Senior Associate, Technology Controls Testing - Enterprise Services Risk
Job
Capital One
Richmond, VA (In Person)
$108,250 Salary, Full-Time
Review key factors to help you decide if the role fits your goals.
Pay Growth
?
out of 5
Not enough data
Not enough info to score pay or growth
Job Security
?
out of 5
Not enough data
Calculating job security score...
Total Score
72
out of 100
Average of individual scores
Skill Insights
Compare your current skills to what this opportunity needs—we'll show you what you already have and what could strengthen your application.
Job Description
Senior Associate, Technology Controls Testing
- Enterprise Services Risk The Enterprise Services Risk organization is expanding with a focus on attracting innovative, pioneering, collaborative, and highly skilled professionals.
- About the
Team:
- As a Senior Associate in the Control Governance Team, you will apply your technical and risk management skills to test and improve how we validate controls across the enterprise. You will partner across Cloud Engineering, Information Security, and Audit teams to develop best-in-class automated testing solutions that support innovation while protecting our environment.
- About the
Role:
- As a member of the automation-focused testing team, you will collaborate with stakeholders to monitor and test processes and control environments, report results, and evaluate compliance with multi-cloud security requirements.
Responsibilities:
- + •
Multi-Cloud Automated Control Testing:
- Perform independent control testing activities and document results. Design and execute automated "Tests of Effectiveness" (ToE) for controls across AWS, Azure, and GCP. +
Process Enhancement & Automation:
- Use code to perform analysis and repeatable tasks. Leverage Google Apps Script and other automation tools to streamline internal audit workflows, documentation, and reporting processes. +
Execute Data & API Integration:
- Leverage tools (e.g., Python/SQL) to extract and analyze data from cloud APIs. Visualize and create dashboards to support continuous control monitoring. +
Cloud Risk Identification:
- Maintain a broad understanding of major cloud service providers (AWS, GCP, Azure) and their respective vulnerabilities to identify and escalate critical risks. +
Lifecycle Management:
- Demonstrate sound program management by documenting and communicating action plans, impediments, and risks to stakeholders. +
Policy Recommendation:
- Research industry practices and regulatory changes; make recommendations to change policies and control programs to mitigate evolving risks in the cloud. +
Self-Challenge:
- Effectively self-challenge control programs and escalate risks where appropriate to ensure alignment with Information Security Standards.
Basic Qualifications:
- + High School Diploma, GED or Equivalent Certification + At least 2 years of experience in Risk Management, Process Management, or Project Management + At least 2 years of experience in technology, audit, or cyber security risk management frameworks + At least 1 year of experience working with scripting languages (e.
Preferred Qualifications:
- + Bachelor's Degree or Military Experience + Risk Certifications (CRISC, CISM, CRCM, CIPP, CISA, CISSP, ABA Risk Mgmt Certification) + 3+ years of experience in Risk Management, Internal Audit, or Information Security + Hands-on experience with cloud risk, governance, and control validation across AWS, GCP, or Azure + Experience building automated workflows or custom tools within Google Workspace using Apps Script + Professional certifications such as CISA, CISSP, or Cloud-specific certifications (AWS Certified Solutions Architect, Azure Security Engineer, etc.
- _At this time, Capital One will not sponsor a new applicant for employment authorization for this position._
- The minimum and maximum full-time annual salaries for this role are listed below, by location.
Chicago, IL:
$101,100- $115,400 for Sr.
Assoc, Cyber Risk & Analysis McLean, VA:
$111,200- $126,900 for Sr.
Assoc, Cyber Risk & Analysis New York, NY:
$121,300- $138,400 for Sr.
Assoc, Cyber Risk & Analysis Richmond, VA:
$101,100- $115,400 for Sr.
Assoc, Cyber Risk & Analysis Wilmington, DE:
$101,100- $115,400 for Sr.
Similar remote jobs
Accenture
Cleveland, OH
Posted1 day ago
Updated1 hour ago
Similar jobs in Richmond, VA
ASM Research, An Accenture Federal Services Company
Richmond, VA
Posted1 day ago
Updated1 hour ago
World Wide Technology
Richmond, VA
Posted1 day ago
Updated1 hour ago
Similar jobs in Virginia
The Rector & Visitors of the University of Virginia
Charlottesville, VA
Posted1 day ago
Updated1 hour ago