Senior SIEM Security Engineer
Core
Design, build, validate, and operationalize enterprise-grade security telemetry, SIEM, observability, and automation platforms to protect Cisco's cloud-managed infrastructure serving millions of devices.
Role type
Senior IC SIEM Security Engineer
Builds
Security telemetry, SIEM, observability, and security automation platforms
Domain
Cloud security, SIEM engineering, observability
Deliverable
production ML models | product features | dashboards & analysis | infrastructure
Required skills
Splunk Cloud Platform, Splunk Enterprise Security, Splunk SOAR, AWS, Kubernetes, EKS, Ansible, Terraform, ArgoCD, Git, CI/CD, Splunk Observability Cloud, OpenTelemetry, OTel Collectors, Grafana, Prometheus, Linux systems administration, data pipeline engineering, correlation search design, alerting configuration
Preferred skills
Splunk Heavy Forwarders, Splunk Deployment Server, containerized workload security, Linux server fleet security, SaaS platform security, IoT environment security, AI-assisted engineering workflows, cross-functional technical initiative leadership
Technologies
Splunk Cloud Platform, Splunk Enterprise Security, Splunk SOAR, AWS, Kubernetes, EKS, Ansible, Terraform, ArgoCD, Git, CI/CD, Splunk Observability Cloud, OpenTelemetry, OTel Collectors, Grafana, Prometheus
Responsibilities
Analyze, design, and build security solutions protecting the Network Platform Organization at scale; Engineer and maintain security data pipelines for broad security visibility; Act as a technical mentor and subject matter expert for Splunk platform operations and security telemetry; Collaborate with security engineers, SRE, cloud infrastructure teams, compliance, and executive leadership to mature security telemetry and response programs; Deploy and maintain SIEM, observability, and security automation capabilities using infrastructure-as-code and configuration management
Seniority
Senior, hands-on IC