Senior Manager, Cyber Threat Researcher, Cyber Intelligence (Remote Eligible)
Role details
Job location
Tech stack
Job description
- Create mechanisms to "connects the dots" between different internal and external data sources in order to combine "signals" in data that automatically highlight cyber threats across advanced enterprise threat activities and fraud activity
- Maintain industry-wide expertise of the current cyber threat landscape and attack vectors
- Synthesize disparate sets of data from sources such as malware, cyber attack patterns, closed and open-source intelligence, and tokenized consumer flows to inform instrumentation, detections, and threat narratives such as storyboards
- Build productive relationships with internal teams to contextualize, influence and inform Capital One's business units on emerging threats
- Communicate investigative outcomes with technical architecture context and conclusions to a variety of audiences, including company senior leadership and business partners
Requirements
You have a growth mindset when it comes to maintaining expertise and knowledge in threat adversary trends and technologies. We are looking for someone who takes a forward leaning, innovative approach to problem solving, with passion for solving problems at Capital One scale and the desire to collaborate across functional teams. The ideal candidate should be comfortable showing off a constant technical curiosity, "getting into the weeds" on emerging technologies and how they can be used by actors and fraudsters with ill intent., * High School Diploma, GED or equivalent certification
- At least 6 years of experience working in cybersecurity or information technology
- At least 6 years of experience working in incident response, threat hunting, threat intelligence, forensics, or offensive security
- At least 5 years of experience in conducting investigations or research into cyber-enabled fraud, cybercrime, or advanced persistent threats
- At least 3 years of experience with cyber threat intelligence threat frameworks such as Lockheed Martin Cyber Kill Chain, Diamond Model, MITRE ATT&CK, ATLAS, Defense or Engage
- At least 3 years of experience in programming or scripting with Python, Perl, PHP, PowerShell or SQL, * Bachelor's Degree
- 8 + years of experience working in cybersecurity or information technology
- 8 + years of experience performing incident response, threat hunting, threat intelligence, forensics, or offensive security
- 3+ years of experience with public cloud environments (AWS, Azure, GCP)
- 3+ years of experience in a highly regulated industry (financial sector, financial technology, healthcare, or intelligence community)
- 1+ year of experience working with Generative and Agentic AI tools
At this time, Capital One will not sponsor a new applicant for employment authorization, or offer any immigration related support for this position (i.e. H1B, F-1 OPT, F-1 STEM OPT, F-1 CPT, J-1, TN, or another type of work authorization).
The minimum and maximum full-time annual salaries for this role are listed below, by location. Please note that this salary information is solely for candidates hired to perform work within one of these locations, and refers to the amount Capital One is willing to pay at the time of this posting. Salaries for part-time roles will be prorated based upon the agreed upon number of hours to be regularly worked.