We use cookies. Find out more about it here. By continuing to browse this site you are agreeing to our use of cookies.
#alert
Back to search results
New

Security Engineer - Threat Management and Response

Macy's
78,700-131,100
paid time off, paid holidays, tuition reimbursement, 401(k)
5985 State Bridge Road (Show on map)
Apr 03, 2025

Be part of an amazing story.

Macy's is more than just a store. We're a story. One that's captured the hearts and minds of America for more than 160 years. A story about innovations and traditions...about inspiring stores and irresistible products...about the excitement of the Macy's 4th of July Fireworks, and the wonder of the Thanksgiving Day Parade. We've been part of memorable moments and milestones for countless customers and colleagues. Those stories are part of what makes this such a special place to work.

Job Overview

The Security Engineer monitors and investigates security events to assess risk and exposure, conducting forensic investigations to determine impact and mitigation strategies. This role requires strong written and oral communication skills to effectively present technical analysis and research findings for each incident or investigation.

The Security Engineer possesses experience and understanding of multiple security platforms and layers, including antivirus, firewalls, proxy servers, intrusion prevention systems, log correlation and management, operating systems, network protocols, and incident response.

What You Will Do



  • Respond to escalated security events and incidents, implementing countermeasures to mitigate further exposure.
  • Triage reported events from various detection devices, filtering out false positives and known accepted activities.
  • Lead and manage security investigations from discovery to resolution, acting as the incident response manager for each case.
  • Develop reports highlighting trends and key statistics based on correlated security incidents and event data, producing monthly exception and management reports.
  • Create and implement standard operating procedures to streamline investigations, daily monitoring, and analysis, ensuring consistency across all analysts.
  • Apply incident response methodologies and assist in coordinating security incidents.
  • Resolve high-impact, complex, or cross-functional security issues.
  • Communicate technical concepts effectively to both technical and non-technical audiences.
  • Identify and analyze common network and website attacks, including SQL injection, cross-site scripting, remote file inclusion, and cookie manipulation.
  • Decode and interpret traffic flow at the packet level using tools such as TCPDUMP, PCAPs, and traffic generators.
  • Perform real-time IDS/IPS monitoring analysis and network forensics.
  • Develop correlation rules to detect and respond to security threats.
  • Analyze and correlate security events, implementing countermeasures to mitigate intrusion attacks.
  • Maintain security monitoring and reporting tools while leading security analysis and reporting efforts.
  • Foster an environment of acceptance and respect that strengthens relationships, and ensures authentic connections with colleagues, customers, and communities.
  • In addition to the essential duties mentioned above, other duties may be assigned.


Skills You Will Need

Incident Response & Investigation: Skilled in monitoring, investigating, and responding to security events, leading security investigations from discovery to resolution, and applying incident response methodologies.

Technical Proficiency: Expertise in security platforms such as antivirus, firewalls, proxy servers, IDS/IPS, SIEM technologies, and endpoint detection and response (EDR) tools.

Threat Detection & Mitigation: Ability to identify and analyze common attack vectors, including SQL injection, cross-site scripting (XSS), and phishing campaigns, and develop correlation rules for threat detection.

Network & System Security: Strong understanding of TCP/IP, HTTP, FTP, authentication protocols, SSL/encryption, and web servers, with experience in Active Directory, Exchange, SharePoint, DNS, SQL, and LDAP.

Forensic Analysis: Proficient in analyzing and decoding network traffic at the packet level using tools like TCPDUMP and PCAPs, and performing real-time IDS/IPS monitoring and network forensics.

Communication & Reporting: Strong written and verbal communication skills to convey technical findings to technical and non-technical audiences, and experience in creating reports on security trends, incidents, and mitigation strategies.

Process Optimization: Experienced in developing and implementing standard operating procedures for security operations, streamlining investigations, and improving daily monitoring and analysis.

Problem-Solving & Adaptability: Skilled at resolving high-impact, complex security issues, filtering false positives, prioritizing legitimate threats, and maintaining and improving security monitoring tools.

Who You Are



  • Candidates with a bachelor's degree or equivalent work experience in a related field are encouraged to apply. 1-2 years of prior experience.
  • Regularly required to sit, talk, hear; use hands/fingers to touch, handle, and feel. Occasionally required to move about the workplace and reach with hands and arms. Requires close vision.
  • Able to work a flexible schedule based on department and company needs.


What We Can Offer You

Join a team where work is as rewarding as it is fun! We offer a dynamic, inclusive environment with competitive pay and benefits. Enjoy comprehensive health and wellness coverage and a 401(k) match to invest in your future. Prioritize your well-being with paid time off and eight paid holidays. Grow your career with continuous learning and leadership development. Plus, build community by joining one of our Colleague Resource Groups and make a difference through our volunteer opportunities.

Some additional benefits we offer include:



  • Merchandise discounts
  • Performance-based incentives
  • Annual merit review
  • Employee Assistance Program with mental health counseling and legal/financial advice
  • Tuition reimbursement


Access the full menu of benefits offerings here.

About Us

This is a great time to join Macy's! Whether you're helping a customer find the perfect gift, streamlining operations in one of our distribution centers, enhancing our online shopping experience, buying in-style and on-trend merchandise to outfit our customers, or designing a balloon for the Thanksgiving Day Parade, we offer unique opportunities to be part of some of the most memorable moments in people's lives.

Join us and help write the next chapter in our story - apply today!

This job description is not all-inclusive. Macy's, Inc. reserves the right to amend this job description at any time. Macy's, Inc. is an Equal Opportunity Employer, committed to a diverse and inclusive work environment.

LEGALRE00

TECH00

Applied = 0

(web-6468d597d4-98p82)