Manager, Cyber Security Log Management
Company: Capital One
Location: Newark
Posted on: May 26, 2023
Job Description:
Center 3 (19075), United States of America, McLean,
VirginiaManager, Cyber Security Log Management Capital One is
looking for a Manager to join our Cyber Security Log Management
program. This team is responsible for enabling comprehensive cyber
monitoring by ensuring standard log events are generated across
Capital One. We achieve our mission by setting security logging
strategy & requirements and influencing enterprise technology teams
to deliver. You will lead a team to achieve the following: What
you'll do:
- Lead and communicate the enterprise security logging strategy
in partnership with engineering and architecture teams, Cyber
customers, and other stakeholders
- Which events should we capture that our security teams
require?
- Where do we capture events in the technology stack to maximize
efficiency?
- How are events transported to a central location?
- Establish technical best practices for security logging (event
generation, delivery, storage) and minimum requirements across our
applications, infrastructure (cloud, network, databases), and
endpoints (workstations, servers)
- Maintain close ties to developers across the company ensuring
we provide clear logging standards, and maintain close ties with
our Cyber Operations teams ensuring the right events are
captured
- Drive enterprise teams to adhere to logging requirements in
terms of standard schemas, design, log transportation deployments,
and log validation.
- Review and assess security logging as delivered versus
requirements and standards. Track compliance and escalate
non-compliance of logging standards to executive leadership.
- Lead control execution and oversight of critical team
processes, ensuring playbooks are adhered to consistently
- Collaborate with teams automating log governance and making log
compliance easy & efficient
- Recruit, motivate, mentor, and lead talent to be their best
About You:
- You have strong assessment and analytical skills in the
security logging domain
- You have the ability to lead, manage, and coach SMEs and work
in a matrixed organization through ambiguity
- You have strong judgment skills determining adherence to
security policies
- You have the ability to foster collaborative, open, working
relationships with technology groups and other stakeholders,
sharing customer and engineering benefits for security logging to
gain buy-in
- You have experience delivering security logging projects and
programs across a technology environment, setting logging strategy
with architects, developers, and data experts.
- You understand security logging & monitoring from both a
managerial/strategic level and have experience in hands on
technical design and implementation of logging
- You have experience managing high-visibility and high-impact
enterprise cybersecurity projects with cross-functional teams
including planning, development and management of technical
requirements, design, validation, and non-compliance
escalation
- You have passion and expertise in one or more of the following
areas: security operations, security log analysis, cloud security,
network security, application security, network security and
exploitation, and host & endpoint security Basic Qualifications:
- High School Diploma, GED or equivalent certification
- At least 6 years of experience working in cybersecurity or
information technology
- At least 3 years of experience in cybersecurity operations
- At least 3 years of experience working with Linux, Unix and
Windows operating systems
- At least 2 years of experience with public cloud environments
(AWS, Azure, GCP) Preferred Qualifications:
- Bachelor's Degree
- 2+ years experience in enterprise data or logging strategy
(defining schemas, configuring log production on
applications/infrastructure/endpoints, data streaming, log
consumption, and overall data architecture)
- 1+ years experience in people leadership of technical and
non-technical resources
- Experience in regulated financial services organizations
- Professional certifications (e.g., CISSP, GIAC (various), CISM,
CCSP, CISA, CRISC, AWS Security, AWS Advanced Networking Specialty,
AWS Solutions Architect) At this time, Capital One will not sponsor
a new applicant for employment authorization for this position The
minimum and maximum full-time annual salaries for this role are
listed below, by location. Please note that this salary information
is solely for candidates hired to perform work within one of these
locations, and refers to the amount Capital One is willing to pay
at the time of this posting. Salaries for part-time roles will be
prorated based upon the agreed upon number of hours to be regularly
worked. Location is New York City: $197,400 - $225,300 for Manager,
Cyber TechnicalLocation is San Francisco, California: $209,200 -
$238,700 for Manager, Cyber Technical Candidates hired to work in
other locations will be subject to the pay range associated with
that location, and the actual annualized salary amount offered to
any candidate at the time of hire will be reflected solely in the
candidate's offer letter. This role is also eligible to earn
performance based incentive compensation, which may include cash
bonus(es) and/or long term incentives (LTI). Incentives could be
discretionary or non discretionary depending on the plan. Capital
One offers a comprehensive, competitive, and inclusive set of
health, financial and other benefits that support your total
well-being. Learn more at the Capital One Careers website .
Eligibility varies based on full or part-time status, exempt or
non-exempt status, and management level. No agencies please.
Capital One is an Equal Opportunity Employer committed to diversity
and inclusion in the workplace. All qualified applicants will
receive consideration for employment without regard to sex, race,
color, age, national origin, religion, physical and mental
disability, genetic information, marital status, sexual
orientation, gender identity/assignment, citizenship, pregnancy or
maternity, protected veteran status, or any other status prohibited
by applicable national, federal, state or local law. Capital One
promotes a drug-free workplace. Capital One will consider for
employment qualified applicants with a criminal history in a manner
consistent with the requirements of applicable laws regarding
criminal background inquiries, including, to the extent applicable,
Article 23-A of the New York Correction Law; San Francisco,
California Police Code Article 49, Sections ; New York City's Fair
Chance Act; Philadelphia's Fair Criminal Records Screening Act; and
other applicable federal, state, and local laws and regulations
regarding criminal background inquiries.If you have visited our
website in search of information on employment opportunities or to
apply for a position, and you require an accommodation, please
contact Capital One Recruiting at 1- or via email at . All
information you provide will be kept confidential and will be used
only to the extent required to provide needed reasonable
accommodations.For technical support or questions about Capital
One's recruiting process, please send an email to Capital One does
not provide, endorse nor guarantee and is not liable for
third-party products, services, educational tools or other
information available through this site.Capital One Financial is
made up of several different entities. Please note that any
position posted in Canada is for Capital One Canada, any position
posted in the United Kingdom is for Capital One Europe and any
position posted in the Philippines is for Capital One Philippines
Service Corp. (COPSSC).
Keywords: Capital One, Newark , Manager, Cyber Security Log Management, Executive , Newark, New Jersey
Didn't find what you're looking for? Search again!
Loading more jobs...