Cisco Careers Jobs

Job Information

Cisco Threat Hunting Analyst / Senior Analyst in Shanghai, China

Please note this posting is to advertise potential job opportunities. This exact role may not be open today, but could open in the near future. When you apply, a Cisco representative may contact you directly if a relevant position opens.

Cisco is seeking multiple full-time Senior Information Security Analysts. The role involves reducing security incident risks for Cisco businesses, proactive threat hunting and assessment, mitigation planning, incident detection and response, incident trending with analysis, and security architecture.

Responsibilities:

  • Monitor security alerts using Splunk and other security tools, perform thorough investigation and remediation of security incidents.

  • Develop and refine detection strategies to identify security threats and anomalies, including custom detection rules, alerts and dashboards in Splunk.

  • Stay ahead of emerging cyber threats and trends, and conduct regular threat hunting activities

  • Use technical expertise to address security challenges across various platforms, including Cloud environments. (AWS, GCP, Azure, etc)

  • Create automation scripts and tools to improve operations.

  • Collaborate with IT and DevOps for security integration.

  • Assist Threat Hunting Investigators and external support teams in triage and event resolution

  • Document cases, triage procedures and findings accurately and thoroughly

  • Inform higher-level priorities, improvements and problem resolutions to improve effectiveness.

  • Develop security controls and conduct vulnerability assessments.

  • Respond to cybersecurity breaches and perform root cause analysis.

  • Continuously learn and adapt to new technologies and environments.

Key Requirements:

  • Above 5 years relevant working experience with degree in IT / CS / MIS / Information Security or equivalent operational experience (postgraduate degrees are a plus).

  • IT technical experience in areas such as IT Infrastructure services (DNS, Web Servers, Email, etc…), Network, Operating Systems (Windows/Mac/Unix)/ Cloud security (AWS, GCP, Azure, etc…), identity management, web application management, security operations, and SIEM technologies (especially Splunk Enterprise).

  • Strong knowledge of incident response, security trends, malware, antivirus, threat intelligence, and risk management.

  • Detection Engineering Pipeline (and the development of detection rules)

  • Experience with automation scripting (Python)

  • Ability to work in a high-pressure Global environment, handle Security incidents, and be available for off-hours and on-call shifts.

  • Fluent in spoken English and Chinese, documentation & communication skills.

  • The ideal candidate is a problem solver, quick thinker, and works well under stress in a global collaborative team.

Why You’ll Love Cisco

We change the World, you will become passionate about your employer and the brand you represent. Everything is converging on the Internet, making networked connections more meaningful than ever before in our lives. Our employees' groundbreaking ideas impact everything. Here, that means we take creative ideas from the drawing board to dynamic solutions that have real world impact. You'll collaborate with Cisco leaders, partner with mentors, and develop incredible relationships with colleagues who share your interest in connecting the unconnected. You'll be part a team that cares about its customers, enjoys having fun, and you'll take part in changing the lives of those in our local communities. Come prepared to be encouraged and inspired.

At Cisco, each person brings their unique talents to work as a team and make a difference.

Yes, our technology changes the way the world works, lives, plays and learns, but our edge comes from our people.

  • We connect everything - people, process, data and things - and we use those connections to change our world for the better.

  • We innovate everywhere - From launching a new era of networking that adapts, learns and protects, to building Cisco Services that accelerate businesses and business results. Our technology powers entertainment, retail, healthcare, education and more - from Smart Cities to your everyday devices.

  • We benefit everyone - We do all of this while striving for a culture that empowers every person to be the difference, at work and in our communities.

We are an equal opportunity employer and value diversity at our company. We do not discriminate on the basis of race, religion, color, national origin, gender, sexual orientation, age, marital status, veteran status, or disability status.

Cisco is an Affirmative Action and Equal Opportunity Employer and all qualified applicants will receive consideration for employment without regard to race, color, religion, gender, sexual orientation, national origin, genetic information, age, disability, veteran status, or any other legally protected basis.

Cisco will consider for employment, on a case by case basis, qualified applicants with arrest and conviction records.

DirectEmployers