Penetration Tester 2 (Hybrid - Seattle) jobs in United States
cer-icon
Apply on Employer Site
company-logo

Nordstrom · 1 month ago

Penetration Tester 2 (Hybrid - Seattle)

Nordstrom is committed to delivering exceptional customer experiences while maintaining high security standards. The Penetration Tester II will conduct penetration tests across web, network, and cloud environments, identifying vulnerabilities and writing detailed reports for stakeholders.

E-CommerceFashionRetail
check
H1B Sponsor Likelynote

Responsibilities

Independently plan and execute reconnaissance activities across diverse systems and environments
Conduct standard penetration tests independently across networks, applications, and cloud environments with moderate support from Senior Analysts
Perform authenticated and unauthenticated testing to identify and confirm exploitable vulnerabilities
Execute exploitation of discovered vulnerabilities and thoroughly document security impact
Tune scanning and enumeration tools to minimize false positives and validate findings
Participate in purple team engagements, carrying out scripted simulations, and validating results
Document findings with detailed titles, affected assets, scope, and reproducible evidence
Provide actionable remediation guidance and safe interim mitigation strategies
Collaborate with development and infrastructure teams to validate fixes

Qualification

Penetration TestingOffensive SecurityCommon Penetration ToolsScripting LanguagesNetwork ProtocolsCloud PlatformsActive DirectoryExploitation TechniquesOperating SystemsRelevant CertificationsAnalytical SkillsEthical StandardsCommunication SkillsOrganizational Skills

Required

2-4 years of hands-on experience in penetration testing, offensive security, ethical hacking, or related security assessment roles
Working knowledge of common penetration testing tools and frameworks (Cobalt Strike, Metasploit, Burp Suite, Nmap, BloodHound, or similar)
Understanding of network protocols, operating systems (Windows, Linux, macOS), and cloud platforms (AWS, Azure, GCP)
Familiarity with Active Directory, authentication mechanisms, and common exploitation techniques
Experience with scripting languages (Python, Bash, PowerShell)
Strong analytical and problem-solving skills with attention to detail
Clear written and verbal communication skills, including ability to translate technical findings for diverse audiences
Ability to work independently while knowing when to escalate or seek guidance
Strong organizational skills and ability to manage multiple concurrent assessments
Commitment to ethical standards and discretion when handling sensitive security information
Bachelors Degree or Masters in Information Technology, Computer Science, Cybersecurity or related experience required
Relevant certification(s) (e.g., Pentest+, CEH, GPEN, OSCP)

Benefits

Medical/Vision, Dental, Retirement and Paid Time Away
Life Insurance and Disability
Merchandise Discount and EAP Resources
401k, medical/vision/dental/life/disability insurance options, PTO accruals, Holidays, and more.

Company

Nordstrom

company-logo
Nordstrom is an online fashion retailer that specializes in fashion, footwear, accessories, and beauty.

H1B Sponsorship

Nordstrom has a track record of offering H1B sponsorships. Please note that this does not guarantee sponsorship for this specific role. Below presents additional info for your reference. (Data Powered by US Department of Labor)
Distribution of Different Job Fields Receiving Sponsorship
Represents job field similar to this job
Trends of Total Sponsorships
2025 (188)
2024 (231)
2023 (190)
2022 (311)
2021 (280)
2020 (208)

Funding

Current Stage
Public Company
Total Funding
$969.45M
Key Investors
Ryan CohenEl Puerto de Liverpool
2024-12-23Acquired
2023-02-03Post Ipo Equity
2022-09-16Post Ipo Equity· $294.45M

Leadership Team

leader-logo
Erik Nordstrom
Chief Executive Officer
linkedin
leader-logo
Alexis DePree
Chief Operating Officer
linkedin
Company data provided by crunchbase