Manager, Software Risk Lead - Enterprise Services Risk Office
Listed on 2026-06-26
-
IT/Tech
Cybersecurity, Data Security, IT Business Analyst, Information Security
Manager, Software Risk Lead - Enterprise Services Risk Office
Capital One is a diversified bank that offers a broad array of financial products and services to consumers, small business and commercial clients. As one of the nation’s top 10 banks, we offer a broad spectrum of financial products and services to consumers, small businesses and commercial clients. We nurture a work environment where people with a variety of thoughts, ideas and backgrounds, guided by our shared Values, come together to make Capital One a great company and a great place to work.
We are hiring! The Enterprise Services Business Risk Office provides risk management support to several lines of business including:
Brand, Enterprise Supplier Management, Enterprise Products & Experience (EPX), Software, External Affairs, eData, Global Workplace Solutions, Emerging Payments, Ventures, and Tech. We are on the cutting edge of risk management and provide support for new and emerging technologies as well as critical business strategies. Capital One has taken a bold journey to build a technology company, while operating in a complex, highly regulated business.
In this position, you will play a key role within Enterprise Services Risk, leading and performing core risk activities in support of the Capital One Software line of business, ensuring effective risk mitigation for our products, processes, platforms and services. You will collaborate closely with associates across all lines of defense, the Software business, and other risk management teams to perform and support the work related to further maturing process and risk management practices.
This role is highly visible and involves frequent interaction with senior leaders, including accountable executives, to drive meaningful change in our business partners’ processes that can lead to not only risk reduction, but also better customer experiences.
Responsibilities:
Serve as a trusted risk advisor for the Software business; leverage subject matter knowledge and critical thinking to drive value
Lead analysis of various business and risk data and information to proactively identify risks, trends, and process improvements
Provide guidance to the Software business areas on process management and process level assessments, in alignment with Enterprise frameworks and risk management principles
Stay current on regulatory environment changes, industry trends, and understand their impacts to our efforts
Lead risk assessment project delivery, including providing oversight of risk assessment deliverables, reporting, and meetings; draft and review materials for senior management and other governance functions
Drive development of associated risk controls, issues and/or mitigation plans to ensure the business implements needed changes and addresses areas of exposure
Participate in risk and other management forums and contribute to continuous improvement of risk and project / program management practices
Lead cross-functional teams through various initiatives (with a focus on the Software business) as needed
Basic Qualifications:
Bachelor’s Degree or Military experience
At least 2 years of experience in the Financial Services or Technology industries
At least 5 years of experience in project, program, process, or risk management
At least 5 years of experience supporting, partnering, and interacting with stakeholders
Preferred Qualifications:
At least 5 years of Financial Services, Consulting, or Technology industry experience with focus on technology, cyber or data
Working knowledge of related risk management or regulatory practices
Process development, documentation, or improvement experience Experience with Governance, Risk, and Compliance software tools
One or more of the following certifications:
Business Process Management (BPM), Six Sigma Lean, Green Belt or Black Belt, Agile Coach, Certified Regulatory Compliance Manager (CRCM), Project Management (PMP) or Program Management (PgMP), Certified Information Systems Security Professional (CISSP), Certified Information Security Manager (CISM), Certified Information Systems Auditor (CISA), Certified Risk and Information Systems Control (CRISC)Experience…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).