Job Search and Career Advice Platform

Enable job alerts via email!

Trainee Cyber Defence Programme

Capital One

Birmingham

On-site

GBP 50,000 - 70,000

Full time

Today
Be an early applicant

Generate a tailored resume in minutes

Land an interview and earn more. Learn more

Job summary

A leading financial institution in Birmingham seeks an Information Security Consultant to enhance security initiatives across the organization. The role includes consulting on various topics, influencing security integration in development processes, and managing cyber security risks. Candidates should have strong communication skills, practical experience with AWS, and a deep passion for securing cloud platforms. Join a diverse team striving for innovation and excellence in security practices.

Benefits

Diversity networks and support groups
Coaching and mentoring opportunities
Opportunities for professional development

Qualifications

  • Ability to clearly articulate complex details at various levels.
  • Deep passion for securing modern computing platforms.
  • Experience in a financial or highly regulated environment.

Responsibilities

  • Act as central point of contact for security consultation.
  • Coordinate proactive consulting on Cloud and Infrastructure Security.
  • Influence security integration into development processes.

Skills

Critical/analytical thinking
Communication skills
Engagement with upper management
Cloud Security
Agile methodologies

Education

Practical experience in AWS
Experience in a financial or highly regulated environment

Tools

AWS
MITRE ATT&CK
OWASP Top 10
Job description

Security is an integral part of our culture at Capital One. It is essential to maintaining our position as an industry leader, and it is the responsibility of each and every employee to safeguard information, protect it from unauthorized access, and ensure regulatory compliance. Information Security has a significant effect on privacy, consumer confidence, external reputation, and it is a priority on everyone's agenda. Capital One's mission is to change banking for good by bringing humanity, ingenuity and simplicity to banking. The successful candidate will join the Information Security Office (ISO) function for the Capital One UK Division. At Capital One, you will help consult on initiatives, programs, and projects to raise their game in Information Security. You are pragmatic and practical in your understanding of risk and security, but also willing to know when to pull in experts and escalate. You collaborate and innovate with other teams within Capital One to push the envelope. You are comfortable with Cloud Service technologies like Storage Services, Security & Access Control Management, Container Services, and API Implementation and Management. You are familiar with various Cloud computing models to include IaaS, PaaS, and SaaS along with their architectural differences. Security is essential to what we do here, from protecting our customers to our associates.

Responsibilities
  • Act as a central point of contact for your line of business to the rest of Capital One's Information Security Office Team.
  • Coordinate and execute proactive Information Security consulting to the business and technology teams covering topics such as Cloud, Infrastructure Security, Data Security, and User Access Management.
  • Influence customers via threat modeling to leverage security capabilities and solutions to shift and integrate security to the left in the development processes.
  • Support the identification, management, prioritization and reduction of cyber security risk.
  • Work in an agile environment to deliver secure, robust solutions that meet our business requirements and customer expectations.
  • Coaching and mentoring of application owners, users and delivery teams where required.
  • Set, articulate and safeguard the bar for appropriate compliance assurance and risk management in language that the business can understand and engage with.
  • Be a stakeholder for our Cloud Productivity Engineering teams and provide Cyber consultancy on topics such as information architecture and data management.
  • Become an expert in Capital One's Information Security capabilities, solutions, policies, procedures and standards.
Internal Diversity Initiatives

We also partner with organisations including The Women In Finance And Race At Work Charters, Stonewall And UpReach to find people from every walk of life and help them thrive with us. We have a whole host of internal networks and support groups you could be involved in, to name a few:

  • REACH – Race Equality and Culture Heritage group focuses on representation, retention and engagement for associates from minority ethnic groups and allies.
  • OutFront – providing LGBTQ+ support for all associates.
  • Mind Your Mind – signposting support and promoting positive mental wellbeing for all.
  • Women in Tech – promoting an inclusive environment in tech.
  • EmpowHER – network of female associates and allies focusing on developing future leaders, particularly for female talent in our industry.
Qualifications
  • Ability to articulate complex details in a simplified, concise manner upwards to senior leadership as well as sideways and downwards with your peers.
  • Evidence of applying strong critical/analytical thinking and ability to challenge the status quo.
  • Deep understanding of strategic business objectives and the ability to drive results toward those objectives.
  • Ability to engage effectively with a broad range of people and roles, including upper management, IT leaders, and technology vendors.
  • Deep passion for securing modern computing platforms.
  • Practical experience and/or certifications with AWS – as cloud is a key part of our work.
  • Desire to work in a fast moving, forward leaning, and modern computing environment.
  • Thirst to continually learn about new technologies.
  • Experience of working well under minimal supervision and effectively navigating through ambiguity.
  • Clear ability to demonstrate calmness and clarity of thought under pressure and ability to maintain confidentiality.
  • Effective written and verbal communication skills.
  • Practical Experience In Some Of The Following Areas:
  • Practical hands‑on experience in security architecture and consultancy.
  • Experience in a financial or highly regulated environment.
  • Threat Modeling using MITRE ATT&CK/STRIDE.
  • Cloud Security – IaaS (AWS), PaaS (Salesforce) & SaaS.
  • Experience implementing security solutions surrounding cloud transformation, data management, and data storage.
  • Experience with Application Security (OWASP Top 10).
  • Experience utilizing Agile methodologies.
  • PCI DSS, GDPR, PSD2.
  • Information Assurance frameworks.
  • Technical risk analysis, assessment and mitigation.
Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.