Manager, Security Platform Engineering, DLP Control Platform

Capital One

Not Interested
Bookmark
Report This Job

profile Job Location:

McLean, MD - USA

profile Monthly Salary: $ 179400 - 204700
Posted on: 7 hours ago
Vacancies: 1 Vacancy

Job Summary

Manager Security Platform Engineering DLP Control Platform

Capital One operates entirely in the public cloud and processes sensitive data at massive scale across every channel where information moves. Our Data Loss Prevention (DLP) program sits at the intersection of cybersecurity data engineering and regulatory compliance. We are building a centralized platform that fundamentally changes how data protection policies are defined how violations are detected and routed how enforcement is applied and how controls are validated at enterprise scale. This is a software engineering challenge not a vendor integration exercise.

This role leads the engineering delivery of the DLP Control Platform: a system that centralizes detection logic enforcement orchestration and continuous validation into a single platform serving the entire DLP program. You will ship production software make technical decisions under real constraints and own the platforms technical direction.

A successful candidate combines deep platform engineering experience with enough security and regulatory awareness to build systems that satisfy both engineering standards and examination expectations. You bring clarity to ambiguous problems ship iteratively and know how to operate at the intersection of new system development and existing production infrastructure.

Job Responsibilities

  • Lead the technical delivery of a centralized DLP platform that standardizes how data protection policies are authored how findings are routed and scored and how enforcement is applied across the program

  • Design and build platform services using Python AWS serverless and container infrastructure (ECS Fargate Lambda Step Functions Aurora PostgreSQL EventBridge) and infrastructure as code (CDK)

  • Define interface contracts between platform components and existing production systems ensuring clean integration boundaries

  • Make architectural trade-offs that balance delivery speed operational reliability and regulatory defensibility

  • Drive engineering decisions on schema design API boundaries deployment strategy and platform lifecycle management

  • Partner with DLP policy experts to translate data protection requirements into platform capabilities that produce consistent auditable outcomes

  • Establish engineering practices for the platform: CI/CD pipelines testing strategy deployment automation observability

  • Manage dependencies on adjacent teams and systems unblocking delivery when external integration points stall

  • Communicate platform strategy and progress to senior leadership translating technical decisions into business impact

  • Grow into people leadership as the team expands building engineering culture and developing talent

Basic Qualifications

  • High School Diploma GED or equivalent certification

  • At least 4 years of software engineering experience

  • At least 4 years of experience in building and deploying production platforms or distributed systems

  • At least 2 years of experience in cybersecurity data protection data engineering or platform engineering in a regulated or security-sensitive environment

  • At least 2 years of experience in working with cloud infrastructure service

Preferred Qualifications

  • 1 years of experience with Go and Python including typed JSON handling interface design and template-based code generation

  • 1 years of experience with schema validation systems (CUE JSON Schema or equivalent constraint languages)

  • 1 years of experience defining and implementing API contracts message schemas or integration interfaces between systems

  • 1 years of experience with infrastructure as code (CDK Terraform or CloudFormation)

  • 1 years of experience with relational databases (PostgreSQL preferred) including schema design and query optimization

  • 1 years experience programmatically implementing data protection or security controls including building detection logic classification systems enforcement automation or false positive reduction through code

  • 1 years of experience of shipping new platforms from inception to production

  • 1 years of experience using AI coding tools (GitHub Copilot Claude Code) to accelerate development delivery

  • AWS Certified Solutions Architect or Certified Information Systems Security Professional (CISSP) certification

At this time Capital One will not sponsor a new applicant for employment authorization or offer any immigration related support for this position (i.e. H1B F-1 OPT F-1 STEM OPT F-1 CPT J-1 TN or another type of work authorization).

The minimum and maximum full-time annual salaries for this role are listed below by location. Please note that this salary information is solely for candidates hired to perform work within one of these locations and refers to the amount Capital One is willing to pay at the time of this posting. Salaries for part-time roles will be prorated based upon the agreed upon number of hours to be regularly worked.

McLean VA: $197300 - $225100 for Manager Cyber Technical


New York NY: $215200 - $245600 for Manager Cyber Technical


Plano TX: $179400 - $204700 for Manager Cyber Technical


Richmond VA: $179400 - $204700 for Manager Cyber Technical








Candidates hired to work in other locations will be subject to the pay range associated with that location and the actual annualized salary amount offered to any candidate at the time of hire will be reflected solely in the candidates offer letter.

This role is also eligible to earn performance based incentive compensation which may include cash bonus(es) and/or long term incentives (LTI). Incentives could be discretionary or non discretionary depending on the plan.

Capital One offers a comprehensive competitive and inclusive set of health financial and other benefits that support your total well-being. Learn more at theCapital One Careers website. Eligibility varies based on full or part-time status exempt or non-exempt status and management level.

This role is expected to accept applications for a minimum of 5 business days.

No agencies please. Capital One is an equal opportunity employer (EOE including disability/vet) committed to non-discrimination in compliance with applicable federal state and local laws. Capital One promotes a drug-free workplace. Capital One will consider for employment qualified applicants with a criminal history in a manner consistent with the requirements of applicable laws regarding criminal background inquiries including to the extent applicable Article 23-A of the New York Correction Law; San Francisco California Police Code Article 49 Sections 4901-4920; New York Citys Fair Chance Act; Philadelphias Fair Criminal Records Screening Act; and other applicable federal state and local laws and regulations regarding criminal background inquiries.

If you have visited our website in search of information on employment opportunities or to apply for a position and you require an accommodation please contact Capital One Recruiting at 1- or via email at . All information you provide will be kept confidential and will be used only to the extent required to provide needed reasonable accommodations.

For technical support or questions about Capital Ones recruiting process please send an email to

Capital One does not provide endorse nor guarantee and is not liable for third-party products services educational tools or other information available through this site.

Capital One Financial is made up of several different entities. Please note that any position posted in Canada is for Capital One Canada any position posted in the United Kingdom is for Capital One Europe and any position posted in the Philippines is for Capital One Philippines Service Corp. (COPSSC).


Required Experience:

Manager

Manager Security Platform Engineering DLP Control PlatformCapital One operates entirely in the public cloud and processes sensitive data at massive scale across every channel where information moves. Our Data Loss Prevention (DLP) program sits at the intersection of cybersecurity data engineering an...
View more view more