Threat Investigator

Zp Group Llc
  • Durham, NC
    3 days ago

    Job Description

    Responsibilities: of the Threat Investigator: • Conduct proactive threat hunting activities across enterprise environments to identify indicators of compromise and malicious behavior. • Investigate security alerts, incidents, and anomalies to determine scope, impact, and root cause. • Analyze threat intelligence, attacker tactics, techniques, and procedures (TTPs), and emerging cyber risks. • Correlate data from security tools including SIEM, EDR, IDS/IPS, and network monitoring platforms. • Develop and document investigative findings, response actions, and recommendations for security improvements. • Collaborate with incident response, SOC, engineering, and infrastructure teams to remediate identified threats. • Create and maintain threat detection logic, use cases, and investigative playbooks. • Support digital forensic investigations and evidence collection efforts when necessary. Qualifications: of the Threat Investigator: • 4+ years of experience in cyber threat investigation, threat hunting, incident response, or security operations. • Experience utilizing SIEM platforms such as Splunk, Sentinel, QRadar, or similar technologies. • Strong understanding of threat intelligence frameworks, including MITRE ATT&CK. • Hands-on experience with endpoint detection and response (EDR) tools and security monitoring technologies. • Proficiency analyzing Windows, Linux, cloud, and network security events. • Familiarity with malware analysis principles and digital forensics methodologies. • Strong analytical, communication, and documentation skills. • Relevant certifications such as GCIH, GCFA, GCIA, CISSP, Security+, or comparable certifications are preferred. • Bachelor's degree in Cybersecurity, Computer Science, Information Technology, or a related field preferred.

    Numbers & Facts

    LocationDurham, NC

    Skills

    • Analysis Skillsunmatched
    • CISSP - Certified Information Systems Security Professionalunmatched
    • Cloud Computingunmatched
    • Communication Skillsunmatched
    • CompTIA Security+unmatched
    • Computer Forensicsunmatched
    • Computer Hackingunmatched
    • Computer Scienceunmatched
    • Computer Securityunmatched
    • Cyber Investigationunmatched
    • Cyber Threat Huntingunmatched
    • Documentationunmatched
    • GCFA - GIAC Certified Forensic Analystunmatched
    • GCIA - GIAC Certified Intrusion Analystunmatched
    • GCIH - GIAC Certified Incident Handlerunmatched
    • Huntingunmatched
    • Incident Responseunmatched
    • Information Technology & Information Systemsunmatched
    • Information/Data Security (InfoSec)unmatched
    • Intelligence Analysisunmatched
    • Internet Securityunmatched
    • Intrusion Detection Systemsunmatched
    • Intrusion Prevention Systemsunmatched
    • Linux Operating Systemunmatched
    • Malware Analysisunmatched
    • Microsoft Windows Operating Systemunmatched
    • Network Monitoringunmatched
    • Network Securityunmatched
    • Root Cause Analysisunmatched
    • Security Attacksunmatched
    • Security Information and Event Management (SIEM)unmatched
    • Security Monitoringunmatched
    • Splunkunmatched
    • Use Casesunmatched

    Be found by employers

    5,500+ employers search our resume database daily. Add yours to get found by recruiters looking for candidates like you.

    Level up your application

    Professional resume templates

    Browse dozens of recruiter approved resume templates, layouts and formats. Choose your favorite and make it your own in minutes.

    Free resume templates

    Free resume builder

    Improve your existing resume or start from scratch and create a standout, ATS-friendly resume. Add job-specific content, download and apply.

    Free resume builder