Principal First Line Risk Specialist - Cybersecurity and AI Initiatives
M&T Bank · Buffalo, NY, US
2 hours agoImpress employers and recruiters.
Choose from hundreds of resume examples.

Impress employers and recruiters.
Choose from hundreds of resume examples.
Tailor your resume to this Principal First Line Risk Specialist - Cybersecurity and AI Initiatives role.
Rezi rewrites your resume against M&T Bank's job description. Free.

Tailor your resume to this Principal First Line Risk Specialist - Cybersecurity and AI Initiatives role.
Rezi rewrites your resume against M&T Bank's job description. Free.
Don't guess if your resume is good enough.
See how it scores against the Principal First Line Risk Specialist - Cybersecurity and AI Initiatives posting at M&T Bank — free, in seconds.

Don't guess if your resume is good enough.
See how it scores against the Principal First Line Risk Specialist - Cybersecurity and AI Initiatives posting at M&T Bank — free, in seconds.
About the Role
Leads risk analysis and governance for emerging Cybersecurity and AI initiatives, influencing the design of risk frameworks and controls. Provides expert guidance to leadership and technical teams to proactively identify, assess, and mitigate technology risks, ensuring alignment with regulatory expectations and organizational objectives.
Responsibilities
- Develop and implement risk frameworks, controls, and standards supporting Cybersecurity and AI engineering capabilities.
- Act as a first line of risk advisor to engineering, architecture, and security teams, proactively identifying risks, control gaps, and opportunities to strengthen governance.
- Lead the assessment of emerging technology trends, regulatory guidance, and industry developments to ensure organizational readiness and compliance.
- Design, enhance, and implement risk management processes, procedures, and standards that support new and evolving Cybersecurity and AI initiatives.
- Partner directly with the Chief Information Security Officer (CISO), senior technology leaders, engineers, and architects to evaluate strategic initiatives and provide risk-informed recommendations.
- Drive the identification, development, and implementation of new controls to address emerging risks and strengthen the organization's risk posture.
- Lead and support audit activities, regulatory examinations, and risk assessments, ensuring timely remediation of findings and sustainable control improvements.
- Collaborate across Technology, Cybersecurity, AI, Enterprise Risk, Internal Audit, and Regulatory Affairs functions to align practices with business objectives and regulatory expectations.
- Monitor and assess evolving threat landscapes and emerging technology risks, integrating advanced risk management methodologies.
- Prepare and present complex risk assessments, control evaluations, and recommendations to senior leadership and executive stakeholders.
- Understand and adhere to the Company's risk and regulatory standards, policies, and controls.
- Promote an environment that supports belonging and reflects the Company's values and culture.
- Maintain internal control standards, including timely implementation of internal and external audit recommendations and regulatory issues.
- Complete other related duties as assigned.
Requirements
- Bachelor's degree and a minimum of 9 years’ relevant work experience, or in lieu of a degree, a combined minimum of 13 years’ higher education and/or work experience.
- Demonstrated expert knowledge of Technology and Cybersecurity risk principles.
- Minimum of 8 years' relevant work experience in and/or with the specific risk area and/or business unit.
Skills
- Risk analysis
- Governance
- Cybersecurity
- Artificial Intelligence (AI)
- Risk frameworks
- Controls
- Standards
- Technology risk assessment
- Regulatory compliance
- Information security
- Audit support
- Risk mitigation
Location
- Buffalo, New York, United States of America
Work Type
- Four days onsite
- One day remote
Experience Level
- 9 years relevant work experience
- 13 years combined higher education and/or work experience (in lieu of degree)
- 8 years relevant work experience in specific risk area/business unit
Education Level
- Bachelor's degree
- Master's degree in Information Technology, Computer Science, Cybersecurity, Law, Business Administration, or related field (preferred)
- Certified in Risk and Information Systems Control (CRISC®) (preferred)
- Certified Information Systems Auditor (CISA) (preferred)
- Certified Information Security Manager (CISM) (preferred)
- Certified Information Systems Security Professional (CISSP) (preferred)
Salary/Compensations
- $148,300.00 - $247,100.00 Annual (USD)
About the Company
- M&T Bank is committed to fair, competitive, and market-informed pay for our employees.