at Capital One Services II, LLC in Wilmington, Delaware, United States
Job ID: R175957
11 West 19th Street (22008), United States of America, New York, New York
Offensive Security Operator, Purple Team (Remote-Eligible)
At Capital One, you'll be part of a big group of makers, breakers, doers and disruptors, who love to solve real problems and meet real customer needs. We want you to be curious and ask "what if?" Capital One started as an information strategy company that specialized in credit cards, and we have become one of the most impactful and disruptive players in the industry.
Capital One's Offensive Security Purple Team reduces cyber risk by uncovering vulnerabilities and weaknesses in the enterprise cyber environment by conducting adversary simulation and emulation. This position works closely with offensive and defensive partner teams to plan, coordinate, execute and report on detection gaps and control weaknesses to improve cyber defense across the enterprise.
The successful candidate for this position will be part of an exciting and dynamic environment to build and deliver industry leading ethical hacking capabilities to continuously protect and defend Capital One's brand, systems and data. Offensive Security is part of the Cyber Operations and Intelligence program and assists with identifying opportunities to enhance Capital One's information security posture against a broad range of cyber threats, and develop strategies to most effectively address the threats.
Conduct sophisticated adversary simulation activities against Capital One to enable identification and mitigation of identified vulnerabilities
Research, develop, and apply offensive tactics, techniques and procedures (TTPs) in order to effectively mimic the capabilities of relevant threat actors
Provide subject matter expertise for cyber defenders, remediation teams and enterprise technology teams
Build and maintain technical infrastructure to support Purple team activity
Research, develop and document TTPs and share related knowledge with other members of the team
Automate repetitive pre and post-exploitation activities as applicable
High School Diploma, GED, or equivalent certification
At least 4 years of information security experience
At least 2 years of experience with offensive security testing
1+ years of experience in security testing of cloud environments
2+ years of experience in offensive security tool development
2+ years of experience with scripting and compiled languages
One or more of the following certifications (OSCP, OSCE, GPEN, GXPN, CRTO, GCFA, GCIH)
Capital One is open to hiring a Remote Employee for this opportunity.
At this time, Capital One will not sponsor a new applicant for employment authorization for this position.
The minimum and maximum full-time annual salaries for this role are listed below, by location. Please note that this salary information is solely for candidates hired to perform work within one of these locations, and refers to the amount Capital One is willing to pay at the time of this posting. Salaries for part-time roles will be prorated based upon the agreed upon number of hours to be regularly worked.
New York City (Hybrid On-Site): $161,900 - $184,800 for Prin Assoc, Cyber Technical
San Francisco, California (Hybrid On-Site): $171,500 - $195,800 for Prin Assoc, Cyber Technical
Remote (Regardless of Location): $137,200 - $156,600 for Prin Assoc, Cyber Technical
Candidates hired to work in other locations will be subject to the pay range associated with that location, and the actual annualized salary amount offered to any candidate at the time of hire will be reflected solely in the candidate's offer letter.
Capital One offers a comprehensive, competitive, and inclusive set of health, financial and other benefits that support your total well-being. Learn more at the. Eligibility varies based on full or part-time status, exempt or non-exempt status, and management level.
This role is expected to accept applications for a minimum of 5 business... For full info follow application link.
Capital One is an equal opportunity employer committed to diversity in the workplace. Capital One promotes a drug-free workplace.
All qualified applicants will receive consideration for employment without regard to gender, race, color, religion, national origin, sexual orientation, protected veteran status, or disability status.
Capital One will consider for employment qualified applicants with a criminal history in a manner consistent with the requirements of applicable laws regarding criminal background inquiries, including, to the extent applicable, Article 23-A of the New York Correction Law; San Francisco, California Police Code Article 49, Sections 4901-4920; Newark, New Jersey Ordinance 12-1630; and other applicable federal, state, and local laws and regulations regarding criminal background inquiries.