Job Information
Cisco Threat Research Engineer - XDR in Austin, Texas
Application window is expected to close by 1/15/2025
The ideal candidate for this role will be located anywhere in the US
What You’ll Do
We are seeking a Threat Research Engineer to design and implement behavioral-based detections for implementation by customers in the XDR environment. The person will serve as a Threat Detection Engineer and primarily interface with Development with the objective of improving attack detection from disparate data across a wide data set.
Who You Are
This is a technical role for a subject matter expert (SME). The role involves projects or issues of high complexity that require in-depth knowledge across multiple technical operations areas and business segments. This is a unique position as it will report to Solution Engineering, but work cross-functionality; it's very important to be able to work across teams in a collaborative manner.
As a Threat Research Engineer you will be responsible for:
Capturing requirements and developing testing strategies to assess integrations and workflows in order to support Cisco XDR Customer needs.
Developing detections based on understandings of cross product alerts and telemetry events.
Articulate complex attack sequences, tools, tactics and procedures used by various threat actors into engineering and detection requirements.
Working with various product development team to build and maintain an end to end system to support current and future workflow needs.
Identify strategic integration opportunities with new and existing customers.
Stay current on security products and best practices, advise on products as needed.
Collaborate with teams from across the organization
Minimum Qualifications:
Expert level understanding of Attack Tactics, techniques and procedures.
Experience with SOC, NOC, TOC, Threat Intelligence and/or Managed Security Service (MSS) operations.
Experience implementing security orchestration, automation and response (SOAR) technologies.
Senior level understanding of data flow, data formatting/normalization, logging best practices and data parsing between security products.
Experience interfacing with, and capturing requirements from customers.
Experience with API integration across products, applications and network environments.
Technical writing & Documentation skills
Preferred Qualifications:
Understanding of design and user experience
Strong analytical and organizational skills.
Excellent verbal and written communication, problem-solving, and time-management skills.
Ability to work efficiently and productively with minimal guidance or direction.
Good understanding of query optimization against large data sources so as to not cause performance impacts to the system.
Why Cisco?
#WeAreCisco. We are all unique, but collectively we bring our talents to work as a team, to develop innovative technology and power a more inclusive, digital future for everyone. How do we do it? Well, for starters - with people like you!
Nearly every internet connection around the world touches Cisco. We’re the Internet’s optimists. Our technology makes sure the data traveling at light speed across connections does so securely, yet it’s not what we make but what we make happen which marks us out. We’re helping those who work in the health service to connect with patients and each other; schools, colleges, and universities to teach in even the most challenging of times. We’re helping businesses of all shapes and sizes to connect with their employees and customers in new ways, providing people with access to the digital skills they need and connecting the most remote parts of the world - whether through 5G, or otherwise.
We tackle whatever challenges come our way. We have each other’s backs, we recognize our accomplishments, and we grow together. We celebrate and support one another - from big and small things in life to big career moments. And giving back is in our DNA (we get 10 days off each year to do just that).
We know that powering an inclusive future starts with us. Because without diversity and a dedication to equality, there is no moving forward. Our 30 Inclusive Communities, that bring people together around commonalities or passions, are leading the way. Together we’re committed to learning, listening, caring for our communities, whilst supporting the most vulnerable with a collective effort to make this world a better place either with technology, or through our actions.
So, you have colorful hair? Don’t care. Tattoos? Show off your ink. Like polka dots? That’s cool. Pop culture geek? Many of us are. Passion for technology and world changing? Be you, with us! #WeAreCisco
Cisco is an Affirmative Action and Equal Opportunity Employer and all qualified applicants will receive consideration for employment without regard to race, color, religion, gender, sexual orientation, national origin, genetic information, age, disability, veteran status, or any other legally protected basis.
Cisco will consider for employment, on a case by case basis, qualified applicants with arrest and conviction records.
Cisco
- Cisco Jobs