Senior Information Security Consultant

Regents Place (95001), United Kingdom, London, London

Senior Information Security Consultant

Capital One is the 7th biggest bank in the U.S.A., with over $250B in assets and 60+ million customers. Within the UK, we’re proud to say that we’re amongst the Top 10 credit card

providers, and have been phenomenally successful at specialising in providing credit cards to over 3 million UK customers for over 16 years. Since our inception we’ve been a company built on bold, new ideas and an entrepreneurial spirit. Making lives better isn’t an idle statement, it’s our core vision, and applies to everything we do. For us, it’s a no brainer. A happy customer is a loyal customer. By bringing ingenuity, simplicity, and, most importantly, humanity to the financial services industry we can succeed in delivering this goal.

In 2016, Capital One is continuing its rapid evolution to grow its business, with a determined focus on ‘Accelerating the Digital Journey of Our Customers’. To that end we are evolving the already very successful IT function into a “Technology” function with a complete focus on internally developed software and a Digital business mind-set across the board.

Information Security is an integral part of the corporate culture at Capital One UK. It is essential to maintaining our position as an industry leader in electronic payments, and it is the responsibility of each and every employee to safeguard information, protect it from unauthorised access, and ensure regulatory compliance. Information Security has a significant effect on privacy, consumer confidence, external reputation, and it is a priority on everyone’s agenda.

The successful candidate will join the Information Security Office consultancy function for the Capital One UK Division. The candidate will work to embed a culture that works toward the highest standards in security architecture/engineering whilst ensuring that business requirements are understood and adhered to, and security risks are properly understood and mitigated. Additionally, the candidate will work closely with global Information Security peers and will contribute to the design and drive the implementation of Capital One’s global security program, engineering solutions to support the UK Business.

Working with groups such as Technology Engineering, Technology Operations, and Enterprise Architecture, this position will take a leading role in the development of the security for Capital One UK in relation to key initiatives such as Cloud Computing and Big Data in the backdrop of an increased regulatory landscape within the UK.

  • Working with projects to deliver secure, robust solutions that meet our business requirements and customer expectations
  • Technical risk assessment and delivering mitigation options
  • Supporting the business in establishing and driving remediation plans
  • Maintaining a data quality baseline that enables business needs while aligning with enterprise requirements
  • Information Assurance Leadership in project consultancy and operational data governance
  • Information Assurance Monitoring and Compliance
  • Data modelling and effective communication of risks options for mitigation
  • Logical Access Management


Responsibilities:

  • Advise stakeholders as appropriate on Information Assurance matters and on the security posture of the businesses and areas requiring management attention or action.
  • Leadership, coaching and mentoring of data analysts, application owners, and users
  • Set, articulate and safeguard the bar for appropriate compliance assurance and risk management
  • Leadership of divisional implementation of Information Architecture as defined within the Enterprise framework
  • Assess compliance with, application of and risks to Information Data Management policy and standards.
  • Ensure that the information and data management standards comply with changes to regulatory, statutory and legislative requirements within the EU and UK
  • Defining and meeting on going service levels with colleagues from the US parent on behalf of the UK division.
  • Execution, assessment and remediation of Information Assurance controls
  • Ensuring data quality metrics achieve targets and support remediation of identified data quality Issues.
  • Lead effective implementation of new Information and Data Management technology and techniques.
  • Active leadership in aspects of IT strategy relating to privacy, security and compliance assurance.
  • Work with senior stakeholders to ensure that Information Assurance priorities reflect business needs and provide appropriate levels of protection for the business.
  • Review and critically appraise market research to identify new tools, technologies and frameworks that could improve security and data governance posture.
  • Participate in data governance forums and act as instructor for training
  • Participate in the development and delivery of data management strategic programmes
  • Engage with vendors and external special interest groups to determine future direction.
  • Identify opportunities to add business value through the identification and management of Data risk

Education:

  • Undergraduate degree or equivalent
  • Desirable: CISSP, CISM, CISA, CRISC, Data Modelling, data Governance, Data Risk management, ISEB Certificate in Information Security Management Principles


Background:

  • Practical hands-on experience in information assurance, ideally within a large organisation.
  • Desirable: CISSP, CISM, CISA, CRISC, Data Modelling, data Governance, Data Risk management, ISEB Certificate in Information Security Management Principles
  • Information Security
  • IT Governance, Risk Management and Compliance
  • Operational data management and governance
  • Big data governance leveraging Hadoop
  • Effective written and verbal communication skills

Practical experience in some of the following areas:

  • ISO 27001, ITIL, COBIT, PCI DSS
  • Information Assurance frameworks
  • Technical risk analysis, assessment and mitigation
  • Proficiency in a programming language
  • DLP - Data loss prevention
  • DPA compliance assurance

Capital One is committed to diversity in the workplace.


Meet Some of Capital One's Employees

Michelle B.

UX Design Researcher

At Capital One’s user research lab facility, The Garage, in Plano, Texas, Michelle tests usability, examines customer behavior, and constructs the best customer-centered home and auto loan products.

Mazen L.

Director, Digital Product Marketing

Mazen is transforming the financial industry, one groundbreaking product at a time. By applying imaginative marketing techniques, Mazen shines the spotlight on Capital One’s most impactful financial technologies.


Back to top