Lead Software Engineer

M&T BankBuffalo, NY
Hybrid

About The Position

Design, develop, test, and transition applications strictly within approved enterprise SDLC processes, including planning, build, verification, and production transition. Produce work product that meets documented SDLC evidence requirements and is auditable for compliance, risk, and resiliency. Responsible for preventing non-compliant code or designs from progressing through the delivery lifecycle. Must establish, operate, and continuously improve a formal peer review process. Responsible for enforcing code review discipline, ensuring design and code defects are identified early, and blocking promotion of substandard code into shared or production branches. Produce clean, organized, efficient, and resilient code that meets stability, performance, and operational supportability standards. Problem decomposition, code structure, and application of appropriate data structures and algorithms to solve business problems efficiently and safely. Accountable for enforcing enterprise source control practices, including branch strategy, merge quality, and controlled movement of code through the production deployment path. Ensure all code changes follow a consistent, documented end-to-end change process, including review, approval, testing, and release evidence. Responsible for preventing bypass of required controls. Accountable for reviewing testing strategies, coverage, and results. Must ensure comprehensive verification, coach engineers on test effectiveness, and address gaps that increase operational or security risk. Responsible for driving adherence to approved patterns and practices for performance testing, resiliency, scalability, and optimization within the application domain. Design and influence solutions that support platform stability, fault tolerance, and recoverability, aligned with enterprise resiliency and SDLC management standards. Partner across teams and organizational boundaries, raise architectural and technical risks early, and drive continuous improvement through formal governance channels when needed. Contribute to and validate technical requirements that support both delivery execution and long-term maintainability of systems within the domain. Accountable for identifying, implementing, and reviewing meaningful engineering and delivery metrics that support business outcomes and reduce operational, security, and compliance risk. Apply SDLC rigor to proactively reduce operational and security risk introduced by system changes and escalate material risks through established governance paths without delay.

Requirements

  • Bachelor’s degree (or foreign equivalent) in Computer Science, or a related technical field
  • Six (6) years of experience in the job offered or as Senior Software Engineer, Lead Engineer, Technical Lead or related occupation.
  • Six (6) years of experience with Designing, developing, testing, and implementing enterprise grade solutions using Java 8 & 17, Oracle, and SQL Server within regulated environments, with direct responsibility for risk mitigation, governance compliance, and production stability.
  • Six (6) years of experience delivering software that meets enterprise SDLC, security, resiliency, and audit standards.
  • Six (6) years of experience supporting Collections Servicing systems for Consumer, Commercial, and Business Banking, with direct hands on experience in the CACS platform or equivalent regulated collections systems.
  • Six (6) years of experience building systems in compliance with financial services operational risk, data sensitivity, and regulatory impact associated with collections systems.
  • Six (6) years of experience with Modern Java frameworks and concurrency models, including: Spring Boot; Junit, Apache Camel; Multi threading & CompletableFuture; Spring WebFlux and Project Reactor; and JPA or Hibernate for relational persistence.
  • Six (6) years of experience with Spring Security experience covering core authentication and authorization internals, including OAuth2/JWT resource servers, SAML 2.0 service providers, and LDAP/Active Directory integration.
  • Six (6) years of experience with Production experience using enterprise development, testing, and observability tools, including: GitLab for version control; Zephyr, SoapUI, and Postman for testing; and PowerShell and Linux shell scripting for Automation & Scripting.
  • Five (5) years of experience with DevOps experience, including: GitLab CI/CD pipeline design and maintenance, Maven, Gradle, Docker, and Kubernetes.
  • Five (5) years of experience designing, deploying, and supporting workloads in Microsoft Azure, OpenShift, and Azure Entra.
  • Five (5) years of experience with design and development of Java applications in Websphere, Jboss, Tomcat and Wildfly application server.
  • Five (5) years of experience designing and operating secure, scalable Java microservices, including: Debugging complex production issues, Implementing structured logging, metrics, and distributed tracing, and supporting live production systems across distributed architectures, strict idempotency, deterministic reprocessing.
  • Five (5) years of experience with JMS and IBM MQ (MQSeries) for asynchronous messaging and system integration.
  • Five (5) years of experience with Java Print Service (including JPS or javax.print); enterprise document generation (including BIRT runtime, PDF engines, and XSLFO); regulated document pipelines (including statements, notices, and letters); and printqueue and spool management.
  • Five (5) years of experience with JVM/OS level troubleshooting (including fonts, encodings, native drivers, and headless execution).
  • Five (5) years of experience building and maintaining user interfaces using JSF, PrimeFaces, and Angular.
  • Five (5) years of experience integrating with AS400, iSeries, or mainframe zOS platforms.
  • Five (5) years of experience using Automic Workload Automation for enterprise job scheduling.
  • Five (5) years of experience using Microsoft Azure services in production environments, including operational monitoring and role based access control.

Responsibilities

  • Design, develop, test, and transition applications strictly within approved enterprise SDLC processes.
  • Produce work product that meets documented SDLC evidence requirements and is auditable for compliance, risk, and resiliency.
  • Prevent non-compliant code or designs from progressing through the delivery lifecycle.
  • Establish, operate, and continuously improve a formal peer review process.
  • Enforce code review discipline, ensuring design and code defects are identified early, and blocking promotion of substandard code into shared or production branches.
  • Produce clean, organized, efficient, and resilient code that meets stability, performance, and operational supportability standards.
  • Apply appropriate data structures and algorithms to solve business problems efficiently and safely.
  • Enforce enterprise source control practices, including branch strategy, merge quality, and controlled movement of code through the production deployment path.
  • Ensure all code changes follow a consistent, documented end-to-end change process, including review, approval, testing, and release evidence.
  • Prevent bypass of required controls.
  • Review testing strategies, coverage, and results, ensuring comprehensive verification.
  • Coach engineers on test effectiveness and address gaps that increase operational or security risk.
  • Drive adherence to approved patterns and practices for performance testing, resiliency, scalability, and optimization within the application domain.
  • Design and influence solutions that support platform stability, fault tolerance, and recoverability, aligned with enterprise resiliency and SDLC management standards.
  • Partner across teams and organizational boundaries, raise architectural and technical risks early, and drive continuous improvement through formal governance channels.
  • Contribute to and validate technical requirements that support both delivery execution and long-term maintainability of systems within the domain.
  • Identify, implement, and review meaningful engineering and delivery metrics that support business outcomes and reduce operational, security, and compliance risk.
  • Apply SDLC rigor to proactively reduce operational and security risk introduced by system changes and escalate material risks through established governance paths without delay.
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service