Threat Intelligence Team Lead
Buffalo, NY, United States
Full Time Senior-level / Expert USD 110K - 184K
M&T Bank
With a community bank approach, M&T Bank helps people reach their personal and business goals with banking, mortgage, loan and investment services.This role offers a hybrid work schedule; offering the flexibility to work remotely two days a week, while providing the opportunity for in-person collaboration at our Buffalo, NY Tech Hub.
Overview:Manages the Cyber Threat Intelligence team to deliver timely, relevant, and actionable intelligence that enhances the organization’s cybersecurity posture. Oversees the collection, analysis, and dissemination of threat information to support proactive defense and informed decision-making. Collaborates with internal stakeholders and external partners to stay ahead of emerging threats and adversary tactics.
Primary Responsibilities:
· Develop and implement comprehensive plan, policies, and procedures related to immediate function(s) of oversight.
· Define and drive the overall CTI strategy in alignment with organizational security goals.
· Set priorities, manage team workload, and ensure alignment with threat landscape changes.
· Lead the collection, analysis, and dissemination of actionable threat intelligence.
· Partner with incident response teams to ensure that plans are regularly reviewed, updated, and tested to align with emerging threats and best practices.
· Oversee technology and systems, including identifying, evaluating, and recommending systems to use within immediate function of oversight.
· Supervise CTI analysts, providing mentorship, performance evaluations, and professional development support.
· Establish training plans to build expertise in threat analysis tools, frameworks, and methodologies.
· Produce timely, well-structured threat intelligence reports and briefings for technical and non-technical audiences.
· Evaluate, implement, and manage threat intelligence platforms (TIPs), threat feeds, and enrichment tools.
· Contribute to the delivery of the Bankwide information security training and awareness program.
· Build strong partnerships with stakeholders to ensure immediate function(s) of oversight meets the Cybersecurity objectives.
· Exercise usual authority of a manager concerning staffing, performance appraisals, promotions, salary recommendations, performance management and terminations.
· Understand and adhere to the Company’s risk and regulatory standards, policies, and controls in accordance with the Company’s Risk Appetite. Design, implement, maintain,
and enhance internal controls to mitigate risk on an ongoing basis. Identify risk-related issues needing escalation to management.
· Promote an environment that supports diversity and reflects the M&T Bank brand.
· Maintain M&T internal control standards, including timely implementation of internal and external audit points together with any issues raised by external regulators as applicable.
· Complete other related duties as assigned.
Scope of Responsibilities:
· Primary partners: Cybersecurity Senior Managers and Managers.
· Stakeholders: Technology team and the Bank.
· Work is accomplished with limited direction; translates Cybersecurity imperatives to objectives within team.
· Oversees 1 or more function(s)/team(s) within Cybersecurity.
· Typically leads a team of 5-10 FTEs (entry to mid-level individual contributors).
· Provides input for budget as it pertains to specific team needs, and accountable for meeting budget.
· This role manages one or more functions/teams/departments within Cybersecurity:
o Operations and Threat – proactively identify, analyze, and respond to cyber threats, ensuring the Bank's digital assets are secure and resilient against potential risks and attacks. Functions/teams may include security operations center, governance & oversight, insider threat, data loss prevention, threat intel & hunt, incident response, detection & protection engineering
Manager Responsibility:
Typically leads a team of 5-10 FTEs (entry to mid-level individual contributors)
Education and Experience Required:
· Bachelor's degree and a minimum of 5 years’ relevant work experience, or in lieu of a degree, a combined minimum of 9 years’ higher education and/or work experience
· Demonstrated advanced knowledge of Cybersecurity principles.
· Minimum 4 years’ work experience in/with the specific cybersecurity function.
· Minimum 1 year’s managerial experience.
Education and Experience Preferred:
Demonstrated success in managing and mentoring CTI analysts, driving intelligence programs, and aligning team efforts with organizational security priorities
Hands-on experience analyzing APT campaigns, malware families, and cybercrime operations, with strong familiarity using frameworks such as MITRE ATT&CK, Diamond Model, and Kill Chain.
Practical application of intelligence to support SOC, IR, threat hunting, vulnerability management, and risk functions — including production of actionable reports and indicators
Direct experience engaging with ISACs, government agencies, threat-sharing consortiums, or industry groups to enrich internal intelligence and stay ahead of emerging threats.
Tags: APT Cyber crime Governance Incident response Malware MITRE ATT&CK SOC Strategy Threat intelligence Vulnerability management
Perks/benefits: Career development Competitive pay
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.