Sr. Security Research Engineer at Proofpoint
About Proofpoint
Proofpoint is a leader in human-centric cybersecurity with half a million customers, including 87 of the Fortune 100. We help organizations stop targeted threats, safeguard their data, and protect users against cyber-attacks across email, the cloud, social media, and the web.
How We Work
We follow our BRAVE core values : Bold, Responsive, Accountable, Visionary, and Exceptional. These principles guide our innovation, collaboration, and impact.
The Role
This highly technical role on the Threat Research team has a direct, real-time impact protecting Proofpoint customers. You will track threat actors, malware, phishing, and tactics, techniques, and procedures (TTPs), developing static and dynamic signatures that detect and prevent threats at scale.
Your Day-to-Day
- Stay abreast of a constantly evolving threat landscape, including credential phishing.
- Analyse malware, malicious documents, and URLs provided by internal and external sources.
- Conduct deep analysis of email messages to detect and classify threats such as business email compromise, phishing, and other malicious campaigns.
- Apply critical thinking to identify efficient mitigation strategies.
- Develop, test, and deploy static and / or behavioral signatures to mitigate threats.
- Prioritize coverage gaps for relevant threats to minimize customer impact.
- Participate in on-call rotation for high-priority customer escalations.
- Collaborate remotely using chat, video, and conference calls.
- Work with engineering teams to define requirements for continuous improvement of detection capabilities.
What You Bring To The Team
Passion for threat research and a deep understanding of the security threat landscape.Demonstrable knowledge of malware, credential phishing, TTPs, and bypass techniques.Experience defending against malware and phishing threats in production environments.Familiarity with browser internals and the Document Object Model.Strong knowledge of malicious document formats (OLE, CDFv2, PDF, OpenOffice, RTF).Experience parsing and analysing malicious documents.Skill in using sandbox environments for analysis.Critical thinking and ability to create high-quality detection signatures.Experience with YARA and / or ClamAV signatures in production.Regular-expression proficiency.Intermediate-level Python experience.Interest in sandbox engineering concepts and synthetic sample creation.Independence and collaboration within a distributed research team.Hard-working, self-directed team player capable of remote work.Willingness to travel up to 10% of the time.Benefits & Culture
Proofpoint offers competitive compensation, comprehensive benefits, flexible remote work options, wellness programs, and a culture that values belonging, purpose, and success. We celebrate diversity and inclusion and encourage people from all backgrounds to apply.
How to Apply
Submit your application here : Proofpoint Careers
Pay Transparency
Base pay ranges vary by location :
San Francisco Bay Area & New York City : $161,625.00 – $237,050.00 USDCalifornia (excl. SF), Colorado, Connecticut, Illinois, Washington DC Metro, Maryland, Massachusetts, New Jersey, Texas, Virginia, and Alaska : $132,225.00 – $193,930.00 USDAll other cities and states : $120,525.00 – $176,770.00 USDThis role may be eligible for variable compensation and / or equity.
J-18808-Ljbffr