Director, Policy and Risk Reporting

1 day ago


Richmond VA United States Capital One Full time

Center 3 (19075), United States of America, McLean, Virginia

Director, Policy and Risk Reporting

Capital One is one of the fastest growing organizations, powered by our passion for our customers. We are serious about technology, we dream big, and we execute: Capital One moved our entire enterprise to the public cloud over the course of five years. Just as we prioritize driving innovation through technology, we equally prioritize cybersecurity and managing technology risk.

For years, the cybersecurity community has debated whether the CISO should report to the CIO or not. In regulated financial services, the answer is: both. The first-line CISO has operational responsibilities and reports to the CIO. The second-line Chief Tech Risk Officer (CTRO) and their Technology Risk Management (TRM) organization oversee cybersecurity but also have broader responsibilities for reliability, software quality, resilience, and other technology risks. The CTRO is independent, reports to the Chief Risk Officer, and oversees the work of the CISO and the CIO.

Technology Risk Management (TRM) is a small organization that packs a big punch. The ~100 professionals in TRM are trusted experts who oversee ~14,000 developers at Capital One. We raise the bar for excellence in cybersecurity, reliability, and tech risk. We shape strategy and decisions, challenge activities to ensure they meet our standards, and perform independent tests of our security and technology risk.

As the Director, Policy & Risk Reporting, you will provide thought leadership and strategic guidance as we update and maintain our portfolio of policies, standards, and procedures, as well as establish policy-level requirements for the first line. You will drive improvements to our reporting processes and ensure that materials meet our high bar for clarity, consistency, and message. You will oversee the coordination and drafting of our quarterly memo to the Risk Committee of the Board of Directors, partnering closely with our peers in the second line and our counterparts in the first line. You will support the development of technology and cyber risk content for a committee composed of members of the Executive Committee. Lastly, you will oversee additional risk reporting, including the TRM Forum and monthly business reviews.

The successful candidate will:

  • Be a seasoned leader with strong influence, problem solving, and judgment skills
  • Strong technical writing skills as well as verbal and visual communication
  • Be a strategic and critical thinker who has the ability to express a point of view supported by data (with both technical and non-technical audiences)
  • Possess a high Emotional Intelligence
  • Be a self-starter that can work autonomously and take initiative
  • Have the ability to navigate "white space" or ambiguous situations
  • Collaborate effectively with colleagues, stakeholders, and leaders across multiple organizations to get consensus

Basic Qualifications:

  • Bachelor's degree or military experience
  • At least 5 years experience with policy development or risk reporting
  • At least 5 years experience in the financial services industry
  • At least 5 years experience in the technology, cybersecurity, or risk management
  • At least 2 years experience as a people leader

Preferred Qualifications:

  • Master's degree
  • Familiarity with industry frameworks such as NIST CSF, NIST 800-53, and/or COBIT
  • Knowledge of supervisory expectations
  • At least 2 years of experience working in an Agile environment
  • At least 3 years experience as a people leader
  • Professional security management certifications, such as a Certified Information Systems Auditor (CISA), Certified Information Systems Security Professional (CISSP) or Certified Information Security Manager (CISM) or Certified in Risk and Information Systems Controls (CRISC)

At this time, Capital One will not sponsor a new applicant for employment authorization for this position.

Capital One offers a comprehensive, competitive, and inclusive set of health, financial and other benefits that support your total well-being. Learn more at the Capital One Careers website. Eligibility varies based on full or part-time status, exempt or non-exempt status, and management level.

This role is expected to accept applications for a minimum of 5 business days. No agencies please. Capital One is an equal opportunity employer committed to diversity and inclusion in the workplace. All qualified applicants will receive consideration for employment without regard to sex (including pregnancy, childbirth or related medical conditions), race, color, age, national origin, religion, disability, genetic information, marital status, sexual orientation, gender identity, gender reassignment, citizenship, immigration status, protected veteran status, or any other basis prohibited under applicable federal, state or local law. Capital One promotes a drug-free workplace. Capital One will consider for employment qualified applicants with a criminal history in a manner consistent with the requirements of applicable laws regarding criminal background inquiries.

#J-18808-Ljbffr

  • Richmond, United States Capital One Full time

    Center 3 (19075), United States of America, McLean, VirginiaDirector, Policy and Risk ReportingCapital One is one of the fastest growing organizations, powered by our passion for our customers. We are serious about technology, we dream big, and we execute: Capital One moved our entire enterprise to the public cloud over the course of five years. Just as we...


  • Richmond, California, United States Capital One Full time

    Capital One is one of the fastest-growing organizations in the industry, driven by our passion for customer satisfaction. We are serious about technology, we dream big, and we execute: Capital One successfully transitioned our entire enterprise to the public cloud over five years. Just as we prioritize driving innovation through technology, we equally...

  • Director-Risk Data

    1 day ago


    New York, NY, United States American Express Full time

    You Lead the Way. We’ve Got Your Back. With the right backing, people and businesses have the power to progress in incredible ways. When you join Team Amex, you become part of a global and diverse community of colleagues with an unwavering commitment to back our customers, communities and each other. Here, you’ll learn and grow as we help you create a...


  • , IL, United States FIDUCIARY & INVENSTMENT RISK MANAGEMENT ASSOCIATION INC Full time

    Advancing Education, Enhancing Connections Director of Fiduciary Risk and Compliance - Associated Bank Posted: October 10, 2024 Associated BankDirector of Fiduciary Risk and Compliance for the Trust CompanyRemote/Hybrid within footprint (Wisconsin, Illinois, Minnesota, Missouri). Would need to travel to Green Bay 4x a year for OCC Exams which last 4 days. ...


  • New York, NY, United States Amex Full time

    You Lead the Way. We’ve Got Your Back. With the right backing, people and businesses have the power to progress in incredible ways. When you join Team Amex, you become part of a global and diverse community of colleagues with an unwavering commitment to back our customers, communities and each other. Here, you’ll learn and grow as we help you create a...


  • Atlanta, GA, United States RaceTrac, Inc. Full time

    RaceTrac Company Overview Job Description: The Director of Risk Management plays a critical role in driving the company’s risk management efforts by contributing to the management of workers' compensation claims, general liability claims, and insurance procurement. Reporting to the Executive Director of Risk Management and Associate General Counsel, the...


  • Richmond, United States Capital One Full time

    Center 3 (19075), United States of America, McLean, VirginiaDirector, Risk Management (ES Risk)Risk Managers at Capital One are highly motivated risk and process management professionals with excellent analytical, organizational, risk management, project management, and communication skills. These skills allow us to gain insights, and act as a change agent...


  • Draper, UT, United States HEALTHEQUITY, INC. Full time

    Our mission is to SAVE AND IMPROVE LIVES BY EMPOWERING HEALTHCARE CONSUMERS. Come be part of remarkable. How you can make a difference HealthEquity's Enterprise Risk Management (ERM) Team leads delivery of the firm's ERM Program, which works with teams firmwide to manage (i.e., identify, assess, mitigate, and monitor) significant risks facing HealthEquity....


  • McLean, VA, United States Capital One Full time

    West Creek 3 (12073), United States of America, Richmond, Virginia Senior Director, Enterprise Risk Management Do you want to be part of an organization that's dedicated to helping Capital One identify, manage and effectively mitigate risk - for our customers, our communities and our associates? As part of Enterprise Risk Management (ERM), you'll work with...

  • Director, IT

    2 weeks ago


    Troy, MI, United States Flagstar Bank Full time

    The Director of IT & Security Risk Management is responsible for developing and implementing the first line of defense for an end-to-end IT risk management program in alignment with Flagstar’s Enterprise Risk Management program driving the identification, assessment, and prioritization of existing and emerging IT risks across the organization. Lead and...


  • Orlando, FL, United States Loews Hotels, LLC Full time

    Director of Risk ControlAt Loews Hotels at Universal Orlando, our team members get to make a difference and have fun every day. Our world-class team brings to life the incredible, award-winning hotels located at Universal Orlando Resort.Named one of Central Floridas Top Workplaces and one of Americas Best-in-State Employers by Forbes, we are committed to our...


  • Orlando, FL, United States CEO Inc. Full time

    Position: Director Financial Reporting (Hybrid)Location: Orlando FLRole OverviewThe Director of Financial Reporting will direct and oversee the preparation and distribution of financial reports for external use. Ensures that all financial reports comply with governmental regulations and the Company’s policies and procedures. Performs technical accounting...


  • Richmond, VA, United States Capital One Full time

    Center 1 (19052), United States of America, McLean, Virginia Director - Enterprise Risk Management, Change Governance Do you want to be part of an organization that's dedicated to helping Capital One identify, manage and effectively mitigate risk - for our customers, our communities and our associates? As part of Enterprise Risk Management (ERM), you'll work...

  • Project Risk Manager

    4 weeks ago


    McLean, VA, United States Zillion Technologies, Inc. Full time

    USC or GC ONLY# No third party vendors# This is a IT Project Risk Management roleJob Title : IT PM Specialist (Risk Management and Governance)Locations:. Onsite (Hybrid) in McLean, VA on Tuesday, Wednesday and ThursdayNotes:The IT PM will be working on governance-related activities on models, remediating issues, stake holder management i.e., working with...

  • Associate Director

    2 days ago


    , CO, United States JTC Group Full time

    Role Overview To ensure that the JTC Guernsey's Licensees and Clients Licensees (collectively, the ‘Licensees’) businesses have robust arrangements to assist in the identification, assessment, monitoring and management of risks. To enhance the risk management infrastructure in which to advise and support the Licensees with customised, proportionate...


  • Richmond, California, United States Capital One Full time

    About the RoleCapital One is seeking a seasoned leader to serve as the Director, Policy and Risk Reporting. This role is responsible for providing thought leadership and strategic guidance on updating and maintaining our portfolio of policies, standards, and procedures, as well as establishing policy-level requirements for the first line. The ideal candidate...


  • Dublin, OH, United States Hunter International Recruiting Full time

    Risk Management Director is responsible for managing client accounts, executing on risk strategies, and ensuring quality delivery of services to optimize our clients’ total cost of risk.Risk Management Director Responsibilities:Leads and develops a team of risk analysts as they partner with clients to implement strategies, complete the annual risk...


  • Columbus, OH, United States Ohio Hospital for Psychiatry Full time

    Job Responsibilities Investigate and analyze actual and potential risks in the facility; assess liability and probability of legal action for potential notification. Implement, educate and encourage incident reporting system throughout the facility. Implement risk management program throughout the facility. Develop and implement infrastructures and systems...


  • Fredericktown, OH, United States Kokosing, Inc. Full time

    Kokosing ( is one of America's 60 largest General Contractors and services a broad spectrum of clients in both the private and public business sectors. Kokosing's services include heavy civil/industrial construction such as highways, bridges, underground utilities, water/wastewater facilities, and marine construction. For 70 years, Kokosing has successfully...


  • Golden Valley, MN, United States MidWestOne Bank Full time

    Overview At MidWestOne, our people are number one in everything we do. We are a community bank with a culture based on integrity and customer care. The people on our team are the foundation of our success. If you're ready to work for an organization that values you, develops your talents and helps you grow personally and professionally, then look no further....