Lead Cybersecurity Engineer - Vulnerability
Listed on 2025-12-08
-
IT/Tech
Cybersecurity, IT Consultant, Systems Engineer, IT Project Manager
Overview
We are seeking a highly skilled and experienced Lead Cybersecurity Engineer to join our dynamic cybersecurity team. In this role, you will be responsible for designing, implementing, and enhancing our cybersecurity vulnerability platforms and risk posture across our large-scale infrastructure, applications and systems. You will work closely with other security engineers, product teams, and IT professionals to ensure the resilience and integrity of our environment.
The candidate will have strong technical expertise solving advanced complex problems or enhancements, a deep understanding of security frameworks, and a passion for protecting sensitive data from evolving threats, with a strong emphasis on vulnerability management, secure application testing, and automation.
The ideal candidate will have extensive expertise in managing and deploying vulnerability scanning tools, including but not limited to Static Application Security Testing (SAST) and Dynamic Application Security Testing (DAST), as well as a proven history of leading enterprise initiatives and mentoring junior engineers. Experience working in regulated environments is strongly preferred. The role also requires proficiency in scripting, programming, and automation to streamline security processes and improve efficiency.
PrimaryResponsibilities
- Evaluate, design, implement, and manage vulnerability scanning tools and automated processes to streamline detection and response workflows
- Lead integrations of vulnerability scanning tools into the software development & lifecycle process, through collaboration with Dev Sec Ops , IT, infrastructure and security teams, to ensure vulnerability management processes align with security best practices and organizational goals
- Design security systems or solutions with significant complexity and moderate risk, ensuring alignment with cybersecurity objectives and organizational needs.
- Configure and develop controls for security systems with significant complexity, to fortify system defenses and optimize performance of technologies.
- Lead testing efforts for systems and technology, coordinating with cross-functional teams and providing technical expertise in identifying and resolving issues.
- Manage deployment of security solutions for complex systems or technology, ensuring smooth integration with existing infrastructure and minimal disruption.
- Define and implement tuning methodologies for systems and technologies, using advanced analytical techniques to maximize efficiencies.
- Develop and implement automation and orchestration for complex systems to streamline security operations and response activities.
- Lead collaboration efforts with Cybersecurity and Technology teams to effectively implement and maintain security solutions for the organization.
- Lead improvement initiatives within Cybersecurity team, implementing best practices and optimizing processes to enhance security capabilities.
- Actively partner with vendor to optimize security products and/or drive resolution of complex support issues.
- Assist leadership with vendor relationships by monitoring license renewals, hardware refresh needs, or when new technologies should be considered.
- Understand and adhere to the Company’s risk and regulatory standards, policies, and controls in accordance with the Company’s Risk Appetite. Design, implement, maintain, and enhance internal controls to mitigate risk on an ongoing basis. Identify risk-related issues needing escalation to management.
- Maintain M&T internal control standards, including timely implementation of internal and external audit points together with any issues raised by external regulators as applicable.
- Complete other related duties as assigned.
Designs and implements secure systems, technologies, policies and procedures to protect against cybersecurity threats and malicious activities. Architects, maintains, and optimizes the tools and capabilities leveraged by cyber security to achieve organizational objectives.
Partners primarily with individual contributors and leaders within Cybersecurity and Technology, occasionally senior leaders within Cybersecurity
Exercises…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).