Product Senior Manager, Endpoint Security
Capital One is seeking a technical security product leader to deliver game-changing cybersecurity solutions based on threat, data, and design thinking. We are a technology-oriented company delivering financial products through modern technology and constant innovation at massive scale. This role focuses on leveraging technology to deliver the best cybersecurity solutions for our internal and external customers.
About the role
As a candidate for the Endpoint Security Product role, you seamlessly switch from executive-level risk conversations to diving deep into controls and technology, driving high-level strategic discussions around roadmaps and security solutions. You are naturally curious, stay on top of emerging trends and threats, and question existing processes while focusing on business value. You thrive in ambiguity, work across teams, and believe security should enable the business, not just secure it. Solutions you bring to life align with the needs of our engineering community and business partners.
Responsibilities
- Develop and communicate a risk-based and data-driven strategy and outcome-driven roadmaps for enterprise security services, solutions, and capabilities in partnership with engineering, operations, customers, and stakeholders.
- Analyze and select alternatives based on threat, risk, desirability, feasibility, and viability.
- Keep abreast of industry advances to address the threat landscape.
- Advise executive decision-makers based on business and technology risk grounded in threat.
- Facilitate build vs. buy decisions to identify optimal strategies for addressing business and technology risks.
- Develop and lead RFI/RFPs to assess the market and/or procure effective cyber solutions.
- Maintain technical and risk credibility with your team and partners across the enterprise.
- Maintain close ties with stakeholders, developers, and engineers to ensure services meet evolving product needs.
- Iterate quickly and see products through to production and scale.
- Establish product value propositions, metrics, and key indicators.
- Recruit, motivate, mentor, and lead teams to perform at their best.
Requirements
- Strong consulting and analytical skills.
- Ability to foster collaborative, open working relationships with technology groups, stakeholders, and vendors.
- Demonstrated clear communication skills and ability to interact effectively at all organizational levels, including influencing senior management and executives (e.g., translating technical information for specific audiences).
- Experience managing multiple high-visibility, high-impact enterprise cybersecurity projects with cross-functional teams while maintaining superior results, including planning, development, and management of technical requirements, design, testing, and deployment of security solutions.
- Passion for cybersecurity.
Qualifications
Basic Qualifications
- High School Diploma, GED, or equivalent certification.
- At least 6 years of experience working in cybersecurity or information technology.
- At least 3 years of experience translating cybersecurity strategy and analysis into product requirements.
Preferred Qualifications
- Bachelor’s Degree in Cybersecurity, Systems Engineering, or Computer Science.
- 7+ years of experience solving cyber technical challenges.
- 7+ years of experience translating business strategy and analysis into products.
- 4+ years of Cyber product owner experience.
- 2+ years of experience in technical writing.
- 2+ years of hands-on JIRA experience.
- Experience in regulated financial services organizations or tech companies.
- 2 or more professional certifications: SAFe, PMP, CSPO, CISSP, GIAC, CISM, CCSP, AWS Security, AWS Advanced Networking Specialty, or AWS Solutions Architect.
- Deep expertise in endpoint security domains, including telemetry-driven detection and response, forensics, insider threat, ecosystem security, malware protection, and endpoint control frameworks such as allowlisting or device governance.
- Strong understanding of endpoint security architectures and systems, including endpoint agents, telemetry pipelines, detection workflows, and integration with SIEM or XDR platforms.
- Experience leading end-to-end product lifecycle for endpoint security capabilities, including evaluation, vendor selection, onboarding, and enterprise-scale rollout in partnership with third-party, engineering, architecture, ISO, and risk teams.
- Experience with developer security ecosystem, including IDE security, AI-powered development tools governance, and modern software supply-chain security controls.
- Experience translating regulatory requirements such as SOX, PCI, or SOC into actionable endpoint security product requirements and control frameworks, balancing compliance with business enablement.
At this time, Capital One will not sponsor a new applicant for employment authorization or offer immigration-related support for this position.
Pay
The minimum and maximum full-time annual salaries for this role are listed below by location. Salaries for part-time roles will be prorated based on agreed-upon hours. This role is also eligible for performance-based incentive compensation, including cash bonuses and/or long-term incentives (LTI).
- McLean, VA: $229,900 - $262,400 for Sr Manager, Cyber Technical
- New York, NY: $250,800 - $286,200 for Sr Manager, Cyber Technical
- Plano, TX: $209,000 - $238,500 for Sr Manager, Cyber Technical
- Richmond, VA: $209,000 - $238,500 for Sr Manager, Cyber Technical
Candidates hired to work in other locations will be subject to the pay range associated with that location, with the actual salary reflected in the offer letter.
Benefits
Capital One offers a comprehensive, competitive, and inclusive set of health, financial, and other benefits to support total well-being. Eligibility varies based on full or part-time status, exempt or non-exempt status, and management level. Learn more at the Capital One Careers website.