Talent.com
Sr. Security Research Engineer
Sr. Security Research EngineerProofpoint • Reston, VA, US
Sr. Security Research Engineer

Sr. Security Research Engineer

Proofpoint • Reston, VA, US
job_description.job_card.variable_hours_ago
serp_jobs.job_preview.job_type
  • serp_jobs.job_card.full_time
job_description.job_card.job_description

The Role

We are looking for a Senior Security Research Engineer to join Proofpoint's Threat Research team. In this highly technical role you will track threat actors, malware, phishing, and TTPs to develop static and dynamic signatures that detect and prevent threats on a massive scale. Your work will directly impact the efficacy of Proofpoint products, the quality of its intelligence, and the protection of our customers.

Your day-to-day responsibilities

  • Stay abreast of an evolving threat landscape, including credential phishing.
  • Analyze malware, malicious documents, and URLs from internal and external sources.
  • Conduct in-depth analysis of email messages to detect and classify threats such as BEC, phishing, and other malicious campaigns.
  • Apply critical thinking to identify efficient mitigation strategies.
  • Develop, test, and deploy static and / or behavioral signatures to counter threats.
  • Prioritize and fill coverage gaps for relevant threats to minimize customer impact.
  • Be on rotation for on-call to respond to customer escalations that cannot be handled by support.
  • Collaborate remotely using chat, video, and conference calls.
  • Work with engineering teams to define requirements and improve detection capabilities.

What you bring to the team (Qualifications)

  • Passion for threat research and a deep understanding of the security threat landscape.
  • Demonstrable knowledge of malware, credential phishing, TTPs, and bypass techniques.
  • Experience in proactively identifying, responding to, and defending against malware and phishing in production environments.
  • Familiarity with browser internals and the Document Object Model.
  • Broad understanding of document formats used maliciously (e.g. OLE, CDFv2, PDF, OpenOffice, RTF).
  • Experience parsing and analyzing malicious documents.
  • Experience leveraging sandbox environments for analysis.
  • Critical thinking to develop high-quality detection signatures based on behavior.
  • Experience creating YARA and / or ClamAV signatures used in production.
  • Proficiency in regular expressions.
  • Intermediate-level Python experience.
  • Interest in sandbox engineering concepts and synthetic sample creation is a plus.
  • Ability to work independently and collaboratively in a distributed team environment.
  • Strong communication and self-directed work ethic.
  • Additional Information

  • Travel : 10%
  • Location : Work from home in the United States
  • Must be able to work during business hours local to your time-zone
  • Compensation

    Competitive base pay plus variable compensation and / or equity. Base pay varies by geographic location.

    Base Pay Ranges

  • SF Bay Area, New York City Metro Area : $161,625 - $237,050 USD
  • California (excl. SF Bay Area), Colorado, Connecticut, Illinois, Washington DC Metro, Maryland, Massachusetts, New Jersey, Texas, Washington, Virginia, and Alaska : $132,225 - $193,930 USD
  • All other cities and states : $120,525 - $176,770 USD
  • Equal Opportunity Statement

    Proofpoint is an equal opportunity employer; we hire without consideration for race, religion, creed, color, national origin, age, gender, sexual orientation, marital status, veteran status or disability.

    J-18808-Ljbffr

    serp_jobs.job_alerts.create_a_job

    Sr Security Engineer • Reston, VA, US

    Job_description.internal_linking.related_jobs
    FIPS Certified Security Engineer

    FIPS Certified Security Engineer

    VirtualVocations • Alexandria, Virginia, United States
    serp_jobs.job_card.full_time
    A company is looking for a Security Engineer, FIPS / CC (Mobile Devices).Key Responsibilities Lead the end-to-end validation process for IT products, including assessments, development of security ...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_30 • serp_jobs.job_card.promoted
    Security Engineer : Detection and Response

    Security Engineer : Detection and Response

    Anthropic • Washington, DC, United States
    serp_jobs.job_card.full_time
    Anthropic’s mission is to create reliable, interpretable, and steerable AI systems.We want AI to be safe and beneficial for our users and for society as a whole. Our team is a quickly growing group ...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_30 • serp_jobs.job_card.promoted
    Offensive Security Engineer

    Offensive Security Engineer

    VirtualVocations • Alexandria, Virginia, United States
    serp_jobs.job_card.full_time
    A company is looking for an Offensive Security Engineer to identify vulnerabilities and enhance security measures.Key Responsibilities Identify vulnerabilities in systems and controls while leadi...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_30 • serp_jobs.job_card.promoted
    FIPS Security Engineer

    FIPS Security Engineer

    Leidos • Columbia, MD, US
    serp_jobs.job_card.full_time
    A FIPS Security Engineer is a technical position within Leidos’ Cryptographic and Security Testing Lab (CSTL) which is part of the Leidos’ Accredited Testing & Evaluation (AT&E)...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_30 • serp_jobs.job_card.promoted
    FIPS Security Engineer

    FIPS Security Engineer

    Leidos Inc • Reston, VA, United States
    serp_jobs.job_card.full_time
    A FIPS Security Engineer is a technical position within Leidos' Cryptographic and Security Testing Lab (CSTL) which is part of the Leidos' Accredited Testing & Evaluation (AT&E) Lab providing valid...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_30 • serp_jobs.job_card.promoted
    Senior Security Engineer [17697]

    Senior Security Engineer [17697]

    ATR Arena Technical Resources • Falls Church, Virginia, US
    serp_jobs.job_card.full_time
    Job Description Job Title : Sr Security Engineer (Managerial Role) Job Location : Falls Church, VA (Hybrid) Eligibility / Clearance : US Citizen or Green Card (Permanent Resident) with the ability to ob...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
    Senior SOC Security Engineer

    Senior SOC Security Engineer

    VirtualVocations • Washington, District of Columbia, United States
    serp_jobs.job_card.full_time
    A company is looking for a Senior SOC / Splunk Security Engineer.Key Responsibilities Monitor, detect, and respond to security incidents using SIEM and EDR tools Conduct deep-dive investigations i...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_30 • serp_jobs.job_card.promoted
    Senior Security Engineer

    Senior Security Engineer

    VirtualVocations • Alexandria, Virginia, United States
    serp_jobs.job_card.full_time
    A company is looking for a Senior Security Engineer to join their security team.Key Responsibilities Manage identity and access management, including Okta SSO and role-based access controls Driv...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_30 • serp_jobs.job_card.promoted
    Principal Security Engineer

    Principal Security Engineer

    VirtualVocations • Washington, District of Columbia, United States
    serp_jobs.job_card.full_time
    A company is looking for a Principal Security Engineer to lead information security initiatives and collaborate with development and operational teams. Key Responsibilities Identify security threa...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_30 • serp_jobs.job_card.promoted
    Security Engineer

    Security Engineer

    VirtualVocations • Alexandria, Virginia, United States
    serp_jobs.job_card.full_time
    A company is looking for a Security Engineer to handle digital security and incident response.Key Responsibilities : Act as a technical lead within the cyber security group, developing team object...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_30 • serp_jobs.job_card.promoted
    Senior Security Operations Engineer

    Senior Security Operations Engineer

    VirtualVocations • Alexandria, Virginia, United States
    serp_jobs.job_card.full_time
    A company is looking for a Senior Security Operations Engineer (Azure).Key Responsibilities Lead Security Design and Architecture, Log Collection, and Security Incident Management Manage identit...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_30 • serp_jobs.job_card.promoted
    Senior Security Engineer

    Senior Security Engineer

    Legal & General America • Frederick, MD, United States
    serp_jobs.job_card.full_time
    At Legal & General America, we aim to make a positive difference in the lives of our customers, partners, colleagues, and the communities in which they live. As a recognized market leader of term li...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_30 • serp_jobs.job_card.promoted
    Senior Cyber Security Detections Engineer

    Senior Cyber Security Detections Engineer

    ManTech • Chantilly, VA, US
    serp_jobs.job_card.full_time
    Senior Cyber Security Detections Engineer.This role supports our Cyber Operations mission by providing critical detection and response capabilities. You will be part of an industry-leading organizat...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_variable_hours • serp_jobs.job_card.promoted • serp_jobs.job_card.new
    Senior Product Security Engineer

    Senior Product Security Engineer

    VirtualVocations • Alexandria, Virginia, United States
    serp_jobs.job_card.full_time
    A company is looking for a Senior Product Security Engineer, Server.Key Responsibilities Take ownership and drive improvement for security programs such as fuzzing, threat modeling, and container...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_30 • serp_jobs.job_card.promoted
    Red Team Security Engineer

    Red Team Security Engineer

    VirtualVocations • Alexandria, Virginia, United States
    serp_jobs.job_card.full_time
    A company is looking for a Red Team Security Engineer to work 100% REMOTE.Key Responsibilities Conduct vulnerability assessments and penetration testing using various assessment tools Serve as a...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_30 • serp_jobs.job_card.promoted
    Senior Offensive Threat Researcher

    Senior Offensive Threat Researcher

    Draper Labs • Reston, VA, United States
    serp_jobs.job_card.full_time
    Draper is an independent, nonprofit research and development company headquartered in Cambridge, MA.The 2,000+ employees of Draper tackle important national challenges with a promise of delivering ...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_30 • serp_jobs.job_card.promoted
    Senior Security Engineer, Product Security

    Senior Security Engineer, Product Security

    Enboarder • Washington, DC, United States
    serp_jobs.job_card.full_time
    Come build at the intersection of AI and fintech.At Ocrolus, we’re on a mission to help lenders automate workflows with confidence—streamlining how financial institutions evaluate borrowers and ena...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_30 • serp_jobs.job_card.promoted
    Visiting AI Security Resident

    Visiting AI Security Resident

    RAND Corporation • Washington, DC, United States
    serp_jobs.job_card.temporary
    Global and Emerging Risks (GER) division.AI, information security, and national security.As a Visiting AI Security Resident, you'll manage and lead projects that directly impact AI and cybersecurit...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_30 • serp_jobs.job_card.promoted