Let’s get started
By clicking ‘Next’, I agree to the Terms of Service
and Privacy Policy
Jobs / Job page
Lead Cyber Threat Detection Engineer image - Rise Careers
Job details

Lead Cyber Threat Detection Engineer

This role offers a hybrid work schedule; offering the flexibility to work remotely two days a week, while providing the opportunity for in-person collaboration at our Buffalo, NY Tech Hub.

Overview:   

Responsible for designing, developing, and enhancing threat detection capabilities across the organization’s detection platforms. The primary focus will be the creation and optimization of threat detection use cases, leveraging advanced tools and techniques to identify and mitigate cyber threats in real time through the collaborate with cross-functional teams to ensure that the threat detection solutions align with the organization’s security strategy and address emerging threats effectively. Completes day-to-day support activities and special projects.

Primary Responsibilities:

  • Design and implement advanced detection architectures across the organization’s security landscape, utilizing SIEM, EDR, NDR, and cloud security platforms. Ensure the detection infrastructure scales to handle the growing complexity and volume of enterprise threats.
  • Lead the development and refinement of complex, high-fidelity detection use cases, custom correlation rules, and detection models tailored to the organization’s unique risk profile and threat landscape.
  • Architect and implement advanced methods for the integration and fusion of internal, external, and commercial threat intelligence sources. Build and refine correlation techniques to identify sophisticated, multi-vector attacks, leveraging threat intelligence and behavioral analysis.
  • Continuously enhance and optimize detection techniques, reducing alert fatigue and improving detection accuracy by applying advanced techniques like statistical analysis, machine learning, and automation. Implement continuous feedback loops to refine use cases and reduce false positives.
  • Develop and implement automation and orchestration for complex systems to streamline security operations and response activities.
  • Lead collaboration efforts with Cybersecurity and Technology teams to effectively implement and maintain security solutions for the organization.
  • Lead improvement initiatives within Cybersecurity team, implementing best practices and optimizing processes to enhance security capabilities.
  • Actively partner with vendor to optimize security products and/or drive resolution of complex support issues.
  • Understand and adhere to the Company’s risk and regulatory standards, policies, and controls in accordance with the Company’s Risk Appetite. Design, implement, maintain, and enhance internal controls to mitigate risk on an ongoing basis. Identify risk-related issues needing escalation to management.
  • Promote an environment that supports diversity and reflects the M&T Bank brand.
  • Maintain M&T internal control standards, including timely implementation of internal and external audit points together with any issues raised by external regulators as applicable.
  • Complete other related duties as assigned.

Scope of Responsibilities:

  • This role is used in one or more of the following cybersecurity function:
    • Detection Engineering – develops and deploys systems and processes to identify and respond to cybersecurity threats and incidents in real-time, aiming to minimize the impact of security events.
  • Partners primarily with individual contributors and leaders within Cybersecurity and Technology, occasionally senior leaders within Cybersecurity
  • Exercises judgement in selecting methods, techniques, and criteria in executing objectives. Exerts significant latitude in determining objective of assignment. Work is accomplished with limited direction.
  • Advanced ability to use multiple Cybersecurity tools, specific to function.

Manager Responsibilities:

No supervisory responsibilities.

Education and Experience Required:

  • Bachelor's degree and a minimum of 5 years’ relevant work experience, or in lieu of a degree, a combined minimum of 9 years’ higher education and/or work experience

Education and Experience Preferred:

  • In-depth experience in developing, testing, and refining advanced detection use cases, correlation rules, and automated workflows based on security data.
  • Proficiency in designing and managing security data models to structure and optimize log data for efficient querying, reporting, and analysis. Experience in transforming raw security logs into actionable data for continuous monitoring and threat hunting.
  • Experience in leveraging advanced analytics capabilities such as statistical analysis, machine learning models, risk based analytics and anomaly detection to improve the accuracy and efficiency of threat detection and response strategies.
  • Proficient level of critical thinking and problem solving ability
  • Excellent communication and interpersonal skills
  • Experience partnering with leaders to design solutions to business needs.
  • Proficient persuasive communication skills to gain buy-in of others
  • Strong ability to analyze and draw reliable conclusions based on large volumes of quantitative data from diverse sources
  • Ability effectively serves in indirect leadership role

 #LI-JB3 #Hybrid

M&T Bank is committed to fair, competitive, and market-informed pay for our employees. The pay range for this position is $110,635.01 - $184,391.68 Annual (USD). The successful candidate’s particular combination of knowledge, skills, and experience will inform their specific compensation.

Location

Buffalo, New York, United States of America

Average salary estimate

$147513 / YEARLY (est.)
min
max
$110635K
$184391K

If an employer mentions a salary or salary range on their job, we display it as an "Employer Estimate". If a job has no salary data, Rise displays an estimate if available.

What You Should Know About Lead Cyber Threat Detection Engineer, MTB

Join our team at M&T Bank as a Lead Cyber Threat Detection Engineer in Buffalo, NY, where innovation meets collaboration in a hybrid work environment! In this exciting role, you'll spearhead the design and development of advanced threat detection capabilities across our organization's security landscape. Collaborating with cross-functional teams, you'll focus on creating and optimizing detection use cases to identify and mitigate real-time cyber threats. Your prowess in utilizing cutting-edge tools such as SIEM, EDR, NDR, and cloud security platforms will be key in ensuring our detection infrastructure is robust enough to handle an ever-evolving threat landscape. This position allows for two days of remote work each week, making it perfectly balanced for those valuing flexibility while still craving in-person teamwork. Not only will you lead the refinement of complex detection models tailored to our unique risk profile, but you will also enhance detection accuracy and reduce alert fatigue by applying advanced machine learning techniques and statistical analysis. Join us in promoting best practices within our Cybersecurity team and take part in continuous improvement efforts to optimize our security capabilities. If you're looking to elevate your career in a supportive environment that aligns with our brand's values of diversity and excellence, this is the perfect opportunity for you!

Frequently Asked Questions (FAQs) for Lead Cyber Threat Detection Engineer Role at MTB
What responsibilities does a Lead Cyber Threat Detection Engineer at M&T Bank hold?

As a Lead Cyber Threat Detection Engineer at M&T Bank, you will design and implement detection architectures, lead the development of high-fidelity detection use cases, and collaboratively work with different teams to align threat detection solutions with the organization’s security objectives. You’ll also optimize detection techniques, automate systems, and ensure adherence to risk and regulatory standards, all while promoting diversity in the workplace.

Join Rise to see the full answer
What qualifications are required for the Lead Cyber Threat Detection Engineer position at M&T Bank?

The Lead Cyber Threat Detection Engineer position at M&T Bank requires a bachelor's degree along with a minimum of 5 years of relevant experience. Alternatively, candidates can substitute their educational requirements with a combined minimum of 9 years of higher education and/or work experience. Experience in developing advanced detection use cases and knowledge of cybersecurity tools is also needed to excel in this role.

Join Rise to see the full answer
What is the work schedule like for a Lead Cyber Threat Detection Engineer at M&T Bank?

At M&T Bank, the Lead Cyber Threat Detection Engineer role features a hybrid work schedule, allowing you to enjoy the flexibility of working remotely two days each week while also having the opportunity for in-person collaboration at our Buffalo, NY Tech Hub. This balance helps promote effective teamwork while maintaining flexibility in your work-life.

Join Rise to see the full answer
What skills are preferred for the Lead Cyber Threat Detection Engineer position at M&T Bank?

Preferred skills for the Lead Cyber Threat Detection Engineer role at M&T Bank include in-depth experience in developing and refining detection use cases, proficiency in managing security data models, and the ability to leverage advanced analytics capabilities like statistical analysis and anomaly detection. Good communication and interpersonal skills are also crucial for successfully navigating collaborations with other teams and stakeholders.

Join Rise to see the full answer
What are the growth opportunities for a Lead Cyber Threat Detection Engineer at M&T Bank?

M&T Bank offers significant growth opportunities for the Lead Cyber Threat Detection Engineer role. You will have the chance to lead improvement initiatives, work with advanced technological tools, and refine your expertise in threat detection and cybersecurity as the organization continues to evolve. Engaging in cross-functional collaborations will enhance your leadership skills and professional network, paving the way for future career advancement.

Join Rise to see the full answer
Common Interview Questions for Lead Cyber Threat Detection Engineer
Can you describe your experience with threat detection methods for the Lead Cyber Threat Detection Engineer role?

In your response, highlight specific detection methods you've utilized in past roles, such as SIEM or EDR systems, and discuss a few examples of how you designed detection use cases that aligned with the company’s risk profile and threat landscape.

Join Rise to see the full answer
How do you approach developing and refining detection use cases?

Explain your methodology in assessing existing use cases, gathering threat intelligence, and applying advanced analytical techniques to improve detection accuracy. Share a specific success story that showcases the effectiveness of your approach.

Join Rise to see the full answer
What role does collaboration play in your work as a Lead Cyber Threat Detection Engineer?

Discuss the importance of collaboration in developing effective security strategies and how you've previously partnered with cybersecurity and technology teams to enhance threat detection solutions. Provide an example to illustrate your point.

Join Rise to see the full answer
Can you give an example of a complex security issue you resolved?

Provide a detailed account of a complex security challenge you confronted, the actions you took to diagnose and solve the issue, and the results of those actions. Highlight your critical thinking and problem-solving skills.

Join Rise to see the full answer
How do you ensure that your threat detection systems remain effective against evolving threats?

Talk about your experience with continuous monitoring, the implementation of feedback loops to refine use cases, and how you stay informed of the latest threats and vulnerabilities to improve detection capabilities.

Join Rise to see the full answer
What tools and technologies do you prefer to use for threat detection?

List the specific tools and technologies you are proficient with, such as SIEM, EDR, or machine learning algorithms, and provide examples of how you've effectively used these tools in practice in developing detection systems.

Join Rise to see the full answer
How do you handle alert fatigue in threat detection systems?

Discuss strategies you've employed to minimize alert fatigue, such as refining detection rules, implementing automated processes, and improving the accuracy of alerts to ensure that your team can focus on genuine threats.

Join Rise to see the full answer
What is your experience with integrating external threat intelligence sources?

Share your experiences with integrating various threat intelligence sources into your detection frameworks, emphasizing the importance of external data in enriching threat detection capabilities and enhancing response strategies.

Join Rise to see the full answer
How do you communicate complex security concepts to non-technical stakeholders?

Describe your techniques for simplifying complex security concepts and making them accessible to non-technical stakeholders, such as using relatable analogies or clear visual aids. Share an instance where effective communication led to better security outcomes.

Join Rise to see the full answer
What steps do you take to stay current with industry trends and developments in cybersecurity?

Explain your commitment to ongoing professional development, such as attending industry conferences, participating in online courses, and networking with peers in the cybersecurity field. This demonstrates your dedication to being at the forefront of emerging technologies and best practices.

Join Rise to see the full answer
Similar Jobs

M&T Bank is looking for a dedicated Float Teller to provide exceptional customer service and support across multiple branches in Cumberland, MD.

Posted 4 days ago

Join M&T Bank as a Full Time Teller in Oakland, MD, where you'll deliver outstanding customer service and support banking transactions.

Photo of the Rise User

Join Cameron University as an Information Services Specialist to enhance alumni relations through data management and customer service excellence.

Photo of the Rise User
Posted 12 days ago

GDIT is looking for a Cloud Network Engineer to design and maintain cloud infrastructure for defense logistics, offering a hybrid work opportunity.

Photo of the Rise User
HAUS Hybrid Mountain View, CA
Posted yesterday

Join Haus as a Senior IT Engineer and play a critical role in streamlining IT operations for a cutting-edge decision science platform.

Posted 6 days ago

Join Connected Logistics as a Cybersecurity Task Order Project Manager to lead complex cybersecurity projects within the DLA framework.

Photo of the Rise User
Posted 6 days ago

Novibet seeks a Senior SQL Server Database Administrator to ensure high-performance database management in a dynamic and inclusive setting.

As the Director of Secure Design Review at Fidelity, you'll lead efforts to secure technology solutions against potential cyber threats.

Lead the management of NYU's main website by ensuring engaging content and overseeing a team of web professionals.

Photo of the Rise User
KPMG Nederland Remote Laan van Langerhuize 1, Amstelveen, Netherlands
Posted 6 days ago

KPMG seeks a strategic Head of IT Business Management to lead Agile product teams and enhance stakeholder engagement.

MATCH
Calculating your matching score...
FUNDING
SENIORITY LEVEL REQUIREMENT
TEAM SIZE
No info
HQ LOCATION
No info
EMPLOYMENT TYPE
Full-time, hybrid
DATE POSTED
April 18, 2025

Subscribe to Rise newsletter

Risa star 🔮 Hi, I'm Risa! Your AI
Career Copilot
Want to see a list of jobs tailored to
you, just ask me below!
LATEST ACTIVITY
Photo of the Rise User
12 people applied to Junior Security Engineer at Epic
Photo of the Rise User
Someone from OH, Elyria just viewed Security Officer - Factory Patrol at Allied Universal
C
14 people applied to ISSE/ ISSO at Centuria
Photo of the Rise User
Someone from OH, Cincinnati just viewed Staff Software Test Engineer, Platform at Clari
Photo of the Rise User
Someone from OH, Perrysburg just viewed Sourcing Leader, Minerals & Cullet at Owens Corning
Photo of the Rise User
Someone from OH, North Royalton just viewed Remote AI Voice Trainer (High-Quality Microphone Required) at Datadog
C
Someone from OH, Akron just viewed Phlebotomy Technician - Outpatient at CCF
Photo of the Rise User
Someone from OH, Solon just viewed Graphic Designer at Applause
Photo of the Rise User
Someone from OH, North Canton just viewed NodeJs developer at BlackStone eIT
Photo of the Rise User
Someone from OH, North Canton just viewed Software Development Engineer - Recent Grads Welcome at Sonos
Photo of the Rise User
16 people applied to SOC Analyst I at CBIZ