hirly

Toryburch

Director Engineering, Cybersecurity Architecture

Jersey City, NJ

Apply through hirly

Upload your resume and get a version tailored to this job, plus a cover letter, in about thirty seconds — before you create an account.

Apply with hirly

hirly's read of this role

Role family
Engineering management
Seniority
Director
Country
US
Work mode
On-site / unstated
First seen by hirly
25 Sept 2026

Derived automatically from the posting. Sign up to see how the role scores against your own resume.

the posting

We are an American luxury lifestyle brand, founded in 2004. Anchored in the casual elegance of American sportswear, Tory’s design philosophy is defined by effortless silhouettes, innovative materials, eclectic juxtapositions of color, and the tension of past and present. The collections include ready-to-wear, handbags, footwear, accessories, jewelry, home and beauty.

Empowering women is the company’s guiding principle, expressed through Tory’s collections and reflected in the company culture as well as the work of the Tory Burch Foundation. Established in 2009, the Foundation provides women entrepreneurs in the United States with access to capital, education and community.

You are seeking a work environment where people are encouraged to dream, explore, discover and, as important, laugh together. If you’re prepared to work hard, create impact, and have fun while doing it, we would love to have you join #TeamTory. Apply today!

Life @ToryBurch is Special Because:

When you join us, you’re joining a global, purpose-led company on an exciting growth journey with an amazing culture and great benefits.

  • Our culture is welcoming and inclusive -- everyone is empowered to make a difference.
  • We have the best team in the world and believe in paying competitively and rewarding for high performance.
  • Your overall well-being is important to us; we offer generous benefits to help you take care of your mental and physical health, create financial security, and achieve wellness in all areas of your life.
  • We love seeing our employees wear our beautiful collections. You’ll receive a generous employee discount and access to exclusive sample sales.
  • We are invested in your professional growth – you’ll have access to free executive coaching on-demand.
  • We believe in the importance of giving back and you’ll have many opportunities to do just that through the Tory Burch Foundation and paid volunteer days.

This Role is Tailor-Made for You Because:

  • This Role Is Tailor-Made for You Because
  • You are a broad cybersecurity architecture and engineering leader who can connect strategy, design, implementation, and operational adoption. You understand that secure technology depends on more than individual tools or development pipelines. It requires coherent architecture across identity, endpoints, networks, cloud platforms, applications, data, integrations, and enterprise collaboration services.
  • In this role, you will own the Cybersecurity Architecture & Engineering service portfolio and lead the Cybersecurity Architect and Cybersecurity Engineer. You will serve as the primary security architecture and engineering partner to Infrastructure, Digital, Enterprise Architecture, Data, and application delivery teams. You will ensure security is incorporated as early as possible in planning, architecture, design, development, implementation, migration, and change processes.
  • You will establish and mature practical, low-friction security capabilities across enterprise and solution architecture, cloud and infrastructure design, identity and access, endpoint and device trust, Microsoft platform security, application security, secure software delivery, DevSecOps, and security automation. Where effective processes do not exist, you will design and establish them. Where processes already exist, you will integrate security in a measurable and supportable way that improves both protection and user experience.

A Day in the Life:

· Lead the Cybersecurity Architecture & Engineering function and provide direction, coaching, prioritization, performance support, and professional development for the Cybersecurity Architect and Cybersecurity Engineer.

· Own the end-to-end Cybersecurity Architecture & Engineering service offering, including service scope, intake, engagement model, standards, deliverables, roadmaps, metrics, and continuous improvement.

· Define and maintain enterprise security architecture principles, standards, reference architectures, reusable patterns, engineering requirements, and security guardrails.

· Partner closely with Infrastructure, Digital, Data, Enterprise Architecture, and Application teams to integrate security into planning, architecture, design, build, deployment, migration, change, and operational processes.

· Design and establish new security architecture and engineering processes where existing processes do not adequately support secure technology delivery.

· Establish security participation in architecture review boards and related technology governance forums. Develop practical, low-friction intake, triage, review, escalation, exception, and approval processes that engage security early and provide clear, timely guidance.

· Ensure security architecture reviews and design decisions occur early enough to influence solution direction, reduce rework, improve supportability, and avoid unnecessary delivery delays.

· Lead security architecture reviews for cloud initiatives, infrastructure changes, identity services, endpoint platforms, digital capabilities, applications, integrations, APIs, data flows, collaboration services, and emerging technologies.

· Guide the design of secure end-to-end solutions that connect distributed systems and business processes through integrations, APIs, event flows, orchestration, and automated workflows.

· Ensure end-to-end designs address identity, authentication, authorization, device trust, secrets, encryption, network controls, data protection, logging, monitoring, resilience, third-party dependencies, user experience, and secure failure behavior.

· Define security architecture and engineering requirements for networks, secure connectivity, segmentation, remote access, cloud networking, platform services, and hybrid technology environments.

· Provide architecture and engineering leadership across the Microsoft ecosystem, including Microsoft Entra, Microsoft Intune, Microsoft 365, Azure, and related identity, endpoint, collaboration, and security capabilities.

· Guide the design of modern identity and access capabilities, including adaptive and risk-based access, device trust, authentication strength, passwordless authentication, passkeys, privileged access, application access, and identity lifecycle integration.

· Establish reusable security patterns and guardrails for managed devices, conditional access, authentication, administrative access, application access, secure collaboration, and platform configuration.

· Ensure identity, endpoint, and collaboration controls are risk-based, forward-looking, and designed to minimize unnecessary user friction while maintaining appropriate protection, governance, visibility, and resilience.

· Lead security architecture and engineering considerations for platform modernization and technology transitions, ensuring integrations, dependencies, user impact, operational readiness, control design, and support requirements are addressed as part of the end-to-end solution.

· Evaluate new and evolving platform capabilities and determine how they should be adopted, configured, integrated, and governed to improve security outcomes, operational efficiency, and user experience.

· Establish and mature application security capabilities, including secure software development lifecycle practices, threat modeling, application architecture reviews, secure coding requirements, and engineering standards.

· Implement and govern DevSecOps practices, including static application security testing, dynamic application security testing, software composition analysis, secrets scanning, container security, API security, and Infrastructure-as-Code security controls.

· Ensure code scanning and automated security validation are embedded into CI/CD pipelines, supported by actionable remediation workflows, and measured for effectiveness.

· Define cloud security requirements and reusable patterns for Microsoft Azure and Google Cloud Platform services, identities, networks, workloads, data services,

Original posting on Toryburch's site ↗

Want this one?

Upload your resume and hirly rewrites it for this job and writes the cover letter — in about thirty seconds, before you sign up.

Tailor my resume for this job