Nordstrom

Senior 2 Attack Surface Analyst (Hybrid - Seattle)

Nordstrom$166K — $258K *
Information Technology
5 - 7 years of experience
Job Overview by Ladders

Qualifications

  • 6+ years in security operations, vulnerability management, or offensive security in a senior role.
  • Deep understanding of the MITRE ATT&CK framework and threat actor tactics.
  • Experience with cloud security controls in multi-cloud settings.
  • Proficient in enterprise IT architecture principles.
  • Solid knowledge of offensive security and ethical hacking practices.
  • Expertise in scripting languages for automation (e.g., Python, PowerShell).
  • Strong leadership and communication abilities.

Responsibilities

  • Lead and grow the attack surface management program by implementing new solutions.
  • Enhance attack surface management processes and tools, prioritizing automation.
  • Maintain cybersecurity and attack surface management standards and procedures.
  • Collaborate with various teams to secure deployments and integrate security into system design.
  • Regularly assess and map Nordstrom’s attack surface with various security teams.
  • Drive data-driven initiatives to reduce vulnerabilities across technologies.
  • Develop metrics to measure operational efficiency and risk exposure.

Benefits

  • Medical, vision, and dental insurance.
  • 401(k) retirement savings plan with company contribution.
  • Paid time off and holidays.
  • Life insurance and disability coverage.
  • Employee merchandise discount and support resources.
Full Job Description
Job Description

The Attack Surface Analyst Sr 2 champions reduction of Nordstrom’s attack surface through continuous identification, assessment, and escalation of the highest-risk exposures, along with the actions needed to manage that risk. As a senior leader on the Attack Surface Management team, this role collaborates closely with cybersecurity and technology partner teams to prioritize risk, execute remediation activities, and automate processes that secure the technology landscape.

Key Responsibilities
  • Lead the growth of the attack surface management program, develop and implement solutions to improve visibility into exposures, and contribute to the design and implementation of net-new capabilities.
  • Continuously drive improvements in attack surface management processes, methodologies, and security toolsets to enhance operational effectiveness, automating where possible.
  • Maintain Cybersecurity Standards, Attack Surface Management standard operating procedures, and runbooks.
  • Collaborate with AppSec, DevOps, and cloud platform teams to secure deployments and integrate security best practices into the design of software and related systems, ensuring a secure-by-design approach.
  • Maintain a map of Nordstrom’s attack surface through collaboration with network and offensive security teams, conducting regular assessments and reconnaissance activities, and leveraging dark web monitoring resources.
  • Lead data-driven, risk-prioritized, enterprise-wide initiatives to reduce vulnerabilities and exposures across Nordstrom’s technologies; identify opportunities and champion architectural changes that reduce attack surface.
  • Develop and present metrics to measure operational efficiency and attack surface risk.
  • Maintain domain expertise by completing trainings, attending industry presentations, obtaining certifications, engaging with the cybersecurity community, and consuming threat intelligence sources.
  • Support the growth of teammates’ domain expertise through mentorship, presentations, and knowledge-sharing sessions.
  • Lead compliance activities for the domain, including evidence validation and submission, proactive control evaluation and mitigation of gaps, and assessments (e.g., PCI).

Qualifications

Required

  • 6+ years in security operations, vulnerability management, or offensive security domains, including experience in a senior or lead capacity.
  • Deep knowledge of the MITRE ATT&CK framework, threat actor tactics, techniques, and procedures (TTPs), and common attack vectors.
  • Experience implementing cloud security controls in a multi-cloud environment.
  • Proficiency in enterprise information technology (IT) architecture principles and practices.
  • Knowledge of offensive security methodologies and ethical hacking principles and practices.
  • Deep understanding of system landscape and data flow within the domain and across adjacent domains.
  • Expertise in scripting languages (e.g., Python, PowerShell) for process automation.
  • Advanced knowledge of networking, system administration, cloud services, asset management, and cybersecurity principles.
  • Deep understanding of the processes and controls needed to satisfy relevant regulatory and compliance requirements (e.g., PCI) for vulnerability and attack surface management.
  • Strong leadership and communication skills.
  • Bachelor’s or Master’s degree in Information Technology, Computer Science, Cybersecurity, or a related field; equivalent experience will be considered in lieu of a degree.

Preferred

  • Experience developing attack surface management capabilities and coaching more junior analysts.
  • Expertise across cybersecurity domains including vulnerability management, cloud security, attack surface management, network security, and cyber hygiene.
  • Demonstrated thought leadership on the application of emerging AI technologies within cybersecurity domains.
  • Advanced certifications (e.g., OSCE, GREM, CISSP).

Pay Range Details


The pay range(s) below has been provided in compliance with state specific laws. Pay ranges may be different for other locations. 
Pay offers are dependent on the location, as well as job-related knowledge, skills, and experience.

$166,000.00 - $258,000.00 Annual

 

We’ve got you covered…


Our employees are our most important asset and that’s reflected in our benefits. Nordstrom is proud to offer a variety of benefits to support employees and their families, including:

  • Medical/Vision, Dental, Retirement and Paid Time Away
  • Life Insurance and Disability
  • Merchandise Discount and EAP Resources

   

This position may be eligible for performance-based incentives/bonuses. Benefits include 401k, medical/vision/dental/life/disability insurance options, PTO accruals, Holidays, and more. Eligibility requirements may apply based on location, job level, classification, and length of employment. Learn more in the Nordstrom Benefits Overview by copying and pasting the following URL into your browser: https://careers.nordstrom.com/pdfs/Ben_Overview_17-19.pdf

 

A few more important points...


The job posting highlights the most critical responsibilities and requirements of the job. It’s not all-inclusive. There may be additional duties, responsibilities and qualifications for this job.

About Nordstrom

Acquired by Nordstrom in March 2011, HauteLook is a place where you'll discover thousands of the top fashion and lifestyle brands at amazing savings. Each day at 8 AM Pacific, shop new sale events featuring the best names in women's and men's fashion, beauty, and home décor at up to 75% off. Membership is free and everyone is welcome. HauteLook launched in 2007 and is headquartered in Los Angeles. See what the buzz is all about! Register now to become a HauteLook member. www.hautelook.com

Nordstrom Careers

Join the vibrant team at Nordstrom, a leader in the retail industry, where your career growth and development are prioritized. At Nordstrom, we offer a wide array of job opportunities that allow professionals to thrive in an innovative and supportive environment. Work You’ll Do At Nordstrom, we are committed to driving success not only for our company but for each individual who joins our team. Whether you are looking for a position in sales, management, or corporate roles, Nordstrom provides a platform for professional growth through hands-on experience and high-quality leadership training. Our commitment to diversity and inclusion ensures a workplace where everyone can truly belong and excel. Nordstrom’s market-leading team is at the forefront of retail innovation and customer service excellence. By joining us, you will collaborate with skilled professionals dedicated to reshaping the future of retail through cutting-edge technology and exceptional service strategies. Internship Programs Kickstart your career with a Nordstrom internship. Our programs offer invaluable industry insights and hands-on experience, making them a perfect starting point for students and recent graduates eager to make their mark in the retail sector. Interns at Nordstrom gain practical skills and are often considered for full-time positions, reflecting our commitment to nurturing talent from within. Employee Benefits and Culture Nordstrom’s reputation is built not only on our commitment to customers but also on our dedication to our team members. We offer a comprehensive benefits package that supports the health, well-being, and financial security of our employees and their families. Benefits at Nordstrom include health insurance, employee discounts, and access to wellness programs. Our culture at Nordstrom is one of collaboration, innovation, and respect. We believe in the power of working together as a team, where each member’s contribution is valued. Networking within the company is encouraged, fostering a community of support and continuous learning. Career Advancement Opportunities Nordstrom believes in the growth of our employees. With a variety of training and development programs, employees are equipped with the knowledge and skills needed to advance their careers within the company. Leadership development and succession planning are integral parts of our commitment to employee advancement. Join Our Team Explore the exciting career and employment opportunities available at Nordstrom today. We are actively hiring and looking for ambitious, creative, and driven individuals to join our team. Search open positions that match your skills and interests on our Jobs page. Stay Connected Keep up to date with the latest career tips, insider perspectives, and industry-leading insights—all from the people who work at Nordstrom. Subscribe to our Careers Blog and personalize your subscription to receive job alerts and the latest news tailored to your preferences. Discover the rewarding career opportunities waiting for you at Nordstrom, where we turn jobs into pathways for professional growth and personal achievement. Join us and be part of a company that values innovation, leadership, and a diverse and inclusive workplace.
Learn more about Nordstrom
Size
60,000 employees
Market Cap
$2.5 billion
Industry
Net Income
-$531 million
Founded
1901
5 Year Trend
-5.8%
Revenue
$10.7 billion
NASDAQ

Similar Jobs

More Jobs at Nordstrom

More Information Technology Jobs

Find similar Senior 2 Attack Surface Analyst (Hybrid - Seattle) jobs: