Senior Application Security Engineer
M&T BankFull Time
Senior (5 to 8 years), Expert & Leadership (9+ years)
Berlin, Connecticut, United States
Key technologies and capabilities for this role
Common questions about this position
This is a hybrid role requiring employees to work at least three days in the office, including Tuesdays and Wednesdays, with the third day set by the employee and supervisor. All applicants must be able to work up to five days in the office if needed, such as for emergencies, training, or policy changes.
This information is not specified in the job description.
The role involves leading application security implementations, focusing on Secure Software Development Life Cycle (SSDLC) practices like code review, risk assessments, threat modeling, static code analysis, and dynamic application scanning. Expertise in secure coding, secure design, and serving as a thought leader in application security is essential.
The culture emphasizes collaboration, innovation, continuous improvement, and cultivating a security mindset across technology and business teams. It fosters a supportive environment within the Cybersecurity Architecture team, working alongside other cybersecurity specialists.
Strong candidates will have leadership experience in application security, deep knowledge of SSDLC practices, and the ability to act as a thought leader and advisor on cyber risks. Experience shaping security maturity visions and collaborating across business lines is key.