Talent.com
No longer accepting applications
Staff Security Research Engineer

Staff Security Research Engineer

ProofpointNew York, NY, US
12 days ago
Job type
  • Full-time
Job description

About Us

We are the leader in human-centric cybersecurity. Half a million customers, including 87 of the Fortune 100, rely on Proofpoint to protect their organizations. We're driven by a mission to stay ahead of bad actors and safeguard the digital world. Join us in our pursuit to defend data and protect people.

How We Work

At Proofpoint, you'll be part of a global team that breaks barriers to redefine cybersecurity, guided by our BRAVE core values : Bold in how we dream and innovate, Responsive to feedback, challenges, and opportunities, Accountable for results and best-in-class outcomes, Visionary in future-focused problem-solving, Exceptional in execution and impact.

Corporate Overview

Proofpoint is a leading cybersecurity company protecting organizations' greatest assets and biggest risks : vulnerabilities in people. With an integrated suite of cloud-based solutions, Proofpoint helps companies around the world stop targeted threats, safeguard their data, and make their users more resilient against cyber-attacks. Leading organizations of all sizes, including more than half of the Fortune 1000, rely on Proofpoint for people-centric security and compliance solutions mitigating their most critical risks across email, the cloud, social media, and the web. We are singularly devoted to helping our customers protect their greatest assets and biggest security risk : their people. That's why we're a leader in next-generation cybersecurity. Protection Starts with People.

Staff Security Research Engineer

Your day-to-day

Design and develop software using a variety of languages, primarily Python, with little external guidance, while providing technical leadership to guide other software engineers on the team

Some skill in modifying existing web-based UI for internal tools is needed to maintain and extend the sandbox submission and report UI for Proofpoint threat researchers to use

Some work requires skill in writing C or C++ for low level interactions with the OS

Develop and maintain web browser interaction capabilities using Chrome web driver

Analyze and Reverse Engineer JavaScript that fingerprints web browser artifacts to identify sandbox web browsers or instrumentation, and innovate solutions to defeat those checks

Familiarity with analyzing web front-end and the Document Object Model (DOM)

Develop and maintain software for processing network traffic, including TLS decryption and processing PCAP files

Work closely with threat analysts and detection engineers who research threat actors and write detection rules which run on the systems you develop

As needed, create new detection languages and systems that allow threat researchers to develop detection rules

Add features to existing threat detection languages to allow greater flexibility by threat researchers to automate interactions with websites and detect threat patterns

Make use of AI Large Language Models as appropriate to enhance threat detection pipelines, produce samples to test evasion countermeasures, and make sound decisions about when applying AI is a benefit vs. a detriment to achieving goals

Design and develop automation pipelines to turn manual tasks into automated scripts

Stay abreast of a constantly evolving threat landscape

Understand the latest tactics, techniques, and procedures used by threat actors to bypass detection environments, especially URL sandbox fingerprinting / detection / evasion techniques used by threat actors

As needed, provide expert assistance and support to threat researchers and analysts as they analyze phishing websites, threat detection evasion techniques, and security research or red team demonstrations of new evasion techniques

As needed to support sandbox countermeasure development, reverse engineering malware executable files for Windows (note : primary malware reverse engineering responsibilities rest on other job roles and are not expected regularly for this role)

Apply critical thinking skills to identify the most efficient and effective way to mitigate threats and evasions

Work effectively as part of a remote team using chat, video chat and conference calls

Work with other engineering teams, defining requirements, for continuous improvement of critical detection capabilities

What you bring to the team

As a Security Research Engineer on Proofpoint's Threat Research team, you'll be part of an amazing, collaborative, industry-leading team focused on tracking threat actors, malware, phishing, and TTPs and responding to the quickly changing threat landscape with innovative software that detects and prevents threats from reaching Proofpoint customers. If you enjoy keeping abreast of and analyzing attacker techniques, malware and phishing campaigns, and using that knowledge to counteract those threats with innovative software solutions, then this is the role for you.

A passion for threat research and a well-rounded yet deep understanding of the security threat landscape and actor TTPs, especially understanding how to develop countermeasures for threat actor evasions and sandbox detection techniques

Ability to write production-grade, reliable Python code with instrumentation that supports observability and monitoring of performance and errors is required

Experience developing software using Docker containers is required

Experience developing web browser automation is required

Experience analyzing network traffic for threat detection and a solid understanding of TLS, HTTP, and other network protocols used by malware is required

Willing and able to work independently and collaboratively as part of a distributed team of industry-leading security researchers

Ability to perform the above in a fully remote work environment

The following skills and experience are nice to have, but candidates lacking them should still apply :

Experience with C and C++ is a plus

Experience developing Windows API hooks and knowing how to research undocumented Windows API internal functions is a plus

Experience writing malware behavior signatures

Some experience analyzing malware using a debugger, and willingness to learn is a plus

Experience with statically reverse engineering malware using IDA Pro, Ghidra, Binary Ninja, or other reverse engineering tools is a plus, although being an expert is not required

Ability to accurately interpret the forensic output of dynamic analysis (sandbox) environments

Experience with a variety of publicly-available malware sandboxes (for example : Cuckoo, Joe Sandbox, Any Run, Triage, etc.)

Additional Information

Travel : 1% - 10% (flexible) mainly for team collaboration or security conferences

Location : Canada (Remote), US (Remote), Argentina (Remote), UK (Remote), Ireland (Remote), Germany (Remote), France (Remote), Switzerland (Remote)

Must be able to work during business hours local to your time-zone

Why Proofpoint

As a customer focused and driven-to-win organization with leading edge products, there are many exciting reasons to join the Proofpoint team. We believe in hiring the best the brightest and cultivating a culture of collaboration and appreciation. As we continue to grow and expand globally, we understand that hiring the right people and developing great teams is key to our success! We are a multi-national company with locations in many countries, with each location contributing to Proofpoint's amazing culture! #LI-AN1

Why Proofpoint? At Proofpoint, we believe that an exceptional career experience includes a comprehensive compensation and benefits package. Here are just a few reasons you'll love working with us :

Competitive compensation

Comprehensive benefits

Learning & Development : We are committed to the growth and development of our team members, offering a range of programs including leadership and professional development workshops, stretch project assignments, and mentoring opportunities to help employees reach their full potential.

Flexible work environment : Remote options, hybrid schedules, flexible hours, etc.

Annual wellness and community outreach days

Always on recognition for your contributions

Global collaboration and networking opportunities

Our Culture

Our culture is rooted in values that inspire belonging, empower purpose and drive success-every day, for everyone. We encourage applications from individuals of all backgrounds, experiences, and perspectives. If you need accommodation during the application or interview process, please reach out to accessibility@proofpoint.com. How to Apply Interested? Submit your application here : https : / / www.proofpoint.com / us / company / careers. We can't wait to hear from you!

Consistent with Proofpoint values and applicable law, we provide the following information to promote pay transparency and equity. Our compensation reflects the cost of labor across several U.S. geographic markets, and we pay differently based on those defined markets as set out below. Pay within these ranges varies and depends on job-related knowledge, skills, and experience. The actual offer will be based on the individual candidate. The range provided may represent a candidate range and may not reflect the full range for an individual tenured employee. This role may be eligible for variable compensation and / or equity. We offer a competitive benefits package, including flexible time off, a comprehensive well-being program with two paid Wellbeing Days and two paid Volunteer Days per year, plus a three-week Work from Anywhere option.

Base Pay Ranges :

SF Bay Area, New York City Metro Area :

Base Pay Range : 194,475.00 - 285,230.00 USD

California (excludes SF Bay Area), Colorado, Connecticut, Illinois, Washington DC Metro, Maryland, Massachusetts, New Jersey, Texas, Washington, Virginia, and Alaska :

Base Pay Range : 162,375.00 - 238,150.00 USD

All other cities and states excluding those listed above :

Base Pay Range : 148,425.00 - 217,690.00 USD

J-18808-Ljbffr

Create a job alert for this search

Staff Security Engineer • New York, NY, US

Related jobs
  • Promoted
Security Engineer : Detection and Response

Security Engineer : Detection and Response

AnthropicNew York, NY, United States
Full-time
Anthropic’s mission is to create reliable, interpretable, and steerable AI systems.We want AI to be safe and beneficial for our users and for society as a whole. Our team is a quickly growing group ...Show moreLast updated: 30+ days ago
  • Promoted
  • New!
Travel Radiologic Technologist I

Travel Radiologic Technologist I

MedPro Healthcare Allied StaffingNeptune City, NJ, US
Full-time
MedPro Healthcare Allied Staffing is seeking a travel Radiology Technologist for a travel job in Neptune, New Jersey.Job Description & Requirements. Joint Commission-certified staffing agency, i...Show moreLast updated: 12 hours ago
  • Promoted
  • New!
Travel Radiologic Technologist I

Travel Radiologic Technologist I

Aequor AlliedNeptune City, NJ, US
Full-time
Aequor Allied is seeking a travel Radiology Technologist for a travel job in Neptune, New Jersey.Job Description & Requirements. Pay package is based on 8 hour shifts and 40 hours per week (subj...Show moreLast updated: 12 hours ago
  • Promoted
Senior Blockchain Security Engineer

Senior Blockchain Security Engineer

GeminiNew York, NY, United States
Full-time
Gemini is a global crypto and Web3 platform founded by Cameron and Tyler Winklevoss in 2014, offering a wide range of simple, reliable, and secure crypto products and services to individuals and in...Show moreLast updated: 2 days ago
  • Promoted
Sr. Controls Engineer

Sr. Controls Engineer

JobotPaterson, NJ, US
Full-time
This Jobot Job is hosted by : Nick Strebig.Are you a fit? Easy Apply now by clicking the "Apply Now" buttonand sending us your resume. Salary : $100,000 - $160,000 per year.Based in New Jers...Show moreLast updated: 30+ days ago
  • Promoted
Senior Platform Security Engineer

Senior Platform Security Engineer

VercelNew York, NY, United States
Full-time
Vercel gives developers the tools and cloud infrastructure to build, scale, and secure a faster, more personalized web.AI SDK, Vercel helps customers like Ramp, Supreme, PayPal, and Under Armour bu...Show moreLast updated: 30+ days ago
Security Operations Engineer (Threat Detection & Penetration Testing)

Security Operations Engineer (Threat Detection & Penetration Testing)

Bask HealthNew York, NY, US
Full-time
Quick Apply
You will be leveraging your security operations experience to analyze and respond to security notifications, events, and inquiries. You will be performing initial triage of potential security incide...Show moreLast updated: 30+ days ago
  • Promoted
Regional Security Trainer -SORA Instructor

Regional Security Trainer -SORA Instructor

Allied UniversalNew Brunswick, NJ, US
Full-time
Allied Universal®, North America's leading security and facility services company, offers rewarding careers that provide you a sense of purpose. While working in a dynamic, welcoming, and co...Show moreLast updated: 5 days ago
  • Promoted
Cyber Security Architect

Cyber Security Architect

Wakefern Food Corp.Edison, NJ, US
Full-time
The Security Architect main role is to design, implement, and oversee our cybersecurity strategy, ensuring robust protection against evolving threats. The ideal candidate will have 7-10 years of exp...Show moreLast updated: 19 days ago
Cyber Security Engineer

Cyber Security Engineer

Hatch Global SearchMarlboro Township, New Jersey, .US
Full-time
Quick Apply
Principal Cyber Security Engineer.Principal Cyber Security Engineer.Monmouth County, NJ based client.This senior-level position requires deep technical knowledge and advanced problem-solving skills...Show moreLast updated: 30+ days ago
Security Engineering Lead

Security Engineering Lead

FlexTradeGreat Neck, NY, US
Full-time
Software Company headquartered in Great Neck, New York.We are celebrating 26 years as an industry pioneer and a global leader in broker-neutral trading platforms for equities, foreign exchange, opt...Show moreLast updated: 30+ days ago
  • Promoted
  • New!
Market Research Contributor

Market Research Contributor

Prime InsightsSayreville, NJ, US
Full-time
Join thousands of members already earning with top-paying surveys and offers.Get started today and enjoy competitive rewards, fast payouts with no waiting periods, and the flexibility to participat...Show moreLast updated: 1 hour ago
  • Promoted
Retail Security Systems Manager

Retail Security Systems Manager

Mavis TireWhite Plains, NY, US
Full-time
In this role, you'll be responsible for the full lifecycle management of our proprietary alarm system.We're a highly technical company that monitors our own systems, so you won't be dealing with th...Show moreLast updated: 19 days ago
  • Promoted
Security Engineer, Product Security

Security Engineer, Product Security

Scale AINew York, NY, United States
Full-time
We are seeking a highly technical Security Engineer to join our Product Security team.This role is integral to ensuring the security and integrity of our products and services.You will conduct in-d...Show moreLast updated: 30+ days ago
  • Promoted
Stroke Neurologist

Stroke Neurologist

Hackensack Meridian HealthNeptune, US
Full-time +1
Jersey Shore University Medical Center.The Department of Neurology at Jersey Shore University Medical Center (JSUMC), a major academic medical center within the Hackensack Meridian Health system, i...Show moreLast updated: 30+ days ago
  • Promoted
Network Engineer I

Network Engineer I

Tech Providers Inc.Lincroft, NJ, US
Temporary
Provide network / telecom support.Evaluate the network environment as client prepares to move to Colleague SaaS.Assist with firewall and other network layer configurations to ensure smooth operations...Show moreLast updated: 20 days ago
  • Promoted
AI Platform Security Engineer

AI Platform Security Engineer

Menlo VenturesNew York, NY, United States
Full-time
Anthropic’s mission is to create reliable, interpretable, and steerable AI systems.We want AI to be safe and beneficial for our users and for society as a whole. Our team is a quickly growing group ...Show moreLast updated: 24 days ago
  • Promoted
Senior Software Security Engineer

Senior Software Security Engineer

AnthropicNew York, NY, United States
Full-time
Anthropic’s mission is to create reliable, interpretable, and steerable AI systems.We want AI to be safe and beneficial for our users and for society as a whole. Our team is a quickly growing group ...Show moreLast updated: 30+ days ago