Threat Investigator

Piper Companies

Durham (NC)

Hybrid

USD 120,000 - 150,000

Full time

6 days ago
Be an early applicant
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Benefits offered by this job

Comprehensive benefits package

Job summary

Piper Companies is seeking a Threat Investigator to join a leading cybersecurity organization in a hybrid capacity in Durham, NC. The role focuses on identifying, analyzing, and responding to advanced cyber threats to safeguard enterprise systems, networks, and data.

Responsibilities include proactive threat hunting, investigating security alerts and incidents, analyzing threat intelligence and MITRE ATT&CK techniques, and collaborating with incident response, SOC, and engineering teams to

Qualifications

  • 4+ years of experience in cyber threat investigation, threat hunting, incident response, or security operations.
  • Experience with SIEM platforms such as Splunk, Sentinel, QRadar, or similar technologies.
  • Strong understanding of threat intelligence frameworks (MITRE ATT&CK).
  • Hands-on experience with EDR and security monitoring tools.
  • Proficiency analyzing Windows, Linux, cloud, and network security events.
  • Familiarity with malware analysis and digital forensics.
  • Strong analytical, communication, and documentation skills.
  • Certifications like GCIH, GCFA, GCIA, CISSP, Security+ or equivalent preferred.
  • Bachelor's degree in Cybersecurity/CS/IT or related field preferred.

Responsibilities

  • Conduct proactive threat hunting across enterprise environments to identify indicators of compromise and malicious behavior.
  • Investigate security alerts, incidents, and anomalies to determine scope, impact, and root cause.
  • Analyze threat intelligence, attacker TTPs, and emerging cyber risks.
  • Correlate data from SIEM, EDR, IDS/IPS, and network monitoring platforms.
  • Develop and document investigative findings, response actions, and recommendations for security improvements.
  • Collaborate with incident response, SOC, engineering, and infrastructure teams to remediate identified threats.
  • Create and maintain threat detection logic, use cases, and investigative playbooks.
  • Support digital forensic investigations and evidence collection efforts when necessary.

Skills

Threat investigation
Threat hunting
Incident response
Security operations
MITRE ATT&CK
Analytical skills
Documentation
Communication

Education

Bachelor's degree in Cybersecurity/CS/IT
GCIH/GCFA/GCIA/CISSP/Security+ or equivalent certifications

Tools

SIEM: Splunk
SIEM: Microsoft Sentinel
SIEM: IBM QRadar
EDR tools
Network monitoring

Job description

Piper Companies is seeking a Threat Investigator to join a leading cybersecurity organization in a hybrid capacity in Durham, NC. The Threat Investigator will play a critical role in identifying, analyzing, and responding to advanced cyber threats while helping to safeguard enterprise systems, networks, and sensitive data from evolving security risks.

Responsibilities of the Threat Investigator:
  • Conduct proactive threat hunting activities across enterprise environments to identify indicators of compromise and malicious behavior.
  • Investigate security alerts, incidents, and anomalies to determine scope, impact, and root cause.
  • Analyze threat intelligence, attacker tactics, techniques, and procedures (TTPs), and emerging cyber risks.
  • Correlate data from security tools including SIEM, EDR, IDS/IPS, and network monitoring platforms.
  • Develop and document investigative findings, response actions, and recommendations for security improvements.
  • Collaborate with incident response, SOC, engineering, and infrastructure teams to remediate identified threats.
  • Create and maintain threat detection logic, use cases, and investigative playbooks.
  • Support digital forensic investigations and evidence collection efforts when necessary.
Qualifications of the Threat Investigator:
  • 4+ years of experience in cyber threat investigation, threat hunting, incident response, or security operations.
  • Experience utilizing SIEM platforms such as Splunk, Sentinel, QRadar, or similar technologies.
  • Strong understanding of threat intelligence frameworks, including MITRE ATT&CK.
  • Hands‑on experience with endpoint detection and response (EDR) tools and security monitoring technologies.
  • Proficiency analyzing Windows, Linux, cloud, and network security events.
  • Familiarity with malware analysis principles and digital forensics methodologies.
  • Strong analytical, communication, and documentation skills.
  • Relevant certifications such as GCIH, GCFA, GCIA, CISSP, Security+, or comparable certifications are preferred.
  • Bachelor's degree in Cybersecurity, Computer Science, Information Technology, or a related field preferred.
Compensation for the Threat Investigator includes:
  • Salary range: $120,000 - $150,000 depending on experience
  • Comprehensive benefits package including medical, dental, vision, and prescription coverage

This job opens for applications on 09/24/2026. Applications for this job will be accepted for at least 30 days from the posting date.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Threat Investigator
Threat Investigator

Piper Companies • North Carolina

Hybrid
USD 120,000 - 150,000
Hybrid work
Comprehensive benefits
Cyber Threat Hunter & IR Specialist (Hybrid)
Cyber Threat Hunter & IR Specialist (Hybrid)

Piper Companies • Durham (NC)

Hybrid
USD 120,000 - 150,000
Comprehensive benefits package
Hybrid Cyber Threat Investigator & Incident Responder
Hybrid Cyber Threat Investigator & Incident Responder

Piper Companies • North Carolina

Hybrid
USD 120,000 - 150,000
Hybrid work
Comprehensive benefits
Cybersecurity Integration Engineer
Cybersecurity Integration Engineer

Piper Companies • United States

Hybrid
USD 120,000 - 140,000
Medical benefits
Dental benefits
401(k)
Senior Incident Responder / Threat Hunter
Senior Incident Responder / Threat Hunter

ShorePoint, LLC • Albuquerque (NM)

On-site
USD 140,000 - 170,000
144 hours PTO
11 holidays
Health insurance
+2
Senior Incident Responder / Threat Hunter
Senior Incident Responder / Threat Hunter

ShorePoint • Albuquerque (NM)

On-site
USD 130,000 - 185,000
PTO 144 hours
11 holidays
Insurance premium covered 85%
+3
Cybersecurity Integration Engineer - 174712
Cybersecurity Integration Engineer - 174712

Piper Companies • United States

Hybrid
USD 120,000 - 140,000
Cybersecurity Integration Engineer - 174712
Cybersecurity Integration Engineer - 174712

Zachary Piper Solutions • Northern (KY)

Hybrid
USD 120,000 - 140,000
Medical, Dental, Vision
401(k)
Sick leave
Senior Threat Detection Engineer
Senior Threat Detection Engineer

ManpowerGroup Global, Inc. • New York (NY)

On-site
USD 65,000 - 70,000
Medical plans
Dental plan
Vision plan
+4
Senior Threat Hunter
Senior Threat Hunter

Peraton • Chandler (AZ)

On-site
USD 104,000 - 166,000