Lead Detection Engineer, Security Analytics

Socket.dev

Denver (CO)

Hybrid

USD 151,000 - 191,000

Full time

5 days ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Cisco is seeking a skilled Security Engineer to join the Detection Engineering team, focused on securing the Splunk portfolio and building scalable detection content. You will design data pipelines, implement AI/ML aided detection, and collaborate with incident response to close detection gaps.

You will mentor teammates, write production-grade Python, and translate threat intel into measurable detection coverage. This is a genuine hybrid role with opportunities across a broad security program.

Qualifications

  • Bachelor’s + 8 years of related experience or a Master’s degree with 6+ years of related experience, or a PhD + 3 years of related experience in Security roles.
  • Deployed and maintained Splunk Enterprise Security content in a production SOC environment.
  • Built detection queries in SPL at scale, including risk-based alerting and baselining.
  • Integrated AI/ML techniques into detection pipelines to reduce false positives and accelerate content development.
  • Translated threat intelligence into detection requirements with measurable criteria.

Responsibilities

  • Design and build data processing pipelines transforming high-volume security telemetry into actionable alert signals.
  • Create scalable detection content and AI/ML-enabled detection pipelines.
  • Collaborate with incident response, Threat Hunting, SOC, and product teams to close detection gaps.
  • Mentor teammates on detection standards and design patterns and contribute to detection content development.

Skills

Security Engineer
Detection Engineer
Security Content Developer
SOC Analyst
Security Operations

Education

Bachelor’s degree
Master’s degree
PhD

Tools

Splunk Enterprise Security
SPL
Python
Git-based workflows
Cloud platforms AWS/GCP/Azure

Job description

Cisco is seeking a skilled Security Engineer to join the Detection Engineering team, focused on securing the Splunk portfolio and building scalable detection content. You will design data pipelines, implement AI/ML aided detection, and collaborate with incident response to close detection gaps.

You will mentor teammates, write production-grade Python, and translate threat intel into measurable detection coverage. This is a genuine hybrid role with opportunities across a broad security program.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Lead Detection Engineer, AI-Driven Security
Lead Detection Engineer, AI-Driven Security

Cisco Systems, Inc. • Denver (CO)

Hybrid
USD 150,000 - 191,000
Paid holidays
Birthday off
Vacation time
+2
Lead Detection Engineer – AI-Powered Security
Lead Detection Engineer – AI-Powered Security

Cisco • Dallas (TX)

Hybrid
USD 151,000 - 191,000
Hybrid work model
Annual bonuses
Restricted stock units (RSUs)
Detection Engineering Lead - AI-Driven Security Content
Detection Engineering Lead - AI-Driven Security Content

Cisco Systems • Boulder (CO)

Hybrid
USD 151,000 - 191,000
Medical insurance
Dental insurance
Vision insurance
+4
Senior Software Engineer, Information Security
Senior Software Engineer, Information Security

COMMURE Incorporated • Mountain View (CA)

On-site
USD 130,000 - 160,000
Senior Threat Hunting & Intelligence Engineer
Senior Threat Hunting & Intelligence Engineer

Jobtailor • California (MO)

On-site
USD 150,000 - 210,000
Senior Splunk SIEM Engineer — Threat Detection & Response
Senior Splunk SIEM Engineer — Threat Detection & Response

Mbi Llc • Richmond (VA)

On-site
USD 110,000 - 160,000
Splunk Detection Engineer
Splunk Detection Engineer

DivIHN Integration Inc • United States

Remote
USD 100,000 - 130,000
Lead Cybersecurity Engineer – Splunk & Threat Hunting
Lead Cybersecurity Engineer – Splunk & Threat Hunting

SSV Technologies Inc. • Richmond (VA)

On-site
USD 120,000 - 180,000
Senior Cyber Analyst: Splunk & ML Threat Detection
Senior Cyber Analyst: Splunk & ML Threat Detection

CRI Advantage • Idaho Falls (ID)

On-site
USD 110,000 - 124,000
Lead Detection Engineer: EDR, SIEM & Linux Security
Lead Detection Engineer: EDR, SIEM & Linux Security

Verizon • Ashburn (VA)

Hybrid
USD 101,000 - 194,000
Hybrid work model
Competitive benefits
401(k)