368,657open jobs
9,442companies
50,883added this week
Browse all
Salary
$62k – $104k per year
Location
Remote/Hybrid (Buffalo, Wilmington, United States)
Seniority
Middle · 4+ years exp
Employment
Full-Time
Overview
Company
Impact
Profile match
M&T Bank Corporation is a major American financial holding company offering a broad range of retail banking, commercial lending, and wealth management services. Headquartered in Buffalo, New York, the organization operates hundreds of branches primarily across the northeastern United States. Tracing its roots back to 1856, it stands today as one of the largest bank holding companies in the country.

Overview:

Join a team that plays a critical role in keeping the organization running. The Identity Management team is responsible for managing user access throughout the employee lifecycle, ensuring team members have the right access to the right systems at the right time. From employee onboarding and role changes to departures, this team helps safeguard the organization's systems while enabling employees to do their jobs effectively. As an Identity & Access Management Specialist, you will manage and support access provisioning, deprovisioning, recertification, and remediation activities across a complex enterprise environment. You'll work extensively with technologies such as Active Directory, Microsoft Entra ID, CyberArk, and other identity management tools while handling a high volume of requests and supporting key security initiatives. This role is ideal for a detail-oriented, self-motivated professional who thrives in a fast-paced environment, enjoys solving complex access challenges, and values being part of a highly collaborative team.

What You'll Do:

  • Manage user access throughout the employee lifecycle, including onboarding, job transfers, and offboarding activities.

  • Provision, modify, and remove access across a wide range of enterprise applications, platforms, and systems while ensuring compliance with security policies and access governance standards.

  • Administer and support identity management technologies including Active Directory, Microsoft Entra ID, CyberArk, and related IAM solutions.

  • Perform access reviews, certifications, and audits to ensure appropriate user permissions are maintained.

  • Investigate, troubleshoot, and resolve complex identity and access issues, serving as an escalation point for challenging requests.

  • Conduct root cause analysis and implement corrective actions to improve security, efficiency, and user experience.

  • Partner with technology teams, cybersecurity teams, and business stakeholders to gather requirements, resolve issues, and support access-related initiatives.

  • Support Privileged Access Management (PAM) processes and controls.

  • Contribute to both day-to-day operational work and strategic projects focused on improving identity and access management capabilities.

  • Utilize Jira and queue-based workflows to prioritize, track, and complete requests efficiently.

  • Develop and maintain standard operating procedures and process documentation.

  • Train and mentor newer team members and share knowledge across the team.

  • Participate in an on-call rotation to support critical production access issues outside of normal business hours.

What Makes This Role Unique:

  • Play a direct role in enabling employees across the organization to access the systems and tools they need to perform their jobs.

  • Work with industry-leading identity and privileged access management technologies.

  • Gain exposure to a large-scale enterprise environment with a diverse application landscape.

  • Participate in impactful security, automation, and process improvement initiatives.

  • Join a highly collaborative team that values knowledge sharing, teamwork, and continuous learning.

Ideal Candidate:

We're looking for someone who enjoys tackling complex problems, works well in a high-volume environment, and is eager to learn and grow within the identity and access management space. Successful candidates will demonstrate:

  • Experience in Identity & Access Management (IAM), identity governance, access administration, or related cybersecurity disciplines.

  • Knowledge of Active Directory, Microsoft Entra ID, CyberArk, or similar identity management platforms.

  • Experience supporting Privileged Access Management (PAM) programs and controls.

  • Familiarity with identity management tools, enterprise file systems, Exchange administration, or related technologies.

  • Experience working within ticketing and workflow management systems such as Jira.

  • Strong organizational skills with the ability to manage multiple priorities simultaneously.

  • A detail-oriented mindset and commitment to accuracy.

  • Strong problem-solving and analytical thinking abilities.

  • Excellent verbal and written communication skills.

  • A collaborative, team-first approach and willingness to support colleagues.

  • The ability to quickly learn new technologies, processes, and business requirements.

Education and Experience Required:

  • Associates degree, or equivalent work experience.

  • 4+ years’ relevant work experience.

  • Basic understanding of identity and access management.

Education and Experience Preferred:

  • Bachelor's degree in Information Technology, Cybersecurity, Business, or a related field.

  • Experience in Identity & Access Management, information security, systems administration, or a related technology field.

  • Experience supporting user access provisioning, deprovisioning, and access governance activities.

  • Experience with Active Directory, Microsoft Entra ID, CyberArk, or similar IAM technologies.

  • Experience with Privileged Access Management (PAM).

  • Experience within a large enterprise technology or cybersecurity environment.

  • Knowledge of identity governance, access certifications, and compliance requirements.

Work Model & Office Location:

This is a hybrid role that combines the value of in-person collaboration with workplace flexibility. Employees are expected to work onsite four days per week and may work remotely one day per week, with the flexibility to choose their preferred remote workday. To support regular onsite collaboration, candidates must reside within a reasonable commuting distance of one of the following office locations:

  • 1 Seneca Street, Buffalo, NY 14203

  • 1100 North Market Street, Wilmington, DE 19801

Work Schedule:

  • This position is primarily scheduled Monday through Friday, with core business hours of 8:00am to 5:00pm.

  • While the standard schedule falls within these hours, the role offers flexibility in start times. Employees may begin their workday as early as 6:00am or as late as 8:00am, with corresponding adjustments to their end time.

On-Call Expectations:

  • This role requires participation in a rotating on-call support schedule approximately once every six to eight weeks.

  • When assigned on-call duty, employees are expected to be available from 5:00pm to 8:00am on weekdays, and 24/7 on weekends and holidays.

  • On-call responsibilities are limited to production-related emergencies and may involve little to no activity during a given rotation. However, candidates should be comfortable being available outside of normal business hours and responding to critical issues when needed.

  • All on-call responsibilities are performed remotely, allowing employees to respond to production issues without traveling to the office.

M&T Bank is committed to fair, competitive, and market-informed pay for our employees. The pay range for this position is $62,200.00 - $103,600.00 Annual (USD). The successful candidate’s particular combination of knowledge, skills, and experience will inform their specific compensation.

Location

Buffalo, New York, United States of America
Free account
Stop reading job ads. Get the ones that fit.
One free account turns this page into a shortlist built around your stack, your level and your pay.
Match on every job. Stack, seniority, pay and location, scored against your profile.
368,657 open roles. Read straight off company career pages, refreshed every day.
Unlimited applications. Every one you send is tracked in one place, on-site or on a company board.
3 tailored CVs a month. Rewritten for the exact job you are applying to. Included free.
Create a free account
Free forever. No card. Under a minute.

Your match

How well do you fit this role?
Two answers are enough for a real match. No account needed.
Check my fit
Answers stay in this browser until you create an account.

Recommended for you based on this role

Similar stack
Same company
Buffalo
$33k – $85k per year (Estimated) • Remote/Hybrid • Full-Time • Brazil
PowerShell
DevOps
Azure
IAM
Cybersecurity
CyberArk
Microsoft Entra ID
Apply
$60k – $108k per year • Remote/Hybrid • Full-Time • Bachelor's Degree • United States
PowerShell
Python
DevOps
AWS
Azure
IAM
Splunk
Cybersecurity
Crowdstrike
ISO 27001
Microsoft Defender
Microsoft Entra ID
Microsoft Sentinel
NIST CSF
Qualys Cloud Platform
Apply
$38k – $91k per year (Estimated) • Remote • Full-Time • 8+ years exp • PhD • Guadalajara
PowerShell
Python
Databases
Amazon Aurora
DynamoDB
AI/ML
Amazon SageMaker
AWS Bedrock
AWS Bedrock AgentCore
Ray
DevOps
Amazon CloudWatch
Amazon EC2
Amazon ECS
Amazon EKS
Amazon EventBridge
Amazon S3
AWS
AWS Lambda
AWS Step Functions
Azure
CI/CD
Datadog
FinOps
GCP
Git
GitLab
GitLab CI
IAM
Jenkins
JFrog Artifactory
Kubernetes
New Relic
Service Mesh
Splunk
Terraform
Cybersecurity
HIPAA
ISO 27001
PCI DSS
SOC 2
Apply
$121k – $147k per year • Remote • Full-Time • 5+ years exp • PhD • Columbus
Java
Java
Spring Boot
Databases
Apache Kafka
DevOps
Azure
Azure AKS
Azure DevOps
Bicep
CI/CD
Dynatrace
GitLab
Kubernetes
Splunk
Terraform
Management
Jira
Apply
$87k – $130k per year • In office • Full-Time • 6+ years exp • Murray
Python
TypeScript
JavaScript
Python
Alembic
FastAPI
Pydantic
SQLAlchemy
Databases
PostgreSQL
Redis
AI/ML
Embeddings
LLM
LLM Guardrails
Ollama
RAG
Frontend
React Query
React Router
React.js
Vite
DevOps
AWS
CI/CD
Docker
Docker Compose
IAM
Terraform
Cybersecurity
FedRAMP
NIST 800-53
QA
Pytest
Apply
Product Owner I 2 days ago
$113k – $189k per year • Remote/Hybrid • Full-Time • 8+ years exp • Bachelor's Degree • Wilmington • Buffalo • Philadelphia • Baltimore • Washington
Apply
$163k – $272k per year • Remote/Hybrid • Full-Time • 14+ years exp • Bachelor's Degree • Wilmington • Buffalo • Philadelphia • Baltimore • Washington
Apply
$86k – $143k per year • Remote/Hybrid • Full-Time • 7+ years exp • Bachelor's Degree • Buffalo • Washington • Baltimore • Burlington • Boston
Design
Figma
InVision
Sketch
Management
Miro
Apply
$116k – $194k per year • In office • Full-Time • 9+ years exp • Associate's Degree • Buffalo
C#
Java
Python
AI/ML
Embeddings
LLM
RAG
Tokenization
Transformers
DevOps
Azure
CI/CD
Git
Apply
$201k – $335k per year • Remote/Hybrid • Full-Time • 15+ years exp • Master's Degree • Buffalo
Apply
$56k – $57k per year • In office • Full-Time • 2+ years exp • High School Diploma • Poughkeepsie • Yorktown Heights • Syracuse • Buffalo • Montgomery
Apply
Product Owner I 2 days ago
$113k – $189k per year • Remote/Hybrid • Full-Time • 8+ years exp • Bachelor's Degree • Wilmington • Buffalo • Philadelphia • Baltimore • Washington
Apply
$163k – $272k per year • Remote/Hybrid • Full-Time • 14+ years exp • Bachelor's Degree • Wilmington • Buffalo • Philadelphia • Baltimore • Washington
Apply
$57k – $77k per year • Equity • In office • Full-Time • High School Diploma • Buffalo
DevOps
Red Hat
Ubuntu
VMWare
Windows Server
Apply
$57k – $77k per year • Equity • In office • Full-Time • High School Diploma • Buffalo
DevOps
Red Hat
Ubuntu
VMWare
Windows Server
Apply
See all jobs
This is one of many
368,657 more open roles from verified company boards, updated every day.