Cybersecurity Engineer

Barracuda Networks Inc.Chelmsford, MA
$114,000 - $152,000Remote

About The Position

Barracuda is seeking a highly technical security professional to focus on identifying emerging threats, understanding evolving adversarial tradecraft, and translating that knowledge into actionable detection and defensive capabilities. This role operates at the intersection of threat intelligence, detection engineering, offensive security, and adversary emulation. The engineer will research emerging vulnerabilities, exploits, malware, intrusion techniques, and attacker behaviors to understand how modern threats evolve and how they can be detected across Barracuda’s security ecosystem. A key responsibility is to answer the question: “If an attacker used this technique against us today, would we actually detect it?” The role involves investigating how real-world adversaries operate, identifying detection gaps, and developing the necessary telemetry, analytics, detections, and defensive capabilities. A secondary responsibility includes simulating adversary behavior to validate detection capabilities and expose defensive gaps through safe reproduction of attacker TTPs and controlled attack simulations. Collaboration with Threat Intelligence, Security Operations (XDR), Incident Response, and Product teams is crucial for improving Barracuda’s detection and response capabilities. Essential qualities for success include being a team player, strong communicator, and forward-thinking security practitioner. The role also involves technical leadership, mentoring others, and advancing Barracuda’s capabilities in threat-informed detection and adversary validation.

Requirements

  • 5+ years of hands-on experience in offensive security, threat research, detection engineering, threat intelligence, incident response, or a closely related discipline.
  • Strong understanding of modern attacker tradecraft and the ability to analyze how real-world adversaries operate.
  • Demonstrated experience researching vulnerabilities, exploits, malware, or emerging attack techniques.
  • Experience translating adversary behaviors and TTPs into detection opportunities or defensive requirements.
  • Hands-on experience with adversary emulation, red teaming, penetration testing, or attack simulation.
  • Experience developing or validating detections using SIEM, EDR, XDR, network, cloud, identity, or other security telemetry.
  • Strong understanding of the MITRE ATT&CK framework and how to map adversary behavior to observable activity and defensive coverage.
  • Ability to analyze complex attack chains and determine where meaningful detection and prevention opportunities exist.
  • Strong scripting or programming skills in languages such as Python, PowerShell, Bash, or similar.
  • Hands-on experience with Windows, Unix, and Linux operating systems.
  • Understanding of network protocols and enterprise security architecture.
  • Experience working with cloud environments such as AWS or Azure.
  • Ability to independently research unfamiliar technologies, vulnerabilities, and attack techniques and quickly develop a working technical understanding.
  • Strong written and verbal communication skills, with the ability to explain technical attack behavior and security risk clearly.

Nice To Haves

  • Experience building adversary emulation tooling or automated attack simulations.
  • Experience developing detection analytics, correlation rules, behavioral detections, or detection-as-code.
  • Experience with EDR/XDR, SIEM, cloud security, identity security, or network detection technologies.
  • Experience analyzing public vulnerability disclosures and determining practical exploitability and detection opportunities.
  • Experience conducting Purple Team or Attack & Defend exercises.
  • Experience measuring detection coverage and identifying missed adversary TTPs.
  • Experience with threat hunting and hypothesis-driven investigations.
  • Experience researching novel exploitation techniques or emerging attacker tradecraft.
  • Experience contributing to open-source security research, vulnerability research, or offensive security tooling.
  • Relevant certifications such as OSCP, OSEP, OSCE, GXPN, GCIA, GCIH, CEH, or equivalent practical experience.

Responsibilities

  • Research emerging cyber threats, vulnerabilities, exploits, malware, and adversary campaigns.
  • Analyze evolving attacker TTPs and identify new techniques that may impact Barracuda and its customers.
  • Track changes in adversary tradecraft and translate findings into actionable defensive requirements.
  • Investigate how novel attack techniques can be detected through available telemetry, security controls, and product capabilities.
  • Identify gaps in existing detection coverage and recommend improvements to close those gaps.
  • Analyze real-world attacks and incidents to identify new detection opportunities and defensive lessons.
  • Develop technical assessments of new threats, including attack paths, required telemetry, observable behaviors, and detection opportunities.
  • Collaborate with Threat Intelligence and security teams to operationalize emerging threat intelligence.
  • Develop and improve detection strategies for emerging and known adversary behaviors.
  • Translate attacker TTPs into detection logic, analytics, behavioral indicators, and detection requirements.
  • Evaluate whether existing detections can reliably identify real-world adversary behavior.
  • Identify detection blind spots and determine what additional telemetry or analytics are required to close them.
  • Validate detection effectiveness through controlled testing and adversary simulation.
  • Measure detection coverage against relevant threat actor behaviors and attack techniques.
  • Partner with detection engineering and security operations teams to continuously improve detection quality and reduce missed threats.
  • Develop automation and tooling to improve the speed, scale, and repeatability of detection validation.
  • Conduct controlled adversary simulations based on real-world threat intelligence and emerging attacker tradecraft.
  • Reproduce relevant attacker behaviors and TTPs to validate defensive capabilities.
  • Develop and maintain repeatable attack simulations and offensive security tooling.
  • Conduct Attack & Defend and Purple Team exercises to determine whether security controls can detect and respond to realistic attack scenarios.
  • Test new and existing detections against adversary behaviors and identify missed TTPs.
  • Research and safely demonstrate novel attack techniques and exploitation paths in controlled environments.
  • Translate offensive findings into actionable improvements for detection, monitoring, prevention, and response capabilities.
  • Maintain appropriate cloud-based laboratories and testing environments for adversary simulation and security research.
  • Collaborate with Incident Response teams to understand real-world attack activity and incorporate lessons learned into detection and validation programs.
  • Partner with Security Operations to improve detection fidelity and operational response.
  • Work with Product and Engineering teams to identify opportunities to improve security visibility and defensive capabilities.
  • Support the development of security research, threat reports, technical assessments, and internal briefings.
  • Communicate complex technical findings, attack paths, detection gaps, and recommended mitigations clearly to technical and non-technical audiences.
  • Work collaboratively and independently on unique or special assignments that require specialized security knowledge and experience.
  • Mentor other security professionals and contribute to the team’s technical growth and capabilities.

Benefits

  • High-quality health benefits
  • Retirement Plan with employer match
  • Career-growth opportunities
  • Flexible Time Off and Paid Time Off benefits
  • Volunteer opportunities
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service