Cybersecurity Integration Engineer

Piper Companies

North Carolina

Hybrid

USD 120,000 - 140,000

Full time

5 days ago
Be an early applicant
Application generator

Get a reply from this recruiter — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Job summary

Piper Companies in RTP, NC seeks a Cybersecurity Integration Engineer to join a leading security operations team in a hybrid environment. This role connects security tools, data sources, threat intelligence, and workflows to create a more automated, reliable SOC.

You will engineer integrations (OpenCTI, Splunk, TheHive), develop automation and SOAR-style workflows, build Splunk dashboards and data models, and advance data integrity for detection, threat hunting, and incident response using

Qualifications

  • Bachelor's degree in Cybersecurity, Computer Science, Information Technology, Engineering, or a related discipline preferred.
  • 5+ years of experience in Security Operations, Security Engineering, Splunk Engineering, or Cybersecurity Platform Integration.
  • Strong hands-on experience with Splunk Enterprise, including SPL development, dashboards, alerts, saved searches, indexes, KVStores, and custom application development.
  • Experience developing automation and orchestration solutions using Python, APIs, and scripting to reduce manual effort and improve operational efficiency.
  • Knowledge of threat intelligence lifecycle management, enrichment processes, and intelligence-sharing methodologies.

Responsibilities

  • Engineer and maintain integrations between OpenCTI, Splunk, TheHive, and other security operations platforms.
  • Develop and support security automation and SOAR-style workflows that improve SOC investigation, triage, escalation, and incident response processes.
  • Build, maintain, and enhance Splunk security applications, dashboards, saved searches, alerts, reports, and supporting data models.
  • Design and lead SOC data integrity initiatives to ensure the accuracy, completeness, and reliability of security telemetry.
  • Develop alerting and reporting mechanisms to identify missing data, field mismatches, telemetry gaps, and data quality issues that may impact detection logic, threat hunting, incident response, or compliance requirements.
  • Integrate security tools and data sources into Splunk to improve visibility, correlation, and operational effectiveness.

Skills

SOC Operations
Security Engineering
Splunk SPL
Python Scripting
REST APIs
Threat Intelligence
Data Integrity
SOAR workflows

Education

Bachelor's degree in Cybersecurity/CS/IT/Engineering

Tools

Splunk Enterprise
OpenCTI
TheHive

Job description

Piper Companies is seeking a Cybersecurity Integration Engineer to join a leading cybersecurity operations team supporting mission-critical security initiatives. This role will be connecting security tools, data sources, threat intelligence, and workflows to create a more automated, efficient, and reliable security operations environment. This is a long-term contract position requires an active Secret Clearance within a hybrid environment located in RTP, NC.

Responsibilities of the Cybersecurity Integration Engineer include:
  • Engineer and maintain integrations between OpenCTI, Splunk, TheHive, and other security operations platforms.
  • Develop and support security automation and SOAR-style workflows that improve SOC investigation, triage, escalation, and incident response processes.
  • Build, maintain, and enhance Splunk security applications, dashboards, saved searches, alerts, reports, and supporting data models.
  • Design and lead SOC data integrity initiatives to ensure the accuracy, completeness, and reliability of security telemetry.
  • Develop alerting and reporting mechanisms to identify missing data, field mismatches, telemetry gaps, and data quality issues that may impact detection logic, threat hunting, incident response, or compliance requirements.
  • Integrate security tools and data sources into Splunk to improve visibility, correlation, and operational effectiveness.
Qualifications for the Cybersecurity Integration Engineer include:
  • Active Secret Clearance required.
  • Bachelor’s degree in Cybersecurity, Computer Science, Information Technology, Engineering, or a related discipline preferred.
  • 5+ years of experience in Security Operations, Security Engineering, Splunk Engineering, or Cybersecurity Platform Integration roles.
  • Experience as a SOC Analyst who transitioned into a Security Engineering or Splunk Engineering role strongly preferred.
  • Strong hands-on experience with Splunk Enterprise, including SPL development, dashboards, alerts, saved searches, indexes, KVStores, and custom application development.
  • Experience developing automation and orchestration solutions using Python, APIs, and scripting to reduce manual effort and improve operational efficiency.
  • Knowledge of threat intelligence lifecycle management, enrichment processes, and intelligence-sharing methodologies.
Compensation for the Cybersecurity Integration Engineer includes:
  • Salary Range: $120,000 – $140,000/year
  • Comprehensive Benefits: Medical, Dental, Vision, 401(k), and applicable sick leave

Keywords: Secret Clearance, SOC Analyst, Security Engineer, Splunk Engineer, Splunk Enterprise, SPL, Splunk Dashboards, Splunk Alerts, Security Tool Integration, OpenCTI, TheHive, Threat Intelligence, Threat Intelligence Integration, Security Automation, SOAR, Incident Response, Detection Engineering, Threat Hunting, Security Operations Center (SOC), Python, API Integrations, REST APIs, Workflow Automation, Security Analytics, Data Integrity Monitoring, Security Telemetry, Data Quality Assurance, SIEM, Security Monitoring, Log Analysis, Platform Engineering, Cybersecurity, Security Operations, Investigation Automation, Case Management, Security Orchestration, Event Correlation, Custom Splunk Applications, Security Data Pipelines, Telemetry Validation, Enterprise Security.

#HYBRID

This job is open for applications on 9/10/2026 and will remain open for at least 30 days from the posting date

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Cybersecurity Integration Engineer
Cybersecurity Integration Engineer

Zachary Piper Solutions • North Carolina

Hybrid
USD 120,000 - 140,000
Medical insurance
Dental insurance
Vision insurance
+2
SOC / Security Automation & Integration Engineer
SOC / Security Automation & Integration Engineer

Piper Companies • Raleigh (NC)

On-site
USD 110,000 - 135,000
Medical, Dental, Vision
Sick leave
401K
+1
Hybrid Cybersecurity Integration Engineer – Secret Clearance
Hybrid Cybersecurity Integration Engineer – Secret Clearance

Zachary Piper Solutions • North Carolina

Hybrid
USD 120,000 - 140,000
Medical insurance
Dental insurance
Vision insurance
+2
Hybrid RTP Cybersecurity Automation & Integration Engineer
Hybrid RTP Cybersecurity Automation & Integration Engineer

Piper Companies • North Carolina

Hybrid
USD 120,000 - 140,000
SIEM Engineer
SIEM Engineer

Piper Companies • Raleigh (NC)

Hybrid
USD 115,000 - 135,000
Cloud Security Engineer
Cloud Security Engineer

Piper Companies • Raleigh (NC)

On-site
USD 115,000 - 135,000
Cigna Medical
Dental
Vision
+4
Onsite SOC Automation & Integration Eng (Secret Clearance)
Onsite SOC Automation & Integration Eng (Secret Clearance)

Piper Companies • Raleigh (NC)

On-site
USD 110,000 - 135,000
Medical, Dental, Vision
Sick leave
401K
+1
Security Automation & Integration Engineer
Security Automation & Integration Engineer

Piper Companies • United States

On-site
USD 130,000 - 160,000
Medical
Dental
Vision
+2
Splunk Engineer
Splunk Engineer

Piper Companies • Durham (NC)

On-site
USD 150,000 - 170,000
Comprehensive benefits package
401(k)
PTO
+1
Splunk / SOC Engineer
Splunk / SOC Engineer

Piper Companies • North Carolina

Hybrid
USD 100,000 - 120,000
Medical benefits
Dental benefits
Vision benefits
+2