Talent Apply
Log in
All jobs
P

Senior Cyber Threat Defense - Security Operations Engineer

Proofpoint
Draper, UT Posted Jul 28, 2026
On-site

About this role

Senior Cyber Threat Defense - Security Operations Engineer

About Proofpoint

Proofpoint is a global leader in human- and agent-centric cybersecurity. We protect how people, data, and AI agents connect across email, cloud, and collaboration tools. Over 80 of the Fortune 100, 10,000 large enterprises, and millions of smaller organizations trust Proofpoint to stop threats, prevent data loss, and build resilience across their people and AI workflows. Our mission is simple: safeguard the digital world and empower people to work securely and confidently. Join us in our pursuit to defend data and protect people.

How We Work

At Proofpoint you’ll be part of a global team that breaks barriers to redefine cybersecurity guided by our BRAVE core values:

  • Bold in how we dream and innovate
  • Responsive to feedback, challenges and opportunities
  • Accountable for results and best in class outcomes
  • Visionary in future focused problem-solving
  • Exceptional in execution and impact

About Proofpoint

At Proofpoint, we protect organizations and individuals from today's most advanced cyber threats. Through innovative security technologies, threat intelligence, and a global team of security experts, we help customers defend against phishing, malware, account compromise, insider threats, and data loss.

Role Overview

We are seeking an experienced Senior Cyber Threat Defense - Security Operations Engineer to join our global security team in Draper, UT. This critical role sits within the Global Information Security Operation team and is responsible for investigating and responding to sophisticated security incidents across Proofpoint's global operations. You will serve as a senior Level 3 escalation point for the 24/7 Security Operations Center (SOC), own complex investigations and technical decisions, participate in a scheduled on-call rotation, and set direction for detection, investigation, response, threat modeling, and security automation. The role also supports selected AI-enabled capabilities, including Agentic SOC workflows and AI Data Loss Prevention (AI DLP).

Key Responsibilities

  • Incident Response and Escalation

  • Own Level 3 escalation for high-severity and technically complex incidents within the global 24/7 SOC.

  • Lead major investigations involving malware, ransomware, phishing, identity attacks, insider threats, cloud compromise, and advanced persistent threats.

  • Set containment, eradication, recovery, remediation, and post-incident improvement strategy, balancing risk and business impact.

  • Note: The provided source text appears truncated. The full posting would continue with additional responsibilities, requirements, qualifications, and benefits as described in the original listing.

Your next opportunity starts here

Prepare, apply, track, interview and get hired — all from one platform, with AI in your corner.

Download app

Or sponsor Premium for someone who's job hunting →