 
        
        Overview
Security is an integral part of our culture at Capital One. It is essential to maintaining our position as an industry leader, and it is the responsibility of each and every employee to safeguard information, protect it from unauthorized access, and ensure regulatory compliance. Capital One's mission is to change banking for good by bringing humanity, ingenuity and simplicity to banking. The successful candidate will join the Information Security Office (ISO) function for the Capital One UK Division. You will help consult on initiatives, programs, and projects to raise their game in Information Security. You are pragmatic and practical in your understanding of risk and security, and you are willing to escalate when needed. You collaborate and innovate with other teams within Capital One to push the envelope. You are comfortable with Cloud Service technologies and familiar with Cloud computing models including IaaS, PaaS, and SaaS and their architectural differences. Security is essential to what we do here, from protecting our customers to our associates.
What you’ll do
 * Act as a central point of contact for your line of business to the Information Security Office team.
 * Coordinate and execute proactive Information Security consulting to the business and technology teams covering topics such as Cloud, Infrastructure Security, Data Security, and User Access Management.
 * Influence customers via threat modeling to leverage security capabilities and solutions, integrating security into development processes.
 * Support the identification, management, prioritization and reduction of cyber security risk.
 * Work in an agile environment to deliver secure, robust solutions that meet business requirements and customer expectations.
 * Provide coaching and mentoring of application owners, users and delivery teams where required.
 * Set, articulate and safeguard the bar for appropriate compliance assurance and risk management in business-friendly language.
 * Act as a stakeholder for Cloud Productivity Engineering teams and provide Cyber consultancy on topics such as information architecture and data management.
 * Become an expert in Capital One’s Information Security capabilities, solutions, policies, procedures and standards.
Qualifications and experience
 * Ability to articulate complex details in a simplified, concise manner to senior leadership and peers.
 * Evidence of applying strong critical/analytic thinking and ability to challenge the status quo.
 * Deep understanding of strategic business objectives and the ability to drive results toward those objectives.
 * Ability to engage effectively with a broad range of people and roles, including upper management, IT leaders, and technology vendors.
 * Deep passion for securing modern computing platforms.
 * Practical experience and/or certifications with AWS (cloud is a key part of our work).
 * Desire to work in a fast-moving, forward-leaning, modern computing environment.
 * Thirst to continually learn about new technologies.
 * Experience of working well under minimal supervision and effectively navigating ambiguity.
 * Clear ability to demonstrate calmness and clarity of thought under pressure and maintain confidentiality.
 * Effective written and verbal communication skills.
 * Practical hands-on experience in security architecture and consultancy.
 * Experience in a financial or highly regulated environment.
 * Threat Modeling using MITRE ATT&CK/STRIDE.
 * Cloud Security - IaaS (AWS), PaaS (Salesforce) & SaaS.
 * Experience implementing security solutions surrounding cloud transformation, data management, data storage.
 * Experience with Application Security (OWASP Top 10).
 * Experience utilizing Agile methodologies.
 * PCI DSS, GDPR, PSD2.
 * Information Assurance frameworks.
 * Technical risk analysis, assessment and mitigation.
Location and working model
This is a permanent position based in our Nottingham office. We have a hybrid working model, allowing work from both office and home. You will be based in our Nottingham office three days a week (Tuesdays, Wednesdays and Thursdays).
Benefits and what we offer
 * Career progression through Capital One University training programmes and external providers.
 * Immediate access to core benefits including pension scheme, bonus, generous holiday entitlement and private medical insurance, with flexible benefits such as season-ticket loans, cycle-to-work, and enhanced parental leave.
 * Open-plan workspaces and accessible facilities. The Nottingham head office offers a gym, subsidised restaurant, mindfulness and music rooms; in London there is a rooftop running track and a Workshop Coffee café.
How we recruit
We pride ourselves on hiring the best people and building diverse and inclusive teams. We are committed to fair and accessible recruitment and offer benefits that attract people at all ages and stages.
#J-18808-Ljbffr