cover image
Ross Stores, Inc.

REMOTE - Security Engineer II (Threat Hunter)

Remote

United states

$ 204,550 /year

Senior

Full Time

12-03-2026

Share this job:

Skills

Teamwork Leadership Python SQL Organization

Job Specifications

Our values start with our people, join a team that values you!

Bring your talents to Ross, our leading off-price retail chain with over 2,200 stores, and a strong track record of success and growth. Our focus has always been bringing our customers a constant stream of high-quality brands and on-trend merchandise at extraordinary savings. All while providing a fun and exciting treasure hunt experience.

As Part Of Our Team, You Will Experience

Success. Our winning team pursues excellence while learning and evolving
Career growth. We develop industry leading talent because Ross grows when our people grow
Teamwork. We work together to solve the hard problems and find the right solution
Our commitment to Diversity, Equality & Inclusion, and our community. We celebrate the backgrounds, identities, and ideas of those who work and shop with us because our differences make us stronger. We strive to be a positive force in our community.

Our Corporate headquarters are in Dublin, CA, we have 3 buying offices in key markets in New York City, Los Angeles, and Boston, and 8 distribution centers nationwide. With 2023 revenues of $20.4 billion, we are a Fortune 500 company who is committed to providing an inclusive work environment with continuous learning opportunities and development for our teams.

General Purpose

The Security Engineer II position is responsible for proactive threat hunting and cyber threat intelligence analysis to identify emerging threats, mitigate risks, and strengthen the organization's overall security posture. This role requires advanced technical expertise in cybersecurity tools, threat detection technologies, and Cyber threat intelligence analysis. The associate will collect, analyze, and disseminate cyber threat intelligence, leveraging data from OSINT (Open-Source Intelligence), Threat Intelligence platforms, and other sources, including SIEM and endpoint detection systems, to detect advanced persistent threats (APTs), malware, and other malicious activities. The position also requires experience working in complex environments, applying structured analysis processes, and collaborating with cross-functional teams to ensure the effective identification and mitigation of cyber threats.

The base salary range for this role is $108,800 - $204,550. The base salary range is dependent on factors including, but not limited to, experience, skills, qualifications, relevant education, certifications, seniority, and location. The range listed is just one component of the total compensation package for employees. Other rewards vary by position and location.

Essential Functions

Proactively hunt for advanced persistent threats (APTs), malware, and other malicious activities across networks, systems, and applications. Identify hidden threats that evade traditional security measures.
Synthesize large volumes of data from multiple sources to develop clear, actionable intelligence. Create detailed threat intelligence reports for technical teams and senior leadership.
Proactively hunt for advanced persistent threats (APTs), malware, and other malicious activities across networks, systems, and applications. Identify hidden threats that evade traditional security measures.
Create, optimize, and automate detection rules and enrichment logic using scripting languages like Python and SQL.
Respond to escalation requests either via the Helpdesk, NOC, junior analysts or other IT representatives.
Contribute to monthly Cyber Defense dashboard with relevant performance indicators and security threat assessments.
Develop and implement automated workflows and playbooks to streamline threat detection, analysis, and response processes, ensuring quick and effective mitigation of identified threats.
Mapping adversary behaviors using the MITRE ATT&CK framework to understand attack vectors and predict potential threats.
24x7 on call duties apply on rotation and escalation

Competencies

People

Building Effective Teams
Developing Talent
Collaboration

Self

Leading by Example
Communicates Effectively
Ensures Accountability and Execution
Manages Conflict

Business

Business Acumen
Plans, Aligns and Prioritizes
Organizational Agility

With Particular Emphasis On The Following Specific Position-related Competencies

Analysis and Judgment
Drive for Results
Technical Competence
Interpersonal Effectiveness

Qualifications And Special Skills Required

Minimum of 8+ years of experience in cybersecurity, with at least 5+ years focused on threat intelligence analysis and cyber threat hunting.
Proven experience leading or mentoring CTI analysts.
Strong expertise in threat intelligence platforms (TIPs), SIEM tools, and endpoint detection technologies.
Proficiency in collecting, analyzing, and disseminating threat intelligence from OSINT, internal sources, and commercial threat feeds.
Hands-on experience with automated workflows, playbook development, and advanced threat hunting techniques.
Deep understanding of attack methodologies, APTs

About the Company

For the last 40+ years, Ross Stores, Inc. has grown from a six-store chain into an $21.1 billion, Fortune 500 Company. We operate our off-price businesses in a way that keeps costs low so we can pass the savings to our customers. We continue to open new stores and our sales growth has outpaced traditional retailers for the past three years. Ross Dress for Less® has 1,847 stores in 44 states, the District of Columbia and Guam. dd’s DISCOUNTS® has 358 stores in 22 states. Please join our Talent Community to receive the latest ... Know more