Staff Information Security Engineer - Threat Defense & Automation

Posted Yesterday
Be an Early Applicant
2 Locations
In-Office
137K-275K Annually
Expert/Leader
Security • Cybersecurity
The Role
Serve as a Staff-level Level 3 escalation and incident commander for APTs, ransomware, insider and cloud compromises. Lead threat hunting across endpoint, network, identity, and cloud; operationalize threat intelligence into SIEM/EDR/SOAR detections; automate triage and response workflows; run post-incident reviews; mentor team members; and participate in a 24/7 on-call incident response rotation.
Summary Generated by Built In

About Us:

 

Proofpoint is a global leader in human- and agent-centric cybersecurity. We protect how people, data, and AI agents connect across email, cloud, and collaboration tools. Over 80 of the Fortune 100, 10,000 large enterprises, and millions of smaller organizations trust Proofpoint to stop threats, prevent data loss, and build resilience across their people and AI workflows. Our mission is simple: safeguard the digital world and empower people to work securely and confidently. Join us in our pursuit to defend data and protect people.

How We Work:

At Proofpoint you’ll be part of a global team that breaks barriers to redefine cybersecurity guided by our BRAVE core values: 

Bold in how we dream and innovate

Responsive to feedback, challenges and opportunities

Accountable for results and best in class outcomes

Visionary in future focused problem-solving

Exceptional in execution and impact

About Proofpoint 

At Proofpoint, we are committed to protecting organizations and individuals from cyber threats through innovative security solutions. Our mission is to safeguard customers from advanced threats, phishing attacks, and data breaches through cutting-edge technology and a global team of security experts. 

Role Overview 

We’re seeking a Staff Information Security Engineer to help lead and evolve our Global Information Security Operation. In this role, you’ll shape incident response strategy, push forward advanced threat detection and defense capabilities, and take point on the most complex security investigations across the enterprise. 

As a Staff-level engineer, you will operate as a subject matter expert and technical leader, partnering across SOC, Threat Intelligence, Detection Engineering, and Security Engineering to improve Proofpoint’s ability to detect, respond to, and proactively hunt advanced threats. 
 
This role includes participation in a 24/7 on-call incident response rotation. 

Location: This is a hybrid role based in our Draper, UT or Sunnyvale, CA office 4 days a week.

Key Responsibilities 

  • Serve as a Level 3 / Staff escalation point for high-severity incidents. 

  • Lead investigations into APTs, ransomware, insider threats, and cloud compromises. 

  • Act as incident commander and coordinate response efforts. 

  • Participate in 24/7 on-call incident response. 

  • Lead threat hunting across endpoint, network, identity, and cloud. 

  • Operationalize threat intelligence into detections and response. 

  • Design and improve detections across SIEM, EDR, and SOAR. 

  • Automate incident triage and response workflows. 

  • Drive post-incident reviews and continuous improvement. 

  • Mentor team members and influence security strategy. 

Required Qualifications 

  • 12+ years in Incident Response, DFIR, Threat Hunting, or Security Operations. 

  • Deep expertise in incident response, threat hunting, and threat intelligence. 

  • Strong knowledge of MITRE ATT&CK and adversary TTPs. 

  • Experience with SIEM, EDR, SOAR, and cloud security. 

  • Scripting experience (Python, PowerShell, or Bash). 

  • Strong communication and leadership skills. 

  • US Citizen. 

Preferred Qualifications 

  • Experience building threat hunting or detection programs. 

  • Background in threat intelligence or red/purple teaming. 

  • Certifications such as GCFA, GCIH, CISSP, CISM, OSCP. 

#LI-AN2

Why Proofpoint?

At Proofpoint, we believe that an exceptional career experience includes a comprehensive compensation and benefits package. Here are just a few reasons you’ll love working with us:

  • Competitive compensation

  • Comprehensive benefits

  • Career success on your terms

  • Flexible work environment

  • Annual wellness and community outreach days

  • Always on recognition for your contributions

  • Global collaboration and networking opportunities

 

Our Culture:

Our culture is rooted in values that inspire belonging, empower purpose and drive success-every day, for everyone.

We encourage applications from individuals of all backgrounds, experiences, and perspectives. If you need accommodation during the application or interview process, please reach out to [email protected].


How to Apply

Interested? Submit your application along with any supporting information- we can’t wait to hear from you!

Consistent with Proofpoint values and applicable law, we provide the following information to promote pay transparency and equity. Our compensation reflects the cost of labor across several U.S. geographic markets, and we pay differently based on those defined markets as set out below. Pay within these ranges varies and depends on job-related knowledge, skills, and experience. The actual offer will be based on the individual candidate. The range provided may represent a candidate range and may not reflect the full range for an individual tenured employee. This role may be eligible for variable compensation and/or equity. We offer a competitive benefits package, including flexible time off, a comprehensive well-being program with two paid Wellbeing Days and two paid Volunteer Days per year, plus a three-week Work from Anywhere option.

Base Pay Ranges:

SF Bay Area, New York City Metro Area:

Base Pay Range: 187,700.00 - 275,275.00 USD

California (excludes SF Bay Area), Colorado, Connecticut, Illinois, Washington DC Metro, Maryland, Massachusetts, New Jersey, Texas, Washington, Virginia, and Alaska:

Base Pay Range: 151,000.00 - 221,430.00 USD

All other cities and states excluding those listed above:

Base Pay Range: 137,000.00 - 200,915.00 USD

Skills Required

  • 12+ years in Incident Response, DFIR, Threat Hunting, or Security Operations.
  • Deep expertise in incident response, threat hunting, and threat intelligence.
  • Strong knowledge of MITRE ATT&CK and adversary TTPs.
  • Experience with SIEM, EDR, SOAR, and cloud security.
  • Scripting experience (Python, PowerShell, or Bash).
  • Strong communication and leadership skills.
  • US Citizen.
  • Participate in 24/7 on-call incident response rotation.
  • Experience building threat hunting or detection programs.
  • Background in threat intelligence or red/purple teaming.
  • Certifications such as GCFA, GCIH, CISSP, CISM, OSCP.

Proofpoint Compensation & Benefits Highlights

The following summarizes recurring compensation and benefits themes identified from responses generated by popular LLMs to common candidate questions about Proofpoint and has not been reviewed or approved by Proofpoint.

  • Healthcare Strength Healthcare coverage spans medical, dental, vision, life, and disability, complemented by global physical, mental, and financial health programs. Wellbeing resources such as mindfulness, resilience, and meditation courses are explicitly highlighted.
  • Leave & Time Off Breadth Time-off provisions include PTO, paid holidays and sick days, with parental and family medical leave available. Added flexibility appears in wellness days, a hybrid-first model, and limited work-from-anywhere periods.
  • Fair & Transparent Compensation Pay is considered competitive in many roles and settings, with external recognition indicating strong standing relative to peers. Feedback suggests employees in several departments view compensation favorably when considering base, bonus, and benefits together.

Proofpoint Insights

Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: Sunnyvale, CA
3,780 Employees
Year Founded: 2002

What We Do

We provide the most effective cybersecurity and compliance solutions to protect people on every channel including email, the web, the cloud, and social media.

Similar Jobs

Applied Systems Logo Applied Systems

Director, Product Marketing - Carrier

Cloud • Insurance • Payments • Software • Business Intelligence • App development • Big Data Analytics
Remote or Hybrid
United States
3079 Employees
150K-180K Annually

Liberty Mutual Insurance Logo Liberty Mutual Insurance

Inside Sales Representative

Artificial Intelligence • Fintech • Insurance • Marketing Tech • Software • Analytics
Remote or Hybrid
11 Locations
40000 Employees
45K-100K Annually

Identity Digital Logo Identity Digital

Staff Devops Engineer

Consumer Web • eCommerce • Internet of Things
Remote or Hybrid
United States
240 Employees
175K-220K Annually

MetLife Logo MetLife

Senior Consultant

Fintech • Information Technology • Insurance • Financial Services • Big Data Analytics
Remote or Hybrid
United States
43000 Employees
121K-149K Annually

Similar Companies Hiring

Credal.ai Thumbnail
Software • Security • Productivity • Machine Learning • Artificial Intelligence
Brooklyn, NY
Milestone Systems Thumbnail
Artificial Intelligence • Security • Software • Analytics • Big Data Analytics
Lake Oswego, OR
1500 Employees
NODA AI Thumbnail
Artificial Intelligence • Information Technology • Software • Cybersecurity
Sydney, AU
54 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account