Senior Cybersecurity Solutions Architect

Posted 6 Days Ago
Be an Early Applicant
Buffalo, NY
98K-163K Annually
Senior level
Other
The Role
The Senior Cybersecurity Solutions Architect advises internal teams on security practices for cloud systems, leading assessments to ensure compliance with policies and regulations. Responsibilities include managing cloud security architecture, conducting security reviews, advising on best practices, and mentoring junior staff while staying informed about cybersecurity threats.
Summary Generated by Built In

The Bank sponsors individuals for TN and H-1B transfers on a case by case basis. Please note that this position is not open to anyone on an F-1 student visa including those eligible for CPT/OPT or the Stem OPT extension.

This role offers a hybrid work schedule; offering the flexibility to work remotely two days a week, while providing the opportunity for in-person collaboration at our Buffalo, NY Tech Hub.

Overview:

The Senior Cybersecurity Architect acts as a trusted security advisor to internal technology and application teams. This role leads a security practice focused on performing specialized assessments of security controls for cloud systems and applications, ensuring compliance with internal policies, federal regulations, and industry standards. This role takes a risk-based approach to ensure that appropriate security principles and controls are implemented throughout the system development lifecycle, safeguarding customer and corporate assets while aligning with the organization's risk appetite.

This senior level role will have responsibilities that span across various internal teams and projects, ultimately supporting cloud initiatives. This includes playing a key role in advising business units, ensuring applications meet cloud requirements, and assisting in the development of cloud strategies.

       

Primary Responsibilities:

  • Cloud Security Architecture:  Collaborate with business and technology teams to align security architecture for cloud-based solutions, identifying gaps and recommending security enhancements.
  • Cloud Technology Security Reviews: Lead security reviews for primarily cloud-based projects, ensuring appropriate security controls are applied and compliant. Provide cyber security support to these projects from inception to production.
  • Cloud Security Advisory: Provide guidance to technical and non-technical audiences on cloud security, including identity and access management (IAM), encryption, network security, container security, and more.
  • Risk-Based Security Assessments: Engage with technology teams to identify security risks in proposed, or active projects, and provide recommendations or modifications. Support technology teams with proper documentation of exceptions to standards.
  • Security Control Implementation: Advise on controls that protect data confidentiality, integrity, and availability in accordance with the organization’s risk appetite. Document and verify that controls are aligned with Bank policies, standards, as well as industry best practices and standards (i.e. NIST, CSA, CIS, etc.).
  • Policy Development: Lead and participate in development of cloud security policies, standards, and best practices. Participate in the refinement of standards in collaboration with the Cybersecurity Policy team.
  • Compliance Reporting:  Maintain records of security recommendations, requirements, and how applications meet those recommendations and requirements. Be able to support inquiries from internal and external auditors.
  • Industry Trends and Threats: Stay up to date on security trends and threats to advise management on any risk to the business as well as proposed mitigation strategies.
  • Technical Communication: Present security recommendations effectively to both technical and non-technical audiences, including senior management, to promote proper understanding and alignment to cyber security requirements.
  • Mentorship: Guide more junior cybersecurity personnel, as well as personnel from other disciplines, in applying cybersecurity principles/best practices. Foster a collaborative environment across organizational units that align with M&T’s values.

Education and Experience Required:

  • Minimum of 2 years’ higher education and 7 years’ relevant work experience, or in lieu of a degree, a combined minimum of 9 years’ higher education and/or work experience, including a minimum of 7 years’ relevant work experience
  • Strong knowledge of cybersecurity principles and industry best practices, relevant to confidentiality, integrity and availability 
  • Strong knowledge of cloud security principles, with cloud offerings such as Azure, GCP, and AWS.
  • Proven knowledge in the implementation of security technologies (e.g. Firewalls, encryption, IAM/SSO, Active Directory, SAML, API Management)
  • Experience handling multiple projects, meeting strict deadlines and overseeing project tasks for less experienced team members

Education and Experience Preferred:

  • Bachelor’s degree in computer science, Information Security, or related field.
  • Certifications such as CISSP, CCSP, CRISC, or other Cybersecurity/Cloud related industry recognized certifications.
  • Knowledge of the Risk Management Framework (RMF) and experience with frameworks and standards like NIST SP 800-53, Cloud Controls Matrix (CCM), CIS Cloud Benchmarks.
  • Experience performing security assessments and selecting security controls based on confidentiality, integrity and availability requirements of systems.
  • Familiarity with cloud environments such as Azure, AWS, or Google Cloud, and the ability to apply security principles to these platforms.
  • Working knowledge of Zero Trust Architecture, cloud security standard development, shared responsibility model, and perimeter security models.
  • Knowledge of cloud security tooling (e.g. Cloud Security Posture Management [CSPM], Cloud Native Application Protection Platforms [CNAPP], Cloud CI/CD, etc.)
  • Experience in project management methodologies in relation to cloud projects.
  • Familiarity with GDPR, PCI, and other data privacy laws and how they affect cloud security.
  • Knowledge of Cybersecurity threats.
  • Ability to present complex technical information clearly to diverse audiences, including senior management.
  • Ability to support internal and external audits be preparing documentation and facilitating the audit process.

 #LI-JB3 #Hybrid

M&T Bank is committed to fair, competitive, and market-informed pay for our employees. The pay range for this position is $97,869.52 - $163,115.87 Annual (USD). The successful candidate’s particular combination of knowledge, skills, and experience will inform their specific compensation.

LocationBuffalo, New York, United States of America

Top Skills

AWS
Azure
GCP
The Company
HQ: Spring, TX
10,001 Employees
On-site Workplace

What We Do

Waste Connections, Inc. is an integrated solid waste services company that provides waste collection, transfer, disposal and recycling services in mostly exclusive and secondary markets in the U.S. and Canada. Through its R360 Environmental Solutions subsidiary, the Company is also a leading provider of non-hazardous oilfield waste treatment, recovery and disposal services in several of the most active natural resource producing areas in the United States, including the Permian, Bakken and Eagle Ford Basins. Waste Connections serves more than six million residential, commercial, industrial, and exploration and production customers from a network of operations in 39 states, six provinces and the District of Columbia. The Company also provides intermodal services for the movement of cargo and solid waste containers in the Pacific Northwest.

Our corporate strategy targets secondary and suburban markets that have strong demographic growth trends and where competitive barriers to entry can be developed. We seek to avoid highly competitive, large urban markets and target markets where we can provide either non-integrated or integrated solid waste services under exclusive arrangements, or markets where we can be integrated and attain high market share. We are a leading provider of solid waste services in most of our markets, and approximately 50% of our revenues are derived from market areas where we have franchise or exclusive rights to provide our waste services.

Similar Jobs

Buffalo, NY, USA
21590 Employees
98K-163K Annually

NBCUniversal Logo NBCUniversal

Sr Cyber Security Engineer

AdTech • Cloud • Digital Media • Information Technology • News + Entertainment • App development
Remote
Hybrid
New York, NY, USA
68000 Employees
105K-135K Annually

Regal.ai Logo Regal.ai

Technical Support Specialist

Marketing Tech • Software
Easy Apply
Hybrid
New York, NY, USA
99 Employees
60K-80K Annually

CNA Logo CNA

Senior Actuarial Consultant, Actuarial Filings (P&C)

Cloud • Insurance • Professional Services • Analytics • Cybersecurity
Hybrid
5 Locations
7000 Employees
72K-185K Annually

Similar Companies Hiring

Place Exchange Thumbnail
Other • Marketing Tech • Digital Media • Analytics • AdTech
New York, NY
60 Employees
Voltage Park Thumbnail
Software • Other • Machine Learning • Infrastructure as a Service (IaaS) • Hardware • Cloud • Artificial Intelligence
San Francisco, CA
51 Employees
Artlist Thumbnail
Social Media • Other • Music • Digital Media
Tel Aviv, IL
450 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account