Talent.com
Staff Security Research Engineer
Staff Security Research EngineerProofpoint • Jackson, MS, US
Staff Security Research Engineer

Staff Security Research Engineer

Proofpoint • Jackson, MS, US
job_description.job_card.1_day_ago
serp_jobs.job_preview.job_type
  • serp_jobs.job_card.full_time
job_description.job_card.job_description

Staff Security Research Engineer

Proofpoint is seeking a Staff Security Research Engineer to join our Threat Research team. You will work on tracking threat actors, malware, phishing, and TTPs, developing software to detect and prevent threats for Proofpoint customers.

Overview

We are the leader in human-centric cybersecurity. We protect organizations worldwide and defend data and people against cyber threats.

Your day-to-day

  • Design and develop software using a variety of languages, primarily Python, with little external guidance, while providing technical leadership to guide other software engineers on the team
  • Modify existing web-based UI for internal tools to maintain and extend the sandbox submission and report UI for Proofpoint threat researchers
  • Develop and maintain software in C or C++ for low-level OS interactions
  • Develop and maintain web browser interaction capabilities using Chrome Web Driver
  • Analyze and reverse engineer JavaScript that fingerprints web browser artifacts to identify sandbox web browsers or instrumentation, and innovate solutions to defeat those checks
  • Familiarity with analyzing web front-end and the Document Object Model (DOM)
  • Develop and maintain software for processing network traffic, including TLS decryption and processing PCAP files
  • Collaborate with threat analysts and detection engineers to research threat actors and write detection rules for the systems you develop
  • As needed, create new detection languages and systems for threat researchers to develop detection rules
  • Enhance detection languages to allow greater flexibility for researchers to automate website interactions and detect threat patterns
  • Apply AI Large Language Models where appropriate to enhance threat detection pipelines and assess when AI adds value
  • Design and develop automation pipelines to turn manual tasks into automated scripts
  • Stay abreast of a constantly evolving threat landscape and understand TTPs used by threat actors to bypass detection environments, including URL sandbox fingerprinting, detection, and evasion techniques
  • Provide expert assistance and support to threat researchers and analysts in analyzing phishing websites and new evasion techniques
  • Reverse engineer malware executable files for Windows as needed to support sandbox countermeasure development (primary malware reverse engineering responsibilities rest on other roles)
  • Apply critical thinking to identify efficient and effective threat mitigations
  • Work effectively as part of a remote team using chat, video, and conference calls
  • Collaborate with other engineering teams to define requirements for continuous improvement of detection capabilities

What You Bring To The Team

As a Security Research Engineer on Proofpoint's Threat Research team, you'll join a collaborative, industry-leading team focused on tracking threat actors, malware, phishing, and TTPs to counter evolving threats with innovative software.

  • A passion for threat research and a deep understanding of the security threat landscape and actor TTPs, especially countermeasures for evasions and sandbox detection
  • Ability to write production-grade, reliable Python code with instrumentation for observability and monitoring
  • Experience developing software using Docker containers
  • Experience developing web browser automation
  • Experience analyzing network traffic for threat detection with a solid understanding of TLS, HTTP, and other network protocols
  • Willing and able to work independently and as part of a distributed team
  • Ability to work in a fully remote environment
  • Nice to have (candidates lacking these may still apply)

  • Experience with C and C++
  • Experience Windows API hooks and researching undocumented Windows API functions
  • Experience writing malware behavior signatures
  • Experience analyzing malware with a debugger and willingness to learn
  • Experience with static reverse engineering using IDA Pro, Ghidra, Binary Ninja, or similar
  • Ability to interpret forensic output of dynamic analysis (sandbox) environments
  • Experience with malware sandboxes (e.g., Cuckoo, Joe Sandbox, Any Run, Triage)
  • Additional Information

  • Travel 1% - 10% (flexible) for team collaboration or security conferences
  • Location : Canada (Remote), US (Remote), Argentina (Remote), UK (Remote), Ireland (Remote), Germany (Remote), France (Remote), Switzerland (Remote)
  • Must be able to work during business hours local to your time zone
  • Why Proofpoint

    Proofpoint offers a comprehensive compensation and benefits package, a flexible work environment, and global collaboration opportunities. We're committed to growth and development, with programs for leadership and professional development, mentoring, flexible time off, wellness and community days, and recognition for contributions.

  • Competitive compensation
  • Comprehensive benefits
  • Learning & Development opportunities
  • Flexible work environment
  • Wellness and community days
  • Recognition for contributions
  • Global collaboration and networking
  • Our Culture

    Our culture is rooted in belonging and purpose. If you need accommodation during the application process, please reach out to accessibility@proofpoint.com.

    J-18808-Ljbffr

    serp_jobs.job_alerts.create_a_job

    Staff Security Engineer • Jackson, MS, US

    Job_description.internal_linking.related_jobs
    Security Installation Technician

    Security Installation Technician

    Security and Network Technology • Jackson, MS, US
    serp_jobs.job_card.full_time
    Career Advancement Opportunities.Security Installation Technician.As a Security Installation Technician, you will travel to various locations and job sites and accurately install or repair security...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
    Surveillance Investigator - Experienced

    Surveillance Investigator - Experienced

    Command Investigations • Jackson, MS, US
    serp_jobs.job_card.full_time
    serp_jobs.filters_job_card.quick_apply
    Command Investigations LLC is a dynamic and forward-thinking investigative company that has been at the forefront of the industry since its establishment in September of 2012.With a relentless comm...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_30
    Intelligence Officer

    Intelligence Officer

    Navy • Richland, MS, United States
    serp_jobs.job_card.full_time
    ABOUT Effective, secure communication in the cyber domain is essential to the everyday operations of military intelligence in America’s Navy. Information Professionals who oversee the seamless opera...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
    Physical Security Program Manager, DC Security AMER C

    Physical Security Program Manager, DC Security AMER C

    Amazon Data Services, Inc. • Canton, MS, United States
    serp_jobs.job_card.full_time
    Amazon Web Services (AWS) and Amazon.Amazon’s consumer, digital and AWS businesses.Our customers trust us to handle their data with air-tight security. Customer data security is a given and a guaran...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
    Physical Security Program Manager, DC Security AMER C

    Physical Security Program Manager, DC Security AMER C

    Amazon • Canton, MS, US
    serp_jobs.job_card.full_time
    Physical Security System Project Manager.Amazon Web Services (AWS) and Amazon.Amazon's consumer, digital and AWS businesses. Our customers trust us to handle their data with air-tight security.Custo...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_30 • serp_jobs.job_card.promoted
    IMS Engineer

    IMS Engineer

    Inabia Software & Consulting Inc. • Ridgeland, MS, US
    serp_jobs.job_card.full_time
    serp_jobs.filters_job_card.quick_apply
    QUALIFICATIONS REQUIRED Bachelor’s degree in telecommunications, computer science, engineering, or a related field; advance degree preferred. Excellent leadership and commun...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_30
    Submarine Electronics

    Submarine Electronics

    Navy • Flowood, MS, United States
    serp_jobs.job_card.full_time
    ABOUT The most secretive of Navy vessels, a submarine requires a select community of specially trained professionals to operate its classified, highly advanced hardware. The Sailors in the Submarine...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
    Bomb Technician

    Bomb Technician

    Navy • Flowood, MS, United States
    serp_jobs.job_card.full_time
    ABOUT Explosive Ordnance Disposal (EOD) Technicians have expertise in the most conventional and unconventional explosives to ensure the secure disposal of explosive weaponry.They are on call to res...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
    Military Intelligence Officer

    Military Intelligence Officer

    Navy • Richland, MS, United States
    serp_jobs.job_card.full_time
    ABOUT Effective, secure communication in the cyber domain is essential to the everyday operations of military intelligence in America’s Navy. Information Professionals who oversee the seamless opera...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
    Military Intelligence

    Military Intelligence

    Navy • Crystal Springs, MS, United States
    serp_jobs.job_card.full_time
    ABOUT Effective, secure communication in the cyber domain is essential to the everyday operations of military intelligence in America’s Navy. Information Professionals who oversee the seamless opera...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
    Data Center Security Specialist, DC Security

    Data Center Security Specialist, DC Security

    Amazon • Canton, MS, US
    serp_jobs.job_card.full_time
    As a DC Security Manager, you will be expected to implement and verify compliance with security procedures, ensure alarms are resolved in accordance with standards and policies; while optimizing th...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
    Site Coordinator

    Site Coordinator

    Inter-Con Security Systems • Brandon, MS, US
    serp_jobs.job_card.full_time
    Founded in 1973, Inter-Con Security Systems, Inc.US-owned security company, providing a full range of physical security services to government and commercial customers on four continents.Inter-Con ...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_30 • serp_jobs.job_card.promoted
    Security Account Manager

    Security Account Manager

    Allied Universal • Canton, MS, US
    serp_jobs.job_card.full_time
    Allied Universal is hiring an Account Manager.As an Account Manager, you are the driving force behind daily security operations, ensuring the safety and well-being of the people and places you prot...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
    IMS engineer

    IMS engineer

    Inabia Software & Consulting Inc. • Ridgeland, MS, US
    serp_jobs.job_card.full_time
    serp_jobs.filters_job_card.quick_apply
    Job Description • Participate in creating application architecture document to provide deliverables in line with architectural requirements. TCP / IP networking (basic routing, analyzing network ...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_30
    Quality Lab Associate (Madison)

    Quality Lab Associate (Madison)

    Pyramid Consulting, Inc • Madison, MS, US
    serp_jobs.job_card.part_time +1
    Please review the job description below and contact me ASAP if you are interested.Employee benefits include, but are not limited to, health insurance (medical, dental, vision), 401(k) plan, and pai...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
    Sr UX Researcher Job at John Deere in Jackson

    Sr UX Researcher Job at John Deere in Jackson

    Mediabistro • Jackson, MS, United States
    serp_jobs.job_card.full_time
    There are over 7 billion people on this planet.And by 2050, there will be 2 billion more.Making sure there is enough food, fiber and infrastructure for our rapidly growing world is what we're all a...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_variable_hours • serp_jobs.job_card.new
    Quality Lab Associate

    Quality Lab Associate

    Integrated Resources, Inc ( IRI ) • Pearl, MS, United States
    serp_jobs.job_card.full_time
    Job Title : Quality Lab Associate I.Location : Cleveland, MS 38732 (onsite).Duration : 12 Months (possibility of extension). Shift : First Shift (8am-5pm) and 3rd - (11PM-7AM) - only when certain produc...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
    Seasonal Visual Security Associate - Part Time Job at Belk in Ridgeland

    Seasonal Visual Security Associate - Part Time Job at Belk in Ridgeland

    Mediabistro • Ridgeland, MS, United States
    serp_jobs.job_card.full_time +1
    The Seasonal Temporary Visual Security Associate supports the execution of store asset protection initiatives by providing consistent visual theft deterrence and ensuring a positive customer experi...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_variable_days
    Quality Lab Associate

    Quality Lab Associate

    Pyramid Consulting, Inc • Madison, MS, United States
    serp_jobs.job_card.temporary
    Please review the job description below and contact me ASAP if you are interested.Employee benefits include, but are not limited to, health insurance (medical, dental, vision), 401(k) plan, and pai...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
    Electronics Engineering

    Electronics Engineering

    Navy • Clinton, MS, United States
    serp_jobs.job_card.full_time
    ABOUT The most secretive of Navy vessels, a submarine requires a select community of specially trained professionals to operate its classified, highly advanced hardware. The Sailors in the Submarine...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted