Threat Investigator
Location: Remote
Compensation: Salary
Reviewed: Sun, Oct 04, 2026
This job expires in: 30 days
Job Summary
Working remotely on a full-time basis, the Threat Investigator will identify, investigate, and respond to advanced threats across enterprise environments, utilizing expert-level Splunk skills and supporting CSIRT operations.
Key responsibilities
- Write and optimize complex SPL queries to identify threats and enhance detection capabilities
- Leverage UEBA technologies to analyze user behaviors and investigate potential security incidents
- Support CSIRT operations by conducting threat investigations and assisting with incident response efforts
Required qualifications
- 4+ years of experience in threat hunting, threat investigation, incident response, or cybersecurity operations
- Expert-level experience with Splunk, including advanced SPL development and dashboard creation
- Strong hands-on experience with UEBA platforms and behavioral analytics methodologies
- Experience supporting CSIRT functions and investigating complex security incidents
- Knowledge of MITRE ATT&CK, threat intelligence, and modern detection engineering practices
Complete Job Description
The complete job description is available to members. Premium membership includes:
Full access to 38,946 remote jobs from human-vetted companies, updated daily
Resume Builder - AI-powered tool to craft, enhance, and tailor your resume to a specific job
Twice-monthly live group coaching and the full Remote Career Center
20% member discount on Career Services
Backed by a 30-day money-back guarantee