Threat Detection Engineer

Posted 11 Days Ago
4 Locations
In-Office or Remote
102K-214K Annually
Mid level
Security • Cybersecurity
The Role
The Threat Detection Engineer will evaluate and support the Threat Analysis environment, analyze needs for internal tools, and assist in researching threats such as malware and vulnerabilities.
Summary Generated by Built In

About Us:

 

Proofpoint is a global leader in human- and agent-centric cybersecurity. We protect how people, data, and AI agents connect across email, cloud, and collaboration tools. Over 80 of the Fortune 100, 10,000 large enterprises, and millions of smaller organizations trust Proofpoint to stop threats, prevent data loss, and build resilience across their people and AI workflows. Our mission is simple: safeguard the digital world and empower people to work securely and confidently. Join us in our pursuit to defend data and protect people.

How We Work:

At Proofpoint you’ll be part of a global team that breaks barriers to redefine cybersecurity guided by our BRAVE core values: 

Bold in how we dream and innovate

Responsive to feedback, challenges and opportunities

Accountable for results and best in class outcomes

Visionary in future focused problem-solving

Exceptional in execution and impact

The Proofpoint Threat Research team—including Emerging Threats—investigates and creates protective measures against advanced malware and intrusion techniques used by cybercriminal and nation-state actors. To do this effectively, researchers rely on innovative tooling, scalable infrastructure, and hygienic analysis environments. This role focuses on building and maintaining those systems.
Your day-to-day tasks:
Evaluate and support changes to our Threat Analysis environment
Analyze needs and create and support internal tools where appropriate
Support a team researching new and past threats, including malware, exploit kits, and vulnerabilities
What you bring to the team:
Experience with network traffic inspection tools, such as Wireshark, tcpdump, Moloch, etc.
Familiarity with virtualization technologies, such as VMware products, VirtualBox, KVM, etc.
Experience with one or more scripting languages. Lua and Python proficiency preferred.
Experience with regular expressions/PCRE.
Creativity, enthusiasm for the network threat space, and a willingness to collaborate with the team.
Must be able to work under broad strategic guidance.
Specific technical areas of need:
Experience building web applications (React preferred)
RESTful API design and implementation
Database experience (PostgreSQL, ES, or MongoDB)
Data pipeline and ETL experience
Experience with containerization (Docker, Kubernetes)
This is a detection and solution engineering role at the intersection of threat research, detection engineering, and platform development. You’ll enable researchers to move faster, see more, and detect better by creating and maintaining tools to help them help each other and our customers.
#LI-remote

Why Proofpoint?

At Proofpoint, we believe that an exceptional career experience includes a comprehensive compensation and benefits package. Here are just a few reasons you’ll love working with us:

  • Competitive compensation

  • Comprehensive benefits

  • Career success on your terms

  • Flexible work environment

  • Annual wellness and community outreach days

  • Always on recognition for your contributions

  • Global collaboration and networking opportunities

 

Our Culture:

Our culture is rooted in values that inspire belonging, empower purpose and drive success-every day, for everyone.

We encourage applications from individuals of all backgrounds, experiences, and perspectives. If you need accommodation during the application or interview process, please reach out to [email protected].


How to Apply

Interested? Submit your application along with any supporting information- we can’t wait to hear from you!

Consistent with Proofpoint values and applicable law, we provide the following information to promote pay transparency and equity. Our compensation reflects the cost of labor across several U.S. geographic markets, and we pay differently based on those defined markets as set out below. Pay within these ranges varies and depends on job-related knowledge, skills, and experience. The actual offer will be based on the individual candidate. The range provided may represent a candidate range and may not reflect the full range for an individual tenured employee. This role may be eligible for variable compensation and/or equity. We offer a competitive benefits package, including flexible time off, a comprehensive well-being program with two paid Wellbeing Days and two paid Volunteer Days per year, plus a three-week Work from Anywhere option.

Base Pay Ranges:

SF Bay Area, New York City Metro Area:

Base Pay Range: 136,200.00 - 214,005.00 USD

California (excludes SF Bay Area), Colorado, Connecticut, Illinois, Washington DC Metro, Maryland, Massachusetts, New Jersey, Texas, Washington, Virginia, and Alaska:

Base Pay Range: 112,700.00 - 177,100.00 USD

All other cities and states excluding those listed above:

Base Pay Range: 101,600.00 - 159,720.00 USD

Skills Required

  • Experience with network traffic inspection tools
  • Familiarity with writing signatures for IDS platforms
  • Experience with virtualization technologies
  • Experience with one or more scripting languages
  • Experience building web applications
  • RESTful API design and implementation
  • Database experience in PostgreSQL, ES, or MongoDB
  • Data pipeline and ETL experience
  • Experience with containerization

Proofpoint Compensation & Benefits Highlights

The following summarizes recurring compensation and benefits themes identified from responses generated by popular LLMs to common candidate questions about Proofpoint and has not been reviewed or approved by Proofpoint.

  • Healthcare Strength Healthcare coverage spans medical, dental, vision, life, and disability, complemented by global physical, mental, and financial health programs. Wellbeing resources such as mindfulness, resilience, and meditation courses are explicitly highlighted.
  • Leave & Time Off Breadth Time-off provisions include PTO, paid holidays and sick days, with parental and family medical leave available. Added flexibility appears in wellness days, a hybrid-first model, and limited work-from-anywhere periods.
  • Fair & Transparent Compensation Pay is considered competitive in many roles and settings, with external recognition indicating strong standing relative to peers. Feedback suggests employees in several departments view compensation favorably when considering base, bonus, and benefits together.

Proofpoint Insights

Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
Belfast
3,780 Employees
Year Founded: 2002

What We Do

We provide the most effective cybersecurity and compliance solutions to protect people on every channel including email, the web, the cloud, and social media.

Similar Jobs

Reco (reco.ai) Logo Reco (reco.ai)

Threat Detection Engineer

Artificial Intelligence • Cloud • Security • Software
Remote
US
167 Employees
Remote
USA
205 Employees
100K-120K Annually

Keeper Security, Inc. Logo Keeper Security, Inc.

Senior Machine Learning Engineer

Mobile • Security • Software • Cybersecurity
Remote or Hybrid
US
350 Employees

Similar Companies Hiring

Oso Thumbnail
Software • Security • Infrastructure as a Service (IaaS)
New York, New York
36 Employees
Credal.ai Thumbnail
Software • Security • Productivity • Machine Learning • Artificial Intelligence
Brooklyn, NY
Milestone Systems Thumbnail
Artificial Intelligence • Other • Security • Software • Analytics • Big Data Analytics
Lake Oswego, OR
1500 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account