985,271open jobs
58,916companies
160,722added this week
Browse all
Salary
$197k – $225k per year
Location
In office (McLean, Richmond, New York, Plano)
Seniority
Senior · 6+ years exp
Employment
Full-Time

Confirmed on the employer's own hiring board on Sep 30, 2026. First seen by Alion on Sep 29, 2026. Capital One scores B on the Alion truth index.

Overview
Company
Impact
Profile match
Capital One is an American bank founded in 1994 that began as a credit card monoline built on statistical testing of offers and pricing, an approach it called information-based strategy. It is now one of the largest card issuers in the United States alongside a national direct bank, an auto lending business and a commercial bank, and it completed the acquisition of Discover in 2025, which gave it a payments network of its own rather than dependence on Visa and Mastercard. Headquartered in McLean, Virginia, it was also an early mover among large banks in migrating its entire technology estate to the public cloud.
Detection Engineer Manager, Cyber Security

Do you love building and pioneering in the technology space? Do you enjoy solving complex business problems in a fast-paced, collaborative, inclusive, and risk-conscious delivery environment? At Capital One, you'll be part of a big group of makers, breakers, doers and disruptors who love to solve real problems and meet real customer needs. We are seeking Cyber Security Professionals who are passionate about evaluating cyber capabilities, threat intelligence, and risk management to join our team. In this role, you’ll have the opportunity to be on the forefront of driving cybersecurity governance, capability maturation, and risk transformation across Capital One.

What You’ll Do:

  • AI-Driven Detection & Engineering: Leverage LLMs and machine learning to automate detection logic, summarize complex attack chains, reduce false positives, and accelerate the full detection development lifecycle using tools such as Capital One's Detection Engineering Assistant.
  • Detection-as-Code (DaC) Leadership: Lead the design, development, and maintenance of detection rules using DaC methodologies, utilizing GenAI-assisted development workflows and CI/CD pipelines against the Cyber Detection Library (CDL).
  • Behavioral Detection Engineering: Design and build high-fidelity behavioral detections that identify adversary patterns, TTPs, and anomalous endpoint activity - leveraging user and entity behavior signals, process telemetry, and correlation logic to distinguish malicious from benign activity at scale.
  • Strategic Architecture: Utilize the MITRE ATT&CK framework to visualize, prioritize, and close endpoint coverage gaps; drive detection architecture decisions that balance fidelity, volume, and operational risk across the endpoint threat surface.
  • Offensive Alignment & Threat Research: Apply a deep understanding of Red Team methodologies and adversary TTPs to conduct hypothesis-driven threat research across enterprise endpoint environments - translating attacker techniques into high-fidelity detections and proactively identifying coverage gaps before they are exploited.
  • Endpoint Domain Ownership: Own end-to-end detection coverage for the Endpoint threat surface - managing the full lifecycle from telemetry onboarding through alert deployment, tuning, and continuous coverage gap analysis in collaboration with the Coverage Review Team.
  • Stakeholder & Risk Management: Partner with business leaders, CSOC, Cyber Threat Intelligence, and Cyber Threat Hunt to ensure robust monitoring across endpoint environments while ensuring all documentation meets strict fintech compliance and audit standards.
  • Technical Leadership & Mentorship: Serve as a technical bar-raiser across the team - mentoring engineers on traditional security concepts, emerging AI-driven workflows, and detection engineering best practices.

Basic Qualifications:

  • Bachelor's Degree
  • At least 5 years of experience in cybersecurity or information technology
  • At least 4 years of experience evaluating, contributing to, or supporting development of cybersecurity capabilities
  • At least 4 years of experience with endpoint or host logs (Windows Event Logs, Sysmon, EDR telemetry)
  • At least 2 years of experience with EDR platforms (CrowdStrike Falcon, SentinelOne, Microsoft Defender)
  • At least 1 year of experience with machine learning or data science applied to security

Preferred Qualifications:

  • 6+ years of experience in Threat Detection, Threat Hunting, or Security Engineering
  • 5+ years of experience with cybersecurity frameworks and concepts such as NIST CSF, MITRE ATT&CK, CMMC, FedRAMP, etc.
  • 5+ years of experience performing analysis of or developing solutions for cyber threats, vulnerabilities, risks, or, events
  • 5+ years of experience working on teams and presenting to stakeholders cybersecurity information such as metrics, threat intelligence, controls and/or requirements
  • 4+ years of experience with Python
  • 4+ years of experience using security tools (Splunk, Crowdstrike, Qualys, or AWS Security Hub)
  • 4+ years of experience with data science concepts and techniques (anomaly detection, behavioral analytics)
  • Ability to perform security incident analysis and assist with resolution, translating technical findings into clear, actionable reports for technical and non-technical stakeholders
  • Experience with CrowdStrike Falcon (custom IOAs, detection tuning, telemetry analysis)
  • Experience with endpoint forensics, malware triage, or adversary emulation exercises targeting endpoint environments
  • GCIA, GCIH, CISSP, GMON, GREM, GCTD, MLE, or Cloud (GCP, AWS) certifications

At this time, Capital One will not sponsor a new applicant for employment authorization, or offer any immigration related support for this position (e.g. H1B, F-1 OPT, F-1 STEM OPT, F-1 CPT, J-1, TN, E-3, and O-1, or any other forms of work authorization that require immigration support from an employer).

The minimum and maximum full-time annual salaries for this role are listed below, by location. Please note that this salary information is solely for candidates hired to perform work within one of these locations, and refers to the amount Capital One is willing to pay at the time of this posting. Salaries for part-time roles will be prorated based upon the agreed upon number of hours to be regularly worked.

McLean, VA: $197,300 - $225,100 for Manager, Cyber SecurityNew York, NY: $215,200 - $245,600 for Manager, Cyber SecurityPlano, TX: $179,400 - $204,700 for Manager, Cyber SecurityRichmond, VA: $179,400 - $204,700 for Manager, Cyber Security

Candidates hired to work in other locations will be subject to the pay range associated with that location, and the actual annualized salary amount offered to any candidate at the time of hire will be reflected solely in the candidate’s offer letter.

This role is also eligible to earn performance based incentive compensation, which may include cash bonus(es) and/or long term incentives (LTI). Incentives could be discretionary or non discretionary depending on the plan.

Capital One offers a comprehensive, competitive, and inclusive set of health, financial and other benefits that support your total well-being. Learn more at the Capital One Careers website. Eligibility varies based on full or part-time status, exempt or non-exempt status, and management level.

This role is expected to accept applications for a minimum of 5 business days.No agencies please. Capital One is an equal opportunity employer (EOE, including disability/vet) committed to non-discrimination in compliance with applicable federal, state, and local laws. Capital One promotes a drug-free workplace. Capital One will consider for employment qualified applicants with a criminal history in a manner consistent with the requirements of applicable laws regarding criminal background inquiries, including, to the extent applicable, Article 23-A of the New York Correction Law; San Francisco, California Police Code Article 49, Sections 4901-4920; New York City’s Fair Chance Act; Philadelphia’s Fair Criminal Records Screening Act; and other applicable federal, state, and local laws and regulations regarding criminal background inquiries.

If you have visited our website in search of information on employment opportunities or to apply for a position, and you require an accommodation, please contact Capital One Recruiting at 1-800-304-9102 or via email at [email protected]. All information you provide will be kept confidential and will be used only to the extent required to provide needed reasonable accommodations.

For technical support or questions about Capital One's recruiting process, please send an email to [email protected]

Capital One does not provide, endorse nor guarantee and is not liable for third-party products, services, educational tools or other information available through this site.

Capital One Financial is made up of several different entities. Please note that any position posted in Canada is for Capital One Canada, any position posted in the United Kingdom is for Capital One Europe and any position posted in the Philippines is for Capital One Philippines Service Corp. (COPSSC).

Free account
Stop reading job ads. Get the ones that fit.
One free account turns this page into a shortlist built around your stack, your level and your pay.
Match on every job. Stack, seniority, pay and location, scored against your profile.
985,271 open roles. Read straight off company career pages, refreshed every day.
Unlimited applications. Every one you send is tracked in one place, on-site or on a company board.
3 tailored CVs a month. Rewritten for the exact job you are applying to. Included free.
Create a free account Continue with Google
Free forever. No card. Under a minute.

Your match

How well do you fit this role?
Two answers are enough for a real match. No account needed.
Check my fit
Answers stay in this browser until you create an account.

Recommended for you based on this role

Security
Similar stack
Same company
McLean
$95k – $110k per year • In office • Full-Time • 3+ years exp • Bachelor's Degree • Philadelphia
DevOps
VPN
Cybersecurity
HIPAA
SIEM
Apply
GRC Analyst 8 hours ago
$108k – $125k per year • Hybrid • 3+ years exp • New York
Cybersecurity
PCI DSS
SOC 2
GDPR
Apply
≈ $135k – $246k per year (Estimated) • Remote (United States) • 5+ years exp • Bachelor's Degree • Washington
AI/ML
Anomaly Detection
DevOps
GCP
IAM
Cybersecurity
NIST 800-53
FedRAMP
Zero Trust
Least Privilege
Threat Modeling
Apply
$145k – $175k per year • Equity • In office • Full-Time • San Francisco
AI/ML
Edge AI
DevOps
SLURM
Kubernetes
Incident Management
Linux
TCP/IP
Apply
≈ $131k – $257k per year (Estimated) • Equity • In office • Top Secret • Full-Time • 7+ years exp • Boston
Python
Java
C++
Scala
AI/ML
AWS Bedrock
RAG
LLM Guardrails
Agentic Workflows
Multi-Agent Systems
DevOps
Terraform
CI/CD
AWS
Cybersecurity
ISO 27001
PCI DSS
HIPAA
Threat Modeling
Apply
≈ $75k – $158k per year (Estimated) • In office • Full-Time • 7+ years exp • Toronto
JavaScript
Node JS
Databases
PostgreSQL
AI/ML
Copilot
Cursor
Claude Code
Model Context Protocol
Prompt Engineering
AI Agents
RAG
Agentic Workflows
DevOps
Rest API
Dynatrace
Azure
CI/CD
Docker
Kubernetes
Nginx
Linux
Cybersecurity
HashiCorp Vault
Microsoft Entra ID
Analytics
Collibra
Cryptography
Vault
Management
Jira
Agile
Apply
≈ $84k – $167k per year (Estimated) • Hybrid • Full-Time • 5+ years exp • Wellington
Python
Java
SQL
C#
Java
Spring Boot
C#
.NET
Databases
Databricks
MS SQL
AI/ML
Copilot
Hadoop
Spark
DevOps
Azure
CI/CD
Analytics
Tableau
Power BI
ETL/ELT
Apply
$111k – $190k per year • Remote (United States) • Full-Time • 5+ years exp • Bachelor's Degree • Irvine • Chicago • Phoenix • San Francisco • Seattle
Python
JavaScript
Rust
TypeScript
SQL
C#
Databases
PostgreSQL
Weaviate
Neo4j
Chroma
Milvus
pgvector
Pinecone
Qdrant
Apache Kafka
AI/ML
LangChain
LlamaIndex
vLLM
LM Studio
Ollama
RAG
GraphRAG
Knowledge Graph
LLM Guardrails
DevOps
GCP
CI/CD
AWS
Amazon Kinesis
Apply
≈ $146k – $300k per year (Estimated) • In office • Full-Time • 8+ years exp • Princeton
Python
Python
FastAPI
Databases
Snowflake
Weaviate
Pinecone
AI/ML
LangGraph
AutoGen
Weights & Biases
LangChain
Vertex AI
Fine-tuning
RLHF
Prompt Engineering
AI Agents
Arize Phoenix
LangSmith
PEFT
Transformers
TensorFlow
PyTorch
CrewAI
LLM
RAG
Amazon SageMaker
SFT
Context Engineering
LLM Guardrails
Agentic Workflows
Multi-Agent Systems
Tool Use
Machine Learning
DevOps
Terraform
GCP
GitHub Actions
CloudFormation
Azure
CI/CD
Jenkins
Git
AWS
Docker
Kubernetes
Amazon EKS
Google GKE
Azure AKS
AWS Lambda
Amazon EC2
Management
Agile
Apply
≈ $133k – $256k per year (Estimated) • Remote (United States) • 5+ years exp • Bachelor's Degree
AI/ML
AWS Bedrock
DevOps
Terraform
CloudFormation
Prometheus
CI/CD
AWS
Grafana
FinOps
IAM
Amazon CloudWatch
Cybersecurity
CIS Benchmarks
SOC 2
HIPAA
Apply
$230k – $262k per year • In office • Full-Time • 7+ years exp • Bachelor's Degree • McLean • Richmond • New York • Plano
DevOps
Splunk
AWS
Cybersecurity
Crowdstrike
Qualys Cloud Platform
MITRE ATT&CK
NIST CSF
FedRAMP
Apply
$197k – $225k per year • In office • Full-Time • 6+ years exp • Bachelor's Degree • McLean • Richmond • New York • Plano
DevOps
Splunk
AWS
Cybersecurity
Crowdstrike
Qualys Cloud Platform
MITRE ATT&CK
NIST CSF
FedRAMP
Apply
$230k – $262k per year • In office • Full-Time • 7+ years exp • Bachelor's Degree • McLean • Richmond • New York • Plano
DevOps
Splunk
AWS
Cybersecurity
Crowdstrike
Qualys Cloud Platform
MITRE ATT&CK
NIST CSF
FedRAMP
Apply
$179k – $205k per year • In office • Full-Time • 5+ years exp • Bachelor's Degree • McLean • Richmond • Chicago • Plano
Python
PHP
SQL
PowerShell
Perl
AI/ML
AI Agents
DevOps
Splunk
GCP
Azure
AWS
Cybersecurity
Crowdstrike
Qualys Cloud Platform
MITRE ATT&CK
NIST CSF
FedRAMP
Apply
$197k – $225k per year • In office • Full-Time • 6+ years exp • High School Diploma • McLean • Plano • Richmond
Python
JavaScript
DevOps
Terraform
CloudFormation
CI/CD
AWS
IAM
Apply
$157k – $183k per year • Equity • In office • TS/SCI • 8+ years exp • McLean
Apply
$100k – $150k per year • In office • Top Secret • 5+ years exp • McLean
Apply
$133k – $222k per year • In office • TS/SCI • 10+ years exp • McLean
DevOps
Splunk
Cybersecurity
Zero Trust
Apply
≈ $101k – $201k per year (Estimated) • Hybrid • 7+ years exp • McLean
AI/ML
AI Agents
DevOps
Linux
Windows
Cybersecurity
FedRAMP
SIEM
Apply
≈ $103k – $205k per year (Estimated) • Hybrid • 8+ years exp • Bachelor's Degree • McLean
Python
JavaScript
TypeScript
PowerShell
Bash
AI/ML
AI Agents
LLM Guardrails
DevOps
Rest API
Terraform
Helm
CI/CD
Docker
Kubernetes
Platform Engineering
IAM
Linux
Cybersecurity
Crowdstrike
Qualys Cloud Platform
Microsoft Sentinel
ISO 27001
SOC 2
FedRAMP
Threat Modeling
Kyverno
OWASP
Management
Jira
ServiceNow
Apply
See all jobs
This is one of many
985,271 more open roles from verified company boards, updated every day.