×
Register Here to Apply for Jobs or Post Jobs. X

Principal Risk Specialist, Tech & Cyber Risk | Retail Bank

Job in McLean, Fairfax County, Virginia, USA
Listing for: Capital One
Full Time position
Listed on 2026-06-22
Job specializations:
  • IT/Tech
    Cybersecurity, IT Project Manager, IT Business Analyst
Salary/Wage Range or Industry Benchmark: 100000 - 125000 USD Yearly USD 100000.00 125000.00 YEAR
Job Description & How to Apply Below

Principal Risk Specialist, Tech & Cyber Risk | Retail Bank

As a Principal Associate of Tech & Cyber Risk within Capital One’s Business Risk Office, you will enable and drive end-to-end risk management of the portfolio by partnering directly with risk partners, technology stakeholders, operations and engineering teams to identify, assess, and mitigate technology and cyber risks.

Key Responsibilities
  • End-to-End Risk Management & Execution
  • Drive end-to-end technology and cyber risk assessments, managing the lifecycle from tactical implementation and ongoing evaluation through to remediation tracking and successful risk finding closure.
  • Support the responsible implementation of AI applications and large‑scale architecture transformations by conducting timely risk assessments and ensuring project teams align with well‑managed best practices and enterprise risk frameworks.
  • Project Management & Stakeholder Engagement
  • Utilize strong project management skills to effectively prioritize risk initiatives, ensuring clear project scope and the timely delivery of impactful results.
  • Exhibit outstanding communication skills to build and manage strong stakeholder relationships across engineering, operations, cyber, risk functions, keeping all levels and lines of defense informed and influencing outcomes to drive project success.
  • Display strong advisory skills to guide risk and engineering partners through complex risk landscapes, adapting with agility to changing business demands and evolving technology environments.
  • Process Improvement & Program Execution
  • Drive continuous improvement within the Tech & Cyber Risk Office by identifying, designing, and implementing enhancements to streamline risk identification, assessment, and mitigation workflows.
  • Metrics, Reporting & Compliance
  • Monitor and analyze key risk metrics and dashboards, partnering closely with stakeholders to oversee remediation efforts and drive metrics toward target compliance levels.
  • Assist in preparing accurate compliance documentation and data for audit engagements, ensuring the overall tech risk posture is transparent and well‑documented.
  • Lead and facilitate recurring risk forums (e.g., metrics reviews) to ensure progress visibility and stakeholder alignment.
  • Proactively own and drive RCSA workflow, acting as a lead or delegate to improve operational efficiency and risk coverage.
  • Develop and manage comprehensive risk measurement frameworks (KRI/metrics), ensuring actionable data‑driven insights are communicated to senior leadership.
Role Expectations & Desired Behaviors
  • Autonomy & Strategic Execution:
    Proactively identify, own, and resolve risks with limited supervision; exhibit structured problem‑solving to lead sub‑tasks and strategy.
  • Customer Focus & Reliability:
    Own the end‑to‑end customer process by facilitating project forums and anticipating partner needs to reduce portfolio risk.
  • Communication & Influence:
    Tailor messaging for diverse audiences (from peers to senior leadership); lead meeting agendas to drive consensus, influence outcomes, and ensure timely action.
  • Fungibility & SME Development:
    Actively develop deep domain expertise to rotate across core and adjacent risk roles, sharing knowledge to strengthen team capabilities and flexibility.
Basic Qualifications
  • 5+ years of experience in Technology Risk Management, Cybersecurity, IT Audit, or Technology Consulting.
Preferred Qualifications
  • Experience leveraging data analysis and visualization tools (e.g., Sheets, Pivot Tables, SQL, Tableau, Power BI) to derive risk insights and manage metrics.
  • Project management experience, including planning, execution, and delivery of strategic initiatives. Demonstrated success managing complex, cross‑functional risk or technology projects utilizing agile or waterfall methodologies.
  • Awareness of RCSA (Risk and Control Self‑Assessment) risk frameworks and methodologies.
  • Certifications such as Certified Information Systems Auditor (CISA), Certified in Risk and Information Systems Control (CRISC), Certified Information Security Manager (CISM), or Certified Information Systems Security Professional (CISSP).
  • Familiarity with AI risk management frameworks, or possession…
To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
 
 
 
Search for further Jobs Here:
(Try combinations for better Results! Or enter less keywords for broader Results)
Location
Increase/decrease your Search Radius (miles)
0
200
Filters
Education Level
Experience Level (years)
Posted in last:
Salary