Cyber Security Architect - Concord, NC
S&D Coffee | |
United States, North Carolina, Concord | |
Feb 13, 2026 | |
|
Role Overview
We are seeking a highly experienced, hands-on Cyber Security Architect to lead and execute our enterprise cyber security strategy across a complex hybrid environment. This role is a technical, execution-focused leadership position--not a people-manager role--responsible for leading and designing, implementing, and enforcing cyber security controls across corporate IT, operational technology (OT), cloud, and on-premise environments. The ideal candidate brings deep experience in manufacturing environments, has operated across IT and OT networks, and is comfortable working directly with infrastructure, security tooling, and vendors. This role reports directly to the CIO and partners closely with Infrastructure, Applications, Manufacturing Operations, and external automation vendors. This is an in person role at our location -- 5 days a week. Key Responsibilities * Own and execute the enterprise cyber security program across corporate IT and OT environments. * Define, implement, and enforce cyber security policies, standards, and best practices aligned to industry frameworks (e.g., NIST, CIS). * Translate security strategy into practical, enforceable controls across cloud, on-premise, and manufacturing systems. * Design, and maintain Identity, and Access Management policies, and controls. * Maintain security toolsets, and continually improve detection & response capabilities. * Act as the incident response lead, and work closely with IT teams to establish plans & playbooks. Manufacturing & OT Security * Partner with plant operations and engineering teams to secure industrial systems without disrupting production. * Work directly with engineering teams, and OEM vendors to ensure OT architecture is compliant with Westrock security policies. * Establish, and provide secure remote access methods for OEMs. Governance, Risk & Compliance * Own cyber risk assessments, penetration tests, mitigation plans, and remediation actions. * Support audits, regulatory requirements, and internal control testing as needed. * Develop and maintain security documentation, standards, and incident response procedures. * Respond to risk assessments from external sources including vendors, customers, and partners. | |
Feb 13, 2026