Lead Cybersecurity Engineer - Endpoint Security
Buffalo, NY, United States
Full Time Senior-level / Expert USD 110K - 184K
M&T Bank
With a community bank approach, M&T Bank helps people reach their personal and business goals with banking, mortgage, loan and investment services.This role offers a hybrid work schedule; offering the flexibility to work from home two days a week, while providing the opportunity for in-person collaboration.
At M&T Tech, we’re a team of makers, doers, and builders, working to create the most advanced technology solutions in banking. We’re not your stereotypical suit and tie bankers: we’re an innovative team of leading tech experts, pushing boundaries, and taking risks. We’re building an agile team of the most skilled and creative workers to solve complex problems, architect solutions, write high-performance software, and chart our new path, all to make the lives of our customers, and the communities that we serve, better. Join us and be part of something new as we build tomorrow’s bank, today.
Overview:
We are seeking a highly skilled and experienced Lead Cybersecurity Engineer to join our dynamic cybersecurity team. In this role, you will be responsible for designing, implementing, and enhancing our cybersecurity endpoint protection platforms across our large-scale infrastructure, applications and systems. You will work closely with other security engineers, product teams, and IT professionals to ensure the resilience and integrity of our environment. The candidate will have strong technical expertise solving advanced complex problems or enhancements, a deep understanding of security frameworks, and a passion for protecting sensitive data from evolving threats, with a strong emphasis on endpoint protection technologies, and threat management.
The ideal candidate will have extensive expertise in Endpoint Protection (EPP) and Endpoint Detection and Response (EDR), along with other threat intelligence platforms, as well as a proven history of leading enterprise initiatives and mentoring junior engineers. Experience working in regulated environments is strongly preferred. The role also requires proficiency in scripting, programming, and automation to streamline security processes and improve efficiency.
Primary Responsibilities:
Evaluate, design, implement, and manage endpoint protection strategies, solutions and other cybersecurity systems with significant complexity and moderate risk, ensuring alignment with cybersecurity objectives and organizational needs.
Lead the development, configuration and enforcement of security policies & controls with significant complexity, to fortify system defenses and optimize performance of technologies.
Manage, monitor, and maintain endpoint security tools and technologies
Lead testing efforts for systems and technology, coordinating with cross-functional teams and providing technical expertise in identifying and resolving issues.
Manage deployment of security solutions for complex systems or technology, ensuring smooth integration with existing infrastructure and minimal disruption.
Define and implement tuning methodologies for systems and technologies, using advanced analytical techniques to maximize efficiencies.
Develop and implement automation and orchestration for complex systems to streamline security operations and response activities.
Lead collaboration efforts with Cybersecurity and Technology teams to effectively implement and maintain security solutions for the organization.
Lead improvement initiatives within Cybersecurity team, implementing best practices and optimizing processes to enhance security capabilities.
Actively partner with vendor to optimize security products and/or drive resolution of complex support issues.
Assist leadership with vendor relationships by maintaining when licenses need to be renewed, informing when hardware needs to be refreshed or new technologies should be considered.
Understand and adhere to the Company’s risk and regulatory standards, policies, and controls in accordance with the Company’s Risk Appetite. Design, implement, maintain, and enhance internal controls to mitigate risk on an ongoing basis. Identify risk-related issues needing escalation to management.
Promote an environment that supports diversity and reflects the M&T Bank brand.
Maintain M&T internal control standards, including timely implementation of internal and external audit points together with any issues raised by external regulators as applicable.
Complete other related duties as assigned.
Scope of Responsibilities:
Designs and implements secure systems, technologies, policies and procedures to protect against cybersecurity threats and malicious activities. Architects, maintains, and optimizes the tools and capabilities leveraged by cyber security to achieve organizational objectives.
Partners primarily with individual contributors and leaders within Cybersecurity and Technology, occasionally senior leaders within Cybersecurity
Exercises judgement in selecting methods, techniques, and criteria in executing objectives. Exerts significant latitude in determining objective of assignment. Work is accomplished with limited direction.
Advanced ability to use multiple Cybersecurity tools, specific to function.
Stays updated with the latest Endpoint Protection (EPP), Endpoint Detection & Response (EDR) technologies, as well as the latest security trends and threat landscape. Update security processes and tools accordingly to address new risks.
Manager Responsibilities:
No supervisory responsibilities.
Education and Experience Required:
Bachelor's degree and a minimum of 5 years’ relevant work experience, or in lieu of a degree, a combined minimum of 9 years’ higher education and/or work experience
Strong knowledge of endpoint protection & ERD platforms (e.g., CrowdStrike, Symantec Endpoint, Microsoft Defender for Endpoint (MDE)).
Experience with threat detection and response tools.
Education and Experience Preferred:
Proficiency in scripting and automation (e.g., Python, PowerShell, bash, Java, or similar).
Experience with container security and cloud security tools (e.g., Docker, Kubernetes, AWS, Azure).
Relevant certifications (e.g., CISSP, SSCP, CompTIA Security+, AWS Certified Security Specialty, Azure Security Engineer, or equivalent cloud-specific certifications) are a plus.
Experience with security frameworks (e.g., NIST, CIS, OWASP)
Advanced understanding of the security system development and infrastructure lifecycle and architecture, and systems design
Proven experience with the development and customization of tools utilized in assigned Cybersecurity function
Demonstrated ability to translate architecture into technical requirements
Proficient level of critical thinking and problem solving ability
Excellent communication and interpersonal skills
Experience partnering with leaders to design solutions to business needs.
Proficient persuasive communication skills to gain buy-in of others
Strong ability to analyze and draw reliable conclusions based on large volumes of quantitative data from diverse sources
Ability effectively serves in indirect leadership role
We support our team members with generous benefits.
Competitive compensation
Health, welfare, and retirement benefits
401(k) match at 5%
Work-life balance and flexible work arrangements
Banking Officers start with 25 days PTO plus 12 paid holidays
40 hours paid volunteer hours per year
Much more. For details, see: M&T Benefits Overview
About M&T
M&T Bank is a Top 20 US bank holding company and one of the best performing and financial stable regional banks in the country, we offer our technology employees a wide range of performance-based career development opportunities. We have a strong commitment to our customers and the communities we serve, and we continue to grow with a focus on the future. So, when looking to advance your career, look to M&T. Grow with us.
M&T Bank is committed to fair, competitive, and market-informed pay for our employees. The pay range for this position is $110,635.01 - $184,391.68 Annual (USD). The successful candidate’s particular combination of knowledge, skills, and experience will inform their specific compensation.LocationBuffalo, New York, United States of AmericaTags: Agile Automation AWS Azure Banking Bash CISSP Cloud CompTIA CrowdStrike Docker EDR Endpoint security Java Kubernetes NIST OWASP PowerShell Python Scripting SSCP Threat detection Threat intelligence
Perks/benefits: 401(k) matching Career development Competitive pay Flex hours Flex vacation Health care Team events
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.