Attack Surface Analyst 2

Jobtailor

Seattle (WA)

On-site

USD 120,000 - 160,000

Full time

6 days ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Nordstrom is seeking a Security Operations professional focused on vulnerability management to protect technologies and operations across cloud and on-premises environments.

The role involves maintaining attack surface management tools, configuring scans, and guiding remediation with cross-functional teams. Strong automation in Python/PowerShell and knowledge of PCI compliance are required. This role offers exposure to enterprise-scale security challenges and opportunities to shape strategy.

Qualifications

  • 2+ years of experience in security operations, vulnerability management, cybersecurity, IT, or related fields
  • Understanding of networking, system administration, cloud services, asset management, and cybersecurity principles
  • Working knowledge of vulnerability identification, CSPM, attack surface/exposure management, and network security tools
  • Understanding of regulatory and compliance processes and controls for vulnerability and attack surface management, including PCI
  • Understanding of multi-cloud security concepts across AWS, Azure, and GCP
  • Experience with cloud asset exposure, including AWS S3 buckets and Azure Blob storage
  • Proficiency in Python and PowerShell for process automation
  • Working knowledge of emerging AI technologies and their application within attack surface management
  • Familiarity with MITRE ATT&CK, common attack vectors, vulnerabilities and exposures, defense-in-depth, network security controls, and cloud and endpoint exposure risks
  • Awareness of cyber hygiene best practices, including patch management, hardening, secure configuration management, and lifecycle management

Responsibilities

  • Identify, assess, prioritize, and monitor vulnerabilities posing risks to Nordstrom technologies and operations
  • Support discovery and reduction of exposures across cloud, on-premises, and third-party environments
  • Maintain and grow attack surface management tools and reporting platforms
  • Configure and troubleshoot vulnerability scans; develop alerts; review and tune false positives; build reporting templates
  • Lead triage of critical vulnerability findings with partner teams and stakeholders
  • Analyze risks from emergent vulnerabilities and patch releases and coordinate expedited remediation
  • Research solutions and mitigations for high-risk vulnerabilities and provide technical guidance to remediation teams
  • Monitor vulnerability publications, zero-day exploits, and threat actor activity trends
  • Support reconnaissance activities with network and offensive security teams and monitor dark web resources
  • Track attack surface reduction efforts and contribute to risk and remediation metrics
  • Recommend process, tooling, and architectural changes to reduce attack surface
  • Collaborate on asset identification and classification, vulnerability scanning, analysis, and prioritization
  • Support regulatory and compliance requirements by capturing vulnerability scanning and reporting evidence
  • Contribute to cybersecurity standards, standard operating procedures, and runbooks
  • Monitor, review, and escalation automation errors in operational processes
  • Complete training, attend industry presentations, and cross-train with Cybersecurity, Privacy, and Technology teams

Skills

Vulnerability Management
Cloud Security (AWS, Azure, GCP)
Python & PowerShell
Attack Surface Management
Regulatory Compliance (PCI)
CSPM
Network Security Tools
Patch Management
Secure Configuration Management
Asset Management

Education

Bachelor’s or Master’s degree in IT/CS/Cybersecurity

Tools

Vulnerability Scanning Tools
Dark Web Monitoring Tools
Automation Tools
Reporting Platforms

Job description

  • Identify, assess, prioritize, and monitor vulnerabilities posing risks to Nordstrom technologies and operations
  • Support discovery and reduction of exposures across cloud, on-premises, and third-party environments
  • Maintain and grow attack surface management tools and reporting platforms
  • Configure and troubleshoot vulnerability scans; develop alerts; review and tune false positives; build reporting templates
  • Lead triage of critical vulnerability findings with partner teams and stakeholders
  • Analyze risks from emergent vulnerabilities and patch releases and coordinate expedited remediation
  • Research solutions and mitigations for high-risk vulnerabilities and provide technical guidance to remediation teams
  • Monitor vulnerability publications, zero-day exploits, and threat actor activity trends
  • Support reconnaissance activities with network and offensive security teams and monitor dark web resources
  • Track attack surface reduction efforts and contribute to risk and remediation metrics
  • Recommend process, tooling, and architectural changes to reduce attack surface
  • Collaborate on asset identification and classification, vulnerability scanning, analysis, and prioritization
  • Support regulatory and compliance requirements by capturing vulnerability scanning and reporting evidence
  • Contribute to cybersecurity standards, standard operating procedures, and runbooks
  • Monitor, review, and escalation automation errors in operational processes
  • Complete training, attend industry presentations, and cross-train with Cybersecurity, Privacy, and Technology teams
Requirements
  • 2+ years of experience in security operations, vulnerability management, cybersecurity, IT, or related fields
  • Understanding of networking, system administration, cloud services, asset management, and cybersecurity principles
  • Working knowledge of vulnerability identification, CSPM, attack surface/exposure management, and network security tools
  • Understanding of regulatory and compliance processes and controls for vulnerability and attack surface management, including PCI
  • Understanding of multi-cloud security concepts across AWS, Azure, and GCP
  • Experience with cloud asset exposure, including AWS S3 buckets and Azure Blob storage
  • Proficiency in Python and PowerShell for process automation
  • Working knowledge of emerging AI technologies and their application within attack surface management
  • Familiarity with MITRE ATT&CK, common attack vectors, vulnerabilities and exposures, defense-in-depth, network security controls, and cloud and endpoint exposure risks
  • Awareness of cyber hygiene best practices, including patch management, hardening, secure configuration management, and lifecycle management
  • Bachelor’s or Master’s degree in Information Technology, Computer Science, Cybersecurity, or a related field; equivalent experience may be considered in lieu of a degree
  • Must be available to work in the Nordstrom corporate headquarters a minimum of 4 days/week
Core Competencies

Demonstrates expertise in vulnerability management, cybersecurity principles, and regulatory compliance, with a strong focus on cloud security across AWS, Azure, and GCP. Proficient in Python and PowerShell for automation, and skilled in analyzing and mitigating risks associated with vulnerabilities.

Highest-signal resume keywords
  • Vulnerability Management
  • Cloud Security (AWS, Azure, GCP)
  • Python and PowerShell Proficiency
  • Regulatory Compliance (PCI)
  • Attack Surface Management
Hard Skills
  • Vulnerability Identification
  • Network Security Tools
  • CSPM
  • Emerging AI Technologies
  • Patch Management
  • Secure Configuration Management
  • Lifecycle Management
  • Asset Management
  • Cyber Hygiene Best Practices
  • Threat Actor Activity Monitoring
Soft Skills
  • Collaboration
  • Technical Guidance
  • Analytical Thinking
  • Communication
  • Problem-Solving
Industry Keywords
  • Cybersecurity
  • Security Operations
  • Compliance Processes
  • Emergent Vulnerabilities
  • Zero-Day Exploits
Tools & Technologies
  • Attack Surface Management Tools
  • Vulnerability Scanning Tools
  • Reporting Platforms
  • Automation Tools
  • Dark Web Monitoring Tools
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Attack Surface Analyst: Cloud & Vulnerability Management
Attack Surface Analyst: Cloud & Vulnerability Management

Jobtailor • Seattle (WA)

On-site
USD 120,000 - 160,000
Attack Surface Analyst 2 (Hybrid - Seattle)
Attack Surface Analyst 2 (Hybrid - Seattle)

Relha LLC • Seattle (WA), Northern (KY)

Hybrid
USD 122,000 - 189,000
Medical/Vision, Dental, Retirement and
Paid Time Away
Life Insurance and Disability
+1
Attack Surface Analyst II — Triage, Remediate & Harden Cloud
Attack Surface Analyst II — Triage, Remediate & Harden Cloud

Nordstrom Inc • Seattle (WA)

On-site
USD 122,000 - 189,000
Medical coverage
Vision coverage
Dental coverage
+5
Senior Security Analyst
Senior Security Analyst

confiz • United States

On-site
USD 120,000 - 150,000
Cybersecurity Vulnerability Analyst
Cybersecurity Vulnerability Analyst

Node.Digital LLC • Arlington (VA)

On-site
Medical
Dental
Vision
+4
Security Analyst Consultant - Attack Surface Management
Security Analyst Consultant - Attack Surface Management

Kallesgroup • Seattle (WA)

On-site
USD 110,000 - 140,000
Medical, Dental, Vision plans
401(k) with matching
PTO for salaried employees
+1
Attack Surface Analyst II — Vulnerability & Cloud
Attack Surface Analyst II — Vulnerability & Cloud

Relha LLC • Seattle (WA), Northern (KY)

Hybrid
USD 122,000 - 189,000
Medical/Vision, Dental, Retirement and
Paid Time Away
Life Insurance and Disability
+1
Senior Associate, Offensive Security
Senior Associate, Offensive Security

Jobtailor • New York (NY)

Hybrid
USD 120,000 - 160,000
Senior Manager, IT Security Operations
Senior Manager, IT Security Operations

Jobtailor • Washington

On-site
USD 140,000 - 180,000
CyberSecurity Engineer III
CyberSecurity Engineer III

Jobtailor • San Diego (CA)

On-site
USD 140,000 - 190,000