Staff Security Engineer, Cloud and Application Security

Draper, UT, United States

Proofpoint

Proofpoint helps protect people, data and brands against cyber attacks. Offering compliance and cybersecurity solutions for email, web, cloud, and more.

View all jobs at Proofpoint

Apply now Apply later

It's fun to work in a company where people truly BELIEVE in what they're doing!

We're committed to bringing passion and customer focus to the business.

About Proofpoint

Proofpoint is a leading cybersecurity company that protects organizations’ greatest assets and biggest risks—people. With an integrated suite of cloud-based solutions, Proofpoint helps companies around the world stop targeted threats, safeguard sensitive data, and make their users more resilient against cyber-attacks.

The Role

We are looking for a Staff Security Engineer with deep expertise in Cloud Security across AWS, Azure, and GCP. This role will focus on securing cloud environments, managing asset inventory and vulnerabilities, and driving application security and penetration testing initiatives. As a key member of our security team, you will play a strategic and hands-on role in ensuring our cloud-native and distributed systems are secure by design. Based in Draper Utah, this key role will drive key product and application security engineering initiatives for Proofpoint Product portfolio.

Key Responsibilities

  • Cloud Security: Architect, implement, and maintain security controls across AWS, Azure, and GCP environments.
  • Asset Inventory: Develop and manage systems to continuously track and secure cloud and on-prem assets.
  • Vulnerability Management: Identify, prioritize, and drive remediation of vulnerabilities across infrastructure and applications.
  • Application Security: Perform code reviews, threat modeling, and support DevSecOps integration in CI/CD pipelines.
  • Penetration Testing: Plan and conduct internal penetration testing and coordinate with third-party testers.
  • Automation & Tooling: Build security tooling and automation to enhance detection and response capabilities.
  • Collaboration: Work with engineering and DevOps teams to embed security best practices across services and deployments.
  • Compliance Support: Ensure alignment with internal policies, industry best practices, and regulatory requirements.

What You Bring

  • Citizenship: Must be a U.S. Citizen.
  • Experience: 8+ years in cybersecurity, with deep experience in cloud and application security.
  • Cloud Platforms: Strong hands-on experience with AWS, Azure, and GCP security tools and architecture.
  • Technical Expertise: Knowledge of network protocols, identity and access management, encryption, and secrets management.
  • Tools & Languages: Experience with vulnerability scanners, SAST/DAST tools, Infrastructure-as-Code (Terraform, CloudFormation), and languages such as Python or Go.
  • Certifications: Relevant certifications (e.g., AWS Security Specialty, GCP Professional Cloud Security Engineer, CISSP, OSCP) are a plus.
  • Communication: Strong written and verbal communication skills; able to influence and educate technical and non-technical stakeholders.

Why Proofpoint

Protecting people is at the heart of our award-winning lineup of cybersecurity solutions, and the people who work here are the key to our success.  We’re a customer-focused and a driven-to-win organization with leading-edge products. We are an inclusive, diverse, multinational company that believes in culture fit, but more importantly ‘culture-add’, and we strongly encourage people from all walks of life to apply.

We believe in hiring the best and the brightest to help cultivate our culture of collaboration and appreciation. Apply today and explore your future at Proofpoint! #LifeAtProofpoint

#LI-AN2

If you like wild growth and working with happy, enthusiastic over-achievers, you'll enjoy your career with us!

Consistent with Proofpoint values and applicable law, we provide the following information to promote pay transparency and equity. Our compensation reflects the cost of labor across several U.S. geographic markets, and we pay differently based on those defined markets as set out below. Pay within these ranges varies and depends on job-related knowledge, skills, and experience. The actual offer will be based on the individual candidate. The range provided may represent a candidate range and may not reflect the full range for an individual tenured employee. This role may be eligible for variable compensation and/or equity. We offer a competitive benefits package, including flexible time off, a comprehensive well-being program with two paid Wellbeing Days and two paid Volunteer Days per year, plus a three-week Work from Anywhere option.

Base Pay Ranges:

SF Bay Area, New York City Metro Area:

Base Pay Range: 182,175.00 - 267,190.00 USD

California (excludes SF Bay Area), Colorado, Connecticut, Illinois, Washington DC Metro, Maryland, Massachusetts, New Jersey, Texas, Washington, Virginia, and Alaska:

Base Pay Range: 146,550.00 - 214,940.00 USD

All other cities and states excluding those listed above:

Base Pay Range: 132,975.00 - 195,030.00 USD
Apply now Apply later

Tags: Application security Automation AWS Azure CI/CD CISSP Cloud Compliance DAST DevOps DevSecOps Encryption GCP IAM OSCP Pentesting Python SAST Terraform Vulnerabilities Vulnerability management

Perks/benefits: Competitive pay Equity / stock options Flex hours Flex vacation Transparency

Region: North America
Country: United States

More jobs like this

Explore more career opportunities

Find even more open roles below ordered by popularity of job title or skills/products/technologies used.