cover image
Capital One

Director, Technology Risk- Enterprise Services Risk

On site

Baltimore, United states

Senior

Full Time

21-10-2025

Share this job:

Skills

Communication Leadership Critical Thinking Risk Management Problem-solving Risk Identification Risk Analysis Risk Control benchmarking Organization

Job Specifications

Director, Technology Risk- Enterprise Services Risk
Director, Technology Risk- Enterprise Services Risk
The Enterprise Services Risk organization is expanding with a focus on attracting innovative, pioneering, collaborative, and highly skilled professionals. We operate at the forefront of risk management, providing support for novel and developing technologies, as well as critical business strategies. Diverse perspectives and experiences are valued as we work to redefine the financial sector.
As a Technology Risk Director in Capital One's Tech and Product Risk Office, you will apply your risk management, cyber, and technical expertise to the company's Technology organization. You will partner across Enterprise Services, Divisional CIOs, and Information Security teams to develop and support best-in-class industry risk solutions in a manner that supports innovation and protects our customers, shareholders, and associates. You will collaborate with second lines of defense to lead and implement risk and control tools, techniques, and frameworks for the Technology organization. Your contributions will drive organizational and strategic change through risk identification, measurement, analysis, and reporting in order to better manage the company's risk in an open and collaborative environment.
In this role, you will:
Serve as the Technology Risk Guide leader for the Enterprise Platforms Technology and Product Leadership Team and respective software engineering teams to propel technology risk agenda and help them make informed risk-based decisions.
Assist Tech and Product Risk leadership in delivering against their strategy and services
Provide oversight and guidance on key strategic Technology initiatives
Serve as interdepartmental advisor, interfacing with technology lines of business and other areas such as second line Technology and Cyber organizations and Compliance; collaborate effectively across multiple organizations to achieve objectives
Identify and implement continual program enhancements based on industry standards and best practices related to risk management (especially technology risk) and aligned with Capital One's strategic risk direction
Gather risk and control data and reporting; perform initial analysis or potentially evaluate data provided by team analysts
Design and implement internal risk and control governance processes
Influence leaders within Tech, Cyber, Product, second line risk organizations, the developer community, and Internal Audit on key technology risks and actions needed
Develop and monitor risk analysis, perform deep dive investigations, and drive specific risk initiatives to minimize risk posture and strengthen overall control suite effectiveness
Support Risk Control and Self Assessments (RCSAs)
Understand, document, and analyze current state capabilities leveraging one or more risk methods. Leverage industry benchmarking to determine best practices and lessons learned regarding components of the risk framework.
Write and revise documents such as policies, standards, procedures, and guidelines. Develop and enhance processes, tools, templates, and job aids. Draft, contribute to, edit, and deliver presentations that enable the design, development, refinement, and usage of risk methods.
Basic Qualifications:
High School Diploma, GED or Equivalent Certification
At least 7 years of experience in Cybersecurity, Technology, Risk Management, or External Audit, or a combination
At least 7 years of experience in project, process, or program management
At least 7 years of experience planning and leading IT audits or risk assessments
At least 7 years of People Management experience
Preferred Qualifications
Bachelor's Degree or Military Experience
At least 10 years of experience in Cybersecurity, Technology, Risk Management or External Audit, or a combination
At least 10 years of experience in project, process, or program management
Cyber and Risk Certifications (CRISC, CISM, CRCM, CAMS, CIPP, ABA Risk Management Certification)
Excellent verbal presentation and written communication skills to confidently interact with the cyber organization and enterprise stakeholders
Excellent problem-solving, analytical, and critical thinking skills to effectively respond to shifting priorities, demands, and timelines
Consulting experience with a Big 4 firm is a plus
At this time, Capital One will not sponsor a new applicant for employment authorization for this position
The minimum and maximum Full time annual salaries for this role are listed below, by location. Please note that this salary information is solely for candidates hired to perform work within one of these locations, and refers to the amount Capital One is willing to pay at the time of this posting. Salaries for part-time roles will be prorated based upon the agreed upon number of hours to be regularly worked.Richmond, VA: $205,400 - $234,400 for Director, Cyber Risk & AnalysisNew York, NY: $246,500 - $281,300 for Director, Cyber Risk & Ana

About the Company

At Capital One, we're making things better for our customers and associates through innovation and collaboration. We were founded on the belief that everyone deserves financial freedom—and are dedicated to a world where all have equal opportunity to prosper. Banking is in our DNA, but we are so much more than a bank. We always think about what’s next—and how we can bring our customers the tools needed to improve their financial lives. Your ideas, experiences and skills will help make banking better. You’ll be part of a sup... Know more