Enable job alerts via email!

Staff Security Research Engineer

Proofpoint

Canada

Remote

CAD 148,000 - 286,000

Full time

Today
Be an early applicant

Job summary

A cybersecurity leader is seeking a Staff Security Research Engineer to design and develop innovative software solutions to counteract threats. This role involves analyzing the security landscape, collaborating with researchers, and developing automation scripts. Ideal candidates should have a strong background in Python, network traffic analysis, and web automation, with the opportunity to work in a flexible remote environment.

Benefits

Competitive compensation
Comprehensive benefits
Flexible work environment
Learning & Development opportunities

Qualifications

  • Passion for threat research and understanding of security landscape.
  • Ability to write reliable Python code for monitoring performance.
  • Willingness to work independently and collaboratively.

Responsibilities

  • Design and develop software solutions using Python.
  • Modify web-based UI for internal tools.
  • Analyze and reverse engineer JavaScript related to threats.

Skills

Threat research
Python programming
Web browser automation
Network traffic analysis

Tools

Docker
WebDriver
IDA Pro
Job description
Overview

About Us: We are the leader in human-centric cybersecurity. Half a million customers, including 87 of the Fortune 100, rely on Proofpoint to protect their organizations. We’re driven by a mission to stay ahead of bad actors and safeguard the digital world. Join us in our pursuit to defend data and protect people.

How We Work: At Proofpoint, you’ll be part of a global team that breaks barriers to redefine cybersecurity, guided by our BRAVE core values: Bold in how we dream and innovate, Responsive to feedback, challenges, and opportunities, Accountable for results and best-in-class outcomes, Visionary in future-focused problem-solving, Exceptional in execution and impact.

Corporate Overview

Proofpoint is a leading cybersecurity company protecting organizations’ greatest assets and biggest risks: vulnerabilities in people. With an integrated suite of cloud-based solutions, Proofpoint helps companies around the world stop targeted threats, safeguard their data, and make their users more resilient against cyber-attacks. Leading organizations of all sizes, including more than half of the Fortune 1000, rely on Proofpoint for people-centric security and compliance solutions mitigating their most critical risks across email, the cloud, social media, and the web. We are singularly devoted to helping our customers protect their greatest assets and biggest security risk: their people. That’s why we’re a leader in next-generation cybersecurity. Protection Starts with People.

Role: Staff Security Research Engineer

Your day-to-day

  • Design and develop software using a variety of languages, primarily Python, with little external guidance, while providing technical leadership to guide other software engineers on the team
  • Modify existing web-based UI for internal tools to maintain and extend the sandbox submission and report UI for Proofpoint threat researchers
  • Develop low-level interactions with the OS in C or C++ as needed
  • Develop and maintain web browser interaction capabilities using Chrome WebDriver
  • Analyze and reverse engineer JavaScript that fingerprints web browser artifacts to identify sandbox browsers or instrumentation; innovate solutions to defeat those checks
  • Familiarity with analyzing web front-end and the Document Object Model (DOM)
  • Develop and maintain software for processing network traffic, including TLS decryption and processing PCAP files
  • Collaborate with threat analysts and detection engineers who research threat actors and write detection rules for the systems you develop
  • As needed, create new detection languages and systems to allow threat researchers to develop detection rules
  • Add features to existing threat detection languages for greater flexibility in automating interactions with websites and detecting threat patterns
  • Incorporate AI Large Language Models where appropriate to enhance threat detection pipelines and support evasion countermeasures discussions
  • Design and develop automation pipelines to turn manual tasks into automated scripts
  • Stay abreast of a constantly evolving threat landscape
  • Understand the latest tactics, techniques, and procedures used by threat actors to bypass detection environments, especially URL sandbox fingerprinting, detection, and evasion techniques
  • Provide expert assistance to threat researchers and analysts as they analyze phishing websites, threat detection evasion techniques, and security research or red team demonstrations
  • Reverse engineering malware executable files for Windows as needed to support sandbox countermeasure development (note: primary malware reverse engineering responsibilities rest on other roles and are not expected regularly for this role)
  • Apply critical thinking to identify the most efficient and effective way to mitigate threats and evasions
  • Work effectively as part of a remote team using chat, video, and conference calls
  • Collaborate with other engineering teams to define requirements for continuous improvement of detection capabilities

What you bring to the team

As a Security Research Engineer on Proofpoint’s Threat Research team, you’ll be part of an amazing, collaborative, industry-leading team focused on tracking threat actors, malware, phishing, and TTPs and responding to the quickly changing threat landscape with innovative software that detects and prevents threats from reaching Proofpoint customers. If you enjoy keeping abreast of and analyzing attacker techniques, malware and phishing campaigns, and using that knowledge to counteract those threats with innovative software solutions, then this is the role for you.

  • A passion for threat research and a well-rounded yet deep understanding of the security threat landscape and actor TTPs, especially understanding how to develop countermeasures for threat actor evasions and sandbox detection techniques
  • Ability to write production-grade, reliable Python code with instrumentation that supports observability and monitoring of performance and errors
  • Experience developing software using Docker containers
  • Experience developing web browser automation
  • Experience analyzing network traffic for threat detection and a solid understanding of TLS, HTTP, and other network protocols used by malware
  • Willing and able to work independently and collaboratively as part of a distributed team of security researchers
  • Ability to perform the above in a fully remote work environment

The following skills and experience are nice to have, but candidates lacking them should still apply:

  • Experience with C and C++ is a plus
  • Experience developing Windows API hooks and researching undocumented Windows API internal functions is a plus
  • Experience writing malware behavior signatures
  • Experience analyzing malware with a debugger and willingness to learn is a plus
  • Experience statically reverse engineering malware using IDA Pro, Ghidra, Binary Ninja, or similar tools is a plus, though not required
  • Ability to interpret the forensic output of dynamic analysis (sandbox) environments
  • Experience with various publicly-available malware sandboxes (e.g., Cuckoo, Joe Sandbox, Any Run, Triage)

Additional Information

  • Travel: 1% - 10% (flexible) mainly for team collaboration or security conferences
  • Location: Canada (Remote), US (Remote), Argentina (Remote), UK (Remote), Ireland (Remote), Germany (Remote), France (Remote), Switzerland (Remote)
  • Must be able to work during business hours local to your time-zone
Why Proofpoint

As a customer-focused and driven-to-win organization with leading edge products, there are many exciting reasons to join the Proofpoint team. We believe in hiring the best the brightest and cultivating a culture of collaboration and appreciation. As we continue to grow and expand globally, we understand that hiring the right people and developing great teams is key to our success. We are a multinational company with locations in many countries, with each location contributing to Proofpoint’s amazing culture. #LI-AN1

Why Proofpoint? At Proofpoint, we believe that an exceptional career experience includes a comprehensive compensation and benefits package. Here are just a few reasons you’ll love working with us:

  • Competitive compensation
  • Comprehensive benefits
  • Learning & Development: we offer programs including leadership and professional development workshops, stretch project assignments, and mentoring opportunities
  • Flexible work environment: Remote options, hybrid schedules, flexible hours
  • Annual wellness and community outreach days
  • Always on recognition for contributions
  • Global collaboration and networking opportunities

Our Culture

Our culture is rooted in values that inspire belonging, empower purpose and drive success—every day, for everyone. If you need accommodation during the application or interview process, please reach out to accessibility@proofpoint.com. How to Apply: Submit your application here at proofpoint.com/us/company/careers. We can’t wait to hear from you!

Consistent with Proofpoint values and applicable law, we provide information to promote pay transparency and equity. Our compensation reflects the cost of labor across several U.S. geographic markets, and we pay differently based on those defined markets. The actual offer will be based on the candidate. The ranges below may represent a candidate range and may not reflect the full range for a tenured employee. This role may be eligible for variable compensation and/or equity. We offer a comprehensive benefits package, including flexible time off, a well-being program with two paid Wellbeing Days and two paid Volunteer Days per year, plus a three-week Work from Anywhere option.

Base Pay Ranges:

  • SF Bay Area, New York City Metro Area: Base Pay Range 194,475.00 - 285,230.00 USD
  • California (excludes SF Bay Area), Colorado, Connecticut, Illinois, Washington DC Metro, Maryland, Massachusetts, New Jersey, Texas, Washington, Virginia, and Alaska: Base Pay Range 162,375.00 - 238,150.00 USD
  • All other cities and states excluding those listed above: Base Pay Range 148,425.00 - 217,690.00 USD
Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.