Nordstrom · 1 month ago
Penetration Tester 2 (Hybrid - Seattle)
Nordstrom is committed to delivering exceptional customer experiences while maintaining high security standards. The Penetration Tester II will conduct penetration tests across web, network, and cloud environments, identifying vulnerabilities and writing detailed reports for stakeholders.
E-CommerceFashionRetail
Responsibilities
Independently plan and execute reconnaissance activities across diverse systems and environments
Conduct standard penetration tests independently across networks, applications, and cloud environments with moderate support from Senior Analysts
Perform authenticated and unauthenticated testing to identify and confirm exploitable vulnerabilities
Execute exploitation of discovered vulnerabilities and thoroughly document security impact
Tune scanning and enumeration tools to minimize false positives and validate findings
Participate in purple team engagements, carrying out scripted simulations, and validating results
Document findings with detailed titles, affected assets, scope, and reproducible evidence
Provide actionable remediation guidance and safe interim mitigation strategies
Collaborate with development and infrastructure teams to validate fixes
Qualification
Required
2-4 years of hands-on experience in penetration testing, offensive security, ethical hacking, or related security assessment roles
Working knowledge of common penetration testing tools and frameworks (Cobalt Strike, Metasploit, Burp Suite, Nmap, BloodHound, or similar)
Understanding of network protocols, operating systems (Windows, Linux, macOS), and cloud platforms (AWS, Azure, GCP)
Familiarity with Active Directory, authentication mechanisms, and common exploitation techniques
Experience with scripting languages (Python, Bash, PowerShell)
Strong analytical and problem-solving skills with attention to detail
Clear written and verbal communication skills, including ability to translate technical findings for diverse audiences
Ability to work independently while knowing when to escalate or seek guidance
Strong organizational skills and ability to manage multiple concurrent assessments
Commitment to ethical standards and discretion when handling sensitive security information
Bachelors Degree or Masters in Information Technology, Computer Science, Cybersecurity or related experience required
Relevant certification(s) (e.g., Pentest+, CEH, GPEN, OSCP)
Benefits
Medical/Vision, Dental, Retirement and Paid Time Away
Life Insurance and Disability
Merchandise Discount and EAP Resources
401k, medical/vision/dental/life/disability insurance options, PTO accruals, Holidays, and more.
Company
Nordstrom
Nordstrom is an online fashion retailer that specializes in fashion, footwear, accessories, and beauty.
H1B Sponsorship
Nordstrom has a track record of offering H1B sponsorships. Please note that this does not
guarantee sponsorship for this specific role. Below presents additional info for your
reference. (Data Powered by US Department of Labor)
Distribution of Different Job Fields Receiving Sponsorship
Represents job field similar to this job
Trends of Total Sponsorships
2025 (188)
2024 (231)
2023 (190)
2022 (311)
2021 (280)
2020 (208)
Funding
Current Stage
Public CompanyTotal Funding
$969.45MKey Investors
Ryan CohenEl Puerto de Liverpool
2024-12-23Acquired
2023-02-03Post Ipo Equity
2022-09-16Post Ipo Equity· $294.45M
Recent News
2026-01-23
2026-01-23
2026-01-22
Company data provided by crunchbase