Staff Security Engineer- Cyber Threat Response
Macy'sAbout the role
Be part of an amazing story.
Macy’s is more than just a store. We’re a story. One that’s captured the hearts and minds of America for more than 160 years. A story about innovations and traditions…about inspiring stores and irresistible products…about the excitement of the Macy’s 4th of July Fireworks, and the wonder of the Thanksgiving Day Parade. We’ve been part of memorable moments and milestones for countless customers and colleagues. Those stories are part of what makes this such a special place to work.
Job Overview
The Staff, Threat Intelligence Engineer, will monitor and investigate normal and escalated security intelligence to determine risk and exposure and perform additional intelligence investigations to understand impact and mitigation.
This position will actively investigate within our tools for TTPs used by threat actors to detect malicious activities or events. Work side-by-side with our larger security teams to analyze and examine new threats and assess the risk to Macy’s Inc.
What You Will Do
- Design, implement, and innovate enterprise threat intelligence capabilities, including threat intelligence platforms (TIP), data pipelines, and integrations with security tooling (e.g., SIEM, SOAR, EDR/NDR).
- Develop and maintain integrations and automation that enable intelligence enrichment and orchestration.
- Establish data quality standards and evolve lifecycle management for intelligence artifacts.
- Stay current on emerging technology trends and the threat landscape, providing subject matter knowledge on specific adversarial threats and risks to assist with mitigation strategies.
- Perform analysis of cyber threats, adversaries, campaigns, techniques, and threat models to identify risks relevant to the organization’s attack surface.
- Partner with key stakeholders to embed intelligence into day-to-day security workflows.
- Serve as a subject matter expert for cyber threat intelligence, advising technical teams and stakeholders on threat landscape and intelligence informed decisions. Participate/lead in industry-facing intelligence and knowledge sharing.
- Translate intelligence products into operational outputs such as detection requirements, prioritized response actions, defensive recommendations, and control improvements.
- Perform Open-Source Intelligence (OSINT) collection activities, analysis, reporting and document detailed findings, analysis, and recommendations
- Provide leadership, share knowledge, and mentor team members.
- Foster an environment of acceptance and respect that strengthens relationships, and ensures authentic connections with colleagues, customers, and communities.
Skills You Will Need
Regulatory Compliance: Strong knowledge of regulatory compliance requirements, including PCI-DSS, SOX, and GLBA.
Security Infrastructure: Advanced knowledge in security infrastructure design and architecture for both new implementations and existing infrastructure.
Enterprise Security: Experience in designing and implementing enterprise-wide security strategies, policies, and standards.
Threat Protection: Experience protecting large enterprise environments from internal and external attacks.
Threat Intelligence: Strong understanding of threat intelligence and capabilities that enable Leaders, Incident responders, Threat Hunters and Security teams to make informed risk decisions.
Security Technologies: Expert understanding of current and emerging security technologies, defense strategies, and industry standards. Ability to determine and recommend security-related products and activities, influencing decision-making processes.
Interpersonal Skills: Advanced leadership, facilitation, and interpersonal skills to work across functional lines and at various levels.
Communication: Excellent written and verbal communication skills, with the ability to read, write, and interpret instructional documents.
Certifications: One or more certifications such as CISSP, GCIH, GMON, GCTI, GSEC, etc.
Who You Are
- Candidates with a bachelor’s degree or equivalent work experience in a related field are encouraged to apply. 10-12 years of experience in Information Security or an equivalent combination of education and experience.
- Regularly required to sit, talk, hear; use hands/fingers to touch, handle, and feel. Occasionally required to move about the workplace and reach with hands and arms. Requires cl
Apply for this role
Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.
Apply Now →Generate Application KitFree account required — sign up in 30s