Proofpoint Logo

Proofpoint

Threat Detection Engineer

Posted An Hour Ago
Be an Early Applicant
In-Office or Remote
3 Locations
102K-214K Annually
Mid level
In-Office or Remote
3 Locations
102K-214K Annually
Mid level
The Threat Detection Engineer will evaluate and support the Threat Analysis environment, analyze needs for internal tools, and assist in researching threats such as malware and vulnerabilities.
The summary above was generated by AI

About Us:

 

Proofpoint is a global leader in human- and agent-centric cybersecurity. We protect how people, data, and AI agents connect across email, cloud, and collaboration tools. Over 80 of the Fortune 100, 10,000 large enterprises, and millions of smaller organizations trust Proofpoint to stop threats, prevent data loss, and build resilience across their people and AI workflows. Our mission is simple: safeguard the digital world and empower people to work securely and confidently. Join us in our pursuit to defend data and protect people.

How We Work:

At Proofpoint you’ll be part of a global team that breaks barriers to redefine cybersecurity guided by our BRAVE core values: 

Bold in how we dream and innovate

Responsive to feedback, challenges and opportunities

Accountable for results and best in class outcomes

Visionary in future focused problem-solving

Exceptional in execution and impact

The Proofpoint Threat Research team—including Emerging Threats—investigates and creates protective measures against advanced malware and intrusion techniques used by cybercriminal and nation-state actors. To do this effectively, researchers rely on innovative tooling, scalable infrastructure, and hygienic analysis environments. This role focuses on building and maintaining those systems.
Your day-to-day tasks:
Evaluate and support changes to our Threat Analysis environment
Analyze needs and create and support internal tools where appropriate
Support a team researching new and past threats, including malware, exploit kits, and vulnerabilities
What you bring to the team:
Experience with network traffic inspection tools, such as Wireshark, tcpdump, Moloch, etc.
Familiarity with writing signatures for the Snort or Suricata IDS platforms.
Familiarity with virtualization technologies, such as VMware products, VirtualBox, KVM, etc.
Experience with one or more scripting languages. Lua and Python proficiency preferred.
Experience with regular expressions/PCRE.
Creativity, enthusiasm for the network threat space, and a willingness to collaborate with the team.
Must be able to work under broad strategic guidance.
Specific technical areas of need:
Experience building web applications (React preferred)
RESTful API design and implementation
Database experience (PostgreSQL, ES, or MongoDB)
Data pipeline and ETL experience
Experience with containerization (Docker, Kubernetes)
This is a detection and solution engineering role at the intersection of threat research, detection engineering, and platform development. You’ll enable researchers to move faster, see more, and detect better by creating and maintaining tools to help them help each other and our customers.
#LI-remote

Why Proofpoint?

At Proofpoint, we believe that an exceptional career experience includes a comprehensive compensation and benefits package. Here are just a few reasons you’ll love working with us:

  • Competitive compensation

  • Comprehensive benefits

  • Career success on your terms

  • Flexible work environment

  • Annual wellness and community outreach days

  • Always on recognition for your contributions

  • Global collaboration and networking opportunities

 

Our Culture:

Our culture is rooted in values that inspire belonging, empower purpose and drive success-every day, for everyone.

We encourage applications from individuals of all backgrounds, experiences, and perspectives. If you need accommodation during the application or interview process, please reach out to [email protected].


How to Apply

Interested? Submit your application along with any supporting information- we can’t wait to hear from you!

Consistent with Proofpoint values and applicable law, we provide the following information to promote pay transparency and equity. Our compensation reflects the cost of labor across several U.S. geographic markets, and we pay differently based on those defined markets as set out below. Pay within these ranges varies and depends on job-related knowledge, skills, and experience. The actual offer will be based on the individual candidate. The range provided may represent a candidate range and may not reflect the full range for an individual tenured employee. This role may be eligible for variable compensation and/or equity. We offer a competitive benefits package, including flexible time off, a comprehensive well-being program with two paid Wellbeing Days and two paid Volunteer Days per year, plus a three-week Work from Anywhere option.

Base Pay Ranges:

SF Bay Area, New York City Metro Area:

Base Pay Range: 136,200.00 - 214,005.00 USD

California (excludes SF Bay Area), Colorado, Connecticut, Illinois, Washington DC Metro, Maryland, Massachusetts, New Jersey, Texas, Washington, Virginia, and Alaska:

Base Pay Range: 112,700.00 - 177,100.00 USD

All other cities and states excluding those listed above:

Base Pay Range: 101,600.00 - 159,720.00 USD

Similar Jobs

Yesterday
Remote
US
Senior level
Senior level
Artificial Intelligence • Cloud • Security • Software
The Threat Detection Engineer role involves analyzing SaaS security data, investigating incidents, developing detection strategies, and enhancing alert accuracy by minimizing false positives, while staying informed on cybersecurity trends.
Top Skills: ChronicleClickhouseSentinelSplunkSQL
9 Days Ago
Remote
USA
100K-120K Annually
Mid level
100K-120K Annually
Mid level
Security • Cybersecurity
As a Cyber Threat Detection & Response Engineer, you'll perform threat hunts, create detection rules, analyze logs, collaborate with teams, and mentor juniors.
Top Skills: CrowdstrikeEdr/XdrElasticMitre Att&CkPowershellPythonSentineloneSiems
7 Days Ago
Remote or Hybrid
US
Senior level
Senior level
Mobile • Security • Software • Cybersecurity
Design and maintain datasets, build and evaluate domain-specific ML and vision-language models for real-time privileged access threat detection; deploy and optimize Python/Docker inference services integrated with WebSocket/WebRTC and protocol-level interfaces; monitor and document production models.
Top Skills: AWSAws BedrockAzureClaudeDatabase ProtocolsDockerGCPGeminiGitGptGraph Data StructuresHugging FaceLlm FrameworksPythonQwenRdpSshVision-Language ModelsVncWebrtcWebsocket

What you need to know about the Los Angeles Tech Scene

Los Angeles is a global leader in entertainment, so it’s no surprise that many of the biggest players in streaming, digital media and game development call the city home. But the city boasts plenty of non-entertainment innovation as well, with tech companies spanning verticals like AI, fintech, e-commerce and biotech. With major universities like Caltech, UCLA, USC and the nearby UC Irvine, the city has a steady supply of top-flight tech and engineering talent — not counting the graduates flocking to Los Angeles from across the world to enjoy its beaches, culture and year-round temperate climate.

Key Facts About Los Angeles Tech

  • Number of Tech Workers: 375,800; 5.5% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Snap, Netflix, SpaceX, Disney, Google
  • Key Industries: Artificial intelligence, adtech, media, software, game development
  • Funding Landscape: $11.6 billion in venture capital funding in 2024 (Pitchbook)
  • Notable Investors: Strong Ventures, Fifth Wall, Upfront Ventures, Mucker Capital, Kittyhawk Ventures
  • Research Centers and Universities: California Institute of Technology, UCLA, University of Southern California, UC Irvine, Pepperdine, California Institute for Immunology and Immunotherapy, Center for Quantum Science and Engineering

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account