Cyber Security Architect Job at Wakefern Food Corp., Edison, NJ

emEveFk4d0h4Q09wZjduMUdNbXRyOXQ0V3c9PQ==
  • Wakefern Food Corp.
  • Edison, NJ

Job Description

Summary

The Security Architect main role is to design, implement, and oversee our cybersecurity strategy, ensuring robust protection against evolving threats. The ideal candidate will have 7-10 years of experience in cybersecurity architecture, security operations, and risk management with a strong focus on enterprise security solutions, cloud security, identity & access management (IAM), and security best practices. The Security Architect must have hands-on experience with internet secure gateway, EDR, MDR, ITDR, secure email gateway, firewalls, MFA, scripting, policies, data classification, and cloud security controls. This role requires deep expertise in security frameworks, architecture principles, security automation, and compliance standards (NIST, CIS, ISO 27001, Zero Trust, etc.).

Essential Functions

  • Develop and maintain a comprehensive security architecture covering on-premises, cloud, and hybrid environments.
  • Design security solutions that align with business objectives while mitigating risk.
  • Ensure Zero Trust principles, network segmentation, and security best practices are enforced across the enterprise.
  • Architect cloud security strategies, leveraging best practices for Azure and GCP.
  • Lead security investigations, conduct root cause analysis, and document incident response actions.
  • Provide threat intelligence and recommend proactive security measures to mitigate risk.
  • Implement and maintain cloud security controls in Azure and GCP.
  • Optimize cloud security solutions for web and network protection.
  • Ensure Active Directory (AD) and IAM policies align with best practices.
  • Support identity governance, access reviews, and privileged access management (PAM).
  • Oversee the continuous best practice is leveraged for data classification policies and enforce data protection controls.
  • Conduct security assessments and ensure compliance with industry standards (PCI, NIST, CIS).
  • Recommend, evaluate, and implement new security technologies based on business needs and threat landscape.
  • • Work with DevOps and IT teams to integrate security automation, security-as-code, and DevSecOps principles.

Additional Functions

  • Threat Modeling & Risk Management:
  • Conduct threat modeling, risk assessments, and security reviews for applications, infrastructure, and networks.
  • Provide technical leadership in responding to security incidents, forensic analysis, and root cause investigations.
  • Develop and maintain security policies, standards, and playbooks for security operations.
  • Collaborate with IT and business units to ensure security compliance with regulatory frameworks (PCI DSS, NIST, ISO 27001, SOC 2).
  • Identity & Access Management (IAM) & Authentication:
  • Design and enhance IAM policies, privileged access management (PAM), and role-based access control (RBAC).
  • Enforce strong authentication and MFA strategies using Okta, Microsoft Authenticator, and AD.
  • Define identity threat detection and response (ITDR) strategies.
  • Security Governance & Compliance:
  • Ensure security controls align with industry frameworks (NIST CSF, ISO 27001, CIS, Zero Trust, MITRE ATT&CK).
  • Assist with audit, regulatory compliance, and security assessments.
  • Conduct penetration testing, red/blue teaming exercises, and vulnerability management programs.
  • Provide security guidance for third-party risk management and vendor security evaluations.
  • Leadership & Collaboration:
  • Act as a subject matter expert (SME) in cybersecurity architecture and best practices.
  • Provide mentorship and training to security engineers and analysts.
  • Work cross-functionally with IT, DevOps, and executive leadership to align security strategy with business goals.
  • Develop security roadmaps and strategic initiatives for continuous security improvement.
  • Maintain and fine-tune security configurations across various security platforms.
  • Identify security gaps and recommend security enhancements and process improvements.
  • Develop playbooks and automation scripts to enhance security operations efficiency.
  • Conduct vulnerability assessments and penetration testing to identify security weaknesses in systems and applications.
  • Develop and implement security policies, procedures, and standards to ensure compliance with industry’s best practices and regulatory requirements.
  • Investigate security breaches and other security incidents to determine the root cause and implement corrective actions.
  • Stay up-to-date on the latest security threats and vulnerabilities and recommend appropriate security measures.
  • Collaborate with other IT teams to ensure that security is integrated into all aspects of the organization's IT infrastructure.
  • Participate in security audits and assessments to identify and address security gaps.
  • Develop and maintain incident response plans and procedures.
  • Evaluate and recommend security technologies and solutions to improve the organization's security posture.

Qualifications

  • 7-10 years of experience in cybersecurity architecture, security operations, or cloud security.
  • Deep understanding of:
  • Enterprise security architectures, security frameworks (NIST, CIS, Zero Trust, ISO 27001), and best practices
  • Email secure gateway (Proofpoint, Mimecast)
  • Firewalls (Palo Alto, Cisco) and network security principles
  • Cloud security (Azure, GCP) and security automation
  • IAM, MFA, AD, Okta, Microsoft Authenticator
  • Endpoint security, EDR, ITDR, and threat intelligence
  • Data classification, DLP, and information protection
  • Experience designing secure architectures for large-scale enterprises and cloud environments.
  • Strong knowledge of DevSecOps, security automation, and scripting (Python, PowerShell, Terraform).
  • Excellent communication and leadership skills, capable of influencing security strategies across the organization.
  • CISSP Certifications (Required): CISM and CCSP is plus
  • A bachelor's degree in computer science, information systems, or a related experience.
  • 7-10 years of experience in cybersecurity, security operations, or network security.
  • Hands-on expertise with:
  • Zscaler, CrowdStrike, Microsoft Defender, Sophos
  • Proofpoint (Email Security Gateway)
  • EDR & ITDR solutions
  • Palo Alto & Cisco Firewalls
  • Okta, Microsoft Authenticator (MFA), Active Directory (AD), IAM
  • Cloud Security (Azure and GCP)
  • Data classification and protection strategies
  • Strong knowledge of threat intelligence, SIEM, vulnerability management, and incident response.
  • Experience with security frameworks such as PCI, NIST, ISO 27001, CIS Benchmarks.
  • Strong analytical, problem-solving, and communication skills.
  • Ability to work independently and collaboratively in a fast-paced environment.
  • Excellent communication and interpersonal skills, capable of collaborating effectively with cross-functional teams.

Working Conditions & Physical Demands

This position requires in person office presence at least 4x a week.

Job Tags

Similar Jobs

Strategic Staffing Solutions

Chinese Linguist Job at Strategic Staffing Solutions

Job Title: Chinese Linguist Location Options: Charlotte, NC | Minneapolis, MN | Shoreview, MN | Des Moines, IA | Tempe, AZ Duration: 12-Month W2 Contract/ On-Site Day One Top Skills: Bilingual speaking, reading, and writing proficiency in Chinese (Traditional...

Contemporary Staffing Solutions

Shipping and Receiving Associate Job at Contemporary Staffing Solutions

Job Title: Shipping and Receiving Associate Location: Tampa, Florida Industry: Manufacturing Job Type: Full-Time Job Summary: We are seeking a reliable and detail-oriented Shipping and Receiving Associate to join our team in Tampa, Florida. In ...

Automationtechies

Controls Engineer - Bristol Babcock Specialization Job at Automationtechies

 ...and understands how to work with plant operators. Troubleshooting Skills Troubleshooting wiring in control panels 120vAC Systems, 12vDC/24vDC systems 4/20mA Analog Systems Flow Meters Pressure Transmitters Transducer and Differential Pressure HACH... 

Graton Resort & Casino

Pastry Sous Chef Job at Graton Resort & Casino

 ...standards and objectives for each outlet, and coordinates events, creates dishes, and prepares a specialty of desserts, pastries, and baked foods. The Pastry Sous Chef reports to Executive Chef. Essential Functions: Responsible for redefining hospitality at Graton... 

Rare Editions

Seamstress - Dresses Job at Rare Editions

 ...owned and operated within the family. Located on the 18th floor of 1250 Broadway in New York City, our showroom features brand-new seasonal lines that major department stores from around the world visit to view, both physically and virtually. The Rare Editions brand is...