Cybersecurity Engineer
About the role
Barracuda is seeking a highly technical security professional to join our team. This role focuses on identifying emerging threats, understanding adversarial tradecraft, and translating that knowledge into actionable detection and defensive capabilities.
Responsibilities
- Research emerging cyber threats, vulnerabilities, exploits, malware, and adversary campaigns.
- Analyze evolving attacker TTPs and identify new techniques that may impact Barracuda and its customers.
- Track changes in adversary tradecraft and translate findings into actionable defensive requirements.
- Investigate how novel attack techniques can be detected through available telemetry, security controls, and product capabilities.
- Identify gaps in existing detection coverage and recommend improvements to close those gaps.
- Develop technical assessments of new threats, including attack paths, required telemetry, observable behaviors, and detection opportunities.
- Collaborate with Threat Intelligence and security teams to operationalize emerging threat intelligence.
- Develop and improve detection strategies for emerging and known adversary behaviors.
- Evaluate whether existing detections can reliably identify real-world adversary behavior.
- Identify detection blind spots and determine what additional telemetry or analytics are required to close them.
- Validate detection effectiveness through controlled testing and adversary simulation.
- Measure detection coverage against relevant threat actor behaviors and attack techniques.
- Partner with detection engineering and security operations teams to continuously improve detection quality and reduce missed threats.
- Develop automation and tooling to improve the speed, scale, and repeatability of detection validation.
- Conduct controlled adversary simulations based on real-world threat intelligence and emerging attacker tradecraft.
- Reproduce relevant attacker behaviors and TTPs to validate defensive capabilities.
- Develop and maintain repeatable attack simulations and offensive security tooling.
- Conduct Attack & Defend and Purple Team exercises to determine whether security controls can detect and respond to realistic attack scenarios.
- Test new and existing detections against adversary behaviors and identify missed TTPs.
- Research and safely demonstrate novel attack techniques and exploitation paths in controlled environments.
- Translate offensive findings into actionable improvements for detection, monitoring, prevention, and response capabilities.
- Maintain appropriate cloud-based laboratories and testing environments for adversary simulation and security research.
- Collaborate with Incident Response teams to understand real-world attack activity and incorporate lessons learned into detection and validation programs.
- Partner with Security Operations to improve detection fidelity and operational response.
- Support the development of security research, threat reports, technical assessments, and internal briefings.
- Communicate complex technical findings, attack paths, detection gaps, and recommended mitigations clearly to technical and non-technical audiences.
- Work collaboratively and independently on unique or special assignments that require specialized security knowledge and experience.
- Mentor other security professionals and contribute to the team’s technical growth and capabilities.
Requirements
- 5+ years of hands-on experience in offensive security, threat research, detection engineering, threat intelligence, incident response, or a closely related discipline.
- Strong understanding of modern attacker tradecraft and the ability to analyze how real-world adversaries operate.
- Demonstrated experience researching vulnerabilities, exploits, malware, or emerging attack techniques.
- Experience translating adversary behaviors and TTPs into detection opportunities or defensive requirements.
- Hands-on experience with adversary emulation, red teaming, penetration testing, or attack simulation.
- Experience developing or validating detections using SIEM, EDR, XDR, network, cloud, identity, or other security telemetry.
- Strong understanding of the MITRE ATT&CK framework and how to map adversary behavior to observable activity and defensive coverage.
- Ability to analyze complex attack chains and determine where meaningful detection and prevention opportunities exist.
- Strong scripting or programming skills in languages such as Python, PowerShell, Bash, or similar.
- Hands-on experience with Windows, Unix, and Linux operating systems.
- Understanding of network protocols and enterprise security architecture.
- Experience working with cloud environments such as AWS or Azure.
- Ability to independently research unfamiliar technologies, vulnerabilities, and attack techniques and quickly develop a working technical understanding.
- Strong written and verbal communication skills, with the ability to explain technical attack behavior and security risk clearly.
Qualifications
- Highly valued experience includes:
- Experience building adversary emulation tooling or automated attack simulations.
- Experience developing detection analytics, correlation rules, behavioral detections, or detection-as-code.
- Experience with EDR/XDR, SIEM, cloud security, identity security, or network detection technologies.
- Experience analyzing public vulnerability disclosures and determining practical exploitability and detection opportunities.
- Experience conducting Purple Team or Attack & Defend exercises.
- Experience measuring detection coverage and identifying missed adversary TTPs.
- Experience with threat hunting and hypothesis-driven investigations.
- Experience researching novel exploitation techniques or emerging attacker tradecraft.
- Experience contributing to open-source security research, vulnerability research, or offensive security tooling.
- Relevant certifications such as OSCP, OSEP, OSCE, GXPN, GCIA, GCIH, CEH, or equivalent practical experience.
Benefits
The anticipated salary range for this role is $114,000 to $152,000 USD. Actual compensation offered will be dependent upon the individual's skills, experience, and qualifications as they directly relate to the requirements of the position, the budget for the position, and applicable employment laws. At Barracuda, we believe in fair and equitable compensation practices that reflect both market realities and the unique circumstances of each geographical location. We recognize that cost-of-living disparities, market conditions, and other factors can significantly impact compensation expectations in different regions. The compensation range provided in this job description is for illustrative purposes only and may not reflect the actual compensation offers for the position in your location. Final compensation will be determined based on a variety of factors including the candidates’ qualifications and experience.