Lead Consultant, Cybersecurity Risk Management

2 weeks ago


Philadelphia, Pennsylvania, United States Capital One Financial Corp Full time

As a pivotal member of the Information Security team at Capital One, you will play a crucial role in advising on various initiatives, programs, and projects aimed at enhancing our Information Security posture. Your practical approach to risk management and security will enable you to identify when expert intervention is necessary, ensuring a robust security framework. Collaboration and innovation with cross-functional teams will be key as you strive to elevate security standards across the organization.

Key Responsibilities:

  • Serve as the primary Information Security liaison for Human Resources and Corporate Technology divisions.
  • Facilitate proactive Information Security consultations for business and technology teams, focusing on Infrastructure Security, Data Protection, Vulnerability Management, Network Design, API Security, and User Access Control.
  • Act as a subject matter expert on Capital One's Information Security capabilities, policies, and standards.
  • Encourage stakeholders to adopt security solutions that integrate security measures early in the development lifecycle.
  • Identify and manage cybersecurity risks effectively.
  • Provide specialized support on critical Information Security issues as they arise.
  • Deliver regular updates to senior leadership regarding the overall security landscape and risk management.
  • Collaborate with business leaders to anticipate their needs and objectives, ensuring alignment with security strategies.
  • Assess risks associated with new and existing vendor partnerships.
  • Develop strategic objectives tailored to support Cybersecurity initiatives within the business.

About You:

  • You thrive in a dynamic, forward-thinking computing environment.
  • You possess a strong passion for securing modern technological platforms.
  • You are committed to continuous learning and staying updated on emerging technologies.
  • You exhibit strong analytical thinking and communication skills.
  • You can operate effectively with minimal supervision.
  • You are a proven leader with excellent interpersonal skills, capable of engaging with diverse stakeholders, including senior management and technology vendors.
  • You maintain composure and clarity under pressure while upholding confidentiality.
  • You have a solid understanding of strategic business goals and the ability to drive results toward achieving them.

Basic Qualifications:

  • High School Diploma, GED, or equivalent certification.
  • A minimum of 8 years of experience in cybersecurity or information technology.
  • At least 7 years of experience providing oversight and guidance on security concepts.
  • A minimum of 7 years of experience conducting security risk assessments and architecture reviews.
  • At least 7 years of experience in architecture, software design, networking, and cloud infrastructure.
  • A minimum of 5 years of experience in cloud security engineering.

Preferred Qualifications:

  • Bachelor's Degree.
  • 3+ years of experience securing public cloud environments (e.g., AWS, GCP, Azure).
  • Experience in software development utilizing public cloud services.
  • Familiarity with cloud patch management practices.
  • Experience with Agile methodologies.
  • Knowledge of Software Security Architecture.
  • Experience in Application Security.
  • Experience with Threat Modeling.
  • Experience in Penetration Testing and Vulnerability Management.
  • Experience integrating SaaS products into enterprise environments.
  • Experience securing container services.
  • Experience in the financial services sector.
  • Professional certifications such as AWS Certified Solutions Architect and Certified Information Systems Security Professional (CISSP).
  • Experience in Offensive and Defensive Security techniques.
  • Experience in regulated environments.

Capital One is an equal opportunity employer committed to diversity and inclusion in the workplace. All qualified applicants will receive consideration for employment without regard to any protected status.



  • Philadelphia, Pennsylvania, United States Federal Reserve Bank of Philadelphia Full time

    Company Overview:The Federal Reserve Bank of Philadelphia is a pivotal entity within the Federal Reserve System, comprising 12 regional Reserve Banks and the Board of Governors located in Washington, D.C. This institution plays a crucial role in shaping and executing monetary policy, overseeing banks and financial holding companies, and delivering financial...


  • Philadelphia, Pennsylvania, United States Cigna Full time

    About the Role:Cigna is seeking a highly skilled Cybersecurity professional to join our team as an Information Protection Advisor. As a key member of our Cybersecurity team, you will be responsible for performing Application and infrastructure security assessments to support confidentiality, integrity, and availability.Key Responsibilities:Assist IT and...


  • Philadelphia, Pennsylvania, United States Federal Reserve Bank of Philadelphia Full time

    Company OverviewThe Federal Reserve Bank of Philadelphia is one of the 12 regional Reserve Banks that, along with the Board of Governors in Washington, D.C., form the Federal Reserve System. This institution plays a crucial role in shaping and executing monetary policy, overseeing banks and bank holding companies, and delivering financial services to...


  • Philadelphia, Pennsylvania, United States EisnerAmper Full time

    Position OverviewEisnerAmper is in search of a dedicated professional to fill the role of Manager within our Risk & Compliance Services division, specifically focusing on IT Risk, Data Privacy, and Security. Our team is committed to delivering comprehensive IT risk advisory solutions that are grounded in industry standards and technical proficiency.Why...


  • Philadelphia, Pennsylvania, United States Pennsylvania Medicine Full time

    Penn Medicine is committed to our tripartite mission of delivering exceptional patient care, pioneering innovative research, and nurturing the next generation of leaders in the medical field. Being part of this prestigious academic medical institution means collaborating with top-tier clinical, technical, and business professionals across various...


  • Philadelphia, Pennsylvania, United States Penn Medicine Full time

    OverviewPenn Medicine is committed to our mission of delivering exceptional patient care, pioneering research, and nurturing the next generation of medical professionals. Joining this esteemed academic medical institution means engaging with top-tier clinical, technical, and business experts across various fields.At Penn Medicine, every day presents an...

  • Cybersecurity Manager

    8 hours ago


    Philadelphia, Pennsylvania, United States Motion Recruitment Full time

    About the RoleMotion Recruitment is seeking a seasoned Cybersecurity Manager to join our team. As a key member of our organization, you will be responsible for leading our vulnerability management efforts and ensuring the security of our cloud infrastructure.Key ResponsibilitiesDevelop and implement effective vulnerability management strategies to identify...


  • Philadelphia, Pennsylvania, United States Comcast Full time

    Join Comcast's Innovative TeamAt Comcast, a leading global media and technology enterprise, we are committed to making a significant impact in the industry. Our diverse platforms and content reach millions of customers worldwide, and we pride ourselves on being at the forefront of technological advancements.About the RoleAs a Lead Cybersecurity Solutions...


  • Philadelphia, Pennsylvania, United States Motion Recruitment Full time

    Job Title: Cybersecurity Vulnerability Management LeadCompany: Motion RecruitmentMotion Recruitment is in search of a proficient Cybersecurity Vulnerability Management Lead, equipped with extensive experience in the field of cybersecurity. This role is pivotal as the organization transitions to a cloud-based infrastructure, particularly utilizing AWS. The...


  • Philadelphia, Pennsylvania, United States EHS TECHNOLOGIES CORPORATION Full time

    Job DescriptionEHS Technologies Corporation is seeking a highly skilled Cybersecurity Technical Lead to support the Naval Surface Warfare Center, Philadelphia Division (NSWCPD) Code 531. The successful candidate will be responsible for providing cybersecurity support to SHIPS AM platforms Hull, Mechanical and Electrical (HM&E) enclave networks and...


  • Philadelphia, Pennsylvania, United States Federal Reserve Bank of Philadelphia Full time

    Job SummaryWe are seeking a highly skilled IT Risk Management Specialist to join our team at the Federal Reserve Bank of Philadelphia. As a key member of our organization, you will be responsible for leading and participating in examinations and monitoring activities to determine the effectiveness of financial institutions' information technology (IT) and...


  • Philadelphia, Pennsylvania, United States Federal Reserve Bank of Philadelphia Full time

    Company OverviewThe Federal Reserve Bank of Philadelphia is one of the twelve regional Reserve Banks that, along with the Board of Governors in Washington, D.C., constitute the Federal Reserve System. This institution plays a crucial role in shaping and executing monetary policy, overseeing banking institutions, and delivering financial services to...


  • Philadelphia, Pennsylvania, United States City of Philadelphia Full time

    Job Overview The City of Philadelphia is committed to ensuring the safety and security of its digital infrastructure. We are looking for a dedicated and experienced individual to fill the role of Cybersecurity Preparedness Administrator. This position plays a crucial role in enhancing our organization's cybersecurity posture by developing and executing...


  • Philadelphia, Pennsylvania, United States The GBS Group Full time

    Position: Cybersecurity Manager with Security ClearanceJob Description Cybersecurity Manager The GBS Group has an exciting opportunity for an Information System Security Manager (ISSM). As an ISSM with GBS, you will work both independently and with a team of cyber professionals, engineers and computer analysts on complex projects related to next generation...


  • Philadelphia, Pennsylvania, United States H2 Performance Consulting Full time

    Job DescriptionH2 Performance Consulting, a leading provider of performance consulting services, is seeking a highly skilled Cybersecurity Specialist II to support the Naval Surface Warfare Center Philadelphia Division (NSWCPD) Code 20 Land Based Test Site Programs.Key ResponsibilitiesAssess & Authorize (A&A)/Risk Management Framework (RMF) Package...

  • Cybersecurity Advisor

    2 weeks ago


    Philadelphia, Pennsylvania, United States Cypfer Full time

    Job OverviewSalary: $70,000.00CYPFER stands at the forefront of cybersecurity, assisting clients in their recovery efforts following cyber incidents. As a prominent entity in ransomware recovery and immediate cyber-incident response, we pride ourselves on delivering exceptional outcomes that surpass industry benchmarks. Our dedicated team collaborates with...


  • Philadelphia, Pennsylvania, United States JPMorganChase Full time

    Job Description Play a vital role in shaping the future of an iconic company and make a direct impact in a dynamic environment designed for top achievers.As a Senior Lead Cybersecurity Architect at JPMorgan Chase within the Cybersecurity and Technology Controls organization, you are an integral part of a team that works to develop high-quality cybersecurity...


  • Philadelphia, Pennsylvania, United States Cypfer Full time

    Job OverviewSalary: $70,000.00CYPFER stands at the forefront of cybersecurity for first responders, assisting clients in efficiently resuming operations after a cyber incident. As a global leader in ransomware recovery and cyber-attack response, we consistently achieve outcomes that surpass industry benchmarks for managing cyber-extortion and ransomware...


  • Philadelphia, Pennsylvania, United States EHS TECHNOLOGIES CORPORATION Full time

    Exciting Position in Cybersecurity Risk ManagementOverview: EHS Technologies Corporation is seeking qualified individuals with expertise in Risk Management Framework (RMF) Information Systems Security Engineering (ISSE). This role focuses on tasks associated with Assessment & Authorization (A&A) and cybersecurity to secure and sustain Authorizations to...


  • Philadelphia, Pennsylvania, United States EHS TECHNOLOGIES CORPORATION Full time

    Exciting Position in Cybersecurity Risk ManagementOverview: EHS Technologies Corporation is seeking qualified candidates with expertise in Risk Management Framework (RMF) Information Systems Security Engineering (ISSE). This role focuses on Assessment & Authorization (A&A) processes and cybersecurity measures to secure Authorizations to Operate for...