Cybersecurity Architect

NATIONAL RETAIL TRANSPORTATION

Lyndhurst (NJ)

On-site

USD 165,000 - 180,000

Full time

2 days ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

NATIONAL RETAIL TRANSPORTATION in Lyndhurst, NJ is seeking a Cybersecurity Architect to design, implement, monitor, and maintain the organization’s security infrastructure to protect systems, networks, applications, and data from cyber threats. This role partners with IT, infrastructure, cloud, and business teams to identify risks and ensure compliance with security policies.

Responsibilities include DevSecOps integration, cloud security governance, IAM and Zero Trust initiatives, incident

Qualifications

  • 8+ years in cybersecurity with hands-on DevSecOps experience.
  • Strong knowledge of cloud security in AWS or Azure.
  • Experience implementing CI/CD security practices and IaC security.
  • Familiarity with NIST, ISO 27001, CIS Benchmarks.
  • Experience securing Azure, AWS, Microsoft 365, and hybrid setups.

Responsibilities

  • Design and maintain enterprise security architecture standards and roadmaps.
  • Lead DevSecOps integration and secure CI/CD pipelines.
  • Implement MFA, PAM, and identity governance controls.
  • Oversee threat detection, incident response, and vulnerability management.
  • Guide security assessments, risk remediation, and audits.

Skills

Cybersecurity
Cloud security
DevSecOps
IAM
Zero Trust
Incident response
Regulatory compliance
CI/CD tools
Azure
AWS

Education

Bachelor's degree in Computer Science or Cybersecurity

Tools

Jenkins
GitHub Actions
GitLab CI

Job description

  • Pay or shift range: $165,000 USD to $180,000 USD The estimated range is the budgeted amount for this position. Final offers are based on various factors, including skill set, experience, location, qualifications and other job-related reasons.
Description

Company Overview:

NRS is a leading provider of transportation & supply chain solutions. As a family-owned and operated company, NRS has delivered smart logistics solutions to numerous Fortune 500 companies spanning over 70 years. Whether it's NRT, Keystone, Keystone Fresh, or Keystone Capacity, our innovative energy drives us towards new and valuable solutions for our clients, even as we continuously grow and strengthen our network. We are dedicated to creating a culture that empowers the individual and offers our associates the opportunity to apply their unique skill to the challenges facing our clients. In the office, the warehouse, or on the road, it is this commitment to our innovative spirit that unites us in common mission to push boundaries in the logistics industry.

Job Overview:

The Cybersecurity Architect is responsible for designing, implementing, monitoring, and maintaining the organization's security infrastructure to protect systems, networks, applications, and data from cyber threats. This role works closely with IT, infrastructure, cloud, and business teams to identify risks, implement security controls, investigate security incidents, and ensure compliance with security policies and regulatory requirements.

Duties and responsibilities:

DevSecOps Integration

  • Embed security tools and practices into CI/CD pipelines
  • Champion "shift-left" security practices, including automated code scanning and testing
  • Oversee secure coding standards and developer training programs
  • Implement infrastructure-as-code (IaC) security controls and compliance checks
  • Establish policies, SOPs, RACI, process maps, SLAs/OLAs, and controls.
  • Define and managethe KPIs and OKRs process; publish dashboards and monthly service reviews.
  • Maintain evidence and controls for process compliance and platform access governance.

Security Architecture & Strategy

  • Develop and maintain enterprise security architecture standards and roadmaps.
  • Define target-state security architectures for cloud, network, application, endpoint, and identity platforms.
  • Evaluate and approve security designs for new initiatives and major technology changes.
  • Lead Zero Trust architecture initiatives.
  • Align security architecture with business objectives and regulatory requirements.
  • Design and secure Azure, AWS, Microsoft 365, and SaaS environments.
  • Implement cloud security best practices, governance controls, and monitoring.
  • Review cloud configurations, permissions, and security posture.
  • Partner with cloud teams to secure modern architecture and microservices environments.

Security Operations & Risk Management

  • Oversee threat detection, incident response, threat hunting, and vulnerability management programs.
  • Support security investigations and post-incident reviews.
  • Conduct risk assessments and drive remediation efforts.
  • Lead tabletop exercises and incident response planning.
  • Evaluate emerging threats and recommend mitigation strategies.

Identity & Access Management

  • Design and implement identity security strategies.
  • Support governance of Entra ID, privileged access management (PAM), and authentication controls.
  • Implement Multi-Factor Authentication (MFA), Conditional Access, and identity governance programs.
  • Monitor privileged account activity and authentication risks.

Security Engineering

  • Design and maintain:
  • MDR
  • Microsoft Sentinel
  • Firewalls
  • IDS/IPS technologies
  • Email security platforms
  • Endpoint security controls
  • DLP technologies
  • Zero trust technologies
  • Lead security tool evaluations, integrations, and optimization activities.

DevSecOps Integration

  • Integrate security into CI/CD pipelines.
  • Implement automated security testing and code scanning.
  • Establish secure coding standards and developer enablement programs.
  • Implement Infrastructure-as-Code (IaC) security controls.
  • Promote "shift-left" security practices across engineering teams.
  • Develop and maintain cybersecurity policies, standards, and procedures.
  • Ensure alignment with NIST, ISO 27001, SOC 2, and applicable regulatory requirements.
  • Support audits, assessments, and third-party risk management.
  • Present risk findings and security initiatives to executive leadership

Qualifications:

  • Bachelor’s degree in Computer Science, Cybersecurity, or related field experience
  • 8-12+ years of experience in cybersecurity
  • Strong experience implementing DevSecOps practices in modern engineering environments
  • Deep understanding of cloud security (AWS or Azure)
  • Experience with CI/CD tools (e.g., Jenkins, GitHub Actions, GitLab CI)
  • Knowledge of security frameworks (NIST, ISO 27001, CIS Benchmarks)
  • Proven track record managing security incidents and risk management
  • Experience securing Azure, AWS, Microsoft 365, and hybrid environments.
  • Experience with incident response, threat management, and vulnerability remediation.
  • Experience collaborating with infrastructure, development, and business teams
  • Strong problem-solving skills and attention to detail.
  • Zero Trust Architecture
  • Network Security Architecture
  • Knowledge of Logistics or 3PL business a bonus.
  • Willingness to travel 10% of the time.

Preferred / Nice-to-Have

  • Industry certifications such as CISSP, CISM, or CSSLP
  • Experience with containerization and orchestration (Docker, Kubernetes)
  • Familiarity with zero-trust architecture principles
  • Experience in regulated industries (finance, healthcare, etc.)
  • Microsoft Certified Cybersecurity Architect Expert (SC-100)
  • Azure Security Engineer (AZ-500)

Physical Demands:

  • Extended Sitting: Primarily desk-based with prolonged computer use.
  • Light Lifting: Occasional handling of objects up to 20 pounds.
  • Computer Use: Frequent operation of computers and office equipment, requiring manual dexterity.
  • Eye Strain and Repetitive Motion: Risk from continuous screen use and repetitive tasks like typing.
  • Office Navigation: Light walking and standing for meetings and tasks within the office.

EEO Statement:

NRS is an equal opportunity employer. We do not discriminate based on race, religion, color, national origin, gender (including pregnancy, childbirth, or related medical conditions), sexual orientation, gender identity, gender expression, age, status as a protected veteran, status as an individual with a disability, or any other legally protected characteristic.

#NRSIND

Equal Opportunity Employer
This employer is required to notify all applicants of their rights pursuant to federal employment laws.For further information, please review the Know Your Rights notice from the Department of Labor.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Cybersecurity Architect
Cybersecurity Architect

National Retail Transportation, Inc. • Lyndhurst (NJ)

On-site
USD 140,000 - 180,000
Cybersecurity Architect: Cloud, Zero Trust & DevSecOps Lead
Cybersecurity Architect: Cloud, Zero Trust & DevSecOps Lead

National Retail Transportation, Inc. • Lyndhurst (NJ)

On-site
USD 140,000 - 180,000
Information Security Architect
Information Security Architect

Ryder System, Inc. • Jefferson City (MO)

On-site
USD 140,000 - 150,000
Information Security Architect
Information Security Architect

Ryder System, Inc. • Atlanta (GA)

On-site
USD 140,000 - 150,000
Health and welfare benefits
401(k) retirement plan
Information Security Architect
Information Security Architect

Ryder System, Inc. • San Juan (PR)

On-site
USD 140,000 - 150,000
Health benefits
401(k) plan
Information Security Architect
Information Security Architect

Ryder System, Inc. • Washington

On-site
USD 140,000 - 150,000
Health and welfare benefits
401(k) retirement plan
Paid time off
Information Security Architect
Information Security Architect

Ryder System, Inc. • Helena (MT)

On-site
USD 140,000 - 150,000
Health Insurance
401(k) retirement plan
Paid Time Off
Information Security Architect
Information Security Architect

Ryder System, Inc. • Annapolis (MD)

On-site
USD 140,000 - 150,000
Health and welfare benefits
401(k) retirement plan
Paid time off
Information Security Architect
Information Security Architect

Ryder System, Inc. • Montpelier (VT)

On-site
USD 140,000 - 150,000
Health and welfare benefits
401(k) retirement savings plan
Information Security Architect
Information Security Architect

Ryder System, Inc. • Little Rock (AR)

On-site
USD 140,000 - 150,000