Threat Investigator
REMOTE, Remote
Job Id:
0000175808
Job Category:
Information Technology
Job Location:
REMOTE, Remote
Security Clearance:
No Clearance
Business Unit:
Piper Companies
Division:
Not Defined
Position Owner:
Jackie Allen
Piper Companies is seeking a Threat Investigator for a leading cybersecurity-focused organization. The Threat Investigator role is a fully remote position that requires working Eastern Standard Time (EST) hours. The Threat Investigator will play a key role in identifying, investigating, and responding to advanced threats across enterprise environments, with a strong emphasis on Splunk analytics, User and Entity Behavior Analytics (UEBA), and CSIRT support. An ideal candidate for the Threat Investigator role is an experienced cybersecurity professional with expert-level Splunk skills and a proven background in threat detection and incident response.
Responsibilities of the Threat Investigator:
• Write and optimize complex SPL (Search Processing Language) queries from scratch to identify threats, hunt for malicious activity, and improve detection capabilities.
• Leverage UEBA technologies to analyze user and entity behaviors, identify anomalies, and investigate potential security incidents.
• Support CSIRT operations by conducting threat investigations, triaging alerts, and assisting with incident response efforts.
• Develop and maintain Splunk dashboards, reports, correlations, and detection content to enhance visibility across the environment.
• Collaborate with security engineering and operations teams to improve threat monitoring, detection, and response processes.
Qualifications of the Threat Investigator:
• 4+ years of experience in threat hunting, threat investigation, incident response, or cybersecurity operations.
• Expert-level experience with Splunk, including advanced SPL development and dashboard creation.
• Strong hands-on experience with UEBA platforms and behavioral analytics methodologies.
• Experience supporting CSIRT functions and investigating complex security incidents across enterprise environments.
• Knowledge of MITRE ATT&CK, threat intelligence, and modern detection engineering practices.
Compensation for the Threat Investigator includes:
• Salary range: $125,000 – $175,000 depending on experience
• Comprehensive benefits package including medical, dental, vision, 401(k), PTO, Sick Leave as required by law
• This job opens for applications on 10/04/2026. Applications for this job will be accepted for at least 30 days from the posting date.
#LI-JA1
#LI-REMOTE