Principal Associate, Cyber Third Party Risk Reduction (CTPRR) Governance Team
Company: Capital One
Location: Richmond
Posted on: April 1, 2025
Job Description:
Principal Associate, Cyber Third Party Risk Reduction (CTPRR)
Governance TeamCapital One's Cyber Third Party Risk Reduction
(CTPRR) program defines the framework for managing cybersecurity
risk associated with third party engagements. The goal of CTPRR is
to assess and to understand the effectiveness of a third party's
ability to protect and safeguard Capital One's data. The associate
in this role will be a part of CTPRR's Governance and Innovation
(G&I) team. The G&I team focuses on delivering strategic
initiatives that help to innovate and improve the overall
effectiveness and efficiency of the CTPRR program. G&I oversees
and manages many program wide responsibilities, including metrics
and reporting, communication, change management, tool management,
and more. We are looking for a high performing candidate that deals
well with ambiguity, and is a forward-leaning, self-starting
professional. The ideal candidate will have project and process
management skills, with expertise prioritizing and managing
multiple activities simultaneously. In addition, the candidate will
have a cybersecurity background with experience working in a third
party risk management program.Responsibilities:
- Drive program innovation by guiding cross-department
initiatives through to completion
- Draft plans, educational materials, presentations and
communications designed to provide stakeholders with timely and
accurate information regarding CTPRR initiatives
- Maintain and enhance policy and detailed process documents for
the program
- Develop lasting partnerships with various enterprise teams
while balancing risk, business objectives, and business impact
- Establish a positive relationship and collaborate with internal
partners and stakeholders to help formulate strategy and influence
desired outcomes
- Proactively identify impediments and appropriately drive
resolution using network of peers and formal channels (including
escalation if required)
- Effectively prioritize work and manage capacity
independently
- Proactively provide visibility into delivery targets and
progress while integrating Agile principles into team practices and
work products
- Actively contribute to team continuous growth culture by
seeking, delivering and incorporating feedback on all aspects of
workAbout You:
- You are detail-oriented and results-focused, with a proven
track record of driving tasks to completion
- You are comfortable with ambiguity and demonstrate strong
problem solving abilities
- You have strong communication skills and an ability to deliver
complex information to stakeholders across many different
teams
- You have a desire to work in a very fast moving and forward
leaning environment
- You are a strong team player with an ability to collaborate
effectively with team members and leaders across various
organizations
- You are able to work well under minimal supervision
- You seek out and encourage feedback from team members
- You demonstrate capacity to think broadly but go deep into
subject matter when needed
- You have a passion for continuous learning and staying up to
date with cybersecurity technologies and trendsBasic
Qualifications:
- High School Diploma, GED, or equivalent certification
- At least 3 years of experience with Process Management and
Change Management
- At least 3 years of experience in information technology or
cybersecurityPreferred Qualifications:
- Bachelor's Degree
- 4+ years of experience with Process Management and Change
Management
- 4+ years of experience with Business Process Management (BPM),
Six Sigma, or Lean process improvement
- 4+ years of experience with third party risk management
- 4+ years of experience with governing risk frameworks PCI DSS,
NIST Cybersecurity Framework, or NIST 800-53
- 1+ years of experience analyzing data
- 1+ year of experience with Agile Methodologies
- 1 or more professional certifications (CISSP, CTPRP, or
CRISC)At this time, Capital One will not sponsor a new applicant
for employment authorization, or offer any immigration related
support for this position (i.e. H1B, F-1 OPT, F-1 STEM OPT, F-1
CPT, J-1, TN, or another type of work authorization).The minimum
and maximum full-time annual salaries for this role are listed
below, by location. Please note that this salary information is
solely for candidates hired to perform work within one of these
locations, and refers to the amount Capital One is willing to pay
at the time of this posting. Salaries for part-time roles will be
prorated based upon the agreed upon number of hours to be regularly
worked.McLean, VA: $127,500 - $145,500 for Prin Assoc, Cyber Risk &
AnalysisPlano, TX: $115,900 - $132,200 for Prin Assoc, Cyber Risk &
AnalysisRichmond, VA: $115,900 - $132,200 for Prin Assoc, Cyber
Risk & AnalysisCandidates hired to work in other locations will be
subject to the pay range associated with that location, and the
actual annualized salary amount offered to any candidate at the
time of hire will be reflected solely in the candidate's offer
letter.This role is also eligible to earn performance based
incentive compensation, which may include cash bonus(es) and/or
long term incentives (LTI). Incentives could be discretionary or
non discretionary depending on the plan.Capital One offers a
comprehensive, competitive, and inclusive set of health, financial
and other benefits that support your total well-being. Learn more
at the . Eligibility varies based on full or part-time status,
exempt or non-exempt status, and management level.This role is
expected to accept applications for a minimum of 5 business days.
No agencies please. Capital One is an equal opportunity employer
committed to diversity and inclusion in the workplace. All
qualified applicants will receive consideration for employment
without regard to sex (including pregnancy, childbirth or related
medical conditions), race, color, age, national origin, religion,
disability, genetic information, marital status, sexual
orientation, gender identity, gender reassignment, citizenship,
immigration status, protected veteran status, or any other basis
prohibited under applicable federal, state or local law. Capital
One promotes a drug-free workplace. Capital One will consider for
employment qualified applicants with a criminal history in a manner
consistent with the requirements of applicable laws regarding
criminal background inquiries.
#J-18808-Ljbffr
Keywords: Capital One, Richmond , Principal Associate, Cyber Third Party Risk Reduction (CTPRR) Governance Team, Education / Teaching , Richmond, Virginia
Didn't find what you're looking for? Search again!
Loading more jobs...