Full-Time

Staff Security Engineer

Threat Defense & Automation

Confirmed live in the last 24 hours

Proofpoint

Proofpoint

1,001-5,000 employees

Cybersecurity solutions for email and digital communication

Compensation Overview

$133k - $267.2k/yr

+ Variable Compensation + Equity

Senior, Expert

No H1B Sponsorship

Draper, UT, USA + 1 more

More locations: Sunnyvale, CA, USA

Must be a US Citizen.

US Citizenship Required

Category
Cybersecurity
IT & Security
Required Skills
PowerShell
Bash
Microsoft Azure
Python
AWS
Google Cloud Platform
Requirements
  • Extensive hands-on experience in Cybersecurity Incident Response or Security Operations.
  • Must be a US Citizen.
  • Strong background in SOC operations, SIEM, threat intelligence, and digital forensics. Expertise in investigating malware, phishing, web attacks, insider threats, and advanced persistent threats (APTs).
  • Experience working with security automation and orchestration tools (SOAR).
  • Familiarity with scripting languages such as Python, PowerShell, or Bash for security automation.
  • Strong understanding of MITRE ATT&CK framework, TTPs (Tactics, Techniques, and Procedures), and cyber kill chain.
  • Hands-on experience with cloud security (AWS, Azure, GCP) is a plus.
Responsibilities
  • Act as the Level 3 escalation point for high-severity security incidents within the global 24/7 SOC.
  • Lead complex investigations into advanced cyber threats, including malware outbreaks, targeted attacks, and persistent threats.
  • Provide expert-level guidance on containment, mitigation, and remediation strategies.
  • Proactively hunt for hidden threats within enterprise networks using threat intelligence and behavioral analytics.
  • Develop and refine threat detection rules to improve SOC visibility.
  • Assess emerging threats and provide actionable recommendations to enhance security posture.
  • Design and implement automated workflows to enhance security event triage and response.
  • Leverage SOAR (Security Orchestration, Automation, and Response) platforms to streamline incident response.
  • Work with SIEM (Security Information and Event Management) tools to optimize log ingestion and alerting mechanisms.
  • Collaborate with security architects and engineers to enhance detection and response capabilities.
  • Perform root cause analysis on security incidents and recommend improvements to security controls.
  • Stay updated on industry best practices and evolving attack techniques to ensure effective defenses.
Desired Qualifications
  • Certifications such as GCIH, GCFA, CISSP, CISM, or OSCP are highly desirable.

Proofpoint specializes in cybersecurity, focusing on protecting organizations from advanced threats and compliance risks. The company offers a range of solutions that secure email, social media, and other digital communication channels against cyber threats like phishing, malware, and ransomware. Its products work by utilizing advanced technologies such as machine learning and artificial intelligence to detect and respond to threats in real-time. Unlike many competitors, Proofpoint provides subscription-based services that allow clients to select service tiers tailored to their needs, along with professional services for threat assessments and incident response. The goal of Proofpoint is to enhance the cybersecurity defenses of its clients, making it easier for them to integrate these solutions into their existing IT systems.

Company Size

1,001-5,000

Company Stage

IPO

Headquarters

Sunnyvale, California

Founded

2002

Simplify Jobs

Simplify's Take

What believers are saying

  • Acquisitions like Tessian enhance AI-driven cybersecurity solutions for data loss prevention.
  • Growing demand for identity threat detection boosts Proofpoint's market position.
  • Thoma Bravo's acquisition indicates strong market confidence in Proofpoint's growth potential.

What critics are saying

  • Integration challenges from multiple acquisitions may disrupt service delivery.
  • Reliance on AI may leave clients vulnerable to evolving cyber threats.
  • Strategic shifts post-acquisition may not align with customer expectations.

What makes Proofpoint unique

  • Proofpoint leverages AI to enhance email and data protection solutions.
  • The company focuses on human-centric security, addressing risky user behaviors.
  • Proofpoint's acquisitions expand its capabilities in identity threat detection and response.

Help us improve and share your feedback! Did you find this helpful?

Benefits

Health, dental, & vision

Employer-paid life, disability & employee assistance programs

Unlimited PTO

401K match

Remote work option

Growth & Insights and Company News

Headcount

6 month growth

0%

1 year growth

0%

2 year growth

0%
Business Wire
May 22nd, 2025
Proofpoint Acquires Nuclei for Enhanced Communications Capture and Archiving Across Modern Workspace

Proofpoint, Inc., a leading cybersecurity and compliance company, today announced the acquisition of Nuclei, Inc., a U.S.-based technology company specializi...

Proofpoint
May 15th, 2025
Proofpoint Signs Definitive Agreement to Acquire Hornetsecurity | Proofpoint US

Strategic acquisition marks significant milestone in advancing Proofpoint’s mission to deliver human-centric security solutions to businesses of all sizes across the globe Hornetsecurity will

CRN
Mar 2nd, 2025
Proofpoint Buys AI-Powered Data Protection Startup Dathena | CRN

Private equity firm Thoma Bravo took Proofpoint private through a $12.3 billion acquisition in August 2021 in what’s currently the second-largest cybersecurity acquisition of all time.

Business Wire
Oct 30th, 2024
Proofpoint Signs Definitive Agreement to Acquire Normalyze

Proofpoint Inc., a leading cybersecurity and compliance company, today announced it has entered into a definitive agreement to acquire Normalyze, a le

GlobeNewswire
Oct 30th, 2023
Proofpoint Signs Definitive Agreement To Acquire Tessian

SUNNYVALE, Calif., Oct. 30, 2023 (GLOBE NEWSWIRE) -- Proofpoint Inc ., a leading cybersecurity and compliance company, today announced it has entered into a definitive agreement to acquire Tessian , a leader in the use of advanced AI to automatically detect and guard against both accidental data loss and evolving email threats. The acquisition is expected to close in late 2023 to early 2024, subject to customary closing conditions, including any required regulatory approvals.Proofpoint protects organizations against social engineering attacks by applying award-winning AI and large language models (LLMs) to block threats and provide real-time threat insights. AI-based detection has proven to be notably effective in identifying threats targeting people, such as email fraud and supplier-based attacks, and preventing data loss due to negligent or malicious actions. With the acquisition of Tessian, Proofpoint will enhance its threat and information protection platforms by adding powerful layers of AI-powered defense that address risky user behaviors, including misdirected email and data exfiltration.Misdirected emails (sending emails to the wrong recipient) and mis-attached files continue to be a leading cause of compliance violations and accidental data loss for organizations according to Ponemon research : in 2022 alone, 65% of all data loss incidents occurred via email, and nearly two-thirds of organizations experienced data loss or exfiltration due to an employee mistake on email. As a result, it takes security teams 48 hours, on average, to detect and remediate a data loss and exfiltration incident caused by employee negligence.“Far too often, human errors with email lead to organizations putting their own and their customer’s data at risk, breaching industry and data protection regulations and losing mission-critical intellectual property,” said Darren Lee, executive vice president and general manager, Security Products and Services Group, Proofpoint