Logo for Tessian

Threat Detection Engineer

Roles & Responsibilities

  • Experience with network traffic inspection tools (Wireshark, tcpdump, Moloch, etc.)
  • Familiarity with writing signatures for Snort or Suricata IDS platforms
  • Experience with virtualization technologies (VMware, VirtualBox, KVM) and containerization (Docker, Kubernetes)
  • Proficiency in scripting languages (Lua and Python) and regular expressions/PCRE

Requirements:

  • Evaluate and support changes to the Threat Analysis environment
  • Analyze needs and create and support internal tools where appropriate
  • Support a team researching new and past threats, including malware, exploit kits, and vulnerabilities
  • Build and maintain tools and infrastructure to enable researchers to move faster and detect better

Job description

About Us:

 

Proofpoint is a global leader in human- and agent-centric cybersecurity. We protect how people, data, and AI agents connect across email, cloud, and collaboration tools. Over 80 of the Fortune 100, 10,000 large enterprises, and millions of smaller organizations trust Proofpoint to stop threats, prevent data loss, and build resilience across their people and AI workflows. Our mission is simple: safeguard the digital world and empower people to work securely and confidently. Join us in our pursuit to defend data and protect people.

How We Work:

At Proofpoint you’ll be part of a global team that breaks barriers to redefine cybersecurity guided by our BRAVE core values: 

Bold in how we dream and innovate

Responsive to feedback, challenges and opportunities

Accountable for results and best in class outcomes

Visionary in future focused problem-solving

Exceptional in execution and impact

The Proofpoint Threat Research team—including Emerging Threats—investigates and creates protective measures against advanced malware and intrusion techniques used by cybercriminal and nation-state actors. To do this effectively, researchers rely on innovative tooling, scalable infrastructure, and hygienic analysis environments. This role focuses on building and maintaining those systems.


Your day-to-day tasks:
Evaluate and support changes to our Threat Analysis environment
Analyze needs and create and support internal tools where appropriate
Support a team researching new and past threats, including malware, exploit kits, and vulnerabilities

What you bring to the team:
Experience with network traffic inspection tools, such as Wireshark, tcpdump, Moloch, etc.
Familiarity with writing signatures for the Snort or Suricata IDS platforms.
Familiarity with virtualization technologies, such as VMware products, VirtualBox, KVM, etc.
Experience with one or more scripting languages. Lua and Python proficiency preferred.
Experience with regular expressions/PCRE.
Creativity, enthusiasm for the network threat space, and a willingness to collaborate with the team.
Must be able to work under broad strategic guidance.

Specific technical areas of need:

Experience building web applications (React preferred)
RESTful API design and implementation
Database experience (PostgreSQL, ES, or MongoDB)
Data pipeline and ETL experience
Experience with containerization (Docker, Kubernetes)

This is a detection and solution engineering role at the intersection of threat research, detection engineering, and platform development. You’ll enable researchers to move faster, see more, and detect better by creating and maintaining tools to help them help each other and our customers.
#LI-remote

Why Proofpoint?

At Proofpoint, we believe that an exceptional career experience includes a comprehensive compensation and benefits package. Here are just a few reasons you’ll love working with us:

  • Competitive compensation

  • Comprehensive benefits

  • Career success on your terms

  • Flexible work environment

  • Annual wellness and community outreach days

  • Always on recognition for your contributions

  • Global collaboration and networking opportunities

 

Our Culture:

Our culture is rooted in values that inspire belonging, empower purpose and drive success-every day, for everyone.

We encourage applications from individuals of all backgrounds, experiences, and perspectives. If you need accommodation during the application or interview process, please reach out to accessibility@proofpoint.com.

 

How to Apply

Interested? Submit your application along with any supporting information- we can’t wait to hear from you!

Consistent with Proofpoint values and applicable law, we provide the following information to promote pay transparency and equity. Our compensation reflects the cost of labor across several U.S. geographic markets, and we pay differently based on those defined markets as set out below. Pay within these ranges varies and depends on job-related knowledge, skills, and experience. The actual offer will be based on the individual candidate. The range provided may represent a candidate range and may not reflect the full range for an individual tenured employee. This role may be eligible for variable compensation and/or equity. We offer a competitive benefits package, including flexible time off, a comprehensive well-being program with two paid Wellbeing Days and two paid Volunteer Days per year, plus a three-week Work from Anywhere option.

Base Pay Ranges:

SF Bay Area, New York City Metro Area:

Base Pay Range: 136,200.00 - 214,005.00 USD

California (excludes SF Bay Area), Colorado, Connecticut, Illinois, Washington DC Metro, Maryland, Massachusetts, New Jersey, Texas, Washington, Virginia, and Alaska:

Base Pay Range: 112,700.00 - 177,100.00 USD

All other cities and states excluding those listed above:

Base Pay Range: 101,600.00 - 159,720.00 USD

Cyber Threat Intelligence Analyst Related jobs

Other jobs at Tessian

We help you get seen. Not ignored.

We help you get seen faster — by the right people.

🚀

Auto-Apply

We apply for you — automatically and instantly.

Save time, skip forms, and stay on top of every opportunity. Because you can't get seen if you're not in the race.

AI Match Feedback

Know your real match before you apply.

Get a detailed AI assessment of your profile against each job posting. Because getting seen starts with passing the filters.

Upgrade to Premium. Apply smarter and get noticed.

Upgrade to Premium

Join thousands of professionals who got noticed and hired faster.