22 hours ago
Base Salary
$214k - $310k/yr
Responsibilities
- Design and build systems combining security-relevant data, detection signals, context, and foundation models to detect and predict threats.
- Prototype and test AI features for event decoding, environment understanding, anomaly prediction, and threat prediction with security experts and researchers.
- Develop AIDevOps pipelines for rapid experimentation with data, knowledge bases, models, and context memory.
- Architect and build distributed platforms that correlate trillions of events and signals into explainable findings and alerts.
- Collaborate with product and platform teams on scalable AI-enhanced threat detection, prediction, triage, and resolution workflows.
- Contribute to the architecture of AI-native security operations and trusted enterprise automation.
Requirements
- Bachelor’s degree with 12+ years of related experience or master’s degree with 8+ years of related experience.
- Understanding of security operations concepts including attack surface management, threat analytics, detection, triage, investigation, and response.
- Experience using security telemetry such as endpoint logs, network traffic, authentication events, and cloud audit trails in detection and investigation workflows.
- Experience implementing data platforms, data lakes, or data warehouses and building large-scale security telemetry ingestion, parsing, and normalization pipelines.
- Expertise designing and implementing distributed systems, particularly storage systems and storage access layers.
- Strong senior-level Python development experience building scalable backend services, APIs, and automation workflows.
- Proficiency with CI/CD pipelines, GitHub or GitLab, Jira, and automated testing frameworks.
- Experience designing agent systems that perform coding tasks.
- Experience collaborating with product managers, security subject matter experts, and engineers.
- Preferred experience with enterprise security products, TDIR/SIEM architectures, correlation searches, threat hunting systems, Splunk APIs or internals, or the Splunk platform.
- Preferred background as a Tier 3 SOC analyst or equivalent, including SecOps workflow automation and resilient detection infrastructure.
- Preferred experience with event storage systems, custom cybersecurity embeddings, RAG or GraphRAG pipelines, FAISS, Pinecone, and model integration involving large language models or GNN, GCN, or GAT models.
- Preferred ability to design AI evaluation experiments and interest or experience in analyst UX, human factors, trust, usability, and decision support.
Benefits
- Medical, dental, and vision insurance; 401(k) with Cisco matching contribution; paid parental leave; short- and long-term disability coverage; and basic life insurance.
- Potential eligibility for Cisco restricted stock unit grants and annual bonuses for non-sales roles.
- Paid holidays, floating holiday, birthday leave, year-end shutdown, personal wellness days, vacation or flexible time off, sick time, emergency family leave, and optional paid volunteer days.
Tech Stack
PythonSplunk
Categories
About Cisco
Cisco is the worldwide technology leader that is revolutionizing the way organizations connect and protect in the AI era. For more than 40 years, Cisco has securely connected the world. With its industry leading AI-powered solutions and services, Cisco enables its customers, partners and communities to unlock innovation, enhance productivity and strengthen digital resilience. With purpose at its core, Cisco remains committed to creating a more connected and inclusive future for all.
