Security Engineer III
About the role
Ross Stores, Inc. is a leading off-price retail chain with over 2,200 stores and 2025 revenues of $22.8 billion. We bring customers high-quality brands and on-trend merchandise at extraordinary savings in a fun, treasure-hunt experience. Our corporate headquarters are in Dublin, CA, with buying offices in New York City, Los Angeles, and Boston, and 8 distribution centers nationwide. We are a Fortune 500 company committed to an inclusive work environment with continuous learning and development opportunities.
Responsibilities
- Design, implement, and maintain security tools to monitor and protect company cloud workloads.
- Identify and mitigate potential cloud-based security risks.
- Develop and implement security controls such as container security, data security posture management, application security posture management, SaaS security posture management, and zero trust network.
- Build automation scripts for threat remediation.
- Partner with Governance, Risk, and Compliance (GRC) teams to align security roadmaps with business goals.
- Implement and manage posture management systems, general cloud security, log management, cloud-native workload protection, context-aware access policies, secure web gateways, and data security pipelines for storage, intelligent models, and productivity tools.
- Collaborate with the Information Security Governance, Risk, and Compliance team to develop global cloud security technical designs, architecture standards, and maturity roadmaps.
- Develop and maintain documentation, technical diagrams, and self-healing automation scripts for security tools, system environments, and cloud operations.
- Lead the assessment, evangelization, and adoption of new security tools, applications, and processes, serving as a Subject Matter Expert (SME) across cloud security, posture management, logging and monitoring, secure hybrid access solutions, data pipeline security, and AI posture management.
- Understand business objectives, supporting systems, and processes across key business areas, aligning technical solutions with enterprise needs while balancing robust security controls with business compatibility and operational efficiency.
Requirements
- Minimum 10 years of Information Security experience, including 5+ years in large enterprise environments.
- Bachelor's degree or equivalent experience; cloud security certification preferred.
- Strong knowledge of security threats, detection and response, security analytics, and automation/orchestration tools.
- Ability to work independently and within teams to deliver technical solutions.
- Experience developing security strategies, standards, and architectures aligned with industry frameworks.
- Ability to improve security posture through technical, administrative, and physical controls.
- Experience collaborating with IT teams to design and implement enterprise security solutions.
- Experience selecting, configuring, and implementing security tools aligned with business needs.
- Knowledge of identity and access management, Zero Trust principles, and secure access solutions.
- Strong documentation and communication skills to translate security requirements into actionable designs.
Skills
- People: Building Effective Teams, Developing Talent, Collaboration, Self Leading by Example, Communicates Effectively, Ensures Accountability and Execution, Manages Conflict.
- Business: Business Acumen, Plans, Aligns and Prioritizes, Organizational Agility.
- Position-specific: Strong Analytical Skills, Navigate Ambiguity, Solution-oriented leadership.
Pay
The base salary range for this role is $146,400 - $250,200, dependent on factors including experience, skills, qualifications, relevant education, certifications, seniority, and location. Other rewards vary by position and location.
Schedule
This role requires regular in-office presence, including in-person team interaction, meetings, and collaboration. It can perform duties effectively using a combination of in-office and remote work.
Physical Requirements
- Ability to work in an office environment, primarily on a computer.
- Requires sitting, standing, walking, hearing, talking on the telephone, attending in-person meetings, typing, and working with paper/files.
- Consistent timeliness and regular attendance.
- Vision requirements: Ability to see information in print and/or electronically.