# Detection Engineering Technical Leader at Cisco

- Company: Cisco
- What the company does: Cisco is a worldwide technology leader powering an inclusive future for all. Learn more about our products, services, solutions, and innovations. Backed by Sequoia and Menlo.
- Company website: https://www.cisco.com/
- Type: Startups
- Level: Mid level
- Location: 16 Locations
- Work setup: On-site
- Posted: 2026-09-23
- Apply by: 2026-11-07
- Apply: https://cisco.wd5.myworkdayjobs.com/en-US/Cisco_Careers/job/Denver-Colorado-US/Detection-Engineering-Technical-Leader_2022041-1
- Page: https://www.1752.vc/careers/jobs/cisco-detection-engineering-technical-leader/

## About the role

You'll be joining a team of like-minded engineers focused on securing our enterprise and building for the future — together, we engineer scalable detection systems and automation that power 24x7 monitoring operations and rapid response to cybersecurity threats.

## What they're looking for

- Deployed and maintained Splunk Enterprise Security content in a production SOC environment, including detections , data models, and data management
- Built detection queries in SPL at scale, including risk- based alerting , statistical baselining, and optimized searches across high-volume data sources
- Integrated AI/ML techniques (e.g., anomaly detection, LLM-assisted workflows) into detection engineering pipelines to reduce false positive rates and accelerate content development
- Translated threat intelligence and ATT&CK-mapped adversary behaviors into detection requirements with defined coverage metrics and measurable success criteria
- Contributed to collaborative development workflows using Git-based platforms (GitHub, GitLab, or Bitbucket), including branch strategy, code review, and CI/CD integration
- Built or tuned security monitoring coverage across AWS, GCP, or Azure, including native logging services (e.g., CloudTrail, GCS audit logs, Azure Monitor) and cloud-native threat detection

