Cybersecurity Engineer
Job ID: 27-0354
Come Join Our Passionate Team! At Barracuda, we make the world a safer place. We believe every business deserves access to cloud-enabled, enterprise-grade security solutions that are easy to buy, deploy, and use. We protect email, networks, data and applications with innovative solutions that grow and adapt with our customers’ journey. More than 220,000 organizations worldwide trust Barracuda to protect them — in ways they may not even know they are at risk — so they can focus on taking their business to the next level.
We know a diverse workforce adds to our collective value and strength as an organization. Barracuda Networks is proud to be an Equal Opportunity Employer, committed to equal employment opportunity and equitable compensation regardless of race, gender, religion, sex, sexual orientation, national origin, or disability.
Envision yourself at Barracuda
Barracuda is looking for a highly technical security professional to join our team with a primary focus on identifying emerging threats, understanding evolving adversarial tradecraft, and translating that knowledge into actionable detection and defensive capabilities.
This role sits at the intersection of threat intelligence, detection engineering, offensive security, and adversary emulation. You will research emerging vulnerabilities, exploits, malware, intrusion techniques, and attacker behaviors to understand how modern threats are evolving and how those threats can be detected across Barracuda’s security ecosystem.
You will help answer a critical question for our customers and our organization:
“If an attacker used this technique against us today, would we actually detect it?”
You will investigate how real-world adversaries operate, identify gaps in our ability to detect their behavior, and help develop the telemetry, analytics, detections, and defensive capabilities needed to identify and disrupt them. As a secondary responsibility, you will simulate adversary behavior to validate detection capabilities and expose gaps in defensive coverage. You will safely reproduce attacker TTPs, conduct controlled attack simulations, and measure whether security controls and detections perform as expected.
You will collaborate closely with Threat Intelligence, Security Operations (XDR), Incident Response, and Product teams to continuously improve Barracuda’s ability to detect and respond to evolving threats.
Being a team player, strong communicator, and forward-thinking security practitioner is essential for success in this role. You will be a technical leader within the team, helping mentor others and advance Barracuda’s capabilities in threat-informed detection and adversary validation.
What You’ll Be Working On
Emerging Threat & Adversarial Tradecraft Research
- Research emerging cyber threats, vulnerabilities, exploits, malware, and adversary campaigns.
- Analyze evolving attacker TTPs and identify new techniques that may impact Barracuda and its customers.
- Track changes in adversary tradecraft and translate findings into actionable defensive requirements.
- Investigate how novel attack techniques can be detected through available telemetry, security controls, and product capabilities.
- Identify gaps in existing detection coverage and recommend improvements to close those gaps.
- Analyze real-world attacks and incidents to identify new detection opportunities and defensive lessons.
- Develop technical assessments of new threats, including attack paths, required telemetry, observable behaviors, and detection opportunities.
- Collaborate with Threat Intelligence and security teams to operationalize emerging threat intelligence.
Detection Development & Validation
- Develop and improve detection strategies for emerging and known adversary behaviors.
- Translate attacker TTPs into detection logic, analytics, behavioral indicators, and detection requirements.
- Evaluate whether existing detections can reliably identify real-world adversary behavior.
- Identify detection blind spots and determine what additional telemetry or analytics are required to close them.
- Validate detection effectiveness through controlled testing and adversary simulation.
- Measure detection coverage against relevant threat actor behaviors and attack techniques.
- Partner with detection engineering and security operations teams to continuously improve detection quality and reduce missed threats.
- Develop automation and tooling to improve the speed, scale, and repeatability of detection validation.
Adversary Simulation & Attack Validation
- Conduct controlled adversary simulations based on real-world threat intelligence and emerging attacker tradecraft.
- Reproduce relevant attacker behaviors and TTPs to validate defensive capabilities.
- Develop and maintain repeatable attack simulations and offensive security tooling.
- Conduct Attack & Defend and Purple Team exercises to determine whether security controls can detect and respond to realistic attack scenarios.
- Test new and existing detections against adversary behaviors and identify missed TTPs.
- Research and safely demonstrate novel attack techniques and exploitation paths in controlled environments.
- Translate offensive findings into actionable improvements for detection, monitoring, prevention, and response capabilities.
- Maintain appropriate cloud-based laboratories and testing environments for adversary simulation and security research.
Cross-Functional Security Research
- Collaborate with Incident Response teams to understand real-world attack activity and incorporate lessons learned into detection and validation programs.
- Partner with Security Operations to improve detection fidelity and operational response.
- Work with Product and Engineering teams to identify opportunities to improve security visibility and defensive capabilities.
- Support the development of security research, threat reports, technical assessments, and internal briefings.
- Communicate complex technical findings, attack paths, detection gaps, and recommended mitigations clearly to technical and non-technical audiences.
- Work collaboratively and independently on unique or special assignments that require specialized security knowledge and experience.
- Mentor other security professionals and contribute to the team’s technical growth and capabilities.
What You Bring to the Role
- 5+ years of hands-on experience in offensive security, threat research, detection engineering, threat intelligence, incident response, or a closely related discipline.
- Strong understanding of modern attacker tradecraft and the ability to analyze how real-world adversaries operate.
- Demonstrated experience researching vulnerabilities, exploits, malware, or emerging attack techniques.
- Experience translating adversary behaviors and TTPs into detection opportunities or defensive requirements.
- Hands-on experience with adversary emulation, red teaming, penetration testing, or attack simulation.
- Experience developing or validating detections using SIEM, EDR, XDR, network, cloud, identity, or other security telemetry.
- Strong understanding of the MITRE ATT&CK framework and how to map adversary behavior to observable activity and defensive coverage.
- Ability to analyze complex attack chains and determine where meaningful detection and prevention opportunities exist.
- Strong scripting or programming skills in languages such as Python, PowerShell, Bash, or similar.
- Hands-on experience with Windows, Unix, and Linux operating systems.
- Understanding of network protocols and enterprise security architecture.
- Experience working with cloud environments such as AWS or Azure.
- Ability to independently research unfamiliar technologies, vulnerabilities, and attack techniques and quickly develop a working technical understanding.
- Strong written and verbal communication skills, with the ability to explain technical attack behavior and security risk clearly.
Highly Valued Experience
- Experience building adversary emulation tooling or automated attack simulations.
- Experience developing detection analytics, correlation rules, behavioral detections, or detection-as-code.
- Experience with EDR/XDR, SIEM, cloud security, identity security, or network detection technologies.
- Experience analyzing public vulnerability disclosures and determining practical exploitability and detection opportunities.
- Experience conducting Purple Team or Attack & Defend exercises.
- Experience measuring detection coverage and identifying missed adversary TTPs.
- Experience with threat hunting and hypothesis-driven investigations.
- Experience researching novel exploitation techniques or emerging attacker tradecraft.
- Experience contributing to open-source security research, vulnerability research, or offensive security tooling.
- Relevant certifications such as OSCP, OSEP, OSCE, GXPN, GCIA, GCIH, CEH, or equivalent practical experience.
Success in This Role
Success in this role means Barracuda is increasingly able to see attackers sooner and understand new threats before they become widespread incidents.
You will help the organization:
- Identify emerging threats and adversarial techniques before they become operationally significant.
- Convert threat intelligence into meaningful detection opportunities.
- Discover detection blind spots before attackers exploit them.
- Continuously validate that detections work against realistic adversary behavior.
- Improve visibility into customer-relevant attack paths and TTPs.
- Increase measurable detection coverage against relevant threats.
- Strengthen the feedback loop between threat intelligence, offensive security, detection engineering, security operations, incident response, and product teams.
The goal is not simply to simulate attacks.
The goal is to understand how attackers are evolving, determine how we can detect them, and then prove that our defenses actually work.
What you’ll get from us
A team where you can voice your opinion, make an impact, and where you and your experience are valued. Internal mobility – there are opportunities for cross training and the ability to attain your next career step within Barracuda.
High-quality health benefits
Retirement Plan with employer match
Career-growth opportunities
Flexible Time Off and Paid Time Off benefits
Volunteer opportunities