Cybersecurity Assessment Maturity Analyst
Company: Capital One
Location: Richmond
Posted on: March 19, 2023
Job Description:
Center 3 (19075), United States of America, McLean,
VirginiaCybersecurity Assessment Maturity Analyst The role of
Cybersecurity Assessment Maturity Analyst sits within the Cyber
Governance, Risk & Compliance (GRC) organization supporting our
enterprise Cyber Assessment Maturity Program. The Cybersecurity
Assessment Maturity Analyst will support several large annual
regulatory cyber assessments as well as help our team to compile
operational information, perform SME interviews, and produce in
depth analysis to support Capital One's cybersecurity strategy.
This role is ideal for candidates interested in broadening their
understanding of cybersecurity program management activities, cyber
risk management, and best practices in cloud environments.
Responsibilities:
- Support the ongoing evaluation of cybersecurity capabilities to
determine maturity score and effectiveness of capability
implementation using the NIST Cybersecurity Framework (CSF) across
the enterprise
- Collaborate with stakeholders, Executives and LOB partners to
understand their capabilities, maturation road-maps, and facilitate
next steps towards meeting analysis and tier maturation
timelines
- Leverage and enrich cybersecurity data from multiple data
streams to produce new insights and analysis
- Support the monitoring of cyber capabilities and track progress
to maturity state objectives
- Evaluate industry best practices/standards on cybersecurity
capabilities/controls and frameworks to further enhance Capital
One's Cyber Assessment Maturity Program (CAMP)
- Support improvements activities to program capabilities through
the interpretation of technical issues and determination of root
cause(s) of discovered weaknesses
- Brief cyber and tech program leads about the maturity of their
program areas Basic Qualifications:
- High School Diploma, GED or Equivalent Certification
- At least 2 years of experience in cybersecurity or information
security
- At least 1 year of experience evaluating cybersecurity
capabilities
- At least 1 year of experience evaluating systems and network
security architecture
- At least 1 year of experience supporting cybersecurity
assessments and NIST frameworks Preferred Qualifications:
- Bachelor's degree
- 1+ year of experience supporting, partnering, and interacting
with key stakeholders or internal business partners
- 1+ year of experience with Cyber Maturity Models (NIST 800-53,
CMMC, or FedRAMP)
- 1+ year of experience supporting governance and issue
escalation reporting
- 1+ year of experience supporting the development and
implementation of formal process documentation (policies,
standards, procedures, playbooks, work breakdown structure (WBS),
and security program improvement plans)
- 1+ year of experience working with cloud architecture and cloud
environments
- 1+ year of experience in an Agile environment At this time,
Capital One will not sponsor a new applicant for employment
authorization for this position. The minimum and maximum full-time
annual salaries for this role are listed below, by location. Please
note that this salary information is solely for candidates hired to
perform work within one of these locations, and refers to the
amount Capital One is willing to pay at the time of this posting.
Salaries for part-time roles will be prorated based upon the agreed
upon number of hours to be regularly worked. Location is New York
City: $112,400 - $128,300 for Sr. Assoc, Cyber Risk & Analysis
Candidates hired to work in other locations will be subject to the
pay range associated with that location, and the actual annualized
salary amount offered to any candidate at the time of hire will be
reflected solely in the candidate's offer letter. This role is also
eligible to earn performance based incentive compensation, which
may include cash bonus(es) and/or long term incentives (LTI).
Incentives could be discretionary or non discretionary depending on
the plan. Capital One offers a comprehensive, competitive, and
inclusive set of health, financial and other benefits that support
your total well-being. Learn more at the Capital One Careers
website . Eligibility varies based on full or part-time status,
exempt or non-exempt status, and management level. No agencies
please. Capital One is an Equal Opportunity Employer committed to
diversity and inclusion in the workplace. All qualified applicants
will receive consideration for employment without regard to sex,
race, color, age, national origin, religion, physical and mental
disability, genetic information, marital status, sexual
orientation, gender identity/assignment, citizenship, pregnancy or
maternity, protected veteran status, or any other status prohibited
by applicable national, federal, state or local law. Capital One
promotes a drug-free workplace. Capital One will consider for
employment qualified applicants with a criminal history in a manner
consistent with the requirements of applicable laws regarding
criminal background inquiries, including, to the extent applicable,
Article 23-A of the New York Correction Law; San Francisco,
California Police Code Article 49, Sections ; New York City's Fair
Chance Act; Philadelphia's Fair Criminal Records Screening Act; and
other applicable federal, state, and local laws and regulations
regarding criminal background inquiries.If you have visited our
website in search of information on employment opportunities or to
apply for a position, and you require an accommodation, please
contact Capital One Recruiting at 1- or via email at . All
information you provide will be kept confidential and will be used
only to the extent required to provide needed reasonable
accommodations.For technical support or questions about Capital
One's recruiting process, please send an email to Capital One does
not provide, endorse nor guarantee and is not liable for
third-party products, services, educational tools or other
information available through this site.Capital One Financial is
made up of several different entities. Please note that any
position posted in Canada is for Capital One Canada, any position
posted in the United Kingdom is for Capital One Europe and any
position posted in the Philippines is for Capital One Philippines
Service Corp. (COPSSC).
Keywords: Capital One, Richmond , Cybersecurity Assessment Maturity Analyst, Professions , Richmond, Virginia
Didn't find what you're looking for? Search again!
Loading more jobs...