assessmentincident managementproblem managementresilience engineeringSREarchitecture governancecontrol frameworksrisk reviewsRCSAPLArisk mitigationexecutive reporting
Hard Skills
Incident managementProblem managementResilience engineeringSite Reliability EngineeringEnterprise architecture governanceControl frameworksRCSAsProcess Level Assessments (PLAs)Risk reviewsExecutive risk reportingCloud and AI risk managementTechnology risk managementRisk mitigation
Soft Skills
LeadershipStrategic thinkingAnalytical skillsCommunicationRelationship buildingExecutive presenceCollaborationInfluencing cross-functional teams
Certifications
Preferred
AWSAmazon Web ServicesAzureMicrosoft AzureGoogle Cloud PlatformGCPCCSPCCSKCRISCCISACISMCRCMCAMSCIPPABA Risk Management Certification
Keywords for Your Resume
Technology Risk Guide DirectorResiliency and Reliability EngineeringR2EIncident managementProblem managementArchitecture governanceControl frameworksRCSAsProcess Level AssessmentsPLAExecutive risk reportingRisk reviewsCloudAI solutionsCapital OneEnterprise Services RiskTech Risk GuideSRECybersecurityRisk managementTechnology riskResiliencyRCSA
Deal Breakers
Less than 7 years of experience in Cybersecurity/Technology Risk or related field, Less than 4 years of People Management experience, Not willing to work onsite at listed Capital One locations
Get matched to jobs like this
Luna finds roles that fit your skills and career goals — no endless scrolling required.
Create a Free Profile