Principal Risk Specialist, Identity & Access Management | Retail Bank
Listed on 2026-06-15
-
IT/Tech
Cybersecurity, Information Security, IT Consultant, Data Security
Principal Risk Specialist, Identity & Access Management | Retail Bank
As a Principal Associate within Capital One’s Business Risk Office, you will operate at the intersection of business, cyber, and technology to reduce risk and friction in our Identity and Access Management (IAM) processes. You will be a strategic risk partner to business and technology stakeholders, directly shaping our technology risk posture. This role is high‑impact, where you will lead the responsible implementation of AI, leverage your analytical and risk management expertise to drive meaningful outcomes, enforce and influence corporate policies and standards, and ensure the resilience of our enterprise technology.
Responsibilities- IAM Strategy & Governance: Support the development and execution of the identity and access risk framework, providing guidance for critical assets including Identity Governance & Administration, Privileged Access Management, and Entitlement Management.
- Risk Assessment & Mitigation: Perform risk assessments and data analysis to identify trends and reduce residual risk within the Bank Tech business.
- Project & Process Management: Drive cross‑functional projects and manage simultaneous work streams, ensuring scope, timelines, and regulatory standards are met.
- Stakeholder Liaison: Act as a key liaison between technology teams, cyber, ESM, vendors, and business partners to translate enhanced enterprise requirements and report on IAM risk posture.
- Executive Reporting: Prepare high‑quality presentations and briefing materials for senior management and executive leadership regarding the risk environment, metrics, and remediation status.
- Process Improvement: Identify opportunities for automation and streamline business processes to achieve maximum operational efficiency and audit readiness.
- Identity and Access Management (IAM): Provide industry expertise on IAM concepts such as Single Sign‑On (SSO), Multi‑Factor Authentication (MFA), and Segregation of Duties (SOD).
- At least 3 years of experience in Cybersecurity, Technology, Consulting, Audit, or Risk Management.
- At least 1 year of experience with Identity and Access Management.
- 4+ years of experience in Cybersecurity, Technology, Consulting, Audit, or Risk Management.
- 2+ years of experience with Identity and Access Management.
- Cybersecurity and technology risk certifications such as CISSP, CISA, CRISC, or CISM.
- Certified Identity and Access Manager (CIAM) and/or Certified Identity Management Professional (CIMP).
- Certified AI Governance Professional (AIGP) certification or other relevant AI risk management certifications.
- Experience in a Large Financial Services or Big4 consulting organization.
At this time, Capital One will not sponsor a new applicant for employment authorization for this position.
Salary Range- McLean, VA: $120,800 – $137,900 (Principal Risk Specialist)
- Richmond, VA: $109,900 – $125,400 (Principal Risk Specialist)
Capital One offers a comprehensive, competitive, and inclusive set of health, financial and other benefits that support your total well‑being.
Equality and InclusionCapital One is an equal opportunity employer (EOE, including disability/vet) committed to non‑discrimination in compliance with applicable federal, state, and local laws. Capital One promotes a drug‑free workplace.
#J-18808-Ljbffr(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).