1

Quantitative Cyber Risk Jobs in Virginia (NOW HIRING)

Our team in the Cyber Risk and Resilience Directorate researches and develops software tools ... related highly quantitative discipline with eight (8) years of applicable experience; or a MS ...

Our team in the Cyber Risk and Resilience Directorate researches and develops software tools ... highly quantitative discipline with ten (10) years of applicable experience, or equivalent ...

Our team in the Cyber Risk and Resilience Directorate researches and develops software tools ... related highly quantitative discipline with eight (8) years of applicable experience; or a MS ...

... cyber capabilities, systems engineering, and technology transition. The SETA will serve as an ... Emphasis is placed on requirements definition, risk analysis, conceptual design, technology ...

Showing results 21-40

Quantitative Cyber Risk information

What are some common challenges faced by professionals in quantitative cyber risk roles and how can they be addressed?

Professionals in Quantitative Cyber Risk roles often encounter challenges such as translating complex cyber threats into measurable financial terms and obtaining reliable data for risk modeling. Collaborating closely with IT security teams and business stakeholders is essential to bridge gaps in understanding and ensure risk assessments are both technically accurate and aligned with organizational goals. Staying current with evolving threat landscapes and regulatory requirements also demands continuous learning and adaptation. Leveraging industry-standard frameworks and advanced analytics tools can help address these challenges effectively.

What is quantitative cyber risk?

Quantitative cyber risk involves using mathematical models and statistical techniques to measure and predict the financial impact of cyber threats on an organization. Unlike qualitative approaches that rely on subjective judgments, quantitative methods assign numerical values to risks, helping companies understand potential losses in dollar terms. This allows organizations to make more informed decisions about cybersecurity investments, insurance, and risk mitigation strategies.

What is the difference between Quantitative Cyber Risk vs Cyber Risk Analyst?

AspectQuantitative Cyber RiskCyber Risk Analyst
Required CredentialsCertifications like CRCM, CISSP, or CISA; strong quantitative backgroundCertifications such as CISA, CRISC; focus on risk assessment skills
Work EnvironmentFinancial institutions, cybersecurity firms, large corporationsFinancial services, consulting firms, government agencies
Industry UsageFocuses on modeling and quantifying cyber risks using data analysisEvaluates and reports on cyber risks, develops mitigation strategies

While both roles involve cybersecurity, Quantitative Cyber Risk specialists focus on modeling and quantifying risks using data and mathematical methods. Cyber Risk Analysts assess, analyze, and communicate cyber threats and vulnerabilities. The former is more data-driven and modeling-oriented, whereas the latter emphasizes risk evaluation and strategic recommendations.

What are the key skills and qualifications needed to thrive as a quantitative cyber risk professional, and why are they important?

To thrive as a Quantitative Cyber Risk professional, you need strong analytical skills, expertise in statistics or mathematics, and a background in cybersecurity or risk management, often supported by relevant degrees or certifications. Familiarity with risk modeling tools, programming languages like Python or R, and frameworks such as FAIR (Factor Analysis of Information Risk) is highly valued. Exceptional problem-solving, communication, and stakeholder management skills help translate complex risk data into actionable business insights. These competencies are critical for accurately assessing cyber risks, informing decision-making, and enhancing an organization's overall security posture.
What are popular job titles related to Quantitative Cyber Risk jobs in Virginia? For Quantitative Cyber Risk jobs in Virginia, the most frequently searched job titles are:
What job categories do people searching Quantitative Cyber Risk jobs in Virginia look for? The top searched job categories for Quantitative Cyber Risk jobs in Virginia are:
What cities in Virginia are hiring for Quantitative Cyber Risk jobs? Cities in Virginia with the most Quantitative Cyber Risk job openings:
Infographic showing various Quantitative Cyber Risk job openings in Virginia as of August 2026, with employment types broken down into 100% Full Time. Highlights an 83% In-person, and 17% Remote job distribution.

Senior Manager, Business Continuity and Resiliency | Retail Bank Risk

Capital One

Mclean, VA • On-site

Full-time

Re-posted 4 days ago


Capital One rating

7.7

Company rating: 7.7 out of 10

Based on 146 frontline employees who took The Breakroom Quiz

93rd of 170 rated banks


Job description

Senior Manager, Business Continuity and Resiliency | Retail Bank Risk

As a Business Continuity and Resilience Senior Risk Manager within Capital One's Retail Risk Office, you are a primary architect of our first line of defense. This role is not merely about tracking compliance; it is about serving as a strategic influencer and change agent who inspires business and tech partners to think broadly about business continuity and resiliency. You will leverage a deep foundation in Business Continuity Management to ensure Capital One Banking and Premium Products remain well managed, profitable, and resilient in an ever evolving technological and regulatory landscape.

You will proactively identify and map critical technology dependencies across end-to-end business processes, analyzing their resilience to anticipate potential disruption impacts and ensuring robust recovery strategies are integrated into our business continuity framework. The Senior Manager at Capital One is expected to operate with a high degree of autonomy and strategic synthesis.

The benchmark for success includes:

  • Strategic Leadership: Moving beyond administrative oversight to drive divisional strategic imperatives and program enhancements.

  • Fungibility & Adaptability: Being technologically adept and quick to adapt to changing landscapes, translating complex regulatory requirements into actionable business strategies.

  • Effective Challenge: Providing sophisticated advice and "effective challenge" to first, second, and third-line partners (including Legal, Compliance, and Audit) regarding business continuity management lifecycle risks.

  • Decision-Making: Leveraging excellent analytical and critical thinking skills to gain insights that influence executive-level decision-making.

  • Strategic Impact & Responsibilities: Success in this role is measured by the ability to proactively mitigate risk through strategic mobilization rather than reactive reporting.

  • Program Ownership: Own and lead initiatives to improve the overarching business continuity management lifecycle, focusing on automation, innovation, and process improvements across the Business Continuity taxonomy of Planning, Testing and Governance.

  • Executive Communication: Facilitate governance forums and present program updates to senior leadership, distilling complex risk data into clear, compelling narratives.

  • Risk Mitigation & Synthesis: Analyze end-to-end processes and disparate data sets to identify trends and design robust controls

  • Business Continuity & Cyber Resilience: Partner with technology and security teams to define, test, and maintain robust business continuity plans and cyber resilience strategies, ensuring effective response and recovery across all critical business processes.

  • Regulatory & Audit Management: Provide strategic oversight during audits and exams, ensuring that control execution aligns with Policy and Standard while minimizing operational friction.

  • Leveraging AI tools and emerging technologies: Use advanced tools to enhance process efficiency and drive predictive risk modeling.

The ideal candidate is a forward-thinking professional who thrives in a fast-paced environment.

You must demonstrate:

  • Strategic Stakeholder Management: The ability to create collaborative environments across the Business, Technology, Legal, and Compliance to form a unified approach to risk.

  • Strong Judgment: Strong integrity and leadership to act as a trusted advisor, ensuring the Retail Bank and Premium Products are protected through proactive risk consulting.

  • Analytical Rigor: The capability to weave qualitative and quantitative analysis into work products, ensuring that risk assessments are technically sound and strategically aligned.

  • Financial Industry Acumen: A deep-seated understanding of the financial services landscape, paired with the professional acumen required to navigate complex regulatory environments and high-stakes resilience engagements.

  • Systems Methodology Expertise: A mastery of business continuity systems methodologies, utilizing a strategic lens to evaluate, implement, and govern the technologies and strategies that underpin the business continuity management lifecycle.

  • Communication: Ability to communicate with purpose and influence. Hold meaningful discussions with senior management.

Basic Qualifications:

  • At least 3 years of experience Tech, Data, or Process Management

  • At least 5 years of experience in Risk, Compliance, or Audit

  • At least 5 years of experience in Business Continuity Management

  • At least 3 years of People Leadership experience

Preferred Qualifications:

  • Technology resilience experience

  • Financial Services Risk Management experience

  • Risk, Data, or Privacy certifications (CISSP, CISA, or CRISC)

  • Familiarity with AI-driven risk management tools and applications


At this time, Capital One will not sponsor a new applicant for employment authorization for this position.

The minimum and maximum full-time annual salaries for this role are listed below, by location. Please note that this salary information is solely for candidates hired to perform work within one of these locations, and refers to the amount Capital One is willing to pay at the time of this posting. Salaries for part-time roles will be prorated based upon the agreed upon number of hours to be regularly worked.

McLean, VA: $177,700 - $202,800 for Sr. Risk Manager


Richmond, VA: $161,500 - $184,300 for Sr. Risk Manager










Candidates hired to work in other locations will be subject to the pay range associated with that location, and the actual annualized salary amount offered to any candidate at the time of hire will be reflected solely in the candidate's offer letter.

This role is also eligible to earn performance based incentive compensation, which may include cash bonus(es) and/or long term incentives (LTI). Incentives could be discretionary or non discretionary depending on the plan.

Capital One offers a comprehensive, competitive, and inclusive set of health, financial and other benefits that support your total well-being. Learn more at theCapital One Careers website. Eligibility varies based on full or part-time status, exempt or non-exempt status, and management level.

This role is expected to accept applications for a minimum of 5 business days.No agencies please. Capital One is an equal opportunity employer (EOE, including disability/vet) committed to non-discrimination in compliance with applicable federal, state, and local laws. Capital One promotes a drug-free workplace. Capital One will consider for employment qualified applicants with a criminal history in a manner consistent with the requirements of applicable laws regarding criminal background inquiries, including, to the extent applicable, Article 23-A of the New York Correction Law; San Francisco, California Police Code Article 49, Sections 4901-4920; New York City's Fair Chance Act; Philadelphia's Fair Criminal Records Screening Act; and other applicable federal, state, and local laws and regulations regarding criminal background inquiries.

If you have visited our website in search of information on employment opportunities or to apply for a position, and you require an accommodation, please contact Capital One Recruiting at 1-800-304-9102 or via email at RecruitingAccommodation@capitalone.com. All information you provide will be kept confidential and will be used only to the extent required to provide needed reasonable accommodations.

For technical support or questions about Capital One's recruiting process, please send an email to Careers@capitalone.com

Capital One does not provide, endorse nor guarantee and is not liable for third-party products, services, educational tools or other information available through this site.

Capital One Financial is made up of several different entities. Please note that any position posted in Canada is for Capital One Canada, any position posted in the United Kingdom is for Capital One Europe and any position posted in the Philippines is for Capital One Philippines Service Corp. (COPSSC).


What Capital One employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom