Sr. Threat Research Engineer

1 week ago


Dublin, Ireland Proofpoint Full time

We are the leader in human-centric cybersecurity. Half a million customers, including 87 of the Fortune 100, rely on Proofpoint to protect their organizations. We’re driven by a mission to stay ahead of bad actors and safeguard the digital world. Join us in our pursuit to defend data and protect people.How We Work: At Proofpoint, you’ll be part of a global team that breaks barriers to redefine cybersecurity, guided by our BRAVE core values: Bold in how we dream and innovate, Responsive to feedback, challenges, and opportunities, Accountable for results and best-in-class outcomes, Visionary in future-focused problem-solving, Exceptional in execution and impact.**Corporate Overview**Proofpoint is a leading cybersecurity company protecting organizations’ greatest assets and biggest risks: vulnerabilities in people. With an integrated suite of cloud-based solutions, Proofpoint helps companies around the world stop targeted threats, safeguard their data, and make their users more resilient against cyber-attacks. Leading organizations of all sizes, including more than half of the Fortune 1000, rely on Proofpoint for people-centric security and compliance solutions mitigating their most critical risks across email, the cloud, social media, and the web. We are singularly devoted to helping our customers protect their greatest assets and biggest security risk: their people. That’s why we’re a leader in next-generation cybersecurity. Protection Starts with People.**The Role**You are a Senior CyberSecurity Analyst (email borne threats) or have a strong desire and a skill set to become oneWe are looking for a highly intelligent, analytical, driven person to join a dynamic group of people who are passionate about saving the world from the growing threat of e-mail borne threats: phishing, malware , BEC and spam. We are competing against a very active, creative, and motivated adversary who was credited as sending over 40 trillion spam/threat email messages last year alone If you are interested in helping us achieve our goal and rid the world of phishing, malware and spam, we definitely would like to speak with you. We offer a challenging environment that fosters creativity and rewards excellence. **Your day to day** * Member of a creative, enthusiastic, and geographically distributed team (in a 24/7/365 "follow the sun" model) that is responsible for identifying, parameterizing, and responding quickly to spam attacks levied against some of the world's largest organizations.* Analyze email messages reported by customers as well as work on large data sets in order to determine correct classification (spam, phishing, malware, BEC (Advanced Email Fraud), bulk, ham).* CONTENT DEVELOPMENT. Perform deep analyses of spam message headers & structures to identify novel spam features, and design various rules/signatures to detect those features and block email borne threats* Ad-hoc development of tools as necessary to aid/streamline analysis activities is a plus* As an Email Cybersecurity analyst, who has coding experience and skills - an opportunity to design and develop new PoCs threat detection system(s) based on your expertise or learn how to add this skill to your toolset.* Continue to develop and support existing Threat Detection PoCs based on the existing Threat Detection framework* Developing and maintaining Python applications/tools, writing clean and efficient code, debugging and troubleshooting issues, collaborating with cross-functional teams, and participating in code reviews. Knowledge of database systems is a plus* Be available in an rotating on-call basis to respond to develop signatures, that detect and block an emerging or an ongoing threat(s)* Help us define the landscape, prevalence, and evolution of messaging abuse, threats, and attacks by participating in future requirements definition discussions of our products.**What you bring to the team*** Knowledge of different types of email borne attack vectors, tools and tactics* In-depth knowledge of email borne threats: phishing, malware, BEC and spam. Ability to find and research suspicious patterns in URLs, domains, in conjunction with overall email structure (email headers and email context).* Ability to create detection signatures/rules (content development) based on observed suspicious patterns with experience of 2-4 or more years in the field.* General curiosity about the headers and structure of email messages.* General familiarity with how mail delivery works, knowledge of email security standards and protocols, such as SPF, DKIM, and DMARC, would be beneficial.* Practical knowledge (hands-on experience) with Regular Expressions* Minimum 2+ years hands-on experience with Python or a different programming language* Experience in one of Python frameworks (Django, Flask or Pandas)* Experience with data analysis, familiarity with cybersecurity best practices, and the ability to work with large datasets.* Familiarity with Unix environments and comfort with a range of Unix command line tools for manipulating and extracting content from text files is a must have* Familiarity and/or experience with LUA based detection signatures is a plus* Familiarity and/or experience with ClamAV and/or Yara and/or in-house developed framework allowing to research and create signature based detection on email borne threats based detection signatures is a plus* Willingness to play an important technical role* Demonstrated analytical and creative problem-solving abilities.* Ability to work independently yet fully integrate with worldwide, remote teams.* Can-do attitude with a focus on problem solving, product quality, and a strong desire to get the job done.* Requirements/Education and/or Equivalent Experience (including technical and non-technical capabilities)* BSCS or equivalent, or equivalent technical experience.**Why Proofpoint**As a customer focused and driven-to-win organization with leading edge products, there are many exciting reasons to join the Proofpoint team. We believe in hiring the best the brightest and cultivating a culture of collaboration and appreciation. As we continue to grow and expand globally, we understand that hiring the right people and developing great teams is key to our success We are a multi-national company with locations in many countries, with each location contributing to Proofpoint’s amazing culture #LI-PH1• Competitive compensation• Comprehensive benefits• Learning & Development: We are committed to the growth and development of our team members, offering a range of programs including leadership and professional development workshops, stretch project assignments, and mentoring opportunities to help employees reach their full potential.• Flexible work environment: [Remote options, hybrid schedules, flexible hours, etc.].• Annual wellness and community outreach days• Always on recognition for your contributions• Global collaboration and networking opportunitiesOur Culture:Our culture is rooted in values that inspire belonging, empower purpose and drive success-every day, for everyone. We encourage applications from individuals of all backgrounds, experiences, and perspectives. If you need accommodation during the application or interview process, please reach out to accessibility@proofpoint.com.. We can’t wait to hear from youFind your network, your allies, and your biggest fans. We know that work is simply better when you’re surrounded by people who inspire you—who share ideas, cheer you on, and genuinely want to see you succeed. That’s why we offer social circles, sponsored networks, and connection points across teams and time zones—to help you find your people, build your community, and thrive together.
#J-18808-Ljbffr



  • Dublin Pike, Ireland Amazon Full time

    Overview Sr. Security Intelligence Engineer, European Sovereign Cloud (ESC) Threat Intelligence team – Amazon. The role supports developing actionable intelligence on advanced cyber threats to AWS services and customers operating in the AWS European Sovereign Cloud. Responsibilities include analyzing actor TTPs, identifying new data sources, and...

  • Sr. Software Engineer

    4 weeks ago


    Dublin, Dublin City, Ireland CrowdStrike Full time

    OverviewSr. Software Engineer - Cloud Security (Remote) at CrowdStrike. CrowdStrike protects people, processes and technologies that drive modern organizations. We process almost 3 trillion events per day and continue to grow. We are seeking passionate engineers to help us revolutionize cloud threat detection and build the next generation of cloud...


  • Dublin, Dublin City, Ireland Workday Full time

    Join to apply for the Sr Associate Cybersecurity Engineer role at Workday2 days ago Be among the first 25 applicantsJoin to apply for the Sr Associate Cybersecurity Engineer role at WorkdayGet AI-powered advice on this job and more exclusive features.Your work days are brighter here.Your work days are brighter here.At Workday, it all began with a...


  • Dublin, Ireland Canonical Full time

    Get AI-powered advice on this job and more exclusive features.The Threat Intelligence Lead will own Canonical's threat intelligence strategy and execution, including understanding of which cyber threat actors are targeting Canonical, and the use of intelligence on Tactics, Techniques and Procedures (TTP) to better our products and internal cybersecurity...


  • Dublin Pike, Ireland Proofpoint Full time

    Staff Security Research Engineer As a Security Research Engineer on Proofpoint’s Threat Research team, you’ll be part of an amazing, collaborative, industry-leading team focused on tracking threat actors, malware, phishing, and TTPs and responding to the quickly changing threat landscape with innovative software that detects and prevents threats from...


  • Dublin, Ireland Huawei Ireland Research Center Full time

    Senior Research Engineer of Compute ArchitectureJoin to apply for theSenior Research Engineer of Compute Architecturerole atHuawei Ireland Research CenterSenior Research Engineer of Compute Architecture4 days ago Be among the first 25 applicantsJoin to apply for theSenior Research Engineer of Compute Architecturerole atHuawei Ireland Research CenterAbout...


  • Dublin, Ireland Alldus International Consulting Ltd Full time

    OverviewThreat Hunter / Threat Detection SpecialistLocation: Dublin, Ireland (Hybrid)Contract Duration: 6–12 months, with possible extensionHours: Full-time (40 hours/week)Rate: Competitive & depending on experienceOur client, a global consulting firm, is hiring an experienced Threat Hunting & Threat Detection Specialist to join their growing cyber...


  • Dublin, Dublin City, Ireland Cpl Healthcare Full time

    OverviewJob Title: Cyber Threat Detection & Response AnalystWe are seeking an experienced Cyber Threat Detection & Response Analyst to join the team at ESB.In this role, you will be responsible for monitoring, investigating, and responding to cyber threats that may impact networks, systems, and data.You'll also support proactive threat hunting, detection...


  • Dublin, Dublin City, Ireland Cpl Healthcare Full time

    OverviewJob Title: Cyber Threat Detection & Response AnalystWe are seeking an experienced Cyber Threat Detection & Response Analyst to join the team at ESB. In this role, you will be responsible for monitoring, investigating, and responding to cyber threats that may impact networks, systems, and data. You'll also support proactive threat hunting, detection...


  • Dublin, Dublin City, Ireland Cpl Healthcare Full time

    OverviewJob Title: Cyber Threat Detection & Response AnalystWe are seeking an experienced Cyber Threat Detection & Response Analyst to join the team at ESB. In this role, you will be responsible for monitoring, investigating, and responding to cyber threats that may impact networks, systems, and data. You'll also support proactive threat hunting, detection...