Senior Threat Intelligence Engineer

1 month ago


London, Greater London, United Kingdom Proofpoint Full time

It's fun to work in a company where people truly BELIEVE in what they're doing

We're committed to bringing passion and customer focus to the business.

Corporate Overview

Proofpoint is a leading cybersecurity company protecting organisations' greatest assets and biggest risks: vulnerabilities in people. With an integrated suite of cloud-based solutions, Proofpoint helps companies around the world stop targeted threats, safeguard their data, and make their users more resilient against cyber attacks. Leading organisations of all sizes, including more than half of the Fortune 1000, rely on Proofpoint for people-centric security and compliance solutions mitigating their most critical risks across email, the cloud, social media, and the web.

We are singularly devoted to helping our customers protect their greatest assets and biggest security risk: their people. That's why we're a leader in next-generation cybersecurity.

Job Overview

Following the acquisition of Tessian by Proofpoint and having found exceptional product/market fit for our category-defining Human Layer Security software platform, we're in the midst of transformation and growth and are looking for an experienced Threat Intelligence Engineer to join the Tessian Business Unit of Proofpoint.

In this role you will have a direct impact on Tessian products and be part of a growing cross-functional team working closely with Data Science and Engineering. Working with email metadata, behavioral signals, and threat feeds, you will help improve the efficiency of our threat intelligence workflows and approach these solutions with a threat intelligence research background.

Responsibilities and Duties

This role will be split into two key areas, with 70% of your time spent building and improving tooling for the threat intelligence team in order to improve efficiency and the speed at which we can craft new detections, and the other 30% spent helping research emerging threats.

Our stack is predominantly python based, using a variety of datastores and runs in AWS.

Role and responsibilities of the job include:

  • Working with TI analysts to get detections into production quickly, so we can react to new and emerging threats.
  • Leveraging our threat intelligence infrastructure to build advanced detections.
  • Maintaining and improving threat intelligence infrastructure and tooling.
  • Working closely with our Threat Engineering team and wider Inbound Product team.
  • Coding in python.
  • Research and improve model efficacies for advanced detection.
  • Researching advanced email attacks to understand the underlying tactics used to bypass our systems.

Qualifications/Experience

  • Passion for security and reacting to threats in real-time.
  • Experience in a security-centric role, as well as experience in a software engineering role is a plus.
  • Threat research/intelligence background is a plus, with a focus on email delivered threats.
  • Excellent Python and SQL skills.
  • Worked with databases and repositories.
  • Previous experience with event driven, distributed systems.
  • Experience working in cloud environments.
  • Ability to break down ambiguous problems into concrete, manageable components and think through optimal solutions.
  • Enjoys digging into complex operations.
  • Takes a high degree of ownership over their work.

Why Proofpoint

Protecting people is at the heart of our award-winning cybersecurity solutions, and the people who work here are the key to our success. We're a customer-focused and driven-to-win organisation with leading-edge products. We are an inclusive, diverse, multinational company that believes in culture fit, but more importantly 'culture-add', and we strongly encourage people from all walks of life to apply.

We believe in hiring the best and the brightest to help cultivate our culture of collaboration and appreciation. Apply today and explore your future at Proofpoint #LifeAtProofpoint

If you like wild growth and working with happy, enthusiastic over-achievers, you'll enjoy your career with us

Proofpoint has been honored with five Best Places to Work Awards in 2024 by workplace culture leader Comparably, including Best Company Outlook, Best Global Culture, Best Engineering Teams, Best Sales Teams, and Best HR Teams.

To view additional awards, please visit

Proofpoint thrives on the invaluable contributions of our diverse workforce, which encompasses a kaleidoscope of lived experiences, thoughts, perspectives, and professional expertise. We attribute much of our success to our people, who are at the core of our organization and embody our people-centric ethos.

We hire the most innovative minds globally to safeguard our customers' sensitive data and intellectual property. Our talented workforce develops and leverages our advanced technology, combining their expertise to provide comprehensive protection against threat actors and mitigate the risks posed by both malicious and negligent employees.

Cyberattacks have the potential to disrupt access to vital resources such as energy, water, transportation, healthcare, and financial services. At Proofpoint, our dedicated team works tirelessly to ensure world-class cyber resilience, protecting approximately 8,000 enterprise customers worldwide.

We are committed to creating a diverse, equitable, and inclusive environment. We work every day to ensure that our employees feel that they are in a community that celebrates their unique identity, cultivates their sense of belonging, and invests in their professional growth. We have 9 employee-led employee inclusion groups which help support both employees and our organization by providing opportunities to network, discuss career and cultural development and uplift the corporate culture to create a more inclusive workplace.

At Proofpoint, we have a passion for protecting people, data, and brands from today's advanced threats and compliance risks. We hire the best people in the business to:

  • Build and enhance our proven security platform
  • Blend innovation and speed in a constantly evolving cloud architecture
  • Analyze new threats and offer deep insight through data-driven intel
  • Collaborate with customers to help solve their toughest security challenges

We are singularly devoted to helping our customers protect what matters most. That's why we're a leader in next-generation cybersecurity—and why more than half of the Fortune 100 trust us as a security partner.

Proofpoint is an equal opportunity employer, we hire without consideration to race, religion, creed, color, national origin, age, gender, sexual orientation, marital status, veteran status or disability.

Proofpoint is an equal opportunity employer, we hire without consideration to race, religion, creed, color, national origin, age, gender, sexual orientation, marital status, veteran status or disability.




  • London, Greater London, United Kingdom Advanced Resource Managers Ltd Full time

    Threat Intelligence Specialist 6 months £540 per day (Inside IR35)5 Days per week in Reading My client in the insurance industry are looking for a Threat Intelligence Specialist to join their fast-paced team on an initial 6 month contract. The role will be fully on site in Reading so a local candidate will be most ideal. Responsibilities in the role; ...


  • London, Greater London, United Kingdom Control Risks Full time

    In this role you will be responsible for conducting desktop research into cyber and online threats, to enrich our Cyber Threat Intelligence reporting.This role will primarily involve contributing regular reporting for Control Risks' clients that subscribe to our intelligence platform, as well as supporting on and eventually leading bespoke engagements.Role...


  • London, Greater London, United Kingdom EasyHiring Full time

    We believe in better. And we make it happen.Better content. Better products. And better careers.Working in Tech, Product or Data is about building the next and the new. From broadband to broadcast, streaming to mobile, we never stand still. We optimise and innovate.We turn big ideas into the products, content and services millions of people love.And we do it...


  • London, Greater London, United Kingdom Control Risks Full time

    Job DescriptionIn this role you will be responsible for conducting desktop research into cyber and online threats, to enrich our Cyber Threat Intelligence reporting.This role will primarily involve contributing regular reporting for Control Risks' clients that subscribe to our intelligence platform, as well as supporting on and eventually leading bespoke...


  • London, Greater London, United Kingdom Control Risks Full time

    In this role you will be responsible for conducting desktop research into cyber and online threats, to enrich our Cyber Threat Intelligence reporting.This role will primarily involve contributing regular reporting for Control Risks' clients that subscribe to our intelligence platform, as well as supporting on and eventually leading bespoke engagements.Role...


  • London, Greater London, United Kingdom Recorded Future, Inc. Full time

    Recorded Future, Inc. Recorded Future is the most comprehensive and independent threat intelligence platform. Identify and mitigate threats across cyber, supply-chain, physical and fraud domains. View company page With 1,000 intelligence professionals, over $300M in sales, and serving over 1,800 clients worldwide, Recorded Future is the world's most...


  • London, Greater London, United Kingdom Recorded Future Full time

    We are seeking a uniquely talented individual who combines the technical acumen of a Cyber Threat Hunter with the expressive skills of a Technical Writer to work as a Senior Emerging Threat Intelligence Analyst . This individual will be a critical component of our Attack Surface Intelligence Quick Reaction Team (QRT) and Recorded Future's Insikt Group,...


  • London, Greater London, United Kingdom Recorded Future Full time

    With 1,000 intelligence professionals, over $300M in sales, and serving over 1,800 clients worldwide, Recorded Future is the world's most advanced, and largest, intelligence companyWe are seeking a uniquely talented individual who combines the technical acumen of a Cyber Threat Hunter with the expressive skills of a Technical Writer to work as a Senior...


  • London, Greater London, United Kingdom Marks and Spencer Full time

    All the detailsSummary Marks & Spencer is actively searching for a skilled Threat Intelligence Specialist to fortify our cybersecurity efforts. This crucial role involves identifying and analysing cyber threats, utilizing advanced threat intelligence tools and methodologies to safeguard our digital infrastructure. Collaborating with our dedicated Cyber...


  • London, Greater London, United Kingdom Recorded Future Full time

    With 1,000 intelligence professionals, over $300M in sales, and serving over 1,800 clients worldwide, Recorded Future is the world's most advanced, and largest, intelligence companyWe are seeking a uniquely talented individual who combines the technical acumen of a Cyber Threat Hunter with the expressive skills of a Technical Writer to work as an Emerging...


  • London, Greater London, United Kingdom Bluecube - An Ekco company Full time

    About EkcoFounded in 2016 Ekco is now one of the fastest growing cloud solution providers in EuropeWe specialise in enabling companies to progress along the path of cloud maturity, managing transformation and driving better outcomes from our clients' existing technology investments. In a few words, we take businesses to the cloud and backWe have over 1000...


  • London, Greater London, United Kingdom Department for Transport Full time

    Details:Reference number:Salary:- £36,466Job grade: Higher Executive OfficerContract type: PermanentBusiness area: DFT Aviation, Maritime and Security Group (AMS) Resilience, Analysis, International & SanctionsType of role: Analytical Intelligence SecurityWorking pattern: Flexible working, Fulltime, Job share, ParttimeNumber of jobs available:...


  • London, Greater London, United Kingdom Secret Intelligence Service Full time

    Department- Apprentices and Interns- Location(s)- Central London, Cheltenham- Hours of Work- Full Time- Salary-GCHQ: £4,165, plus travel expenses and free accommodation for the duration of the Internship if required; MI5/MI6: £5,701, plus free accommodation for the duration of the Internship if require- Job descriptionDate of Internship:GCHQ: 01 July 2024...


  • London, Greater London, United Kingdom WTW Full time

    As part of a business wide transformation, we have an exciting opening for a new role of Global Head of Cyber Threat. As part of the Cyber Defence and Security Operations department, you will be a senior leader managing the Global Threat Hunting, Forensics and Threat Intelligence Teams and 3rd party threat services. You will need to have a good technical...


  • London, Greater London, United Kingdom airbnb, Inc. Full time

    Senior Security Engineer, Threat Detection and Response Airbnb was born in 2007 when two Hosts welcomed three guests to their San Francisco home, and has since grown to over 4 million Hosts who have welcomed more than 1 billion guest arrivals in almost every country across the globe. Every day, Hosts offer unique stays and experiences that make it possible...


  • London, Greater London, United Kingdom WTW Full time

    We are seeking passionate people to grow the Cyber Security team within WTW and provide an excellent service and trusted expertise to all parts of our business. As part of a business wide transformation, we have an exciting opening for a new role of Global Head of Cyber Threat. As part of the Cyber Defence and Security Operations department, you will be a...


  • London, Greater London, United Kingdom Millennium Management Full time

    Threat and Vulnerability Engineer The successful candidate for this position will be a subject matter expert in Information Security, possessing a wide range of experience in various technologies, tools, and methodologies. The primary responsibilities of this role include identifying, analyzing, and prioritizing vulnerabilities within the organization. The...


  • London, Greater London, United Kingdom Tessian Full time

    Tessian protects every business's mission by securing the human layerData / Threat Analysis at TessianSome interesting projects we're working on:Building an advanced threat intelligence infrastructureTraining and Deploying advanced ML models on a combination of structured and unstructured (NLP) data.Improving the deployment flow of algorithm changes to...


  • London, Greater London, United Kingdom Meta Full time

    Security Engineer Investigator, Account ThreatsThe Account Threats team is committed to safeguarding users of Meta's suite of applications (e.g. Facebook, Instagram, WhatsApp, Oculus) from severe account security issues. You will tackle some of the most complex and high-profile security risks faced by the company through a focus on account security. Your...


  • London, Greater London, United Kingdom Kite Group Full time

    Cyber Threat Engineer – Penetration Testing Cyber Threat Engineer – Penetration Testing Cyber Threat Engineer is required to join our Financial Services client to help improve threat detection and response. Based in London (hybrid working – 3 days in the office), it is an inside IR35 contract offering a daily umbrella rate between £500 and...