Security Engineer II (Threat Hunter)
$124.7k - $212.8kRoss Stores
Our values start with our people, join a team that values you!
Bring your talents to Ross, our leading off-price retail chain with over 2,200 stores, and a strong track record of success and growth. Our focus has always been bringing our customers a constant stream of high-quality brands and on-trend merchandise at extraordinary savings. All while providing a fun and exciting treasure hunt experience.
As part of our team, you will experience:
- Success . Our winning team pursues excellence while learning and evolving
- Career growth . We develop industry leading talent because Ross grows when our people grow <
- Teamwork . We work together to solve the hard problems and find the right solution
- Our commitment to Diversity, Equality & Inclusion, and our community. We celebrate the backgrounds, identities, and ideas of those who work and shop with us because our differences make us stronger. We strive to be a positive force in our community.
Our Corporate headquarters are in Dublin, CA, we have 3 buying offices in key markets in New York City, Los Angeles, and Boston, and 8 distribution centers nationwide. With 2023 revenues of $20.4 billion, we are a Fortune 500 company who is committed to providing an inclusive work environment with continuous learning opportunities and development for our teams.
GENERAL PURPOSE
The Security Engineer II position is responsible for proactive threat hunting and cyber threat intelligence analysis to identify emerging threats, mitigate risks, and strengthen the organization's overall security posture. This role requires advanced technical expertise in cybersecurity tools, threat detection technologies, and Cyber threat intelligence analysis. The associate will collect, analyze, and disseminate cyber threat intelligence, leveraging data from OSINT (Open-Source Intelligence), Threat Intelligence platforms, and other sources, including SIEM and endpoint detection systems, to detect advanced persistent threats (APTs), malware, and other malicious activities. The position also requires experience working in complex environments, applying structured analysis processes, and collaborating with cross-functional teams to ensure the effective identification and mitigation of cyber threats.
ESSENTIAL FUNCTIONS
- Proactively hunt for advanced persistent threats (APTs), malware, and other malicious activities across networks, systems, and applications. Identify hidden threats that evade traditional security measures.
- Synthesize large volumes of data from multiple sources to develop clear, actionable intelligence. Create detailed threat intelligence reports for technical teams and senior leadership.
- Proactively hunt for advanced persistent threats (APTs), malware, and other malicious activities across networks, systems, and applications. Identify hidden threats that evade traditional security measures.
- Create, optimize, and automate detection rules and enrichment logic using scripting languages like Python and SQL.
- Respond to escalation requests either via the Helpdesk, NOC, junior analysts or other IT representatives.
- Contribute to monthly Cyber Defense dashboard with relevant performance indicators and security threat assessments.
- Develop and implement automated workflows and playbooks to streamline threat detection, analysis, and response processes, ensuring quick and effective mitigation of identified threats.
- Mapping adversary behaviors using the MITRE ATT&CK framework to understand attack vectors and predict potential threats.
- 24x7 on call duties apply on rotation and escalation
COMPETENCIES
Building Effective Teams
Developing Talent
Collaboration
Leading by Example
Communicates Effectively
Ensures Accountability & Execution
Manages Conflict
Business Acumen
Plans, Aligns & Prioritizes
Organizational Agility
Analysis & Judgment
Drives Results
Technical / Functional Competence
Interpersonal Effectiveness
QUALIFICATIONS & SPECIAL SKILLS REQUIRED
- Minimum of 8+ years of experience in cybersecurity, with at least 5+ years focused on threat intelligence analysis and cyber threat hunting.
- Proven experience leading or mentoring CTI analysts.
- Strong expertise in threat intelligence platforms (TIPs), SIEM tools, and endpoint detection technologies.
- Proficiency in collecting, analyzing, and disseminating threat intelligence from OSINT, internal sources, and commercial threat feeds.
- Hands-on experience with automated workflows, playbook development, and advanced threat hunting techniques.
- Deep understanding of attack methodologies, APTs, malware, ransomware, and other cyber threats.
- Familiarity with the MITRE ATT&CK framework and indicators of compromise (IoCs).
- Ability to synthesize complex data and produce actionable, clear intelligence for both technical and non-technical audiences.
- Strong communication skills for reporting and briefing leadership on emerging threats.
- Security certifications such as CISSP, GCTI, or equivalent are highly preferred.
- Experience working in large enterprise environments with complex infrastructures and multiple overlapping tools.
- Excellent reporting and communication skills with the ability to present technical findings to varied audiences.
- Proficiency in scripting languages such as Python and SQL for data analysis and automation.
- Knowledge of STIX/TAXII protocols for automated sharing and ingestion of structured threat intelligence data across systems.
- Strong understanding of dark web marketplaces, threat actor infrastructures, ransomware groups, and emerging cybercriminal tactics, techniques, and procedures (TTPs).
EDUCATION / CERTIFICATIONS
PHYSICAL REQUIREMENTS
Job requires ability to work in an office environment, primarily on a computer
Requires sitting, standing, walking, hearing, talking on the telephone, attending in-person meetings, typing, and working with paper/files, etc
Consistent timeliness and regular attendance
Vision requirements: Ability to see information in print and/or electronically
This position may be performed remotely anywhere within the United States
SUPERVISORY RESPONSIBILITIES
N/A
DISCLAIMER
This job description is a summary of the primary duties and responsibilities of the job and position. It is not intended to be a comprehensive or all-inclusive listing of duties and responsibilities. Contents are subject to change at management's discretion.
Ross is an equal employment opportunity employer. We consider individuals for employment or promotion according to their skills, abilities and experience. We believe that it is an essential part of the Company's overall commitment to attract, hire and develop a strong, talented and diverse workforce. Ross is committed to complying with all applicable laws prohibiting discrimination based on race, color, religious creed, age, national origin, ancestry, physical, mental or developmental disability, sex (which includes pregnancy, childbirth, breastfeeding and medical conditions related to pregnancy, childbirth or breastfeeding), veteran status, military status, marital or registered domestic partnership status, medical condition (including cancer or genetic characteristics), genetic information, gender, gender identity, gender expression, sexual orientation, as well as any other category protected by federal, state or local laws.
The base pay range for this role $124,700.00 to $212,800.00. The base pay range is dependent on factors including, but not limited to, experience, skills, qualifications, relevant education, certifications, seniority, and location. The range listed is just one component of the total compensation package for employees. Other rewards vary by position and location.
$113.2k - $172.6k
...environment with continuous learning opportunities and development for our teams. GENERAL PURPOSE The Security Engineer II position is responsible for proactive threat hunting and cyber threat intelligence analysis to identify emerging threats, mitigate risks, and...SuggestedWork at officeLocal areaRemote workNight shift$124.7k - $242.2k
...opportunities and development for our teams. GENERAL PURPOSE The Security Engineer II is responsible for envisioning and taking steps to implement... ...of security tools, Anti-virus/malware protection, Advanced Threat Protection, Log Collection & Analysis, User Behavior...SuggestedFull timeWork at officeLocal areaRemote work$113.2k - $172.6k
...environment with continuous learning opportunities and development for our teams. GENERAL PURPOSE The Security Engineer II position is responsible for proactive threat hunting and cyber threat intelligence analysis to identify emerging threats, mitigate risks, and...SuggestedFull timeWork at officeLocal areaRemote workNight shift- ...mission? Safeguarding our applications from potential threats.In this role you’ll assess our application security by conducting penetration tests. Think of it as a... ...areas: general information security; security engineering; application architecture; authentication and...SuggestedFull timeWork at officeLocal areaFlexible hours
- ...Job Purpose: Serve as a senior individual contributor on the Security Engineering team with a primary focus on Application Security, while... ...primary): Lead application security reviews across the SDLC — threat modeling, secure design review, and secure code review for web...SuggestedFull timeCasual workWork at officeRemote work
$149k - $250k
Senior Infrastructure Security Engineer Location: San Ramon, CA | Reno, NV Ridgeline is on the hunt for an experienced Infrastructure Security... ...of cloud workload protection, infrastructure monitoring, and threat detection in AWS-native environments. Fluency with...- Company Description About the Host Security Engineer Opportunity Talent Connection is partnering with a leading enterprise organization seeking... ...and response efficiency. Stay current on evolving cyber threats, attack techniques, and industry best practices. Qualifications...
- Sennovate, Inc. in San Ramon, CA is seeking a hunter who can build pipeline from cold outreach, qualify ruthlessly, and drive deals to close. You will work alongside our CEO and Fractional CISO on the opportunities that matter most. Expect 3-6 years of B2B sales with cybersecurity...
- ...dynamic environment that’s constantly evolving.As a Staff Cloud Security Engineer, you will lead efforts to engineer, operate, and scale... ...assess control effectiveness and drive improvements based on threats, trends, and operational feedback Support investigations, incident...Minimum wageLocal areaFlexible hours
- ...Sr. Security Engineer Application (more important): Angular (TypeScript), Java, Okta. Infrastructure: GitHub, Jenkins, Terraform, Ansible, Docker, Alpine, Ubuntu, AWS (it will be great if there is a deeper knowledge in KMS, STS, IAM, Batch). Our ideal profile...
- ...Reference #: REF8669XJob Code: SES.1 Science & Engineering MTS 1 / SES.2 Science & Engineering MTS... ...and technology to strengthen U.S. security and promote global stability. Our mission... ...security areas nuclear deterrence, threat preparedness, energy security, and multi...Minimum wageFull timeFor contractorsLocal areaWork from homeRelocationFlexible hours1 day per week
- ...Regional Account Sales Manager - Commercial in Hayward, CA. The role focuses on new-logo acquisition and full sales-cycle ownership to secure recurring revenue. You will build a consultative pipeline, execute competitive displacements, and convert prospects into customers...
- ...environment that's constantly evolving. As a Staff Cloud Security Engineer, you will lead efforts to engineer, operate, and scale security... ...assess control effectiveness and drive improvements based on threats, trends, and operational feedback Support investigations...Weekly payMinimum wageLocal areaFlexible hours
$66.3k - $174.7k
...directly. The role is the work around triage: incident response, detection engineering, response automation, threat intelligence, and building the AI tooling the pipeline runs on. It is closer to a security engineering role than to a conventional SOC analyst role, and we...Temporary workWork at officeRemote workWorldwide3 days per week$109k - $144.5k
...Job Description: Under the leadership of the Senior IT Security Manager, the Security Engineer is responsible for the overall architecture,... ...operations such as monitoring and reporting of cyber security threats. Job Responsibilities: Work with Sr. IT Security Manager...Remote jobWork experience placement- ...Description Job Description Company Description Sr. Cloud Security Engineer Position Overview Company Description Talent... ...and CI/CD pipelines. Participate in architecture reviews, threat modeling, and security assessments for new cloud initiatives....
$58.57 - $89.2 per hour
...Reference #: REF8669XJob Code: SES.1 Science & Engineering MTS 1 / SES.2 Science & Engineering MTS... ...and technology to strengthen U.S. security and promote global stability. Our mission... ...security areas nuclear deterrence, threat preparedness, energy security, and multi...Minimum wageFull timeFor contractorsLocal areaWork from homeRelocationFlexible hours1 day per week- Overview Get AI-powered advice on this job and more exclusive features. Now Hiring: Identity Security Solutions Engineer (U.S. Remote) Redblock is reimagining how enterprises automate cybersecurity and identity operations. Our Agentic AI platform replaces scripts, tickets...Full timeImmediate startRemote work
- ...experience as Automation Architect and doing web application security testing as per OWASP standards • 5+ years of experience designing... ...OWASP (Open Web application Security Project) • Mentor junior engineers to build their skills and contribution levels • Write...
$160.49k - $240.73k
...As a Senior GRC Technical Engineer , you will play a key role in implementing and operating the organization's Governance, Risk,... ...risk management . This role is ideal for a technically strong security professional who understands how security controls are...Local area- obert Half is seeking a Software Engineer II - AI Engineer to analyze, design, program, debug, test, implement, and support the privacy, security, and governance controls that protect generative AI technologies. This role safeguards GenAI-enabled applications, including...
- A technology service provider is looking for a candidate to develop security data-analytics solutions, including creating Splunk APPS and maintaining the life-cycle of custom applications. The role involves integrating web frameworks for dashboards and reports as per customer...
- Physical Security Solutions Architect I Physical Security Solutions Architect I FLSA Status: Exempt Full-Time Location: Livermore, CA... ..., specialized architects, manufacturers, distributors, Engineering, and Services teams. Validate compatibility, scope, risks, dependencies...Full timeTemporary workLocal areaRemote workFlexible hours
- Lawrence Livermore National Laboratory (LLNL) seeks a Mechanical Engineer to contribute to the Initiation Systems Group, focusing on hardware design, testing, and system integration for national security applications. You will engage with multidisciplinary teams across...
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Security Engineer II (Threat Hunter). Be the first to apply!



