Talent.com
Staff Security Research Engineer
Staff Security Research EngineerProofpoint • Flowood, MS, United States
Staff Security Research Engineer

Staff Security Research Engineer

Proofpoint • Flowood, MS, United States
1 day ago
Job type
  • Full-time
Job description

Staff Security Research Engineer

Proofpoint is seeking a Staff Security Research Engineer to join our Threat Research team. You will work on tracking threat actors, malware, phishing, and TTPs, developing software to detect and prevent threats for Proofpoint customers.

Overview

We are the leader in human-centric cybersecurity. We protect organizations worldwide and defend data and people against cyber threats.

Your day-to-day

  • Design and develop software using a variety of languages, primarily Python, with little external guidance, while providing technical leadership to guide other software engineers on the team
  • Modify existing web-based UI for internal tools to maintain and extend the sandbox submission and report UI for Proofpoint threat researchers
  • Develop and maintain software in C or C++ for low-level OS interactions
  • Develop and maintain web browser interaction capabilities using Chrome Web Driver
  • Analyze and reverse engineer JavaScript that fingerprints web browser artifacts to identify sandbox web browsers or instrumentation, and innovate solutions to defeat those checks
  • Familiarity with analyzing web front-end and the Document Object Model (DOM)
  • Develop and maintain software for processing network traffic, including TLS decryption and processing PCAP files
  • Collaborate with threat analysts and detection engineers to research threat actors and write detection rules for the systems you develop
  • As needed, create new detection languages and systems for threat researchers to develop detection rules
  • Enhance detection languages to allow greater flexibility for researchers to automate website interactions and detect threat patterns
  • Apply AI Large Language Models where appropriate to enhance threat detection pipelines and assess when AI adds value
  • Design and develop automation pipelines to turn manual tasks into automated scripts
  • Stay abreast of a constantly evolving threat landscape and understand TTPs used by threat actors to bypass detection environments, including URL sandbox fingerprinting, detection, and evasion techniques
  • Provide expert assistance and support to threat researchers and analysts in analyzing phishing websites and new evasion techniques
  • Reverse engineer malware executable files for Windows as needed to support sandbox countermeasure development (primary malware reverse engineering responsibilities rest on other roles)
  • Apply critical thinking to identify efficient and effective threat mitigations
  • Work effectively as part of a remote team using chat, video, and conference calls
  • Collaborate with other engineering teams to define requirements for continuous improvement of detection capabilities

What You Bring To The Team

As a Security Research Engineer on Proofpoints Threat Research team, youll join a collaborative, industry-leading team focused on tracking threat actors, malware, phishing, and TTPs to counter evolving threats with innovative software.

  • A passion for threat research and a deep understanding of the security threat landscape and actor TTPs, especially countermeasures for evasions and sandbox detection
  • Ability to write production-grade, reliable Python code with instrumentation for observability and monitoring
  • Experience developing software using Docker containers
  • Experience developing web browser automation
  • Experience analyzing network traffic for threat detection with a solid understanding of TLS, HTTP, and other network protocols
  • Willing and able to work independently and as part of a distributed team
  • Ability to work in a fully remote environment
  • Nice to have (candidates lacking these may still apply)

  • Experience with C and C++
  • Experience Windows API hooks and researching undocumented Windows API functions
  • Experience writing malware behavior signatures
  • Experience analyzing malware with a debugger and willingness to learn
  • Experience with static reverse engineering using IDA Pro, Ghidra, Binary Ninja, or similar
  • Ability to interpret forensic output of dynamic analysis (sandbox) environments
  • Experience with malware sandboxes (e.g., Cuckoo, Joe Sandbox, Any Run, Triage)
  • Additional Information

  • Travel 1% - 10% (flexible) for team collaboration or security conferences
  • Location : Canada (Remote), US (Remote), Argentina (Remote), UK (Remote), Ireland (Remote), Germany (Remote), France (Remote), Switzerland (Remote)
  • Must be able to work during business hours local to your time zone
  • Why Proofpoint

    Proofpoint offers a comprehensive compensation and benefits package, a flexible work environment, and global collaboration opportunities. Were committed to growth and development, with programs for leadership and professional development, mentoring, flexible time off, wellness and community days, and recognition for contributions.

  • Competitive compensation
  • Comprehensive benefits
  • Learning & Development opportunities
  • Flexible work environment
  • Wellness and community days
  • Recognition for contributions
  • Global collaboration and networking
  • Our Culture

    Our culture is rooted in belonging and purpose. If you need accommodation during the application process, please reach out to accessibility@.

    #J-18808-Ljbffr

    Create a job alert for this search

    Staff Security Engineer • Flowood, MS, United States

    Related jobs
    Oracle Fusion ERP / HCM Security- Lead Consultant

    Oracle Fusion ERP / HCM Security- Lead Consultant

    Oracle • Jackson, MS, United States
    Full-time
    We are looking for a Consulting Lead with advanced functional and technical knowledge of Oracle ERP and HCM Cloud Security, including demonstrated experience of implementing RBAC, sensitive access,...Show more
    Last updated: 30+ days ago • Promoted
    Network Security Administrator

    Network Security Administrator

    CapB InfoteK • Jackson, MS, United States
    Full-time
    For one of our ongoing multiyear projects out of Jackson Mississippi we are looking for a.Network Security Administrator. This position is to assist agency in identifying, detecting, documenting, an...Show more
    Last updated: 30+ days ago • Promoted
    Cyber Warfare Technician

    Cyber Warfare Technician

    US Navy • Jackson, Mississippi, US
    Part-time
    Languages are more than just communication-they're cultural codes that need to be analyzed and in some cases, broken.As a Cryptologic Technician Interpretive (CTI) you're more than a linguist-you'r...Show more
    Last updated: 30+ days ago • Promoted
    Cyber Warfare Technician

    Cyber Warfare Technician

    Navy • Canton, MS, United States
    Full-time
    ABOUT Enlisted Sailors in the Navy Cryptology community analyze encrypted electronic communications, jam enemy radar signals, decipher information in foreign languages, and maintain state-of-the-ar...Show more
    Last updated: 30+ days ago • Promoted
    Senior Backup Engineer

    Senior Backup Engineer

    KPMG • Jackson, MS, United States
    Full-time
    Known for being a great place to work and build a career, KPMG provides audit, tax and advisory services for organizations in today's most important industries. Our growth is driven by delivering re...Show more
    Last updated: 1 day ago • Promoted
    Surveillance Investigator - Experienced

    Surveillance Investigator - Experienced

    Command Investigations • Jackson, MS, US
    Full-time
    Quick Apply
    Command Investigations LLC is a dynamic and forward-thinking investigative company that has been at the forefront of the industry since its establishment in September of 2012.With a relentless comm...Show more
    Last updated: 30+ days ago
    AWS Software Developer

    AWS Software Developer

    GovCIO • Jackson, MS, United States
    Full-time +1
    GovCIO is currently hiring for AWS Software Developer with DevSecOps experience to provide development, support, architecture, and leadership for a government application being moved into the AWS c...Show more
    Last updated: 1 day ago • Promoted
    Senior Application Security Engineer (Remote - USA)

    Senior Application Security Engineer (Remote - USA)

    Confluent • Jackson, MS, United States
    Remote
    Full-time
    At Confluent, we are committed to providing competitive pay and benefits that are in line with industry standards.We analyze and carefully consider several factors when determining compensation, in...Show more
    Last updated: 1 day ago • Promoted
    Intelligence Officer

    Intelligence Officer

    Navy • Madison County, MS, United States
    Full-time
    ABOUT Effective, secure communication in the cyber domain is essential to the everyday operations of military intelligence in America’s Navy. Information Professionals who oversee the seamless opera...Show more
    Last updated: 30+ days ago • Promoted
    Lead Software Security Engineer - Java / AWS

    Lead Software Security Engineer - Java / AWS

    Lumen Inc • Jackson, MS, United States
    Full-time
    We are igniting business growth by connecting people, data and applications - quickly, securely, and effortlessly.Together, we are building a culture and company from the people up - committed to t...Show more
    Last updated: 1 day ago • Promoted
    Prinicpal Network Developer (DDOS)

    Prinicpal Network Developer (DDOS)

    Mississippi Staffing • Jackson, MS, United States
    Full-time
    Principal Network Security Engineer.Oracle Cloud Infrastructure (OCI) is seeking a Principal Network Security Engineer to lead the architecture, delivery, and operational excellence of Tier 0 DDoS ...Show more
    Last updated: 1 day ago • Promoted
    Military Intelligence Officer

    Military Intelligence Officer

    Navy • Magee, MS, United States
    Full-time
    ABOUT Effective, secure communication in the cyber domain is essential to the everyday operations of military intelligence in America’s Navy. Information Professionals who oversee the seamless opera...Show more
    Last updated: 30+ days ago • Promoted
    Veeva RIM Administrator

    Veeva RIM Administrator

    Syneos Health / inVentiv Health Commercial LLC • Jackson, MS, United States
    Full-time
    Syneos Health is a leading fully integrated biopharmaceutical solutions organization built to accelerate customer success. We translate unique clinical, medical affairs and commercial insights into ...Show more
    Last updated: 7 days ago • Promoted
    Security Professional - Armed Patrol

    Security Professional - Armed Patrol

    Clearance Jobs • Jackson, MS, US
    Full-time +1
    Security Professional - Armed Patrol.Allied Universal, North America's leading security and facility services company, offers rewarding careers that provide you a sense of purpose.While working in ...Show more
    Last updated: 16 days ago • Promoted
    Software Engineer, Security

    Software Engineer, Security

    Coinbase • Jackson, MS, United States
    Full-time
    Ready to be pushed beyond what you think you’re capable of?.At Coinbase, our mission is to increase economic freedom in the world. It’s a massive, ambitious opportunity that demands the best of us, ...Show more
    Last updated: 1 day ago • Promoted
    Military Intelligence

    Military Intelligence

    Navy • Flowood, MS, United States
    Full-time
    ABOUT Effective, secure communication in the cyber domain is essential to the everyday operations of military intelligence in America’s Navy. Information Professionals who oversee the seamless opera...Show more
    Last updated: 30+ days ago • Promoted
    Military Intelligence Officer

    Military Intelligence Officer

    US Navy • Jackson, Mississippi, US
    Part-time
    If you're an Intelligence Specialist, you make sure that we're always one step ahead of our adversaries.Collect intel on everything from data on foreign cultures to enemy movements to current weath...Show more
    Last updated: 30+ days ago • Promoted
    Identity Architect - Microsoft Identity Systems

    Identity Architect - Microsoft Identity Systems

    Rubrik • Jackson, MS, United States
    Full-time
    Identity Architect - Microsoft Identity Systems.We are seeking a hands-on, technically deep Identity Architect to serve as a technical bridge between our Engineering, Product, and Sales Engineering...Show more
    Last updated: 1 day ago • Promoted