# Threat Investigator

**Company:** [Discord](https://hotfix.jobs/companies/discord)
**Location:** San Francisco, CA
**Role:** Security Engineering
**Salary:** $132k – $149k/yr
**Experience:** 5+ years
**Skills:** threat intelligence, investigations, Incident Management, Data Analysis, Machine Learning, case management systems, Cross-Functional Coordination
**Posted:** 2026-07-31

> Lead complex investigations into violent extremist and threat actor networks on Discord. Develop detection and disruption strategies, collaborate with policy, engineering, and ML teams, and serve as a subject matter expert on evolving threats. Requires 5+ years in threat intelligence or investigations.

## Job Description

## What You'll Be Doing

- Leading complex investigations into violent extremist and threat actor networks, developing and iterating on detection and disruption strategies across your investigative portfolio
- Executing on roadmap projects, including cross-functional coordination with policy, engineering, and ML/AI teams, documentation of behavioral trends, and identification of scalable mitigation strategies
- Leveraging investigative signals and subject matter expertise to inform threat prioritization decisions
- Identifying emergence of novel harm behaviors, and gaps in Discord's detection, policy, and enforcement capabilities
- Partnering with team program managers to develop and prioritize improvements to operational readiness
- Serving as a subject matter resource for teammates, leadership, and cross-functional partners

## What You Should Have

- 5+ years of experience in threat intelligence, investigations, or incident management, with a track record of leading complex, multi-stakeholder cases independently
- Deep expertise in at least one extremist or violent threat actor ecosystem, with the analytical flexibility to develop proficiency across new harm verticals as priorities shift
- Demonstrated ability to define scope, propose solutions, and drive projects to completion in ambiguous, high-change environments with minimal oversight
- Proficiency with data analysis tools, case management systems, and machine learning tooling to support network investigations and detection work
- Strong written and verbal communication skills, including the ability to translate complex, sensitive topics for non-expert audiences, and experience producing cross-functional product requests, intelligence products, and engaging with law enforcement, government, or external partners
- Collaborative approach to cross-functional work, with the ability to build consensus and coordinate across teams and time zones

## Bonus Points

- Additional language proficiency, particularly in languages relevant to high-harm threat actor communities
- Experience translating investigative findings into clear, actionable insights for non-expert or executive audiences

The US base salary range for this full-time position is $132,000 to $148,500 + equity + benefits.

## Similar roles

- [Security engineer, detection and response](https://hotfix.jobs/jobs/102df1cc-9995-42b0-ac7b-efad6eb10ca3) - Writer - San Francisco, CA - $132k – $258k/yr
- [GRC Engineer](https://hotfix.jobs/jobs/74fe741b-d4b0-4bf7-a4cf-e46547a0f775) - NinjaTrader - Chicago, IL - $130k – $145k/yr
- [Security Engineer, Cloud Infrastructure](https://hotfix.jobs/jobs/b0117560-de94-4dc1-ba75-291e6344ef60) - Mercor - San Francisco, CA - $130k – $500k/yr
- [Security Engineer, Application Security](https://hotfix.jobs/jobs/f2d0e34d-91a7-4864-8672-e4a6901e3ca0) - Mercor - San Francisco, CA - $130k – $500k/yr
- [Insider Threat Analyst](https://hotfix.jobs/jobs/fd205418-0c79-4388-b8ca-accc5d048621) - Coinbase - Remote - $135k – $159k/yr

**Apply:** https://hotfix.jobs/jobs/0e10adbc-18d1-40bd-b5e3-1861e755ef18
**Canonical:** https://hotfix.jobs/jobs/0e10adbc-18d1-40bd-b5e3-1861e755ef18