Nordstrom

Director, Vulnerability Management

Posted on: 1 Feb 2021

Seattle, WA

Job Description

Job Description

The Director, Security Engineering supports the Vulnerability Management, Threat Intelligence, Patch Management, and Penetration Testing/Red Team functions. These teams work to improve the security posture of Nordstrom technology by identifying, scoping, and prioritizing vulnerabilities in our processes and systems. These teams provide guidance on their remediation and drive accountability across engineering organizations. In this role, youll report to the Senior Director of Information Security and Asset Management and be directly responsible for setting and executing on the engineering and vulnerability security strategy.

Responsibilities
* Build and maintain effective relationships with business, product, and technology partners to drive strategic and operational roadmaps that augment our security.
* Develop vision, roadmaps, and plans with senior leadership team to expand the programs, evaluate teams tools and process maturity, and provide solutions to close any gaps.
* Mature and support managers and their teams in delivering high quality and effective services.
* Strive to continuously improve current vulnerability assessment coverage, depth, quality, and capabilities through new services or processes, and use results to refine program strategy.
* Work with asset management functions to provide insights and refine accuracy.
* Work across teams and organizations to identify and prioritize security weaknesses and ensure reasonable resolution timelines.
* Identify opportunities for improvement in coverage of intelligence and monitoring.
* Work with sensitive and confidential information about our business, customer accounts, and corporate presence.
* Leverage measurement and statistical reports on significant trends from our security relevant data to make data-informed decisions.
* Perform other related duties as assigned.

Qualifications
* Proven track record of leading vulnerability management and penetration testing teams with proven knowledge and competence in security concepts and strategies and the ability to successfully implement them.
* Self-starter with the ability to make independent decisions and the judgment to know when to seek guidance.

* Fundamental understanding of risk vs severity.
* 8-12 years experience in security, with 3+ of those years spent in leadership roles.
* Experience in a cloud / on-premises hybrid infrastructure security.
* Comfort in a diverse technology environment spanning multiple operating systems and architectures.
* Ability to foster collaborative, open, working relationships with technology and other stakeholders.
* Understanding of enterprise, network, system/endpoint, and application-level security issues and risks.
* Broad understanding of retail business processes, business applications, data flows, and requirements desired.
* Proven ability to effectively communicate with all levels of the organization, as well as with external parties.
* Assertive and proactive in identifying, communicating, and resolving issues and concerns.
* Wry sense of humor preferred.

Weve got you covered

Our employees are our most important asset and thats reflected in our benefits. Nordstrom is proud to offer a variety of benefits to support employees and their families, including:

* Medical/Vision, Dental, Retirement and Paid Time Away
* Life Insurance and Disability
* Merchandise Discount and EAP Resources

A few more important points...

The job posting highlights the most critical responsibilities and requirements of the job. Its not all-inclusive. There may be additional duties, responsibilities and qualifications for this job.

Nordstrom will consider qualified applicants with criminal histories in a manner consistent with all legal requirements.

Applicants with disabilities who require assistance or accommodation should contact the nearest Nordstrom location, which can be identified at www.nordstrom.com.

Nordstrom Careers Privacy Policy: https://careers.nordstrom.com//contact-us/privacy

2020 Nordstrom, Inc.

Current Nordstrom employees: To apply, log into Workday, click the Careers button and then click Find Jobs.

Nordstrom

Seattle, WA

Nordstrom, Inc., a fashion retailer, provides apparel, shoes, cosmetics, and accessories for women, men, young adults, and children. It offers a range of brand name and private label merchandise through various channels, such as Nordstrom branded full-line stores and online store at Nordstrom.com; Nordstrom Rack stores; Nordstromrack.com and HauteLook; Jeffrey boutiques; clearance stores that operate under the Last Chance name; Trunk Club clubhouses and TrunkClub.com; and Nordstrom Locals. As of May 1, 2019, the company operated 379 stores in 40 states, including 119 full-line stores in the United States, Canada, and Puerto Rico; 246 Nordstrom Rack stores; 3 Jeffrey boutiques; 2 clearance stores; 6 Trunk Club clubhouses; and 3 Nordstrom Local service concepts. Nordstrom, Inc. was founded in 1901 and is headquartered in Seattle, Washington

Similar Jobs