Lead Product Security Engineer

February 10

Apply Now
Logo of M&T Bank

M&T Bank

M&T Bank is a leading regional bank that provides a range of financial services including personal and business banking, mortgages, lines of credit, investment services, and more. It is known for its customer satisfaction, especially with mobile banking, and provides educational resources to enhance financial literacy. M&T Bank is committed to community support, offering loans and grants to local businesses and housing assistance programs, reflecting its dedication to fostering local growth and diversity.

📋 Description

• Support and participate in the building and implementation of software security controls in all stages of the product development life cycle. • Identify and mitigate software vulnerabilities through code reviews, security assessments, and threat modeling. • Ensure the security posture of our bank-wide infrastructure and products. • Collaborate with cross-functional teams to integrate security measures into the software development process. • Stay up to date on emerging threats and vulnerabilities, and proactively recommend security enhancements. • Partner with engineering teams and provide guidance and support to developers on secure coding practices. • Mentor product security engineers and DevSecOps professionals to ensure a strong security posture across all software development and deployments. • Assist in the development of software security processes, configuration of tools, and management of solutions to address vulnerabilities. • Build and support high quality security documentation for product security best practices. • Communicate effectively with all levels of organizational leadership.

🎯 Requirements

• Bachelor’s degree in Computer Science, Information Systems, Cybersecurity or applicable discipline and a minimum of 5 years of relevant work experience. • Demonstrable experience developing and maintaining automation for product security tasks and defect identification. • Advanced knowledge with industry standards and frameworks such as OWASP, ISO 27001, GDPR, PCI DSS, and NIST. • Advanced experience with security testing tools and techniques and fixing vulnerabilities. • Strong background in cybersecurity, manual code review, static/dynamic code analysis, threat modeling, bug bounty research and vulnerability management. • Experience with at least 2-3 of the following programming languages – Java, C#, JavaScript, Python, PHP, Ruby, Scala. • Hands-on experience with product security tools and exploit tools and methods. • Hands-on experience with product security testing tools such as SAST, DAST, IAST, SCA, and SBOM as well as experience with DevOps technologies such as CI/CD pipelines, repos, etc. • Excellent communication and leadership skills. • Capable of working on multiple projects of a complex nature. • Excellent problem-solving skills to assist in issue resolution. • Detail-oriented with excellent verbal and written communication skills, with prior experience presenting to the target audience. • Excellent organizational, teamwork, and time management skills. • Strong vertical thinking skills. • Experience recommending and implementing security solutions. • Experience driving project milestones and delivery dates. • Proven mentoring and leadership capabilities.

🏖️ Benefits

• Competitive benefits ranging from medical and retirement to forty hours of paid volunteer time, each year. • Promotes a drug free workplace.

Apply Now

February 8

Join Home Depot as a Cybersecurity Senior Engineer focusing on network security infrastructure and incident response.

February 7

Huntress seeks a Security Product Researcher to develop effective cybersecurity strategies for businesses. Join a fully remote team addressing evolving security challenges.

Discover 100,000+ Remote Jobs!

Join now to unlock all jobs

Discover hidden jobs

We scan the internet everyday and find jobs not posted on LinkedIn or other job boards.

Head start against the competition

We find jobs as soon as they're posted, so you can apply before everyone else.

Be the first to know

Daily emails with new job openings straight to your inbox.

Choose your membership

Loved by 10,000+ remote workers
🎉$6 / week

Cancel anytime

MOST POPULAR
🥳$18 / month
$24
Save 25% vs weekly

Cancel anytime

BEST VALUE
🥰$54 / year
$216
Save 75% vs monthly

Cancel anytime

Wall of Love

Frequently asked questions

We use powerful scraping tech to scan the internet for thousands of remote jobs daily. It operates 24/7 and costs us to operate, so we charge for access to keep the site running.

Of course! You can cancel your subscription at any time with no hidden fees or penalties. Once canceled, you’ll still have access until the end of your current billing period.

Other job boards only have jobs from companies that pay to post. This means that you miss out on jobs from companies that don't want to pay. On the other hand, Remote Rocketship scrapes the internet for jobs and doesn't accept payments from companies. This means we have thousands more jobs!

New jobs are constantly being posted. We check each company website every day to ensure we have the most up-to-date job listings.

Yes! We’re always looking to expand our listings and appreciate any suggestions from our community. Just send an email to Lior@remoterocketship.com. I read every request.

Remote Rocketship is a solo project by me, Lior Neu-ner. I built this website for my wife when she was looking for a job! She was having a hard time finding remote jobs, so I decided to build her a tool that would search the internet for her.

Why I created Remote Rocketship

Choose your membership

Loved by 10,000+ remote workers
🎉$6 / week

Cancel anytime

MOST POPULAR
🥳$18 / month
$24
Save 25% vs weekly

Cancel anytime

BEST VALUE
🥰$54 / year
$216
Save 75% vs monthly

Cancel anytime

Built by Lior Neu-ner. I'd love to hear your feedback — Get in touch via DM or lior@remoterocketship.com