Skip to content

Senior Cybersecurity Engineer – DLP/Insider Threat
Company | M&T Bank |
---|
Location | Buffalo, NY, USA |
---|
Salary | $93581.1 – $155968.51 |
---|
Type | Full-Time |
---|
Degrees | Bachelor’s |
---|
Experience Level | Senior |
---|
Requirements
- Bachelor’s degree and a minimum of 3 years’ relevant work experience, or in lieu of a degree, a combined minimum of 7 years’ higher education and/or work experience
- Proficient ability to use multiple Cybersecurity tools, specific to function.
Responsibilities
- Responsible for designing, implementing, and managing systems that prevent the transfer, sharing, and loss of sensitive data and evaluate Insider Threat risks.
- Create and enforce policies to prevent data leakage, loss, or improper sharing, such as blocking certain file transfers or restricting access to classified information.
- Integrate DLP and Insider Threat solutions with other security tools like firewalls, endpoint protection, and email gateways.
- Maintain and optimize DLP tools, ensuring they perform effectively, updating rules, and refining policies based on evolving data protection needs.
- Implement encryption, data labeling, access controls, and other security measures.
- Develop an effective cross-functional cybersecurity insider threat operating model integrated into the broader Insider Threat Program and supporting processes.
- Define an analytical framework that enables proactive identification and prioritization of use cases supported by a data strategy to develop sophisticated analytics.
- Establish effective logging and monitoring processes and capabilities to build the foundation and baseline data for identifying out-of-pattern behavior.
- Develop robust technology capabilities that enable the operationalization of analytics and security visibility processes.
- Design components of security solutions with significant complexity and moderate risk, ensuring alignment with cybersecurity objectives and organizational needs.
- Configure and develop controls for security tools or systems to fortify system defenses.
- Design and execute testing of systems and technology thoroughly in coordination with cross-functional teams to ensure reliability and effectiveness of security measures.
- Deploy security systems and code, ensuring seamless integration into existing infrastructure while minimizing disruptions.
- Continuously monitor and tune security systems to enhance efficiency and effectiveness in mitigating and detecting threats.
- Develop and implement automated installation, configuration, and processes to streamline security operations and response activities.
- Partner with Cybersecurity and Technology teams on security solutions implementations and maintenance.
- Proactively recommend process enhancements and implement prioritized improvements within the Cybersecurity team.
- Engage with vendors for routine security products or solutions support.
- Understand and adhere to the company’s risk and regulatory standards, policies, and controls in accordance with the company’s risk appetite. Design, implement, maintain, and enhance internal controls to mitigate risk on an ongoing basis. Identify risk-related issues needing escalation to management.
Preferred Qualifications
- Intermediate understanding of the security system development and infrastructure lifecycle and architecture, and systems design
- Proven experience with the tools utilized in assigned Cybersecurity function
- Experience translating architecture into technical requirements
- Proficient level of critical thinking and problem solving
- Excellent written and verbal communication skills
- Proven experience collaborating with leaders to execute results
- Prior experience seeking buy-in of others to align on processes
- Ability to analyze and draw conclusions based on quantitative data from multiple sources
- Proficiency in prioritizing and managing multiple responsibilities, ensuring that deadlines are met and projects are executed efficiently.