Piper Companies is seeking a Threat Investigator to support a leading cybersecurity and incident response organization focused on protecting enterprise environments from advanced threats. The Threat Investigator role is ideal for a security professional with experience in CSIRT operations, threat detection, incident response, and user behavior analytics, particularly within Splunk Enterprise Security and Splunk UEBA environments.
Responsibilities of the Threat Investigator:
- Monitor, detect, investigate, and respond to security incidents across enterprise environments.
- Utilize Splunk Enterprise Security and Splunk UEBA to identify anomalous user behavior and potential threats.
- Conduct threat assessments, event monitoring, incident detection, and response activities.
- Perform in-depth investigations and root cause analysis of security events and alerts.
- Develop mitigation strategies and recommendations to reduce organizational security risk.
- Analyze user behavior trends and suspicious activity to support proactive threat hunting efforts.
- Collaborate with security operations, engineering, and leadership teams during incident response activities.
- Support vulnerability management initiatives and contribute to security architecture discussions.
- Document investigative findings and provide recommendations to stakeholders.
Qualifications of the Threat Investigator:
- Must be eligible to obtain a Secret Clearance.
- Experience in Threat Investigation, Incident Response, SOC, or CSIRT environments.
- Hands-on experience with Splunk Enterprise Security and/or Splunk User Behavior Analytics (UEBA).
- Strong understanding of enterprise security concepts, threat detection methodologies, and incident response processes.
- Experience investigating suspicious user activity, insider threat indicators, and behavioral anomalies.
- Familiarity with security monitoring, log analysis, SIEM technologies, and threat intelligence.
- Knowledge of security frameworks, attack techniques, and cyber threat lifecycle concepts.
- Strong analytical, troubleshooting, and communication skills.
- Ability to work remotely while supporting distributed security operations teams.
Compensation for the Threat Investigator includes:
- Salary range: $120,000 – $180,000 depending on experience
- Comprehensive benefits package including medical, dental, vision, 401(k), and PTO
This job opens for applications on 10/02/2026. Applications for this job will be accepted for at least 30 days from the posting date.