Staff Information Security Engineer leading advanced threat detection and incident response at Proofpoint. Shaping strategies for complex security investigations and mentoring team members.
Responsibilities
Serve as a Level 3 / Staff escalation point for high-severity incidents.
Lead investigations into APTs, ransomware, insider threats, and cloud compromises.
Act as incident commander and coordinate response efforts.
Participate in 24/7 on-call incident response.
Lead threat hunting across endpoint, network, identity, and cloud.
Operationalize threat intelligence into detections and response.
Design and improve detections across SIEM, EDR, and SOAR.
Automate incident triage and response workflows.
Drive post-incident reviews and continuous improvement.
Mentor team members and influence security strategy.
Requirements
12+ years in Incident Response, DFIR, Threat Hunting, or Security Operations.
Deep expertise in incident response, threat hunting, and threat intelligence.
Strong knowledge of MITRE ATT&CK and adversary TTPs.
Experience with SIEM, EDR, SOAR, and cloud security.
Scripting experience (Python, PowerShell, or Bash).
Strong communication and leadership skills.
US Citizen.
Benefits
Competitive compensation
Comprehensive benefits
Career success on your terms
Flexible work environment
Annual wellness and community outreach days
Always on recognition for your contributions
Global collaboration and networking opportunities
Job title
Staff Information Security Engineer – Threat Defense, Automation
Cybersecurity Engineer at Capgemini responsible for designing secure network architectures. Leading incident responses and collaborating on security projects to enhance infrastructure safety and efficiency.
Account Manager managing existing clients and acquiring new business in IT Security sector. Collaborating with client partners and developing sales strategies.
Epic Application Analyst managing projects and issues related to Epic software applications in healthcare. Collaborating with analysts and vendors to ensure system integrity and effective support.
Infrastructure Engineer focused on the security and evolution of critical on - premise financial infrastructure. Key responsibilities include server management, incident response, and compliance audit preparation.
Director of Information Security & IT leading H1's security - first technology operations. Working at the intersection of data, AI - technology, and healthcare to improve patient outcomes.
Cybersecurity Intern at KPMG engaging in projects aimed at digital transformation and innovation. Collaborating with global teams while learning from industry leaders in various technologies.
Sales Development Representative responsible for proactive lead generation and pipeline development in cybersecurity sector. Collaborating with sales teams and engaging with enterprise clients in DACH region.
Principal Cybersecurity Engineer at Progress, focused on IAM governance and architecture strategy. Collaborating with teams for enterprise identity security governance and architectural oversight.
Information Security Manager at IT - Total protecting critical information and enhancing clients' resilience to cyber threats. Role involves strategy and operations in information security.
Client Advisor for Social Security Scotland, helping people apply for benefits via calls and webchat. Processing applications and managing client information in a supportive role.