Cybersecurity Architecht
1 day ago
Lyndhurst
Job Description Company Overview: NRS is a leading provider of transportation & supply chain solutions. As a family-owned and operated company, NRS has delivered smart logistics solutions to numerous Fortune 500 companies spanning over 70 years. Whether it’s NRT, Keystone, Keystone Fresh, or Keystone Capacity, our innovative energy drives us towards new and valuable solutions for our clients, even as we continuously grow and strengthen our network. We are dedicated to creating a culture that empowers the individual and offers our associates the opportunity to apply their unique skill to the challenges facing our clients. In the office, the warehouse, or on the road, it is this commitment to our innovative spirit that unites us in common mission to push boundaries in the logistics industry. Job Overview: The Cybersecurity Architect is responsible for designing, implementing, monitoring, and maintaining the organization's security infrastructure to protect systems, networks, applications, and data from cyber threats. This role works closely with IT, infrastructure, cloud, and business teams to identify risks, implement security controls, investigate security incidents, and ensure compliance with security policies and regulatory requirements. Duties and responsibilities: DevSecOps Integration • Embed security tools and practices into CI/CD pipelines, • Champion “shift-left” security practices, including automated code scanning and testing, • Oversee secure coding standards and developer training programs, • Implement infrastructure-as-code (IaC) security controls and compliance checks, • Establish policies, SOPs, RACI, process maps, SLAs/OLAs, and controls., • Define and manage the KPIs and OKRs process; publish dashboards and monthly service reviews., • Maintain evidence and controls for process compliance and platform access governance. Security Architecture & Strategy • Develop and maintain enterprise security architecture standards and roadmaps., • Define target-state security architectures for cloud, network, application, endpoint, and identity platforms., • Evaluate and approve security designs for new initiatives and major technology changes., • Lead Zero Trust architecture initiatives., • Align security architecture with business objectives and regulatory requirements. Cloud Security • Design and secure Azure, AWS, Microsoft 365, and SaaS environments., • Implement cloud security best practices, governance controls, and monitoring., • Review cloud configurations, permissions, and security posture., • Partner with cloud teams to secure modern architecture and microservices environments. Security Operations & Risk Management • Oversee threat detection, incident response, threat hunting, and vulnerability management programs., • Support security investigations and post-incident reviews., • Conduct risk assessments and drive remediation efforts., • Lead tabletop exercises and incident response planning., • Evaluate emerging threats and recommend mitigation strategies. Identity & Access Management • Design and implement identity security strategies., • Support governance of Entra ID, privileged access management (PAM), and authentication controls., • Implement Multi-Factor Authentication (MFA), Conditional Access, and identity governance programs., • Monitor privileged account activity and authentication risks. Security Engineering • Design and maintain:, • Microsoft Defender XDR, • MDR, • Microsoft Sentinel, • Firewalls, • IDS/IPS technologies, • Email security platforms, • Endpoint security controls, • DLP technologies, • Zero trust technologies, • Lead security tool evaluations, integrations, and optimization activities. DevSecOps Integration • Integrate security into CI/CD pipelines., • Implement automated security testing and code scanning., • Establish secure coding standards and developer enablement programs., • Implement Infrastructure-as-Code (IaC) security controls., • Promote "shift-left" security practices across engineering teams. Governance, Risk & Compliance • Develop and maintain cybersecurity policies, standards, and procedures., • Ensure alignment with NIST, ISO 27001, SOC 2, and applicable regulatory requirements., • Support audits, assessments, and third-party risk management., • Present risk findings and security initiatives to executive leadership Qualifications: • Bachelor’s degree in Computer Science, Cybersecurity, or related field experience, • 8–12+ years of experience in cybersecurity, • Strong experience implementing DevSecOps practices in modern engineering environments, • Deep understanding of cloud security (AWS or Azure), • Experience with CI/CD tools (e.g., Jenkins, GitHub Actions, GitLab CI), • Knowledge of security frameworks (NIST, ISO 27001, CIS Benchmarks), • Proven track record managing security incidents and risk management, • Experience securing Azure, AWS, Microsoft 365, and hybrid environments., • Experience with incident response, threat management, and vulnerability remediation., • Experience collaborating with infrastructure, development, and business teams, • Strong problem-solving skills and attention to detail., • Zero Trust Architecture, • Network Security Architecture, • Knowledge of Logistics or 3PL business a bonus., • Willingness to travel 10% of the time. Preferred / Nice-to-Have • Industry certifications such as CISSP, CISM, or CSSLP, • Experience with containerization and orchestration (Docker, Kubernetes), • Familiarity with zero-trust architecture principles, • Experience in regulated industries (finance, healthcare, etc.), • Microsoft Certified Cybersecurity Architect Expert (SC-100), • Azure Security Engineer (AZ-500) Physical Demands: • Extended Sitting: Primarily desk-based with prolonged computer use., • Light Lifting: Occasional handling of objects up to 20 pounds., • Computer Use: Frequent operation of computers and office equipment, requiring manual dexterity., • Eye Strain and Repetitive Motion: Risk from continuous screen use and repetitive tasks like typing., • Office Navigation: Light walking and standing for meetings and tasks within the office. EEO Statement: NRS is an equal opportunity employer. We do not discriminate based on race, religion, color, national origin, gender (including pregnancy, childbirth, or related medical conditions), sexual orientation, gender identity, gender expression, age, status as a protected veteran, status as an individual with a disability, or any other legally protected characteristic. #NRSIND