Threat Investigator

REMOTE, Remote

Zachary Piper Logo

Job Id:
0000175808

Job Category:
Information Technology

Job Location:
REMOTE, Remote

Security Clearance:
No Clearance

Business Unit:
Piper Companies

Division:
Not Defined

Position Owner:
Jackie Allen

Piper Companies is seeking a Threat Investigator for a leading cybersecurity-focused organization. The Threat Investigator role is a fully remote position that requires working Eastern Standard Time (EST) hours. The Threat Investigator will play a key role in identifying, investigating, and responding to advanced threats across enterprise environments, with a strong emphasis on Splunk analytics, User and Entity Behavior Analytics (UEBA), and CSIRT support. An ideal candidate for the Threat Investigator role is an experienced cybersecurity professional with expert-level Splunk skills and a proven background in threat detection and incident response.


Responsibilities of the Threat Investigator:

• Write and optimize complex SPL (Search Processing Language) queries from scratch to identify threats, hunt for malicious activity, and improve detection capabilities.

• Leverage UEBA technologies to analyze user and entity behaviors, identify anomalies, and investigate potential security incidents.

• Support CSIRT operations by conducting threat investigations, triaging alerts, and assisting with incident response efforts.

• Develop and maintain Splunk dashboards, reports, correlations, and detection content to enhance visibility across the environment.

• Collaborate with security engineering and operations teams to improve threat monitoring, detection, and response processes.


Qualifications of the Threat Investigator:

• 4+ years of experience in threat hunting, threat investigation, incident response, or cybersecurity operations.

• Expert-level experience with Splunk, including advanced SPL development and dashboard creation.

• Strong hands-on experience with UEBA platforms and behavioral analytics methodologies.

• Experience supporting CSIRT functions and investigating complex security incidents across enterprise environments.

• Knowledge of MITRE ATT&CK, threat intelligence, and modern detection engineering practices.


Compensation for the Threat Investigator includes:

• Salary range: $125,000 – $175,000 depending on experience

• Comprehensive benefits package including medical, dental, vision, 401(k), PTO, Sick Leave as required by law

• This job opens for applications on 10/04/2026. Applications for this job will be accepted for at least 30 days from the posting date.


#LI-JA1

#LI-REMOTE

Apply For This Position

Personal Information

Required
Required
Required
Required
Required
Required
Required

Additional Details

Required
Required
Required

Voluntary Self-identification Form

Required
Required
Required

Veteran Status *

Discharge Date:

Resume Upload

Please note only files with .pdf, .docx, or .doc file extensions are accepted.

Currently selected file:

Don't have a resume?