Insider Threat Security Engineer

Piper Companies

United States

Remote

USD 120,000 - 160,000

Full time

48 hours ago
Be an early applicant
Application generator

A complete application in a minute — tailored resume and cover letter, ready to send.

Get past ATS filters

Benefits offered by this job

Health benefits
Vision benefits
Dental benefits
Paid time off
Holiday leave

Job summary

Piper Companies is seeking an Insider Threat Security Engineer to join a leading technology organization. The role supports the CSIRT, focusing on identifying, investigating, and mitigating internal threats while reducing enterprise risk.

The position is a long-term contract opportunity and allows remote work within the United States. You will work alongside cybersecurity, systems, networking, and operations teams to strengthen threat detection and response capabilities.

Qualifications

  • 8+ years of cybersecurity, IR, threat hunting, or insider threat experience.
  • Hands-on Splunk or SIEM experience (QRadar/LogRhythm/Microsoft Sentinel/Elastic).
  • Ability to create and modify SPL queries from scratch.
  • Experience with UBA/UEBA solutions to investigate suspicious activity.

Responsibilities

  • Investigate insider security incidents as part of CSIRT.
  • Conduct threat hunting and detect anomalous user behavior enterprise-wide.
  • Lead incident response: investigate, contain, remediate, document.

Skills

Threat hunting
Incident response
Security operations
Insider threat programs
UBA/UEBA
SPL queries

Tools

Splunk
QRadar
LogRhythm
Microsoft Sentinel
Elastic

Job description

Piper Companies is seeking an Insider Threat Security Engineer to join a leading technology organization. The Insider Threat Security Engineer will serve as a critical member of the Computer Security Incident Response Team (CSIRT), focusing on identifying, investigating, and mitigating internal security threats while helping reduce risk across the enterprise. This role is ideal for a hands‑on security professional with a strong background spanning systems, networking, and cybersecurity operations.

The Insider Threat Security Engineer role is a long term contract opportunity and allows you to work remote in the United States.

Responsibilities of the Insider Threat Security Engineer:
  • Investigate actual and suspected insider security incidents as part of the Computer Security Incident Response Team (CSIRT).
  • Conduct threat hunting activities and proactively identify anomalous user behavior across the enterprise environment.
  • Lead incident response efforts including investigation, containment, remediation, and documentation of security events.
  • Develop, optimize, and maintain SIEM detections and custom SPL queries to identify suspicious activity.
  • Utilize User Behavior Analytics (UBA) and User & Entity Behavior Analytics (UEBA) tools to detect insider threats and reduce organizational risk.
  • Collaborate with infrastructure, networking, and security teams to investigate complex incidents and improve detection capabilities.
  • Analyze logs, network traffic, system activity, and endpoint telemetry to support investigations and security monitoring efforts.
Requirements of the Insider Threat Security Engineer:
  • 8+ years of experience in cybersecurity, incident response, threat hunting, security operations, or insider threat programs.
  • Hands‑on experience with Splunk or comparable SIEM platforms such as QRadar, LogRhythm, Microsoft Sentinel, or Elastic.
  • Ability to create and modify SPL queries from scratch.
  • Experience utilizing UBA and/or UEBA solutions to investigate suspicious user activity.
  • Strong understanding of networking concepts including TCP/IP, DNS, routing, switching, and network security fundamentals.
  • Background in systems administration, network engineering, or infrastructure operations prior to moving into security is highly preferred.
  • Experience performing hands‑on security investigations, threat hunting, and incident response activities.
Compensation for the Insider Threat Security Engineer:
  • $120,000 - $160,000
  • Full Comprehensive Benefits: Health, Vision, Dental, PTO, Paid Holiday and Sick Leave if Required by Law.

Keywords:

Insider Threat, Security Engineer, CSIRT, Incident Response, Threat Hunting, Splunk, SPL, SIEM, User Behavior Analytics, UBA, UEBA, Insider Risk Management, Security Operations Center, SOC, Cybersecurity, Security Investigations, Log Analysis, Network Security, Systems Administration, Network Engineering, Endpoint Security, Threat Detection, Security Monitoring, Security Analytics, TCP/IP, DNS, Microsoft Sentinel, QRadar, LogRhythm, Elastic, Security Operations, Risk Management

This job opens for applications on 10/09/2026. Applications for this job will be accepted for at least 30 days from the posting date.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Threat Hunting Investigator - 176036
Threat Hunting Investigator - 176036

Piper Companies • United States

Remote
USD 140,000 - 170,000
Medical
Dental
Vision
+2
Threat Hunting Investigator - 176115
Threat Hunting Investigator - 176115

Piper Companies • United States

Remote
USD 140,000 - 165,000
Remote work
Long-term engagement
Threat Hunting Investigator
Threat Hunting Investigator

Piper Companies • United States

Remote
USD 140,000 - 165,000
Medical insurance
Dental insurance
Vision insurance
+2
Threat Hunting Investigator - 175695
Threat Hunting Investigator - 175695

Piper Companies • United States

Remote
USD 120,000 - 160,000
Health, Vision, Dental
PTO and Paid Holidays
Sick Leave (as required by law)
Threat Investigator - 175638
Threat Investigator - 175638

Piper Companies • United States

Remote
USD 120,000 - 180,000
Medical benefits
Dental benefits
Vision benefits
+1
Incident Response Engineer - 175966
Incident Response Engineer - 175966

Piper Companies • United States

Remote
USD 130,000 - 160,000
Medical, dental, vision benefits
401(k) plan
Paid time off
Incident Response Engineer
Incident Response Engineer

Piper Companies • United States

Remote
USD 130,000 - 160,000
Medical, dental, vision
401(k)
PTO
Threat Investigator
Threat Investigator

Piper Companies • United States

On-site
USD 120,000 - 180,000
Medical, dental, vision benefits
401(k)
PTO
Remote Insider Threat Security Engineer – Threat Hunting & IR
Remote Insider Threat Security Engineer – Threat Hunting & IR

Piper Companies • United States

Remote
USD 120,000 - 160,000
Health benefits
Vision benefits
Dental benefits
+2
Remote Threat Hunter: Insider Risk & Detection Expert
Remote Threat Hunter: Insider Risk & Detection Expert

Piper Companies • United States

Remote
USD 140,000 - 165,000
Medical insurance
Dental insurance
Vision insurance
+2