Threat Detection Engineer - Splunk & UEBA Expert

Piper Companies

United States

Remote

USD 130,000 - 160,000

Full time

2 days ago
Be an early applicant
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Benefits offered by this job

Medical benefits
Dental benefits
Vision benefits
401(k)
PTO

Job summary

Piper Companies is seeking a Detection & Threat Engineer to join a leading cybersecurity-focused organization. This role focuses on developing advanced threat detections, enhancing security monitoring, and improving threat visibility across enterprise environments.

The ideal candidate has hands-on Splunk experience, writes SPL queries from scratch, and can implement risk-based alerting and UEBA. You will collaborate with Threat Hunting and Incident Response to strengthen detections across cloud,

Qualifications

  • 4+ years of experience in detection engineering or related security role.
  • Advanced SPL query writing experience from scratch in Splunk.
  • Experience with Risk-Based Alerting (RBA) and UEBA implementations.
  • Familiarity with MITRE ATT&CK framework and threat hunting.
  • Experience supporting SOC/IR/Threat Hunting functions.
  • Knowledge of cloud, endpoint, and identity security monitoring.
  • Excellent analytical, troubleshooting, and communication skills.

Responsibilities

  • Develop and maintain advanced detection content within Splunk ES and related security platforms.
  • Write complex SPL queries from scratch to identify threats, suspicious behaviors, and emerging attack techniques.
  • Design, implement, and optimize Risk-Based Alerting (RBA) methodologies to improve detection fidelity and reduce alert fatigue.
  • Leverage UEBA capabilities to identify anomalous user and entity behavior across enterprise environments.
  • Partner with Threat Hunting, Incident Response, and Security Operations teams to improve detection coverage and investigation workflows.
  • Analyze attack patterns and adversary techniques to create proactive detection use cases aligned with the MITRE ATT&CK framework.
  • Continuously tune and enhance alerting logic to improve operational efficiency and threat visibility.
  • Support detection engineering initiatives for cloud, endpoint, identity, and network security technologies.

Skills

Splunk SPL
RBA
UEBA
Splunk Enterprise Security
MITRE ATT&CK
Threat Detection
Threat Hunting
Security Engineering

Tools

Splunk
Splunk Enterprise Security

Job description

Piper Companies is seeking a Detection & Threat Engineer to join a leading cybersecurity-focused organization. This role focuses on developing advanced threat detections, enhancing security monitoring, and improving threat visibility across enterprise environments.

The ideal candidate has hands-on Splunk experience, writes SPL queries from scratch, and can implement risk-based alerting and UEBA. You will collaborate with Threat Hunting and Incident Response to strengthen detections across cloud,

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Threat Detection Engineer - Splunk, UEBA & RBA
Threat Detection Engineer - Splunk, UEBA & RBA

Piper Companies • United States

Remote
USD 130,000 - 160,000
Medical
Dental
Vision
+2
Detection & Threat Engineer
Detection & Threat Engineer

Piper Companies • United States

Remote
USD 130,000 - 160,000
Medical
Dental
Vision
+2
Incident Response Engineer - Threat Hunting & Splunk
Incident Response Engineer - Threat Hunting & Splunk

Piper Companies • United States

Remote
USD 130,000 - 160,000
Medical, dental, vision
401(k)
PTO
Detection & Threat Engineer - 175934
Detection & Threat Engineer - 175934

Piper Companies • United States

Remote
USD 130,000 - 160,000
Medical benefits
Dental benefits
Vision benefits
+2
Remote Incident Response Engineer - Splunk & Threat Hunting
Remote Incident Response Engineer - Splunk & Threat Hunting

Piper Companies • United States

Remote
USD 130,000 - 160,000
Medical, dental, vision benefits
401(k) plan
Paid time off
Remote Threat Investigator | CSIRT & Splunk Expert
Remote Threat Investigator | CSIRT & Splunk Expert

Piper Companies • United States

Remote
USD 120,000 - 180,000
Medical benefits
Dental benefits
Vision benefits
+1
Threat Intelligence & Detection Engineer — Splunk
Threat Intelligence & Detection Engineer — Splunk

SECU • United States

On-site
USD 120,000 - 180,000
Remote Threat Hunter & Incident Response Specialist
Remote Threat Hunter & Incident Response Specialist

Piper Companies • United States

Remote
USD 120,000 - 180,000
Medical, dental, vision benefits
401(k)
PTO
Remote Threat Hunter - Proactive Security & Splunk Expert
Remote Threat Hunter - Proactive Security & Splunk Expert

Piper Companies • United States

Remote
USD 130,000 - 160,000
Health insurance
Vision insurance
Dental insurance
+2
Lead Detection Engineer — Splunk ES & Threat Hunting (Remote)
Lead Detection Engineer — Splunk ES & Threat Hunting (Remote)

K&A Technologies LLC • Washington

Hybrid
USD 165,000 - 190,000