M&T Bank Corporation

Head of Cybersecurity Defense Operations

M&T Bank Corporation$167K — $279K *
Finance & Insurance
8 - 10 years of experience
Job Overview by Ladders

Qualifications

  • Bachelor's degree and minimum 9 years' relevant work experience, or 13 years' combined higher education and/or work experience in lieu of a degree.
  • Expert knowledge of Cybersecurity principles.
  • At least 8 years' experience in a specific cybersecurity function.
  • Minimum of 3 years' managerial experience.
  • Eligibility for Top Secret/Sensitive Compartmented Information (TS/SCI) US Government Security Clearance preferred.

Responsibilities

  • Drive the development and execution of comprehensive cybersecurity strategies to align with the organization's vision.
  • Partner with senior leadership and Finance to allocate resources based on risk assessments.
  • Monitor the effectiveness of risk measurement strategies with technology risk teams and communicate to senior management.
  • Lead strategic initiatives to improve operational efficiencies while maintaining positive outcomes.
  • Establish incident response policies that align with best practices and regulations.
  • Collaborate with engineering teams to select security technologies that support the cybersecurity goals.
  • Oversee the development of internal cybersecurity training and awareness programs.

Benefits

  • Promotes a culture of belonging and collaboration within the cybersecurity team.
  • Opportunities for mentoring and coaching of team members.
  • Involves developing career paths and succession planning for key roles.
  • Engagement with industry forums and regulatory engagements to stay informed on legal requirements.
  • Encourages a strong internal control environment adhering to regulatory standards.
Full Job Description
Overview:

Manages the activities and strategic priorities of multiple cybersecurity departments. Responsible for financial and human capital planning to ensure short- and long-term strategic efforts support and protect the Bank from internal and external cybersecurity threats.

Primary Responsibilities:
  • Drive the development and execution of comprehensive cybersecurity strategies, ensuring alignment with overall cybersecurity vision and organizational needs.
  • Partner with Cyber senior leadership and Finance to direct business and financial resources effectively based on risk assessments and strategic priorities.
  • Monitor and review the effectiveness of risk measurement strategy, update assessments and procedures in partnership with technology risk and enterprise risk teams and communicate risk status to senior management.
  • Lead strategic initiatives across Cybersecurity that drive continuous improvement and operational efficiencies, while maintaining or improving overall outcomes.
  • Establish and maintain incident response policies and procedures, ensuring they align with industry best practices and regulatory requirements.
  • Collaborate with engineering and architecture teams to select appropriate security technologies that align with overall technology roadmap and cybersecurity goals.
  • Leverage industry knowledge and expertise to inform best practices and policies, ensuring continued compliance with applicable laws and regulations.
  • May represent organization in industry forums and regulatory engagements to understand and address cybersecurity-related legal and regulatory requirements.
  • Create strong workforce plan to meet business needs, including (but not limited to) mentoring and coaching high potential team members, developing career paths and succession planning for key roles, identifying training needs and gaps, and establishing culture of knowledge sharing and collaboration.
  • Guide creation and maintenance of internal Cybersecurity training needs to deliver security awareness and training programs across the Bank.
  • Develop Cybersecurity strategy and programs that strategically meets the needs and addresses the challenges of the organization.
  • Partner with procurement and vendor management teams to assess vendor security controls, conduct due diligence, and negotiate appropriate security provisions in contracts.
  • Exercise usual authority of a manager concerning staffing, performance appraisals, promotions, salary recommendations, performance management and terminations.
  • Understand and adhere to the Company's risk and regulatory standards, policies, and controls in accordance with the Company's Risk Appetite. Design, implement, maintain, and enhance internal controls to mitigate risk on an ongoing basis. Identify risk-related issues needing escalation to management.
  • Promote an environment that supports belonging and reflects the M&T Bank brand.
  • Maintain M&T internal control standards, including timely implementation of internal and external audit points together with any issues raised by external regulators as applicable.
  • Complete other related duties as assigned.


Scope of Responsibilities:
  • Primary partners: CISO, CIO, Technology Directors
  • Stakeholders: Regulators, Technology team, and the Bank
  • Work is accomplished with minimal direction; strategizes team imperatives in alignment with Bank imperatives.
  • Oversees 2 or more functions/teams or a department within Cybersecurity.
  • This role may act as a lead Cybersecurity representative with Regulators.
  • Accountable for developing and executing budget for functions/teams they oversee.
  • This role manages one or more functions/teams/departments within Cybersecurity:
    • Operations and Threat - proactively identify, analyze, and respond to cyber threats, ensuring the Bank's digital assets are secure and resilient against potential risks and attacks. Functions/teams may include security operations center, governance & oversight, insider threat, data loss prevention, threat intel & hunt, incident response, detection & protection engineering
    • Cloud and Architecture - design, implement, and manage secure and resilient cloud-based infrastructure, ensuring the protection of data and applications in the digital environment
    • Security Assessments and Business Information Security Officers (BISO) - evaluate and enhance overall security posture through thorough assessments, aligning cybersecurity measures with business operations to mitigate risks effectively. Functions/teams may include vulnerability management, BISO, penetration testing & attack, third party assessments, static application security testing/dynamic application security testing (SAST/DAST)
    • Identity and Access Management - regulate and secure user access to digital resources, ensuring proper authentication and authorization measures are in place to protect sensitive information and prevent unauthorized access. Functions/teams may include service & delivery, privileged access management, infrastructure & tooling, governance & oversight, monitoring & logging
    • Security Engineering - design, implementation, and management of robust security measures and systems to protect digital assets, data, and networks from cybersecurity threats and unauthorized access. It encompasses various disciplines such as network security, access controls, and threat protection and detection, with the overarching goal of ensuring the confidentiality, integrity, and availability of information in the face of evolving cybersecurity risks


Manager Responsibility:

Typically leads a team of 25 or more FTEs (directly leading managers, and indirectly individual contributors)

Education and Experience Required:
  • Bachelor's degree and a minimum of 9 years' relevant work experience, or in lieu of a degree, a combined minimum of 13 years' higher education and/or work experience.
  • Demonstrated expert knowledge of Cybersecurity principles.
  • Minimum of 8 years' work experience in/with the specific cybersecurity function.
  • Minimum 3 years' managerial experience


Education and Experience Preferred:
  • Eligibility to obtain a Top Secret/Sensitive Compartmented Information (TS/SCI) US Government Security Clearance
  • Minimum of 8 years' managerial experience
  • Proven ability to mentor and lead cybersecurity people leaders and teams of people.
  • Excellent communication skills.
  • Excellent interpersonal skills.
  • Proven ability to effectively convey message to technical and business leaders.
  • Experience effectively influencing senior leaders.
  • Proven experience strategically prioritizing across competing priorities and quickly changing landscape.
  • Experience in a highly regulated industry environment, including building and maintaining effective relationships with external stakeholders.
  • Advanced understanding of financial services regulations, compliance requirements, and risk management practices.
  • Experience translating a strategic business objective into strategic cyber plans, programs, and initiatives.
  • Expertise in cybersecurity innovation and emerging technologies.


M&T Bank is committed to fair, competitive, and market-informed pay for our employees. The pay range for this position is $167,600.00 - $279,400.00 Annual (USD). The successful candidate's particular combination of knowledge, skills, and experience will inform their specific compensation.

Location
Buffalo, New York, United States of America

About M&T Bank Corporation

M&T Bank is a financial holding company headquartered in Buffalo, New York. M&T's principal banking subsidiary, M&T Bank, operates banking offices in New York, Maryland, New Jersey, Pennsylvania, Delaware, Connecticut, Virginia, West Virginia, and the District of Columbia. Trust-related services are provided by M&T's Wilmington Trust-affiliated companies and by M&T Bank. M&T Bank traces its origins to the founding of Manufacturers and Traders Bank in Buffalo, New York. As a result of mergers, acquisitions, and name changes, M&T Bank Corporation's principal bank is now known as Manufacturers and Traders Trust Company or M&T Bank. M&T Bank reorganized under a bank holding company in 1969 called First Empire State Corporation. The name was changed in 1998 to M&T Bank Corporation, whose common stock is listed on the New York Stock Exchange and trades under the symbol "MTB."

M&T Bank Corporation Careers

Join the vibrant team at M&T Bank Corporation, a leading financial institution where innovation meets tradition, offering a plethora of job opportunities across various sectors. As one of the most respected banks in the nation, M&T Bank Corporation is the perfect place to jumpstart or advance your career in the financial services industry.

Work You’ll Do

At M&T Bank Corporation, you will be part of a culture that cherishes diversity, leadership, and professional growth. Engage in work that makes a real difference in the community while fostering your career development through comprehensive training programs and diverse learning opportunities.

Innovate and Lead

Embrace the chance to work on projects that integrate cutting-edge financial technologies with robust, traditional banking practices. M&T Bank Corporation is at the forefront of the financial industry, offering innovative solutions that redefine banking standards. Our leadership in the market is driven by a commitment to excellence and continuous improvement.

Career Growth and Opportunities

Whether you are looking for an entry-level position or a more senior role, M&T Bank Corporation provides a dynamic pathway for career advancement. With a variety of job opportunities ranging from internships to full-time positions, you can find the perfect match for your skills and ambitions. Our team is dedicated to helping you navigate your career path with tailored development plans and leadership training.

Join Our Team

Explore job opportunities and join a team that values hard work, creativity, and strategic thinking. M&T Bank Corporation is hiring professionals who are passionate about finance and eager to contribute to a team-oriented environment. Enhance your skills through hands-on experience and ongoing professional development.

Networking and Professional Development

At M&T Bank Corporation, networking and professional development are part of our DNA. Connect with industry leaders, participate in high-impact networking events, and take advantage of our mentorship programs. Our employees benefit from a supportive network that boosts their career trajectories and fosters meaningful professional relationships.

Benefits and Culture

Enjoy a comprehensive benefits package that supports both your professional and personal life. M&T Bank Corporation offers competitive salaries, health benefits, and retirement plans designed to ensure the well-being of our team members and their families. Experience a supportive and inclusive culture where every employee is valued and given the opportunity to thrive.

How to Apply

Ready to take the next step in your career? Visit the M&T Bank Corporation Careers page to browse current openings, submit your resume, and prepare for your interview. We are excited to see how your skills and ideas can contribute to our continued growth and success.

Stay Connected

Keep up to date with the latest from M&T Bank Corporation by following our careers blog. Gain insights from our experts and stay informed about new job openings and upcoming networking events. Join M&T Bank Corporation today and be part of a team that is dedicated to growth, innovation, and leadership in the banking industry. Your future starts here!
Learn more about M&T Bank Corporation
Size
17,115 employees
Market Cap
$25.2 billion
Industry
Net Income
$1.3 billion
Founded
1868
5 Year Trend
+0.2%
NASDAQ

Similar Jobs

More Jobs at M&T Bank Corporation

More Finance & Insurance Jobs

Find similar Head of Cybersecurity Defense Operations jobs: