Lead Security Assessment Engineer

Nordstrom

Hybrid

Quick summary

Work type
Hybrid
Location
Seattle, WA
Salary
$166,000–$258,000 / yr
Posted
5 days ago

Market check

Salary context

Above market

How this pay compares to similar roles

Similar $184k
This role $212k
$129k most similar roles pay here $272k

This role pays more than 75% of similar roles. Most pay $156,245–$212,375 — the shaded band above. At the midpoint, this role pays about $212k versus about $184k for comparable roles.

Based on 240 similar postings.

Employer

About Nordstrom

Nordstrom is a leading American luxury department store chain offering a wide selection of clothing, shoes, accessories, and beauty products through its stores, Nordstrom Rack outlets, and online. Industry: Luxury Department Store Retail

Nordstrom currently has 37 open roles on FindRole.

Listed pay typically runs $142,000–$258,000 across 37 roles with salary data.

Most-posted roles

View all roles at Nordstrom

At a glance

TL;DR · Lead Security Assessment Engineer

The Lead Security Assessment Engineer will lead comprehensive security evaluations of both internally developed and third-party applications across the enterprise, identifying risks and recommending mitigation strategies. This role involves collaborating with engineering, product, and vendor teams to understand application architecture and develop standardized assessment frameworks using AI tools for automation and scalability. Day-to-day responsibilities include conducting assessments, documenting findings, tracking remediation efforts, and contributing to secure design patterns. The ideal candidate has 8+ years of cybersecurity experience, a strong grasp of secure software development practices, and familiarity with cloud-native architectures and modern development frameworks. Essential skills include excellent communication and the ability to influence cross-functional teams, while certifications like CISSP or OSCP are beneficial.

What you'll do

  • Conduct security assessments of internally developed and third-party applications.
  • Develop standardized assessment frameworks tailored to various application types.
  • Create AI tools to automate and streamline security assessments and compliance.
  • Document findings and provide actionable recommendations for risk reduction.
  • Track remediation efforts and validate fixes to ensure continuous improvement.
  • Stay current with emerging threats, vulnerabilities, and AI-driven innovations.

What we're looking for

  • 8+ years of experience in cybersecurity with hands-on assessment and remediation.
  • Strong understanding of secure software development practices, threat modeling, and vulnerability management.
  • Experience using security assessment tools and platforms, including AI-enhanced solutions.
  • Familiarity with cloud-native architectures, APIs, and modern development frameworks.
  • Ability to develop and maintain standardized assessment methodologies for various applications.
  • Excellent communication skills to influence cross-functional teams and document findings effectively.

More like this

Similar roles

Senior Offensive Security Engineer

Chime

San Francisco, CA 30 days ago
Kubernetes Python Go Docker CI/CD AWS Azure GCP PostgreSQL Linux Git GitHub Jenkins Splunk Terraform Ansible Nmap Metasploit Wireshark OWASP Top Ten
Hybrid

Lead Security Engineer

Broadridge

Newark, NJ +4 81 days ago $175,000$185,000
Palo Alto Cisco Cloudflare Akamai Terraform Python PowerShell SD-WAN Cisco Umbrella Cisco Secure Connect Cisco SASE Datadog NetFlow Confluence BMC Remedy Broadcom Spectrum SSL/TLS Certificate Management Tufin SecureChange Tufin SecureTrack Gigamon
Hybrid

Lead Security Engineer

JPMorgan Chase

OH 9 days ago
Go Rust Swift C++ AI Threat Modeling Vulnerability Testing Penetration Testing Linux Mac Windows Full Stack Development Enterprise Security Solutions

Lead Security Engineer

JPMorgan Chase

Singapore, Singapore 4 days ago
AWS GCP Azure Python C# PowerShell CI/CD Jenkins Git BitBucket Jira STRIDE Terraform Kubernetes PostgreSQL MSSQL Docker Prometheus Grafana

Lead Security Engineer

JPMorgan Chase

Plano, TX 12 days ago
FIPS 140 Python PowerShell Java Terraform Ansible CloudFormation Jenkins Spinnaker Docker Kubernetes Splunk Prometheus Grafana Datadog Dynatrace Oracle CockroachDB PostgreSQL ServiceNow

Lead Security Operations Engineer

Take-Two Interactive

Austin, TX +1 24 days ago
SOAR Python SIEM EDR Palo Alto Networks Cortex XSOAR Tines Splunk Enterprise Security MITRE Att&CK NIST CI/CD