×
Register Here to Apply for Jobs or Post Jobs. X

Senior Associate, Cyber Governance & Risk - Cyber Exceptions Analyst

Job in McLean, Fairfax County, Virginia, USA
Listing for: Capital One National Association
Full Time position
Listed on 2026-04-17
Job specializations:
  • IT/Tech
    Cybersecurity, IT Consultant
Salary/Wage Range or Industry Benchmark: 80000 - 100000 USD Yearly USD 80000.00 100000.00 YEAR
Job Description & How to Apply Below

Senior Associate, Cyber Governance & Risk - Cyber Exceptions Analyst

Security is essential to what we do at Capital One, from protecting customer data to the associate experience. As a Cyber Exceptions Analyst within the Governance and Risk division, you see security as an innovation enabler and differentiator, not just a step in the compliance process. You thrive working with business and technology partners to achieve goals and objectives in a secure manner.

You’re constantly looking for ways to leverage modern technology architectures while understanding their security limitations. You enjoy solving tough cybersecurity problems in an iterative, team environment. You will help Capital One business application teams navigate through tough compliance challenges and help steer them towards fulfilling Capital One’s cybersecurity standards and protocols.

You are pragmatic and practical in your understanding of software development and IT operations, and have experience with industry risk frameworks and models including, but not limited to, NIST, FedRAMP, and MITRE ATT&CK. You possess a technical understanding of software engineering best practices, cloud infrastructure, security scanning and detection tools, data protection, and tool configuration management. You are familiar with the top Cloud Service Providers such as AWS, Google, and Azure, and understand their security capabilities, considerations, and limitations as they relate to financial and banking institutions.

This knowledge will help you collaborate and innovate with customers and colleagues to understand non-compliance and non-adherence trends to promote and continue building a safer cyber environment.

At Capital One, you will be a vital contributing member to a team responsible for reviewing Cyber Exceptions - scenarios in which Capital One business teams cannot adhere to Capital One requirements and security controls. You will be working to identify cybersecurity gaps and trends all while solutioning on how to address them, to include highlighting the need for new or enhanced projects that create business value and reduce critical cyber risk.

You are pragmatic and practical in your understanding of security and associated risks, but also willing to know when to pull in experts to inform your recommendations and escalate when necessary. You will be working directly with application developers, coders, Information Security Officers, and Capital One’s cybersecurity leadership team to seek input, socialize proposed solutions, and facilitate agreement on next steps.

Responsibilities:

  • Serve as a Cyber Exceptions Analyst to review and advise on non-compliant scenarios while helping teams find appropriate mitigating factors that better mitigate risk during the non-adherence period as well as finding possible alternatives.

  • Analyze and create dashboards and reports that help your colleagues and leadership better understand the trending issues that drive and trigger Exceptions.

  • Support the development, implementation, and execution of continuous improvement programs, including risk aggregation, issue identification, corrective action implementation, new risk management tools, and results validation.

  • Develop processes and tools that will enhance Cyber’s ability to better identify the impact of Cyber Exceptions to Capital One’s overall risk posture.

  • Effectively communicate the impact of identified operational, compliance, process, control, and tooling gaps and potential remediation courses of action to multiple audiences, including leadership, to support the enhancement of their cybersecurity postures.

  • Stay current on emerging Cloud computing technology vulnerabilities, threats, controls, and potential implications to expose Capital One and integrate that knowledge into you and your colleagues’ work streams.

About You:

  • You are innovative and experienced in driving change to achieve desired outcomes.

  • You are familiar with risk management and governance, as well as some experience with threats and know how to perform qualitative and quantitative analysis.

  • You have experience with issue identification and corrective action implementation.

  • You have working…

Position Requirements
10+ Years work experience
To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
 
 
 
Search for further Jobs Here:
(Try combinations for better Results! Or enter less keywords for broader Results)
Location
Increase/decrease your Search Radius (miles)
0
200
Filters
Education Level
Experience Level (years)
Posted in last:
Salary