Staff Information Security Engineer - Threat Defense & Automation

Proofpoint Inc

Draper, UT

JOB DETAILS
SKILLS
Artificial Intelligence (AI), Artificial Intelligence (AI) Agents, Automation, Bash Scripting, CISM - Certified Information Security Manager, CISSP - Certified Information Systems Security Professional, Cloud Computing, Communication Skills, Computer Security, Continuous Improvement, GCFA - GIAC Certified Forensic Analyst, GCIH - GIAC Certified Incident Handler, Hunting, Incident Management, Incident Response, Information/Data Security (InfoSec), Internet Security, Leadership, Leading Edge Technology, Mentoring, On Call, Phishing, Problem Solving Skills, Python Programming/Scripting Language, Ransomware, Scripting (Scripting Languages), Security Attacks, Security Information and Event Management (SIEM), Technical Leadership, United States Citizen, Windows PowerShell
LOCATION
Draper, UT
POSTED
30+ days ago

About Us:

Proofpoint is a global leader in human- and agent-centric cybersecurity. We protect how people, data, and AI agents connect across email, cloud, and collaboration tools. Over 80 of the Fortune 100, 10,000 large enterprises, and millions of smaller organizations trust Proofpoint to stop threats, prevent data loss, and build resilience across their people and AI workflows. Our mission is simple: safeguard the digital world and empower people to work securely and confidently. Join us in our pursuit to defend data and protect people.

How We Work:

At Proofpoint youll be part of a global team that breaks barriers to redefine cybersecurity guided by our BRAVE core values:

  • Bold in how we dream and innovate
  • Responsive to feedback, challenges and opportunities
  • Accountable for results and best in class outcomes
  • Visionary in future focused problem-solving
  • Exceptional in execution and impact

About Proofpoint

At Proofpoint, we are committed to protecting organizations and individuals from cyber threats through innovative security solutions. Our mission is to safeguard customers from advanced threats, phishing attacks, and data breaches through cutting-edge technology and a global team of security experts.

Role Overview

Were seeking a Staff Information Security Engineer to help lead and evolve our Global Information Security Operation. In this role, youll shape incident response strategy, push forward advanced threat detection and defense capabilities, and take point on the most complex security investigations across the enterprise.

As a Staff-level engineer, you will operate as a subject matter expert and technical leader, partnering across SOC, Threat Intelligence, Detection Engineering, and Security Engineering to improve Proofpoints ability to detect, respond to, and proactively hunt advanced threats. This role includes participation in a 24/7 on-call incident response rotation.

Location: This is a hybrid role based in our Draper, UT or Sunnyvale, CA office 4 days a week.

Key Responsibilities

  • Serve as a Level 3 / Staff escalation point for high-severity incidents.
  • Lead investigations into APTs, ransomware, insider threats, and cloud compromises.
  • Act as incident commander and coordinate response efforts.
  • Participate in 24/7 on-call incident response.
  • Lead threat hunting across endpoint, network, identity, and cloud.
  • Operationalize threat intelligence into detections and response.
  • Design and improve detections across SIEM, EDR, and SOAR.
  • Automate incident triage and response workflows.
  • Drive post-incident reviews and continuous improvement.
  • Mentor team members and influence security strategy.

Required Qualifications

  • 12+ years in Incident Response, DFIR, Threat Hunting, or Security Operations.
  • Deep expertise in incident response, threat hunting, and threat intelligence.
  • Strong knowledge of MITRE ATT&CK and adversary TTPs.
  • Experience with SIEM, EDR, SOAR, and cloud security.
  • Scripting experience (Python, PowerShell, or Bash).
  • Strong communication and leadership skills.
  • US Citizen.

Preferred Qualifications

  • Experience building threat hunting or detection programs.
  • Background in threat intelligence or red/purple teaming.
  • Certifications such as GCFA, GCIH, CISSP, CISM, OSCP.

#LI-AN2

Why Proofpoint?

At Proofpoint, we believe that an exceptional career experience includes a comprehensive compensation and benefits package. Here are just a few reasons youll love working with us:

  • Competitive compensation
  • Comprehensive benefits
  • Career success on your terms
  • Flexible work environment
  • Annual wellness and community outreach days
  • Always on recognition for your contributions
  • Global collaboration and networking opportunities

Our Culture:

Our culture is rooted in values that inspire belonging, empower purpose and drive success-every day, for everyone.

We encourage applications from individuals of all backgrounds, experiences, and perspectives. If you need accommodation during the application or interview process, please reach out to accessibility@proofpoint.com.

How to Apply

Interested? Submit your application along with any supporting information- we cant wait to hear from you!

Consistent with Proofpoint values and applicable law, we provide the following information to promote pay transparency and equity. Our compensation reflects the cost of labor across several U.S. geographic markets, and we pay differently based on those defined markets as set out below. Pay within these ranges varies and depends on job-related knowledge, skills, and experience. The actual offer will be based on the individual candidate. The range provided may represent a candidate range and may not reflect the full range for an individual tenured employee. This role may be eligible for variable compensation and/or equity. We offer a competitive benefits package, including flexible time off, a comprehensive well-being program with two paid Wellbeing Days and two paid Volunteer Days per year, plus a three-week Work from Anywhere option.

Base Pay Ranges:

  • SF Bay Area, New York City Metro Area:
  • California (excludes SF Bay Area), Colorado, Connecticut, Illinois, Washington DC Metro, Maryland, Massachusetts, New Jersey, Texas, Washington, Virginia, and Alaska:
  • All other cities and states excluding those listed above:

About the Company

P

Proofpoint Inc

Proofpoint, Inc. (NASDAQ:PFPT) is a leading cybersecurity company that protects organizations’ greatest assets and biggest risks: their people. With an integrated suite of cloud-based solutions, Proofpoint helps customers around the world stop targeted threats, safeguard their data, and make their users more resilient against cyber attacks. Leading organizations of all sizes, including more than half of the Fortune 100, rely on Proofpoint to mitigate their most critical security and compliance risks across email, the cloud, social media, and the web. No one protects people, the data they create, and the digital channels they use more effectively than Proofpoint.

If you’re looking for a customer-focused, driven-to-win organization with leading-edge products, you’ll find many exciting reasons to join our team. We believe in hiring smart, motivated, problem-solvers to cultivate a culture of collaboration and appreciation. We are an international company with locations in North America, EMEA and APAC, with each location contributing to our culture.

COMPANY SIZE
2,500 to 4,999 employees
INDUSTRY
Computer/IT Services
EMPLOYEE BENEFITS
Performance Bonus, 401K, Employee Referral Program, Employee Events
FOUNDED
2002
WEBSITE
https://www.proofpoint.com