Draper, UT, 84020, USA
9 days ago
Staff Product Security Engineer
It's fun to work in a company where people truly BELIEVE in what they're doing! _We're committed to bringing passion and customer focus to the business._ **About Proofpoint** Proofpoint is a leading cybersecurity company that protects organizations’ greatest assets and biggest risks—people. With an integrated suite of cloud-based solutions, Proofpoint helps companies around the world stop targeted threats, safeguard sensitive data, and make their users more resilient against cyber-attacks. **The Role** We are looking for a seasoned **Staff Product Security Engineer** to lead and advance our product and application security initiatives. This role demands deep technical expertise across all facets of product security and secure software development, including significant experience working in **FedRAMP** -compliant environments. The ideal candidate will be hands-on, strategic, and serve as a security champion across product engineering teams. Based in **Draper Utah** , this key role will drive key **product and application security initiatives for Proofpoint Product portfolio** . **Key Responsibilities** + **Product Security Leadership:** Define and implement product and application security strategies throughout the SDLC. + **Security Architecture & Design:** Collaborate with product and engineering teams to design secure architectures for web, mobile, and cloud-based applications. + **Secure Development:** Integrate security best practices into CI/CD pipelines, promote secure coding practices, and conduct code reviews and threat modeling sessions. + **Security Assessments:** Lead and perform penetration testing, static/dynamic code analysis, and security reviews for internally developed and third-party applications. + **FedRAMP Compliance:** Ensure security controls align with FedRAMP Moderate or High baselines and provide security documentation and support for FedRAMP audits and continuous monitoring. + **Tooling & Automation:** Develop and maintain automated security testing tools, workflows, and integrations to scale security across product teams. + **Security Incident Response:** Assist in investigation and remediation of security incidents related to products and applications. + **Support Security Compliance Initiatives:** Support various Compliance initiatives such as SOC2, ISO27001 + **Mentorship & Advocacy:** Educate engineers on secure development practices, influence engineering culture, and act as a liaison between security and engineering teams. **What You Bring** + **Experience:** 8+ years in Cloud security engineering with a focus on application/product security; experience in FedRAMP-authorized environments is required. + **Technical Expertise:** Deep understanding of OWASP Top 10, secure coding, threat modeling, authentication/authorization, cryptography, and cloud-native application security. + **Compliance Knowledge:** Strong grasp of FedRAMP, NIST 800-53, and other regulatory frameworks. + **Experience with Data Governance and Securing AI applications** desirable. + **Certifications:** CISSP, CSSLP, GWAPT, or equivalent are a plus. + **Tools & Languages:** Experience with tools like SAST/DAST, SCA, container security, and languages like Python, Java, JavaScript, or Go. + **Soft Skills:** Strong communication and collaboration skills with the ability to drive cross-functional initiatives. + **US Citizen** required. **Why Proofpoint** Protecting people is at the heart of our award-winning lineup of cybersecurity solutions, and the people who work here are the key to our success. We’re a customer-focused and a driven-to-win organization with leading-edge products. We are an inclusive, diverse, multinational company that believes in culture fit, but more importantly ‘culture-add’, and we strongly encourage people from all walks of life to apply. We believe in hiring the best and the brightest to help cultivate our culture of collaboration and appreciation. Apply today and explore your future at Proofpoint! #LifeAtProofpoint \#LI-AN2 _If you like wild growth and working with happy, enthusiastic over-achievers, you'll enjoy your career with us!_ Consistent with Proofpoint values and applicable law, we provide the following information to promote pay transparency and equity. Our compensation reflects the cost of labor across several U.S. geographic markets, and we pay differently based on those defined markets as set out below. Pay within these ranges varies and depends on job-related knowledge, skills, and experience. The actual offer will be based on the individual candidate. The range provided may represent a candidate range and may not reflect the full range for an individual tenured employee. This role may be eligible for variable compensation and/or equity. We offer a competitive benefits package, including flexible time off, a comprehensive well-being program with two paid Wellbeing Days and two paid Volunteer Days per year, plus a three-week Work from Anywhere option. **Base Pay Ranges:** SF Bay Area, New York City Metro Area: Base Pay Range: 182,175.00 - 267,190.00 USD California (excludes SF Bay Area), Colorado, Connecticut, Illinois, Washington DC Metro, Maryland, Massachusetts, New Jersey, Texas, Washington, Virginia, and Alaska: Base Pay Range: 146,550.00 - 214,940.00 USD All other cities and states excluding those listed above: Base Pay Range: 132,975.00 - 195,030.00 USD Proofpoint has been honored with six Best Places to Work Awards in 2024 by workplace culture leader Comparably, including Best Company Career Growth, Best Company Outlook, Best Global Culture, Best Engineering Teams, Best Sales Teams, and Best HR Teams. To view additional awards, please visit www.proofpoint.com/us/news#awards Proofpoint thrives on the invaluable contributions of our diverse workforce, which encompasses a kaleidoscope of lived experiences, thoughts, perspectives, and professional expertise. We attribute much of our success to our people, who are at the core of our organization and embody our people-centric ethos. We hire the most innovative minds globally to safeguard our customers’ sensitive data and intellectual property. Our talented workforce develops and leverages our advanced technology, combining their expertise to provide comprehensive protection against threat actors and mitigate the risks posed by both malicious and negligent employees. Cyberattacks have the potential to disrupt access to vital resources such as energy, water, transportation, healthcare, and financial services. At Proofpoint, our dedicated team works tirelessly to ensure world-class cyber resilience, protecting approximately 8,000 enterprise customers worldwide. We are committed to creating a diverse, equitable, and inclusive environment. We work every day to ensure that our employees feel that they are in a community that celebrates their unique identity, cultivates their sense of belonging, and invests in their professional growth. We have 9 employee-led employee inclusion groups which help support both employees and our organization by providing opportunities to network, discuss career and cultural development and uplift the corporate culture to create a more inclusive workplace. At Proofpoint, we have a passion for protecting people, data, and brands from today’s advanced threats and compliance risks. We hire the best people in the business to: + Build and enhance our proven security platform + Blend innovation and speed in a constantly evolving cloud architecture + Analyze new threats and offer deep insight through data-driven intel + Collaborate with customers to help solve their toughest security challenges   We are singularly devoted to helping our customers protect what matters most. That’s why we’re a leader in next-generation cybersecurity—and why more than half of the Fortune 100 trust us as a security partner. Proofpoint is an equal opportunity employer, we hire without consideration to race, religion, creed, color, national origin, age, gender, sexual orientation, marital status, veteran status or disability. Proofpoint is an equal opportunity employer, we hire without consideration to race, religion, creed, color, national origin, age, gender, sexual orientation, marital status, veteran status or disability.
Confirm your E-mail: Send Email