Be part of an amazing story.
Macy’s is more than just a store. We’re a story. One that’s captured the hearts and minds of America for more than 160 years. A story about innovations and traditions…about inspiring stores and irresistible products…about the excitement of the Macy’s 4th of July Fireworks, and the wonder of the Thanksgiving Day Parade. We’ve been part of memorable moments and milestones for countless customers and colleagues. Those stories are part of what makes this such a special place to work.
Job Overview
The Senior, Security Engineer reviews, develops, and manages security solutions to reduce risk for Macy’s, Inc. This role actively engages with management to provide timely updates and clear status, enabling informed decisions related to security risk exposure and operational stability.
Key Responsibilities
- Own enterprise Akamai Edge Security operations for ecommerce / digital platforms
- Design, deploy, and tune:
- Akamai WAF (Kona / App & API Protector)
- Bot Manager (scraping, credential stuffing, inventory abuse protection)
- DDoS mitigation and rate control
- API Security protections
- Protect against OWASP Top 10 threats, credential stuffing, carding attacks, scraping, and checkout abuse
- Optimize CDN configurations for performance, scalability, and customer experience
- Analyze traffic patterns and security logs to reduce false positives and protect revenue
- Support peak retail events (Black Friday, Cyber Monday, seasonal launches)
- Automate configuration management using Terraform, APIs, and CI/CD pipelines
- Develop monitoring dashboards and security metrics (block rate, false positives, bot ratios, attack trends)
- Partner with:
- Application Security
- Cloud Engineering
- DevOps
- Fraud & Risk teams
- Support production change management and incident response for edge-related threats
- Ensure compliance with PCI DSS and internal security governance standards
Required Qualifications
- 3–7+ years of hands-on experience managing Akamai CDN and security platforms in production
- Strong experience with:
- Akamai WAF policy tuning
- Bot mitigation strategies
- DDoS protections (application & volumetric)
- Deep understanding of:
- HTTP/S, TLS, DNS, CDN architectures
- OWASP Top 10
- API security best practices
- Experience in high-traffic ecommerce or retail environments
What We Can Offer You
Join a team where work is as rewarding as it is fun! We offer a dynamic, inclusive environment with competitive pay and benefits. Enjoy comprehensive health and wellness coverage and a 401(k) match to invest in your future. Prioritize your well-being with paid time off and eight paid holidays. Grow your career with continuous learning and leadership development. Plus, build community by joining one of our Colleague Resource Groups and make a difference through our volunteer opportunities.
Some additional benefits we offer include:
- Merchandise discounts
- Performance-based incentives
- Annual merit review
- Employee Assistance Program with mental health counseling and legal/financial advice
- Tuition reimbursement
Access the full menu of benefits offerings here.