Skip to content

Open nowPosted 10 days ago

Director Engineering, Cybersecurity Architecture

TORY BURCH8 open roles

Where
Jersey City, NJ
Get the CV for this job

From $25 per CV, paid once. No subscription.

Your applicationOpen nowDirector Engineering, Cybersecurity ArchitectureTORY BURCH · Jersey City, NJ
  1. YouYes, apply to this one.

  2. CV RocketCV written for this posting.

  3. 25 readersRecruiter, hiring manager, skeptic. Round after round.

  4. CV RocketApplied on TORY BURCH's own form.

The reply lands in your private mailbox

3×more interviews than doing it yourself with ChatGPT.

The clock on this job

Early applications get read.

8.0% of postings close within 7 days. Measured by our own scanner across the market. TORY BURCH postings stay open a median of 2 days.

Share of postings closed within
  1. 1.6%1 day
  2. 3.6%3 days
  3. 8.0%7 days
  4. 15.0%14 days
  5. 34.2%30 days
This job: posted 10 days ago

TORY BURCH median: 2 days open

The posting

We are an American luxury lifestyle brand, founded in 2004. Anchored in the casual elegance of American sportswear, Tory’s design philosophy is defined by effortless silhouettes, innovative materials, eclectic juxtapositions of color, and the tension of past and present. The collections include ready-to-wear, handbags, footwear, accessories, jewelry, home and beauty.

Empowering women is the company’s guiding principle, expressed through Tory’s collections and reflected in the company culture as well as the work of the Tory Burch Foundation. Established in 2009, the Foundation provides women entrepreneurs in the United States with access to capital, education and community.

You are seeking a work environment where people are encouraged to dream, explore, discover and, as important, laugh together. If you’re prepared to work hard, create impact, and have fun while doing it, we would love to have you join #TeamTory. Apply today!

Life @ToryBurch is Special Because:

When you join us, you’re joining a global, purpose-led company on an exciting growth journey with an amazing culture and great benefits.

  • Our culture is welcoming and inclusive -- everyone is empowered to make a difference.
  • We have the best team in the world and believe in paying competitively and rewarding for high performance.
  • Your overall well-being is important to us; we offer generous benefits to help you take care of your mental and physical health, create financial security, and achieve wellness in all areas of your life.
  • We love seeing our employees wear our beautiful collections. You’ll receive a generous employee discount and access to exclusive sample sales.
  • We are invested in your professional growth – you’ll have access to free executive coaching on-demand.
  • We believe in the importance of giving back and you’ll have many opportunities to do just that through the Tory Burch Foundation and paid volunteer days.

This Role is Tailor-Made for You Because:

This Role Is Tailor-Made for You Because You are a broad cybersecurity architecture and engineering leader who can connect strategy, design, implementation, and operational adoption. You understand that secure technology depends on more than individual tools or development pipelines. It requires coherent architecture across identity, endpoints, networks, cloud platforms, applications, data, integrations, and enterprise collaboration services. In this role, you will own the Cybersecurity Architecture & Engineering service portfolio and lead the Cybersecurity Architect and Cybersecurity Engineer. You will serve as the primary security architecture and engineering partner to Infrastructure, Digital, Enterprise Architecture, Data, and application delivery teams. You will ensure security is incorporated as early as possible in planning, architecture, design, development, implementation, migration, and change processes. You will establish and mature practical, low-friction security capabilities across enterprise and solution architecture, cloud and infrastructure design, identity and access, endpoint and device trust, Microsoft platform security, application security, secure software delivery, DevSecOps, and security automation. Where effective processes do not exist, you will design and establish them. Where processes already exist, you will integrate security in a measurable and supportable way that improves both protection and user experience.

A Day in the Life:

· Lead the Cybersecurity Architecture & Engineering function and provide direction, coaching, prioritization, performance support, and professional development for the Cybersecurity Architect and Cybersecurity Engineer.

· Own the end-to-end Cybersecurity Architecture & Engineering service offering, including service scope, intake, engagement model, standards, deliverables, roadmaps, metrics, and continuous improvement.

· Define and maintain enterprise security architecture principles, standards, reference architectures, reusable patterns, engineering requirements, and security guardrails.

· Partner closely with Infrastructure, Digital, Data, Enterprise Architecture, and Application teams to integrate security into planning, architecture, design, build, deployment, migration, change, and operational processes.

· Design and establish new security architecture and engineering processes where existing processes do not adequately support secure technology delivery.

· Establish security participation in architecture review boards and related technology governance forums. Develop practical, low-friction intake, triage, review, escalation, exception, and approval processes that engage security early and provide clear, timely guidance.

· Ensure security architecture reviews and design decisions occur early enough to influence solution direction, reduce rework, improve supportability, and avoid unnecessary delivery delays.

· Lead security architecture reviews for cloud initiatives, infrastructure changes, identity services, endpoint platforms, digital capabilities, applications, integrations, APIs, data flows, collaboration services, and emerging technologies.

· Guide the design of secure end-to-end solutions that connect distributed systems and business processes through integrations, APIs, event flows, orchestration, and automated workflows.

· Ensure end-to-end designs address identity, authentication, authorization, device trust, secrets, encryption, network controls, data protection, logging, monitoring, resilience, third-party dependencies, user experience, and secure failure behavior.

· Define security architecture and engineering requirements for networks, secure connectivity, segmentation, remote access, cloud networking, platform services, and hybrid technology environments.

· Provide architecture and engineering leadership across the Microsoft ecosystem, including Microsoft Entra, Microsoft Intune, Microsoft 365, Azure, and related identity, endpoint, collaboration, and security capabilities.

· Guide the design of modern identity and access capabilities, including adaptive and risk-based access, device trust, authentication strength, passwordless authentication, passkeys, privileged access, application access, and identity lifecycle integration.

· Establish reusable security patterns and guardrails for managed devices, conditional access, authentication, administrative access, application access, secure collaboration, and platform configuration.

· Ensure identity, endpoint, and collaboration controls are risk-based, forward-looking, and designed to minimize unnecessary user friction while maintaining appropriate protection, governance, visibility, and resilience.

· Lead security architecture and engineering considerations for platform modernization and technology transitions, ensuring integrations, dependencies, user impact, operational readiness, control design, and support requirements are addressed as part of the end-to-end solution.

· Evaluate new and evolving platform capabilities and determine how they should be adopted, configured, integrated, and governed to improve security outcomes, operational efficiency, and user experience.

· Establish and mature application security capabilities, including secure software development lifecycle practices, threat modeling, application architecture reviews, secure coding requirements, and engineering standards.

· Implement and govern DevSecOps practices, including static application security testing, dynamic application security testing, software composition analysis, secrets scanning, container security, API security, and Infrastructure-as-Code security controls.

· Ensure code scanning and automated security validation are embedded into CI/CD pipelines, supported by actionable remediation workflows, and measured for effectiveness.

· Define cloud security requirements and reusable patterns for Microsoft Azure and Google Cloud Platform services, identities, networks, workloads, data services, APIs, logging, monitoring, and platform configurations.

· Drive remediation of architectural and engineering risks through collaboration with technology owners and business stakeholders.

· Develop architecture and engineering roadmaps aligned to cybersecurity strategy, enterprise technology direction, platform modernization, and business objectives.

· Establish metrics, KPIs, and maturity measures that demonstrate early security engagement, review efficiency, adoption of secure patterns, control coverage, user impact, and measurable risk reduction.

To Land This Role:

· Bachelor's degree in Cybersecurity, Information Technology, Computer Science, Engineering, or a related discipline, or equivalent practical experience.

· Ten or more years of progressive cybersecurity experience with significant security architecture, engineering, and technical leadership responsibilities.

· Experience managing technical security professionals and leading complex cross-functional initiatives.

· Demonstrated ownership of a broad security architecture and engineering service portfolio spanning infrastructure, network, identity, endpoint, cloud, application, data protection, and enterprise technology domains.

· Strong architecture and engineering experience in cloud environments, including Microsoft Azure and Google Cloud Platform.

· Experience defining cloud security architectures, guardrails, reusable patterns, and controls across identities, networks, workloads, platforms, applications, APIs, logging, monitoring, and data services.

· Advanced architecture and engineering experience across the Microsoft ecosystem, including Microsoft Entra, Microsoft Intune, Microsoft 365, Azure, and related identity, endpoint, device management, collaboration, and security capabilities.

· Demonstrated experience designing identity-first security architectures using adaptive and risk-based access controls, managed-device signals, modern authentication, authentication-strength requirements, passwordless authentication, passkeys, privileged access controls, and application access policies.

· Strong knowledge of modern identity architecture, including authentication, authorization, federation, application integration, identity lifecycle management, device trust, privileged access, and phishing-resistant authentication.

· Experience developing secure and usable access patterns that balance risk, business requirements, operational supportability, and user experience.

· Experience designing security architecture for enterprise endpoints, collaboration platforms, network services, cloud services, SaaS applications, and hybrid technology environments.

· Ability to lead architecture and engineering for major platform modernization efforts involving identity, device management, connectivity, cloud, collaboration, or enterprise infrastructure capabilities.

· Demonstrated ability to assess native platform security capabilities and determine when to use built-in controls, integrate complementary technologies, or establish additional compensating controls.

· Demonstrated experience designing end-to-end technology and security processes that connect distributed systems and business processes through integrations, APIs, automation, orchestration, and workflows.

· Ability to evaluate end-to-end solution designs, identify security and operational dependencies, and translate risk into practical architecture and engineering requirements.

· Demonstrated experience integrating security into architecture review boards, enterprise architecture governance, change processes, and technology delivery lifecycles.

· Experience designing low-friction security intake and review processes that engage teams early, provide timely decisions, and maintain appropriate governance and traceability.

· Strong understanding of network security, secure connectivity, segmentation, identity, infrastructure, endpoint security, application security, data protection, API security, cloud security, and enterprise architecture.

· Hands-on experience implementing application security, DevSecOps, and secure software development lifecycle practices.

· Experience integrating security controls, code scanning, and automated validation into CI/CD pipelines and software delivery workflows.

· Ability to communicate effectively with executives, engineers, architects, developers, product leaders, infrastructure teams, and business stakeholders.

· Preferred certifications include CISSP, CCSP, TOGAF, SABSA, CSSLP, CISM, Microsoft security or architecture credentials, Google Cloud security or architecture credentials, or equivalent.

Why You'll Want to Join Our Team:

Our Technology team has a clear mission: use technology to enable the business to operate efficiently while driving growth and profitability. We envision, we strategize, we engineer, we design, we build, we test, we support, and we serve. Our tools and systems impact every customer and every member of our team every day and our role is to make each engagement seamless and rewarding. As we build our in-house engineering teams, we are focused on further modernizing our platforms, leveraging our data analytics capabilities and creating a transformational customer experience. Come join us!

How We Work Together

  • Adaptable – We change before we have to
  • Entrepreneurial – We own it
  • Collaborative – There’s no “I” in Tory
  • Client & Brand Focused – We put ourselves in Tory’s shoes
  • Live the Values – We show up for each other
  • Functional Expertise – We’re constantly learning and growing

#TeamTory Values

We show up with honesty & kindness, act with integrity & compassion, work with passion & humility and lead with excellence & humor.

Compensation Range

The compensation range for this position is 200,000.00 USD - 250,000.00 USD. Our offer will be based on your relevant experience and work location.

Benefits Information

We offer a generous set of benefits to help you take care of your health, create financial security, and achieve wellness in all areas of your life. Here are highlights of key benefits available to all eligible Tory Burch team members.

Equal Employment Opportunity Statement

Tory Burch LLC is an Equal Employment Opportunity employer and provides equal opportunities to all employees and applicants without regard to an individual’s age, race, creed, color, religion, national origin, sex (including pregnancy) or sexual orientation, gender expression, military status, marital status, genetic predisposition or carrier status, disability or membership in any other protected class under applicable law. Likewise, we will consider qualified applicants with criminal histories for employment in a manner consistent with the requirements of the Los Angeles Fair Chance Initiative for Hiring, Ordinance No. 184652. Pursuant to the San Francisco Fair Chance Ordinance, we will consider qualified applicants with arrest and conviction records for employment.

Disability Accommodation

Tory Burch is committed to providing reasonable accommodations to applicants and employees with disabilities. Please tell us if you require a reasonable accommodation to apply for a job or to perform your job. Examples of reasonable accommodation include making a change to the application process or work procedures, providing documents in an alternate format, using a sign language interpreter, or using specialized equipment. If you require assistance or an accommodation with the hiring process, please contact [email protected].

From $25, paid onceGet the CV for this job

What happens when you press

One press. We do the rest.

  1. A CV for this posting

    Written against TORY BURCH's own wording, from every piece of relevant proof in your profile.

  2. 25 readers review it

    Recruiter, hiring manager, skeptic and more read every draft, round after round. You get the best round.

    The review screen in CV Rocket: how each CV was read, round by round.
  3. We apply on TORY BURCH's form

    Our application engine gets through the hardest forms there are. Where a question needs you, AI suggests the best answer. Don't want us applying from our IP addresses? Use our Chrome extension: we apply straight from your own browser.

    An application in CV Rocket: every answer filled in on the employer's form.
  4. Every reply, sorted

    TORY BURCH's answer lands in your private mailbox, and we classify it on arrival: interview, question, rejection.

    The CV Rocket inbox: each employer reply classified as an interview, an action or a rejection.
  5. Reply with AI

    AI helps you write the email, checks it and sends it. We show you whether the recruiter read it.

  6. The interview in your calendar

    Full integration with your calendar. The invitation goes straight in.

    An interview invitation in the CV Rocket inbox, added to the candidate's calendar.
Get the CV for this job

From $25 per CV, paid once. No subscription.

Why it works

3×

more interviews than doing it yourself with ChatGPT.

ChatGPT writes a CV and never learns what happened to it. We see every reply. For each CV we know:

  • How it was written, and how the review scored it
  • When we applied, and how long after the posting went up
  • Which posting, which company, which city
  • Who got the interview, and who heard nothing

That is how we know which CVs get called.

Get the CV for this job

From $25 per CV, paid once. No subscription.

The numbers game

More applications. More interviews.

Every application goes out with its own CV, written for that posting and paid once. Send enough of them and the law of large numbers finds you the job.

By hand5–10
With CV Rocket100
applications a day

Before you press

Straight answers

Get the CV for this job

From $25 per CV, paid once. No subscription.

What if my background isn't good enough?

We make the most of the background you have. The CV uses every piece of relevant proof your profile holds, and one of the 25 readers reads your whole profile and flags what the CV left out.

Do you really apply for me?

Yes, on the employer's own form, the hardest ones included. Where a question needs you, you answer it right there and AI suggests the best answer. Don't want us applying from our IP addresses? Use our Chrome extension: we apply straight from your own browser.

Is it a subscription?

No. You pay once per CV, from $25. Every application goes out with its own CV, written for that posting.

One job. One CV.
Paid once.

Pick the posting you want. We write for it, apply for you and catch the reply.

Get the CV for this job

From $25 per CV, paid once. No subscription.