Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.
Tory Burch is seeking a technically authoritative cybersecurity leader to own and mature the enterprise threat management program across cloud, identity, applications, and data environments, translating threat intelligence into measurable risk reductions.
You will lead threat intelligence, threat modeling, detection engineering, incident response, and vulnerability management, partnering with architecture, compliance, and executive teams to drive risk-based security across the business.
We are an American luxury lifestyle brand, founded in 2004. Anchored in the casual elegance of American sportswear, Tory’s design philosophy is defined by effortless silhouettes, innovative materials, eclectic juxtapositions of color, and the tension of past and present. The collections include ready-to-wear, handbags, footwear, accessories, jewelry, home and beauty. Empowering women is the company’s guiding principle, expressed through Tory’s collections and reflected in the company culture as well as the work of the Tory Burch Foundation. Established in 2009, the Foundation provides women entrepreneurs in the United States with access to capital, education and community. You are seeking a work environment where people are encouraged to dream, explore, discover and, as important, laugh together. If you’re prepared to work hard, create impact, and have fun while doing it, we would love to have you join #TeamTory.
When you join us, you’re joining a global, purpose‑led company on an exciting growth journey with an amazing culture and great benefits. Our culture is welcoming and inclusive -- everyone is empowered to make a difference. We have the best team in the world and believe in paying competitively and rewarding for high performance. Your overall well-being is important to us; we offer generous benefits to help you take care of your mental and physical health, create financial security, and achieve wellness in all areas of your life. We love seeing our employees wear our beautiful collections. You’ll receive a generous employee discount and access to exclusive sample sales. We are invested in your professional growth – you’ll have access to free executive coaching on‑demand. We believe in the importance of giving back and you’ll have many opportunities to do just that through the Tory Burch Foundation and paid volunteer days.
You are a technically authoritative cybersecurity leader who understands that modern threat management is driven by identity, data, configuration integrity, attack paths, and adversary behavior, not security tool accumulation. You have deep expertise across cloud, identity, applications, infrastructure, AI‑enabled environments, and enterprise data platforms and know how to translate threat intelligence and adversary insights into meaningful detection, response, governance, and risk‑management outcomes. This role leads the organization's threat management function and is accountable for threat intelligence, threat modeling, detection engineering, adversarial validation, vulnerability management, incident response, crisis readiness, and threat capability maturity. You will drive a threat‑informed security program that prioritizes real‑world risk while remaining hands‑on in technical decision making.
Own and mature the enterprise threat management program, including threat intelligence, threat modeling, detection engineering, incident response, adversarial validation, and risk‑based vulnerability management. Identify relevant adversaries, attack techniques, and attack paths and ensure they influence security priorities, architecture decisions, and operational activities. Apply frameworks such as MITRE ATT&CK pragmatically to improve prevention, detection, response, and resilience.
Define and lead detection strategy across identities, endpoints, cloud platforms, networks, applications, data environments, and AI‑enabled systems. Ensure identity telemetry, privilege use, token issuance, abnormal access patterns, workload behavior, and data access activities are first‑class detection concerns. Remain hands‑on in the design, tuning, validation, and continuous improvement of threat detections and hunting capabilities. Lead and mentor a Detection Engineer.
Establish and maintain a threat intelligence capability that translates emerging threats into operational improvements. Lead threat modeling and attack path analysis across Microsoft 365, GCP, enterprise applications, ERP platforms, CI/CD pipelines, and data environments. Own and actively challenge red team, purple team, penetration testing, and adversarial simulation activities to ensure findings result in measurable improvements.
Serve as the senior technical leader during cybersecurity incidents and direct technical response activities. Maintain relationships with MSSPs, legal counsel, communications teams, insurance providers, and executive leadership to ensure effective incident management. Design and facilitate consequence‑driven tabletop exercises that test technical, operational, legal, and executive decision‑making processes.
Own vulnerability and exposure management strategies that prioritize remediation using exploitability, attack‑path significance, identity exposure, business impact, and threat intelligence rather than severity scores alone. Ensure remediation efforts focus on the vulnerabilities most likely to be exploited and cause meaningful business impact.
Provide threat‑informed guidance to architecture, cloud, infrastructure, application, and data teams. Assess AI‑related risks, data protection concerns, and emerging technology threats. Partner with compliance and audit teams to ensure PCI, SOX, privacy, and regulatory controls effectively reduce cyber risk.
Develop executive‑level threat and risk reporting that communicates detection effectiveness, incident readiness, control maturity, vulnerability exposure, and residual risk. Define and drive a threat capability maturity model spanning detection, response, threat intelligence, identity security, vulnerability management, and crisis preparedness.
Threat management is intelligence‑led, adversary‑driven, and focused on the organization's most relevant attack paths. Threat intelligence directly informs detection improvements, remediation priorities, and risk decisions. Detection coverage continuously improves against meaningful attacker behaviors and techniques. Red, blue, and purple team activities result in measurable improvements to security controls, configuration, and response readiness. Vulnerability remediation reflects exploitability, exposure, business impact, and threat intelligence rather than severity scores alone. Incident response and crisis‑management capabilities perform effectively under real‑world conditions. Threat capability maturity advances year over year through measurable improvements in readiness, visibility, and risk reduction. Executive leadership receives clear, actionable reporting on threats, security effectiveness, and residual risk.
Our Technology team has a clear mission: use technology to enable the business to operate efficiently while driving growth and profitability. We envision, we strategize, we engineer, we design, we build, we test, we support, and we serve. Our tools and systems impact every customer and every member of our team every day and our role is to make each engagement seamless and rewarding. As we build our in-house engineering teams, we are focused on further modernizing our platforms, leveraging our data analytics capabilities and creating a transformational customer experience.
We show up with honesty & kindness, act with integrity & compassion, work with passion & humility and lead with excellence & humor.
The compensation range for this position is 165,000.00 USD - 200,000.00 USD. Our offer will be based on your relevant experience and work location.
We offer a generous set of benefits to help you take care of your health, create financial security, and achieve wellness in all areas of your life. Here are highlights of key benefits available to all eligible Tory Burch team members.
Tory Burch LLC is an Equal Employment Opportunity employer and provides equal opportunities to all employees and applicants without regard to an individual’s age, race, creed, color, religion, national origin, sex (including pregnancy) or sexual orientation, gender expression, military status, marital status, genetic predisposition or carrier status, disability or membership in any other protected class under applicable law. Likewise, we will consider qualified applicants with criminal histories for employment in a manner consistent with the requirements of the Los Angeles Fair Chance Initiative for Hiring, Ordinance No. 184652. Pursuant to the San Francisco Fair Chance Ordinance, we will consider qualified applicants with arrest and conviction records for employment.
Tory Burch is committed to providing reasonable accommodations to applicants and employees with disabilities. Please tell us if you require a reasonable accommodation to apply for a job or to perform your job. Examples of reasonable accommodation include making a change to the application process or work procedures, providing documents in an alternate format, using a sign language interpreter, or using specialized equipment. If you require assistance or an accommodation with the hiring process, please contact thetalentteam@toryburch.com.
Founded in 2004 in New York City, Tory Burch is an American luxury brand known for beautiful, timeless pieces and rich storytelling that evokes optimism and joy. Tory is a fashion designer who draws inspiration from her parents’ effortless style, the worlds of travel, art and interiors, and women globally. The collections span ready-to-wear, handbags, footwear, accessories, jewelry, home and beauty. Empowering women is the company’s guiding principle, underpinning the design philosophy and company culture, and driving the work of the Tory Burch Foundation. Every team member is integral to the company’s unique culture and continuing evolution.