Full-Time

Controls Assessment & Testing Specialist

Technology and Cybersecurity Risk

Confirmed live in the last 24 hours

M&T Bank

M&T Bank

10,001+ employees

Full-service banking and financial solutions

Compensation Overview

$115.7k - $192.8k/yr

Senior, Expert

No H1B Sponsorship

Buffalo, NY, USA

Hybrid work schedule; remote work allowed two days a week.

Category
Cybersecurity
IT & Security
Required Skills
Risk Management
Requirements
  • Bachelor's degree and a minimum of 7 years’ relevant work experience, or in lieu of a degree, a combined minimum of 11 years’ higher education and/or work experience
  • Demonstrated expert knowledge of Technology and/or Cybersecurity risk principles
  • Minimum of 6 years' relevant work experience in or with the specific Technology, Cybersecurity risk area and/or business unit
  • Previous experience of NIST (National Institute of Standards and Technology) or Cybersecurity frameworks, with a strong focus NIST 800-53 and 800-53a
  • Strong knowledge of cybersecurity principles and industry best practices (relevant to confidentiality, integrity, availability)
  • Proven knowledge of information technology security principles and implementation methods (e.g., firewalls, demilitarized zones, encryption, Active Directory / LDAP, SAML)
  • Skilled in evaluating security controls based on confidentiality, integrity and availability requirements of systems
  • Experience with handling multiple projects
  • Experience meeting strict deadlines
  • Experience overseeing project tasks for less experienced team members
Responsibilities
  • Develop and implement strategic approaches for in-depth risk assessments for comprehensive coverage of all technology capabilities.
  • Develop and execute sophisticated risk management framework and programs that informs how to align practices with business objectives and regulatory requirements, including (but not limited to) developing complex process maps, leading risk controls self-assessments, and summary of complex findings.
  • Drive enforcement of frameworks, providing expert guidance and continually assessing regulation and standards to achieve industry-leading technology risk compliance.
  • Spearhead collaboration among cross-functional teams and senior or executive leadership to align technology practices with overarching business goals and regulatory requirements; maintain productive relationships with stakeholders and/or with third-party engagements to ensure resiliency of Technology, Cybersecurity, and the overall Bank.
  • Coordinate preparation and response to regulatory engagements, including reviewing responses for accuracy and meeting regulatory request, organizing documents and packets, and leading exam management (i.e., template folders, review of first day letter and follow-up requests).
  • Encourage innovation in risk management strategies through identification of advanced methodologies to address evolving threats and the recommendation of path for implementation to Technology and Cybersecurity Risk leadership.
  • Provide advanced mentorship to mid-level analysts, fostering their professional growth and ensuring a high standard for all risk analysts within the team.
  • Contribute to design and delivery of training programs to ensure comprehensive knowledge of technology and cybersecurity risk management and growing critical skills to enhance team's outcomes.
  • Understand and adhere to the Company’s risk and regulatory standards, policies and controls in accordance with the Company’s Risk Appetite. Identify risk-related issues needing escalation to management.
  • Promote an environment that supports diversity and reflects the M&T Bank brand.
  • Maintain M&T internal control standards, including timely implementation of internal and external audit points together with any issues raised by external regulators as applicable.
  • Complete other related duties as assigned.
Desired Qualifications
  • Master's degree in Information Technology, Computer Science, Cybersecurity, Law, Business Administration, or related field
  • Active CISA (Certified Information Systems Auditor), CAP (Certified Authorization Professional), CISSP (Certified Information Systems Security Professional), CISM (Certified Information Security Manager), or CRISC (Certified in Risk and Information Systems Control) certification or Cybersecurity domain-related industry-recognized certification
  • Working knowledge of the current version of the NIST SP800-53 and 800-53a Controls, or other recognized control frameworks, such as COBIT (Control Objectives for Information and Related Technology) or ISO
  • Knowledge of organization's risk tolerance and/or risk management approach
  • Working knowledge of project management methodology
  • Strong and proven knowledge of security technologies and architecture, including encryption, cloud network security design, role-based access control, perimeter security and application security
  • Knowledge of Cybersecurity threats and emerging security issues
  • Experienced in conducting security control testing of systems
  • IT Audit experience

M&T Bank provides a variety of banking services to individuals, small businesses, and larger companies. Its offerings include mortgage assistance, personal and business checking accounts, and mobile banking options. The bank primarily operates in the Northeastern and Mid-Atlantic regions of the United States, emphasizing community engagement and a focus on customer service. M&T Bank's business model is based on traditional banking services such as loans, deposits, and investment products, generating revenue through interest and fees. A key aspect that sets M&T Bank apart from its competitors is its commitment to community involvement, which includes allowing employees to volunteer and supporting local organizations. The recent merger with United Bank, N.A. has further expanded its services and market presence.

Company Size

10,001+

Company Stage

IPO

Headquarters

Buffalo, New York

Founded

1993

Simplify Jobs

Simplify's Take

What believers are saying

  • The $4 billion share repurchase program reflects strong capital management and shareholder value focus.
  • M&T Bank's digital banking solutions align with the trend towards AI-driven customer service.
  • The bank's commitment to ESG investing attracts environmentally conscious investors.

What critics are saying

  • Competition from fintechs could erode M&T Bank's market share in digital banking.
  • Decreased prime lending rate may reduce interest income, impacting profitability.
  • The $1.5 billion senior notes issuance increases debt obligations amid potential interest rate hikes.

What makes M&T Bank unique

  • M&T Bank emphasizes community engagement through its charitable foundation and volunteer programs.
  • The bank offers comprehensive mobile banking solutions for enhanced customer convenience.
  • M&T Bank's recent merger with United Bank expands its market reach and service offerings.

Help us improve and share your feedback! Did you find this helpful?

Benefits

401(k) Company Match

401(k) Retirement Plan

Flexible Work Hours

Hybrid Work Options

Paid Vacation

Paid Holidays

Health Insurance

Dental Insurance

Vision Insurance

Life Insurance

Disability Insurance

Health Savings Account/Flexible Spending Account

Company News

PR Newswire
Feb 16th, 2025
Wilmington Trust Names Dave Diluigi Head Of U.S. Markets

Also Named to Wilmington's Senior Leadership TeamWILMINGTON, Del., Feb. 13, 2025 /PRNewswire/ -- Wilmington Trust announced today that Dave DiLuigi has been named the new Head of U.S. Markets for the firm's Wealth division, effective February 17.In this new role, DiLuigi will be responsible for helping set the strategic direction for Wilmington Trust's Wealth business and managing the firm's mission to provide comprehensive wealth management advice to its clients looking to fulfill their financial goals and aspirations

PR Newswire
Jan 22nd, 2025
Mt Bank Corporation Announces Common Stock Repurchase Program

BUFFALO, N.Y., Jan. 22, 2025 /PRNewswire/ -- M&T Bank Corporation ("M&T") (NYSE:MTB) announced that its Board of Directors authorized a share repurchase program to repurchase up to $4.0 billion of M&T common stock, $0.50 par value per share, on the open market or in privately negotiated transactions. The authorization replaces, and terminates effective January 22, 2025, the prior $3.0 billion share repurchase program authorized by the Board of Directors in July 2022.Daryl Bible, M&T's Chief Financial Officer, noted: "The Board's decision underscores our dedication to managing shareholders' capital responsibly, in line with our established practices. Our primary focus in capital allocation is to support our customers and the communities we serve while continuing to invest in our businesses. Our strong earnings and solid capital position allow us to meet these essential goals and return surplus capital to our investors."The exact number of shares, timing for such repurchases, and the price and terms at and on which such repurchases are to be made will be at the discretion of M&T and subject to all applicable regulatory limitations.About M&T BankM&T is a financial holding company headquartered in Buffalo, New York. M&T's principal banking subsidiary, M&T Bank, provides banking products and services with a branch and ATM network spanning the eastern U.S

Reporter
Dec 19th, 2024
M&T Bank Completes $1.5 Billion Senior Notes Offering

On December 17, 2024, M&T Bank Corporation successfully closed a public offering, raising a total of $1.5 billion through the issuance of senior notes. The offering included $500,000,000 aggregate principal amount of 4.833% Fixed Rate/Floating Rate Senior Medium-Term Notes, Series A due January 16, 2029 (2029 Notes) and $1,000,000,000 aggregate principal amount of 5.385% Fixed […]

PR Newswire
Dec 18th, 2024
Mt Bank Decreases Prime Rate

BUFFALO, N.Y., Dec. 18, 2024 /PRNewswire/ -- Effective Thursday, December 19, 2024, M&T Bank Corporation ("M&T") (NYSE:MTB) will decrease its prime lending rate from 7.75% to 7.50%.About M&TM&T Bank Corporation is a financial holding company headquartered in Buffalo, New York. M&T's principal banking subsidiary, M&T Bank, provides banking products and services with a branch and ATM network spanning the eastern U.S. from Maine to Virginia and Washington, D.C. Trust-related services are provided in select markets in the U.S. and abroad by M&T's Wilmington Trust-affiliated companies and by M&T Bank

PR Newswire
Dec 5th, 2024
Mt Bank Names Shannon Lazare As New Jersey Regional President

Seasoned Banker to Lead MT Bank in New JerseyBUFFALO, N.Y., Dec. 5, 2024 /PRNewswire/ -- MT Bank (NYSE:MTB) ("MT") today announced the appointment of Shannon Lazare as its New Jersey Regional President. Shannon will lead the bank's local growth and community engagement initiatives throughout New Jersey. She succeeds Tom Comiskey who, after serving as MT's New Jersey Regional President for nine years, was elevated last year to Area Executive in its Commercial Bank