Jobs and Careers
PR

Sr. Information Security Engineer (Incident Response)

Proofpoint
Irelandfull_timeVerifiedPosted 30 Oct 2025

About the role

<p>About Us:<br/>We are the leader in human-centric cybersecurity. Half a million customers, including 87 of the Fortune 100, rely on Proofpoint to protect their organizations. We’re driven by a mission to stay ahead of bad actors and safeguard the digital world. Join us in our pursuit to defend data and protect people.</p><p><br/>How We Work:<br/>At Proofpoint, you’ll be part of a global team that breaks barriers to redefine cybersecurity, guided by our BRAVE core values: Bold in how we dream and innovate, Responsive to feedback, challenges, and opportunities, Accountable for results and best-in-class outcomes, Visionary in future-focused problem-solving, Exceptional in execution and impact.</p><p><b>About Proofpoint</b></p><p>At Proofpoint, we are committed to protecting organizations and individuals from cyber threats through innovative security solutions. Our mission is to safeguard our customers from advanced threats, phishing attacks, and data breaches with cutting-edge technology and a global team of security experts.</p><p><br/><b>Role Overview</b></p><p>We are seeking an experienced <b>Sr. Information Security Engineer</b> to join our global security team in Cork, Ireland. This is a critical role within our <b>Cyber Incident Response Team (CIRT)</b>, responsible for managing and responding to security incidents across our global operations. You will serve as an <b>escalation point for our 24/7 Security Operations Center (SOC)</b> and play a key role in the automation, orchestration, and enhancement of our security incident response capabilities.<br/> </p><p>This position requires deep expertise in cybersecurity, strong analytical skills, and the ability to work collaboratively in a fast-paced environment. If you thrive in a role where you can actively <b>defend against cyber threats, conduct threat hunting, and drive security automation</b>, this opportunity is for you.</p><p><br/><b>Key Responsibilities</b></p><ul><li><p><b>Incident Response &amp; Escalation:</b></p><ul><li><p>Act as the <b>L3 escalation point</b> for high-severity security incidents within the <b>global 24/7 SOC</b>.</p></li><li><p>Lead <b>complex investigations</b> into advanced cyber threats, including malware outbreaks, targeted attacks, and persistent threats.</p></li><li><p>Provide <b>expert-level guidance</b> on containment, mitigation, and remediation strategies.<br/> </p></li></ul></li><li><p><b>Threat Hunting &amp; Threat Assessment:</b></p><ul><li><p>Proactively hunt for <b>hidden threats</b> within enterprise networks using threat intelligence and behavioral analytics.</p></li><li><p>Develop and refine <b>threat detection rules</b> to improve SOC visibility.</p></li><li><p>Assess emerging threats and provide actionable recommendations to enhance security posture.<br/> </p></li></ul></li><li><p><b>Security Automation &amp; Orchestration:</b></p><ul><li><p>Design and implement <b>automated workflows</b> to enhance security event triage and response.</p></li><li><p>Leverage <b>SOAR (Security Orchestration, Automation, and Response) platforms</b> to streamline incident response.</p></li><li><p>Work with <b>SIEM (Security Information and Event Management)</b> tools to optimize log ingestion and alerting mechanisms.<br/> </p></li></ul></li><li><p><b>Security Tooling &amp; Continuous Improvement:</b></p><ul><li><p>Collaborate with security architects and engineers to <b>enhance detection and response capabilities</b>.</p></li><li><p>Perform <b>root cause analysis</b> on security incidents and recommend improvements to security controls.</p></li><li><p>Stay updated on <b>industry best practices</b> and evolving attack techniques to ensure effective defenses.</p></li></ul></li></ul><p></p><p><b>Required Qualifications &amp; Experience</b></p><ul><li><p><b>Extensive hands-on experience</b> in <b>Cybersecurity Incident Response</b> or Security Operations.</p></li><li><p>Strong background in <b>SOC operations, SIEM, threat intelligence, and digital forensics</b>.</p></li><li><p>Expertise in investigating <b>malware, phishing, web attacks, insider threats, and advanced persistent threats (APTs)</b>.</p></li><li><p>Experience working with <b>security automation and orchestration tools (SOAR)</b>.</p></li><li><p>Familiarity with scripting languages such as <b>Python, PowerShell, or Bash</b> for security automation.</p></li><li><p>Strong understanding of <b>MITRE ATT&amp;CK framework</b>, TTPs (Tactics, Techniques, and Procedures), and cyber kill chain.</p></li><li><p>Hands-on experience with <b>cloud security (AWS, Azure, GCP)</b> is a plus.</p></li><li><p>Certifications such as <b>GCIH, GCFA, CISSP, CISM, or OSCP</b> are highly desirable.</p></li><li><p>Ability to work in a fast-paced, global environment and <b>collaborate with cross-functional teams</b>.</p></li></ul><p></p><p><b>Why Proofpoint</b></p><p>Protecting people is at the heart of our award-winning lineup of cybersecurity solutions, and the people who work here are the ke

Apply for this role

Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.

Apply Now →Generate Application Kit

Free account required — sign up in 30s

Company

Proofpoint

View company profile →