Attack Surface Analyst 2 (Hybrid - Seattle)

Nordstrom, Inc.

Seattle (WA)

Hybrid

USD 122,000 - 189,000

Full time

2 days ago
Be an early applicant
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Benefits offered by this job

Medical/Vision, Dental, Retirement, PA
Paid Time Away
Life Insurance and Disability
Merchandise Discount
EAP Resources

Job summary

Nordstrom, Inc. in Seattle is seeking an Attack Surface Analyst II for a hybrid role, requiring in-office presence at Nordstrom headquarters at least 4 days a week.

You will identify, assess, and monitor vulnerabilities across cloud, on-prem, and third‑party environments to reduce exposure and improve cyber hygiene. You will lead triage of critical findings, research mitigations, and collaborate with security teams to drive remediation and metrics that track attack surface risk progress and

Qualifications

  • 2+ years in security operations, vulnerability management, cybersecurity, IT, or related fields.
  • Understanding of networking, system administration, cloud services, asset management and cyber security principles.
  • Working knowledge of cybersecurity tools including vulnerability identification, CSPM, attack surface / exposure management platforms, network security tools.
  • Understanding of regulatory and compliance requirements (e.g. PCI) for vulnerability and attack surface management.
  • Understanding of cloud security concepts for multi-cloud environments (AWS, Azure, GCP).
  • Proficiency in scripting languages (Python, PowerShell) for process automation.
  • Awareness of MITRE ATT&CK framework and threat trends; familiarity with cyber hygiene practices.
  • Bachelor's or Master's degree in IT/CS/Cybersecurity; equivalent experience considered.

Responsibilities

  • Maintain and grow attack surface management tools and reporting platforms; configure vulnerability scans, alerts, and reports.
  • Lead triage of critical vulnerability findings with partner teams to analyze risk and coordinate remediation.
  • Research solutions and mitigations for high-risk vulnerabilities and provide guidance to remediation teams.
  • Engage with cybersecurity community and threat intel sources to stay current on vulnerabilities and threat actor activity.
  • Assist in mapping Nordstrom's attack surface with network and offensive security teams and monitor dark web resources.
  • Identify and track attack surface reduction efforts; analyze vulnerabilities and remediation progress metrics.
  • Recommend opportunities to reduce attack surface through improved processes and tooling.
  • Collaborate with cybersecurity peers and stakeholders on asset identification, scanning, analysis, and prioritization.
  • Support regulatory/compliance requirements including evidence collection for vulnerability scanning and reporting (PCI).
  • Contribute to Cybersecurity Standards, ASM SOPs, and runbooks.
  • Monitor, review, and elevate errors in automation of operational processes.
  • Expand cybersecurity domain depth by trainings, industry events, and cross-training with peers.

Skills

Security operations
Networking concepts
System administration
Cloud services
Asset management
Cybersecurity principles
Python scripting
PowerShell scripting
AI in ASM
MITRE ATT&CK

Education

Bachelor's or Master's in IT/CS/Cybersecurity

Tools

Vulnerability scanning tools
CSPM
ASM platforms
Network security tools

Job description

Job Description

This role is offered as hybrid in Seattle, WA. Candidates must be available to work in office at the Nordstrom corporate headquarters a minimum of 4 days/week to be considered for this position.

Position Summary

As an Attack Surface Analyst II, you will identify, assess, prioritize and monitor vulnerabilities that pose a risk to Nordstrom’s technologies and operations. This role will support the discovery and reduction of exposures across cloud, on-prem, and third-party environments and identifying opportunities to improve cyber hygiene processes to proactively reduce the attack surface.

Key Responsibilities
  • Maintain and grow attack surface management tools and reporting platforms by configuring and troubleshooting vulnerability scans, developing alerts, reviewing and tuning false positives, and building reporting templates to meet customer requirements
  • Lead the triage of critical vulnerability findings alongside partner teams and stakeholders to analyze the risk of emergent vulnerabilities and patch releases, coordinating expedited remediation as needed
  • Research solutions and mitigations for highest risk vulnerabilities and provide technical guidance to remediation teams
  • Engage with cybersecurity community and threat intel sources to stay current on latest vulnerability publications, zero-day exploits, and threat actor activity trends
  • Assist in mapping Nordstrom's attack surface by supporting reconnaissance activities with network and offensive security teams and monitoring dark web resources for emerging exposures
  • Identify and track the status of attack surface reduction efforts, by analyzing vulnerabilities and exposure, potential impact, and likelihood of exploitation, and contribute to metrics that measure attack surface risk and remediation progress
  • Identify and recommend opportunities to reduce attack surface through improved processes, tooling, or architectural changes
  • Collaborate with cybersecurity peers, technology partner teams and other stakeholder groups to conduct asset identification and classification, vulnerability scanning, analysis, and prioritization activities
  • Support regulatory and compliance requirements including capturing evidence and artifacts related to vulnerability scanning and reporting for[e.g. PCI]
  • Contribute to Cybersecurity Standards, Attack Surface Management standard operating procedures, and runbooks
  • Monitor, review, and elevate errors in automation of operational processes
  • Increase cybersecurity domain depth and breadth by completing trainings, attending industry presentations, and cross-training with peers across Cybersecurity & Privacy and Technology teams
Qualifications
  • 2+ years in security operations, vulnerability management, cybersecurity, IT, or related fields
  • Understanding of networking, system administration, cloud services, asset management and cyber security principles
  • Working knowledge of cybersecurity tools including vulnerability identification, cloud security posture management (CSPM), attack surface / exposure management platforms, network security tools
  • Understanding of processes and controls needed to satisfy relevant regulatory and compliance requirements [e.g. PCI] for vulnerability and attack surface management
  • Understanding of cloud security concepts for multi-cloud environments (AWS, Azure, GCP), Cloud Asset Exposure: AWS S3 buckets, Azure Blob storage
  • Proficiency in scripting languages (Python, PowerShell) for process automation
  • Working knowledge of emerging AI technologies and how they can be applied within the ASM domain
  • Familiarity with cybersecurity domains and concepts including the MITRE ATT&CK framework, common attack vectors, vulnerabilities and exposures, defense-in-depth principles, network security controls, and cloud and endpoint exposure risks
  • Awareness of best practices for cyber hygiene including patch management, hardening, secure configuration management, and lifecycle management
  • Bachelor's or Master's degree in Information Technology, Computer Science, Cybersecurity, or a related field; equivalent experience will be considered in lieu of a degree
Pay Range Details

$121,500.00 - $188,500.00 Annual

We’ve got you covered…
  • Medical/Vision, Dental, Retirement and Paid Time Away
  • Life Insurance and Disability
  • Merchandise Discount and EAP Resources

This position may be eligible for performance-based incentives/bonuses. Benefits include 401k, medical/vision/dental/life/disability insurance options, PTO accruals, Holidays, and more. Eligibility requirements may apply based on location, job level, classification, and length of employment. Learn more in the Nordstrom Benefits Overview by copying and pasting the following URL into your browser: https://careers.nordstrom.com/pdfs/Ben_Overview_16.pdf

A few more important points...

The job posting highlights the most critical responsibilities and requirements of the job. It’s not all-inclusive. There may be additional duties, responsibilities and qualifications for this job.

For Los Angeles or San Francisco applicants:

Nordstrom is required to inform you that we conduct background checks after conditional offer and consider qualified applicants with criminal histories in a manner consistent with legal requirements per Los Angeles, Cal. Muni. Code 189.04 and the San Francisco Fair Chance Ordinance. For additional state and location specific notices, please refer to the Legal Notices document within the FAQ section of the Nordstrom Careers site.

Applicants with disabilities who require assistance or accommodation should contact the nearest Nordstrom location, which can be identified at www.nordstrom.com.
Review the Career Site FAQ’s for relevant information and guidelines.

Nordstrom keeps job postings open for at least one day after the posting date. 2026 Nordstrom, Inc

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Attack Surface Analyst 2 (Hybrid - Seattle)
Attack Surface Analyst 2 (Hybrid - Seattle)

Nordstrom • Seattle (WA)

Hybrid
USD 122,000 - 189,000
Medical/Vision
Retirement plan
PTO
+1
Senior 2 Cybersecurity Analyst - Attack Surface Management (Hybrid - Seattle)
Senior 2 Cybersecurity Analyst - Attack Surface Management (Hybrid - Seattle)

Nordstrom, Inc. • Seattle (WA), Northern (KY)

Hybrid
USD 166,000 - 258,000
Medical/Vision, Dental
Retirement and Paid Time Away
Life Insurance and Disability
+1
Attack Surface Analyst 2 (Hybrid - Seattle)
Attack Surface Analyst 2 (Hybrid - Seattle)

Nordstrom Inc • Seattle (WA)

Hybrid
USD 122,000 - 189,000
Medical/Vision/Dental
Retirement plan
Merchandise discount
+1
Sr. Engineering Manager, Productivity & Collaboration
Sr. Engineering Manager, Productivity & Collaboration

Brobston Group • Seattle (WA)

Hybrid
USD 191,000 - 297,000
Medical/Vision, Dental
Retirement
Paid Time Away
+3
Senior Manager, Identity Security Operations
Senior Manager, Identity Security Operations

Nordstrom • Seattle (WA)

On-site
USD 191,000 - 297,000
Medical/Vision, Dental, Retirement and
Paid Time Away
Life Insurance and Disability
Sr. Engineering Manager, Productivity & Collaboration (Hybrid - Seattle, WA)
Sr. Engineering Manager, Productivity & Collaboration (Hybrid - Seattle, WA)

Nordstrom, Inc. • Seattle (WA), Northern (KY)

Hybrid
USD 191,000 - 297,000
Medical/Vision/Dental
401k
Paid Time Off
+3
Senior Principal Engineer - Platform and SRE (Hybrid - Seattle)
Senior Principal Engineer - Platform and SRE (Hybrid - Seattle)

Nordstrom • Seattle (WA)

Hybrid
USD 201,000 - 332,000
Medical/Vision, Dental, Retirement and
Life Insurance and Disability
Merchandise Discount and EAP Resources
Attack Surface Analyst II: Vulnerability Lead
Attack Surface Analyst II: Vulnerability Lead

Nordstrom • Seattle (WA)

Hybrid
USD 122,000 - 189,000
Medical/Vision
Retirement plan
PTO
+1
Data Analyst 3, Supply Chain Inventory - (Seattle, WA) Hybrid
Data Analyst 3, Supply Chain Inventory - (Seattle, WA) Hybrid

Nordstrom, Inc. • Seattle (WA)

On-site
USD 103,000 - 171,000
Sr. Software Engineer: Inventory Positioning (Hybrid - Seattle, WA)
Sr. Software Engineer: Inventory Positioning (Hybrid - Seattle, WA)

Nordstrom, Inc. • Seattle (WA)

On-site
USD 142,000 - 221,000
Medical/Vision/Dental
401k & Retirement
Paid Time Off
+1