Proofpoint
Overview
We are looking for a seasoned
Staff Product Security Engineer
to lead and advance our product and application security initiatives. This role demands deep technical expertise across all facets of product security and secure software development, including significant experience working in FedRAMP-compliant environments. The ideal candidate will be hands-on, strategic, and serve as a security champion across product engineering teams. Based in Draper Utah, this key role will drive key product and application security initiatives for Proofpoint Product portfolio. Key Responsibilities
Product Security Leadership: Define and implement product and application security strategies throughout the SDLC. Security Architecture & Design: Collaborate with product and engineering teams to design secure architectures for web, mobile, and cloud-based applications. Secure Development: Integrate security best practices into CI/CD pipelines, promote secure coding practices, and conduct code reviews and threat modeling sessions. Security Assessments: Lead and perform penetration testing, static/dynamic code analysis, and security reviews for internally developed and third-party applications. FedRAMP Compliance: Ensure security controls align with FedRAMP Moderate or High baselines and provide security documentation and support for FedRAMP audits and continuous monitoring. Tooling & Automation: Develop and maintain automated security testing tools, workflows, and integrations to scale security across product teams. Security Incident Response: Assist in investigation and remediation of security incidents related to products and applications. Security Compliance Initiatives: Support various compliance initiatives such as SOC2, ISO27001. Mentorship & Advocacy: Educate engineers on secure development practices, influence engineering culture, and act as a liaison between security and engineering teams. What You Bring
Experience: 8+ years in Cloud security engineering with a focus on application/product security; experience in FedRAMP-authorized environments is required. Technical Expertise: Deep understanding of OWASP Top 10, secure coding, threat modeling, authentication/authorization, cryptography, and cloud-native application security. Compliance Knowledge: Strong grasp of FedRAMP, NIST 800-53, and other regulatory frameworks. Experience with Data Governance and Securing AI applications desirable. Certifications: CISSP, CSSLP, GWAPT, or equivalent are a plus. Tools & Languages: Experience with SAST/DAST, SCA, container security, and languages like Python, Java, JavaScript, or Go. Soft Skills: Strong communication and collaboration skills with the ability to drive cross-functional initiatives. US Citizen required. Why Proofpoint
Protecting people is at the heart of our award-winning lineup of cybersecurity solutions, and the people who work here are the key to our success. We’re a customer-focused and a driven-to-win organization with leading-edge products. We are an inclusive, diverse, multinational company that believes in culture fit, but more importantly ‘culture-add’, and we strongly encourage people from all walks of life to apply. We believe in hiring the best and the brightest to help cultivate our culture of collaboration and appreciation. Apply today and explore your future at Proofpoint! Why Proofpoint? At Proofpoint, we believe that an exceptional career experience includes a comprehensive compensation and benefits package. Here are just a few reasons you’ll love working with us: Competitive compensation Comprehensive benefits Learning & Development: we offer leadership and professional development workshops, stretch projects, and mentoring opportunities Flexible work environment (Remote options, hybrid schedules, flexible hours, etc.) Annual wellness and community outreach days Always on recognition for your contributions Global collaboration and networking opportunities Additional
Our culture is rooted in values that inspire belonging, empower purpose and drive success—every day, for everyone. If you need accommodation during the application or interview process, please reach out to accessibility@proofpoint.com.
#J-18808-Ljbffr
We are looking for a seasoned
Staff Product Security Engineer
to lead and advance our product and application security initiatives. This role demands deep technical expertise across all facets of product security and secure software development, including significant experience working in FedRAMP-compliant environments. The ideal candidate will be hands-on, strategic, and serve as a security champion across product engineering teams. Based in Draper Utah, this key role will drive key product and application security initiatives for Proofpoint Product portfolio. Key Responsibilities
Product Security Leadership: Define and implement product and application security strategies throughout the SDLC. Security Architecture & Design: Collaborate with product and engineering teams to design secure architectures for web, mobile, and cloud-based applications. Secure Development: Integrate security best practices into CI/CD pipelines, promote secure coding practices, and conduct code reviews and threat modeling sessions. Security Assessments: Lead and perform penetration testing, static/dynamic code analysis, and security reviews for internally developed and third-party applications. FedRAMP Compliance: Ensure security controls align with FedRAMP Moderate or High baselines and provide security documentation and support for FedRAMP audits and continuous monitoring. Tooling & Automation: Develop and maintain automated security testing tools, workflows, and integrations to scale security across product teams. Security Incident Response: Assist in investigation and remediation of security incidents related to products and applications. Security Compliance Initiatives: Support various compliance initiatives such as SOC2, ISO27001. Mentorship & Advocacy: Educate engineers on secure development practices, influence engineering culture, and act as a liaison between security and engineering teams. What You Bring
Experience: 8+ years in Cloud security engineering with a focus on application/product security; experience in FedRAMP-authorized environments is required. Technical Expertise: Deep understanding of OWASP Top 10, secure coding, threat modeling, authentication/authorization, cryptography, and cloud-native application security. Compliance Knowledge: Strong grasp of FedRAMP, NIST 800-53, and other regulatory frameworks. Experience with Data Governance and Securing AI applications desirable. Certifications: CISSP, CSSLP, GWAPT, or equivalent are a plus. Tools & Languages: Experience with SAST/DAST, SCA, container security, and languages like Python, Java, JavaScript, or Go. Soft Skills: Strong communication and collaboration skills with the ability to drive cross-functional initiatives. US Citizen required. Why Proofpoint
Protecting people is at the heart of our award-winning lineup of cybersecurity solutions, and the people who work here are the key to our success. We’re a customer-focused and a driven-to-win organization with leading-edge products. We are an inclusive, diverse, multinational company that believes in culture fit, but more importantly ‘culture-add’, and we strongly encourage people from all walks of life to apply. We believe in hiring the best and the brightest to help cultivate our culture of collaboration and appreciation. Apply today and explore your future at Proofpoint! Why Proofpoint? At Proofpoint, we believe that an exceptional career experience includes a comprehensive compensation and benefits package. Here are just a few reasons you’ll love working with us: Competitive compensation Comprehensive benefits Learning & Development: we offer leadership and professional development workshops, stretch projects, and mentoring opportunities Flexible work environment (Remote options, hybrid schedules, flexible hours, etc.) Annual wellness and community outreach days Always on recognition for your contributions Global collaboration and networking opportunities Additional
Our culture is rooted in values that inspire belonging, empower purpose and drive success—every day, for everyone. If you need accommodation during the application or interview process, please reach out to accessibility@proofpoint.com.
#J-18808-Ljbffr