1

Technology Risk Manager Jobs in Buffalo, NY (NOW HIRING)

What You'll Own Governance, Risk & Compliance * Maintain ClearDATA's Information Security ... What We're Looking For * 5+ years in GRC, IT compliance, or information security compliance ...

What You'll Own Governance, Risk & Compliance * Maintain ClearDATA's Information Security ... What We're Looking For * 5+ years in GRC, IT compliance, or information security compliance ...

This includes leading a diverse team of IT Audit staff and guiding the risk-based prioritization of ... It is expected that a Senior Audit Manager is independent and proactive in addressing this ...

This includes leading a diverse team of IT Audit staff and guiding the risk-based prioritization of ... It is expected that a Senior Audit Manager is independent and proactive in addressing this ...

Head of Cybersecurity Defense Operations

Buffalo, NY · On-site

$107K - $145K/yr

Monitor and review the effectiveness of risk measurement strategies, updating procedures and controls in partnership with Technology Risk Management and Enterprise Risk teams while communicating ...

Head of Cybersecurity Defense Operations

Buffalo, NY · Hybrid

$107K - $145K/yr

Monitor and review the effectiveness of risk measurement strategies, updating procedures and controls in partnership with Technology Risk Management and Enterprise Risk teams while communicating ...

Manage a technology portfolio generally aligned to the Debit Card domain, including core debit ... Partner effectively with security, risk, and compliance teams to meet all regulatory obligations.

Showing results 21-40

Technology Risk Manager information

See Buffalo, NY salary details

$49.9K

$108.1K

$164.7K

How much do technology risk manager jobs pay per year?

As of Sep 5, 2026, the average yearly pay for technology risk manager in Buffalo, NY is $108,060.00, according to ZipRecruiter salary data. Most workers in this role earn between $87,200.00 and $125,000.00 per year, depending on experience, location, and employer.

What is a technology risk manager?

Technology Risk Managers are professionals responsible for identifying, assessing, and mitigating risks associated with information technology systems and processes within an organization. They ensure that IT operations comply with regulations and best practices while safeguarding data and technology assets from threats such as cyberattacks, data breaches, and system failures. Their work involves developing risk management strategies, conducting risk assessments, and collaborating with other departments to ensure the organization's technology infrastructure is secure and resilient.

What are some common challenges technology risk managers face when working across different departments?

Technology Risk Managers often encounter challenges in aligning risk management strategies with the priorities of various business units. Departments may have differing levels of risk tolerance, technical understanding, and resource availability, which can make establishing consistent policies and controls difficult. Success in the role relies on strong communication and negotiation skills, as well as the ability to educate stakeholders about the importance of risk mitigation while balancing business objectives. Building collaborative relationships and maintaining flexibility are key to overcoming these cross-departmental challenges.

What are the key skills and qualifications needed to thrive as a technology risk manager, and why are they important?

To thrive as a Technology Risk Manager, you need expertise in risk assessment, cybersecurity principles, and regulatory compliance, often supported by a degree in information security or related fields. Familiarity with risk management frameworks (such as NIST or ISO 27001), GRC (governance, risk, and compliance) tools, and certifications like CISM or CISSP are typically required. Strong analytical thinking, communication, and stakeholder management skills help you translate technical risks into business terms and coordinate mitigation efforts. These abilities are critical to proactively identifying threats and ensuring organizational resilience against evolving technology risks.

What is the difference between Technology Risk Manager vs Cybersecurity Analyst?

AspectTechnology Risk ManagerCybersecurity Analyst
CertificationsCRISC, CISSP, CISACISSP, CEH, Security+
Work EnvironmentRisk assessment, policy development, complianceMonitoring security threats, incident response, vulnerability analysis
Industry UsageFinancial, healthcare, technology firmsIT security teams, government agencies, corporations

The Technology Risk Manager focuses on identifying and mitigating overall technology risks and ensuring compliance, while the Cybersecurity Analyst concentrates on protecting systems from security threats and responding to incidents. Both roles require similar certifications and often work within the same industries, but their core responsibilities differ in scope and focus.

What cities near Buffalo, NY are hiring for Technology Risk Manager jobs?

Cities near Buffalo, NY with the most Technology Risk Manager job openings:

Senior Business Information Security Officer

M&T Bank Corporation

Buffalo, NY • On-site

$148.30 - $247.10/hr

Other

Medical, Retirement

Posted 22 days ago


M&T Bank rating

7.8

Company rating: 7.8 out of 10

Based on 187 frontline employees who took The Breakroom Quiz

78th of 175 rated banks


Job description

## Senior Business Information Security OfficerApplyremote type: Hybrid Positionlocations: Buffalo, NYtime type: Full timeposted on: Posted Todayjob requisition id: R88557# **Overview:**Responsible for serving as a trusted, strategic security advisor to senior and executive leaders in technology and business units. Builds strategic relationships with business unit leaders to align cybersecurity strategies with business objectives, ensuring that security measures support and enhance business operations. Manages risk by identifying vulnerabilities, influencing implementation of appropriate controls, and guiding compliance with relevant regulations.## **Primary Responsibilities:*** Serve as the senior cybersecurity advisor to business units, providing direct counsel to Senior Executive Vice Presidents (SEVPs) and Executive Vice Presidents (EVPs) within business units inclusive of technology, client facing, and enterprise functions.* Foster and maintain strategic relationships with business units to deliver security-by-design controls, ensuring cybersecurity practices are built into business unit initiatives for the entire lifecycle.* Champion a culture of cybersecurity continuous improvement by maintaining current knowledge related to security threats, vulnerabilities and mitigations set forth to reduce the attack surface; circulate this knowledge appropriately across business units, including key actions to implement.* Identify and document threats and vulnerabilities that may impact the business and address them regularly with business units by integrating findings into long-term strategic plans and risk management frameworks.* Engage with executive business unit leaders and cross-functional teams to address systematic issues that cause obstacles or increased complexity, hindering efficient security controls within business units.* Strategize with cybersecurity, technology, and business leaders to define key performance indicators and metrics aligning with business initiatives and deliver them to non-technical teams in terms that are accessible and comprehensible.* Provide guidance and advocacy to business unit SEVPs and EVPs regarding the prioritization of business unit investments that impact cybersecurity while balancing business enablement capabilities.* Advise business unit leadership on cybersecurity-related risk issues and influence actions to take in close partnership with Technology Risk Management and in support of the organizations wider risk management and compliance programs.* Understand and adhere to the Company’s risk and regulatory standards, policies, and controls in accordance with the Company’s Risk Appetite. Design, implement, maintain, and enhance internal controls to mitigate risk on an ongoing basis. Identify risk-related issues needing escalation to management.* Promote an environment that supports belonging and reflects the M&T Bank brand.* Maintain M&T internal control standards, including timely implementation of internal and external audit points together with any issues raised by external regulators as applicable.* Complete other related duties as assigned.## **Scope of Responsibilities:*** Primary stakeholders: Technology and Business Line EVPs & SEVPs* Primary partners: Cybersecurity people leaders, Technology EVPs and SVPs* Work is accomplished with high degree of autonomy; strategizes business-unit specific imperatives in alignment with Bank imperatives.* Subject matter expert of multiple Cybersecurity functions## **Supervisory/Manager Responsibilities:**No supervisory responsibilities.## **Education and Experience Required:*** Bachelor's degree and a minimum of 9 years’ relevant work experience, or in lieu of a degree, a combined minimum of 13 years’ higher education and/or work experience, including a minimum of 7 years’ relevant work experience in an operationally focused security practitioner role.* Minimum of 5 years’ experience working with business leadership and enterprise projects.## **Education and Experience Preferred:*** Minimum of 15 years of experience in cybersecurity, technology risk, and/ or business unit.* Master’s degree in information assurance, computer science, business administration, or related field.* Excellent communication and interpersonal skills; ability to effectively convey messages to technical and executive business leaders.* Excellent ability to translate complex cybersecurity issues to business leader initiatives and strategies.* Experience building strategic plans in partnership with senior leadership, third parties, project managers, technical and cybersecurity subject matter experts, and business subject matter experts.* Strong understanding of cybersecurity technologies, their purpose, and their security requirements and data protection needs.* Excellent understanding of threats, risk mitigations, and technical controls recommended by security leaders.* Experience partnering with senior leaders to design solutions to meet business needs while delivering a strong cybersecurity posture.* Excellent ability to influence bank-wide efforts through effective clear communication, leveraging program management principles, and escalating when necessary.* Excellent ability to prioritize and deliver results across changing priorities and quickly changing landscape based on business and technology needs.* Excellent ability to work effectively with unique teams and varying personalities and adapt leadership and influence styles to effectively reach mutually beneficial outcomes.* Excellent knowledge of national and global cybersecurity policies, regulations, and security frameworksM&T Bank is committed to fair, competitive, and market-informed pay for our employees. The pay range for this position is $148,300.00 - $247,100.00 Annual (USD). The successful candidate’s particular combination of knowledge, skills, and experience will inform their specific compensation.# **Location**Buffalo, New York, United States of America### About UsGreat companies have an enduring sense of purpose. At M&T, our purpose is a simple one: **make a difference in people’s lives and uplift the communities we serve**. M&T Bank Corporation is a financial holding company headquartered in Buffalo, New York. M&T’s affiliates offer advice, guidance, expertise and solutions across the entire financial spectrum, combining M&T Bank’s traditional banking services with the wealth management and institutional capabilities offered by Wilmington Trust. M&T Bank has a network of over 1,000 branches and 2,200 ATMs that span 12 states from Maine to Virginia and Washington, D.C. For more than 165 years, M&T has strived to take an active role in our communities and build long-lasting relationships with our customers. We are a bank for communities—combining the capabilities of a large bank with the care of a locally focused institution.**As an employer of choice, we are proud to offer** **competitive benefits** ranging from medical and retirement to forty hours of paid volunteer time, each year. Our core values – integrity, ownership, collaboration, curiosity, and candor – drive the work we do. We seek to further build upon our record of success by bringing in top talent and fresh skill sets while continuing to support the growth and development of all our team members. ViewM&T’s Human Capital Report to learn more.**Ready to join our team?** Submit your application today!If you are unable to apply through this site due to technical issues or need an accommodation to apply, please contact us at careersitesupport@mtb.com for assistance. #J-18808-Ljbffr

What M&T Bank employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom