Full-Time

Associate Threat Researcher

Posted on 9/8/2025

Panther Labs

Panther Labs

51-200 employees

Subscription-based cloud security monitoring and detection

Compensation Overview

CA$112k - CA$122k/yr

Remote in Canada

Remote

Category
IT & Security (4)
, , ,
Requirements
  • 1–2 years of experience in a security-related role such as SOC analyst, detection engineer, or incident responder.
  • Experience applying the MITRE ATT&CK framework for threat intelligence analysis and threat modeling.
  • Experience in operating, monitoring, and securing cloud infrastructure.
  • Proficiency with detection and search languages such as SPL, KQL, or Python.
  • Strong problem-solving skills, adaptability, and a passion for continuous learning in the cybersecurity field.
Responsibilities
  • Support the development and tuning of detection content for Panther’s security platform.
  • Assist in configuring and testing lab environments to replicate common attack patterns.
  • Proactively assess the threat landscape to deliver content for Panther’s security platform based on value, customer needs, and emerging threats.
  • Use data to monitor and iterate on detection rules, cloud scanning policies, and dashboards to increase their efficacy over time.
  • Contribute back to open source projects such as our Panther Analysis repo and Panther’s Sigma backend.
  • Write documentation for detection content and strategy.

Panther Labs provides a cloud-based platform for security monitoring and threat detection that uses detection as code to manage rules as software. It includes a centralized security data lake to store and index large volumes of security data for fast analysis. The system ingests logs, runs code-based detection rules, and surfaces findings through dashboards and alerts, scalable to organizational needs under a subscription model. Panther differentiates itself by treating detection logic as code for easier versioning and rapid updates, enabling faster deployment across many sources and environments, with the goal of helping security teams monitor and respond at scale.

Company Size

51-200

Company Stage

Acquired

Total Funding

$141.6M

Headquarters

null

Founded

2018

Simplify Jobs

Simplify's Take

What believers are saying

  • $120M funding values Panther at $1.45B post-AI platform launch.
  • HealthEquity cuts investigation times 90%; Tealium reduces alerts 85%.
  • Zapier, Dropbox, Asana trust Panther for cloud SIEM efficiency.

What critics are saying

  • Exabeam Copilot erodes Panther's alert reduction via autonomous remediation.
  • Splunk AI post-Cisco acquisition drives 30% Panther customer churn.
  • Snowflake breach forces Dropbox migration due to compute vulnerabilities.

What makes Panther Labs unique

  • Panther uses detection-as-code with Python/SQL for flexible threat rules.
  • Native Snowflake security data lake enables scalable real-time analysis.
  • AI SOC Platform automates triage with closed-loop detection tuning.

Help us improve and share your feedback! Did you find this helpful?

Benefits

Equity

Unlimited PTO policy, with a minimum requirement of 15 days off per year, observing major US holidays, as well as an end of the year break

Latest tech equipment & budget for your customized tech needs

Comprehensive medical, dental, and vision coverage

401k program

Remote-friendly

Opportunities to attend industry conferences

Annual company off-sites in awesome location

Company News

PR Newswire
Mar 19th, 2026
Panther launches complete AI SOC platform with closed-loop learning to cut alert volume 85%

Panther has launched its AI SOC Platform, valued at $1.45 billion following a $120 million funding round. The security operations platform uses AI agents that continuously learn organisational patterns and risk profiles to automate alert investigation and detection tuning. The platform features an AI Alert Triage Agent that autonomously investigates alerts using full environmental context, and a closed-loop system where investigation outcomes automatically refine detection rules. Additional capabilities include conversational investigation tools, proactive threat coverage analysis, and AI-powered detection building that converts natural language into production-ready code. Early customers report significant efficiency gains: HealthEquity achieved 90% faster investigation times, whilst Tealium reduced total alert volume by 85%. The platform integrates data lakes, detection engines and organisational knowledge into a single system designed to improve over time.

Business Wire
Jan 23rd, 2024
Panther Labs Achieves Aws Security Competency Status

SAN FRANCISCO--(BUSINESS WIRE)--Panther Labs, a security information and event management (SIEM) delivering code-driven SecOps at scale, announced today that it has achieved Amazon Web Services (AWS) Security Competency status. This designation recognizes that Panther has demonstrated proven technology and deep expertise that helps customers achieve their cloud security goals. Achieving the AWS Security Competency differentiates Panther as an AWS Partner Network (APN) member that provides specialized software designed to help enterprises adopt, develop and deploy complex security projects on AWS. To receive the designation, AWS Partners must possess deep AWS expertise and experience and deliver solutions seamlessly on AWS. “Panther is thrilled to achieve AWS Security Competency status,” said William Lowe, COO at Panther. “As some of the world’s leading companies rapidly build the future on the cloud, cybersecurity and threat detection are mission-critical across all industries

Help Net Security
Dec 6th, 2023
Panther Labs introduces Security Data Lake Search and Splunk Integration capabilities

Panther Labs launched its new Security Data Lake Search and Splunk Integration capabilities.

University of Pittsburgh
Dec 5th, 2023
Seven Panthers Earn All-Region Awards, Most in Program History

This is the third time in four years a Panther has been named Player of the Year.

Middlebury College
Nov 20th, 2023
Rookie Audrey MacLean Earns All-American Accolades

The Panther was named to the All-NESCAC First Team, NESCAC Rookie of the Year, and was awarded conference performer of the week honors on two occasions this fall.

INACTIVE