Attack Surface Analyst II

Nordstrom

Confirmed live yesterday High trust
Hybrid

Quick summary

Work type
Hybrid
Location
Seattle, WA
Salary
$121,500–$188,500 / yr
Posted
29 days ago
Freshness
Confirmed live yesterday

Market check

Salary context

Competitive pay

How this pay compares to similar roles

Similar $165k
This role $155k
$113k most similar roles pay here $204k

This role pays less than 55% of similar roles. Most pay $136,187–$193,000 — the shaded band above. At the midpoint, this role pays about $155k versus about $165k for comparable roles.

Based on 240 similar postings.

Employer

About Nordstrom

Nordstrom is a leading American luxury department store chain offering a wide selection of clothing, shoes, accessories, and beauty products through its stores, Nordstrom Rack outlets, and online. Industry: Luxury Department Store Retail

Nordstrom currently has 30 open roles on FindRole.

Listed pay typically runs $142,000–$220,500 across 29 roles with salary data.

Most-posted roles

View all roles at Nordstrom

At a glance

TL;DR · Attack Surface Analyst II

As an Attack Surface Analyst 2, you will join the cybersecurity team to identify, assess, prioritize, and monitor vulnerabilities across cloud, on-premise, and third-party environments. You will manage attack surface management tools by configuring scans, developing alerts, and building reporting templates while leading the triage of critical findings with partner teams. Your daily work involves researching mitigations for high-risk vulnerabilities, monitoring dark web resources for exposures, and collaborating on asset identification to improve cyber hygiene. The role requires proficiency in Python and PowerShell for automation, as well as knowledge of AWS, Azure, and GCP cloud security. You will utilize tools for vulnerability identification, cloud security posture management, and network security while applying the MITRE ATT&CK framework. This position focuses on reducing organizational exposure by analyzing risks, ensuring regulatory compliance like PCI, and improving architectural security controls.

What you'll do

  • Identify, assess, prioritize, and monitor vulnerabilities across cloud, on-premise, and third-party environments.
  • Configure and troubleshoot vulnerability scans, develop alerts, and tune false positives for attack surface management tools.
  • Lead the triage of critical findings and coordinate expedited remediation with partner teams and stakeholders.
  • Research solutions and provide technical guidance to remediation teams for high-risk vulnerabilities.
  • Monitor dark web resources and conduct reconnaissance activities to map the organization's attack surface.
  • Track the status of reduction efforts and develop metrics to measure risk and remediation progress.
  • Support regulatory and compliance requirements by capturing evidence and artifacts related to vulnerability scanning.
  • Develop standard operating procedures, runbooks, and technical documentation for attack surface management.

What we're looking for

  • 2+ years of experience in security operations, vulnerability management, cybersecurity, IT, or related fields.
  • Bachelor's or Master's degree in Information Technology, Computer Science, Cybersecurity, or a related field (equivalent experience accepted).
  • Understanding of networking, system administration, cloud services, asset management, and cybersecurity principles.
  • Working knowledge of tools for vulnerability identification, CSPM, attack surface management platforms, and network security.
  • Knowledge of processes to satisfy regulatory and compliance requirements such as PCI.
  • Understanding of multi-cloud environments (AWS, Azure, GCP) and specific cloud assets like S3 buckets and Azure Blob storage.
  • Proficiency in scripting languages including Python and PowerShell for process automation.
  • Working knowledge of emerging AI technologies applied within the attack surface management domain.

More like this

Similar roles

Engineer II: AI Agentic Solutions

Nordstrom

Seattle, WA 42 days ago $121,500$188,500
LLMs RAG LangGraph CrewAI Semantic Kernel OpenAI Assistants API AWS GCP Docker Kubernetes CI/CD SQL NoSQL Spark BigQuery Redshift Event-driven Architecture
2+ yrs exp Hybrid

Senior Network Security Engineer

Nordstrom

Seattle, WA 107 days ago $142,000$220,500
AWS Azure GCP Python Terraform Ansible Zscaler Palo Alto Networks ZTNA 802.1X EAP-TLS RADIUS ClearPass SAML OAuth PKI CI/CD GitOps BGP SD-WAN Splunk
7+ yrs exp Hybrid

Principal Security Engineer, Identity and Access Management

Nordstrom

Seattle, WA 11 days ago $191,000$297,000
IAM Identity Governance Privileged Access Management PAM CIAM SSO OAuth 2.0 OpenID Connect SAML SCIM SPIFFE/SPIRE FIDO2 WebAuthn AWS IAM Azure Entra ID GCP IAM Zero Trust infrastructure-as-code CI/CD Identity Orchestration
10+ yrs exp Hybrid

Senior Engineer, Exchange & Microsoft 365 Platforms

Nordstrom

Seattle, WA 10 days ago $142,000$220,500
Microsoft 365 Exchange Online Azure PowerShell Microsoft Graph API Active Directory Entra ID SharePoint Teams Azure Automation Power Automate Azure Logic Apps GitHub SMTP DNS SPF DKIM DMARC New Relic Proofpoint
5+ yrs exp Hybrid

Senior Systems Engineer, Vulnerability Management

Neurocrine

Remote (San Diego, CA) 8 days ago $103,300$141,000
AWS Azure Linux Windows Python Bash PowerShell Ansible SSM) Patch Manager WSUS SCCM Intune Configuration Management ITIL ServiceNow GxP SOX Vulnerability Management Patch Management
4+ yrs exp Remote