Apply for the Sr. Security Research Engineer role at Proofpoint
2 days ago – Be among the first 25 applicants.
About the Role
This highly technical role has a direct and real-time impact protecting Proofpoint customers. As a Senior Security Research Engineer on Proofpoint's Threat Research team, you'll be part of an amazing, collaborative, industry-leading team focused on tracking threat actors, malware, phishing, and TTPs in order to develop static and dynamic signatures that detect and prevent threats on a massive scale.
Your day-to-day
- Stay abreast of a constantly evolving threat landscape including the credential phishing landscape
- Analyse malware, malicious documents, and malicious URLs provided by internal and external sources
- Conduct in-depth analysis of email messages to detect and classify threats such as business email compromise (BEC), phishing, and other malicious campaigns.
- Apply critical thinking skills to identify the most efficient and effective way to mitigate the analysed threat
- Develop, test, and deploy appropriate static and / or behavioural signatures to mitigate the analysed threat
- Identify, prioritise, and fill coverage gaps for relevant threats to minimise customer impact
- Be on the rotation for on-call to respond to customer escalations that cannot be addressed by customer support
- Work effectively as part of a remote team using chat, video chat and conference calls
- Work with engineering teams, defining requirements, for continuous improvement of critical detection capabilities
What You Bring to the Team
A passion for threat research and a well-rounded yet deep understanding of the security threat landscapeDemonstrable understanding of the malware and credential phishing landscape, TTPs, and experience overcoming bypass techniquesExperience proactively identifying, responding to, and defending against malware and credential phishing threats in production environmentsFamiliarity with browser internals and the Document Object ModelBroad and demonstrable understanding of document formats commonly used for malicious purposes (e.g. OLE, CDFv2, PDF, OpenOffice, RTF)Experience parsing and analysing malicious documentsExperience leveraging sandbox environments as an analysis toolCritical thinking with the ability to develop high-quality detection signatures based on analysis of malicious behaviourExperience creating YARA and / or ClamAV signatures used in production environmentsRegular expression wizardryIntermediate-level Python experienceInterest in learning sandbox engineering concepts and contributing ideas to extend capabilities (plus)Interest in creating synthetic malicious samples to test capabilities (plus)Willing and able to work independently and collaboratively as part of a distributed team of industry-leading security researchersA hard-working, self-directed team player fully capable of working remotelyTravel 10%Location : Work from home in United StatesMust be able to work during business hours local to your time-zoneWhy Proofpoint
Competitive compensationComprehensive benefitsLearning & Development – leadership and professional development workshops, stretch project assignments, mentoring opportunitiesFlexible work environment – remote options, hybrid schedules, flexible hoursAnnual wellness and community outreach daysRecognition for your contributionsGlobal collaboration and networking opportunitiesHow to Apply : Submit your application here https : / / www.proofpoint.com / us / company / careers
Base Pay Ranges (USD) :
SF Bay Area, New York City Metro Area – $161,625.00 – $237,050.00California (excludes SF Bay Area), Colorado, Connecticut, Illinois, Washington DC Metro, Maryland, Massachusetts, New Jersey, Texas, Washington, Virginia, and Alaska – $132,225.00 – $193,930.00All other cities and states – $120,525.00 – $176,770.00J-18808-Ljbffr