Lead Detection Engineer – AI-Powered Security

Cisco

Dallas (TX)

Hybrid

USD 151,000 - 191,000

Full time

38 hours ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Hybrid work model
Annual bonuses
Restricted stock units (RSUs)

Job summary

Cisco is seeking a high-caliber Security Engineer in the Detection Engineering team to secure the Splunk portfolio. You will design scalable detection content, partner with incident response, and mentor peers on detection standards and patterns.

This hybrid role emphasizes building detection systems and data pipelines to transform telemetry into actionable alerts for triage. You will leverage AI/ML techniques to reduce false positives, implement risk-based alerting, and drive detection coverage

Qualifications

  • Bachelor’s + 8 years of related experience or a Master’s degree with 6+ years of related experience, or a PhD + 3 years of related experience as a Security Engineer, Detection Engineer, Security Content Developer, SOC Analyst, or Security Operations professional
  • Deployed and maintained Splunk Enterprise Security content in a production SOC environment, including detections, data models, and data management
  • Built detection queries in SPL at scale, including risk-based alerting, statistical baselining, and optimized searches across high-volume data sources
  • Integrated AI/ML techniques (e.g., anomaly detection, LLM-assisted workflows) into detection engineering pipelines to reduce false positive rates and accelerate content development
  • Translated threat intelligence and ATT&CK-mapped adversary behaviors into detection requirements with defined coverage metrics and measurable success criteria

Skills

Splunk ES experience
SPL queries
AI/ML in detection
Threat intelligence mapping
Security operations

Education

Bachelor’s degree in a related field
Master’s degree in related field
PhD in related field

Tools

GitHub
GitLab
Bitbucket
CloudTrail
Azure Monitor
GCS audit logs
SPL tooling

Job description

Cisco is seeking a high-caliber Security Engineer in the Detection Engineering team to secure the Splunk portfolio. You will design scalable detection content, partner with incident response, and mentor peers on detection standards and patterns.

This hybrid role emphasizes building detection systems and data pipelines to transform telemetry into actionable alerts for triage. You will leverage AI/ML techniques to reduce false positives, implement risk-based alerting, and drive detection coverage

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Lead Detection Engineer, AI-Driven Security
Lead Detection Engineer, AI-Driven Security

Cisco Systems, Inc. • Denver (CO)

Hybrid
USD 150,000 - 191,000
Paid holidays
Birthday off
Vacation time
+2
Lead Detection Engineer, Security Analytics
Lead Detection Engineer, Security Analytics

Socket.dev • Denver (CO)

Hybrid
USD 151,000 - 191,000
Detection Engineering Lead - AI-Driven Security Content
Detection Engineering Lead - AI-Driven Security Content

Cisco Systems • Boulder (CO)

Hybrid
USD 151,000 - 191,000
Medical insurance
Dental insurance
Vision insurance
+4
Senior AI & Security Platform Engineer
Senior AI & Security Platform Engineer

Cisco Systems, Inc. • San Francisco (CA), Northern (KY)

Hybrid
USD 187,000 - 308,000
401(k) with Cisco matching
Paid parental leave
Bonuses
Detection and Response Engineer
Detection and Response Engineer

The available sources do not contain information about the company name for rounx.com. • United States

On-site
USD 120,000 - 180,000
Detection & Response Engineer — AI-Driven Security
Detection & Response Engineer — AI-Driven Security

Doist • New York (NY)

On-site
USD 140,000 - 190,000
Senior Threat Hunting & Intelligence Engineer
Senior Threat Hunting & Intelligence Engineer

Jobtailor • California (MO)

On-site
USD 150,000 - 210,000
Remote SIEM Detection Engineer: Build Detection Excellence
Remote SIEM Detection Engineer: Build Detection Excellence

Mosaec • Northern (KY)

Hybrid
USD 112,000 - 162,000
Unlimited PTO
Work location flexibility
Parental leave (up to 24 weeks)
Detection & Response Engineer — AI-Driven Security
Detection & Response Engineer — AI-Driven Security

Neura Market • New York (NY)

On-site
USD 140,000 - 210,000
Staff Detection Engineer: SIEM, Cloud & Threat Hunting
Staff Detection Engineer: SIEM, Cloud & Threat Hunting

LinkedIn • Mountain View (CA)

Hybrid
USD 156,000 - 255,000
Health and wellness programs
Annual performance bonus
Stock options
+1