Meet the Team:
You’ll be joining the Splunk Security practice in Krakow - a group of passionate experts dedicated to solving complex security challenges. We pride ourselves on being a collaborative, mentor-heavy environment where we learn from each other as much as we learn from our customers. Whether we’re architecting a new Security Operations Center (SOC) or prototyping a new automation workflow, we tackle these problems as a team, ensuring that everyone has the support they need to succeed and grow.
Your Impact:
As a Senior Software Consulting Engineer, you are the bridge between cutting-edge technology and real-world security outcomes. You will lead high-impact engagements with enterprise customers, helping them design and implement Splunk-based security programs that truly work.
You will:
- Lead end-to-end delivery: Manage enterprise security platform deployments, including system architecture, configuration, security content development, and go-live.
- Design & Automate: Build automated incident response workflows using SOAR technology, integrating third-party tools like EDR, identity platforms, and ticketing systems.
- Develop Detection Content: Build and tune advanced threat detection rules (e.g., MITRE ATT&CK), risk-based alerting models, and compliance reporting (PCI-DSS, ISO 27001, GDPR, NIST CSF).
- Data Onboarding:Normalisecomplex security data sources-firewalls, EDR, cloud platforms-into acentralisedmonitoring environment.
- Strategic Advisory: Engage at the CISO and SOC manager level to align technical solutions with business securityobjectivesand present architecture recommendations based on risk and value.
- Drive Adoption & Innovation:Identifyunderutilisedfeatures, integrate AI/automation to improve response velocity, and collaborate with Cisco product teams to influence future development.
- Knowledge Sharing: Develop reusable tools, playbooks, and documentation while mentoring junior consultants to elevate the entire practice.
- Pre-Sales Support: Contribute to technical scoping and the development of Statements of Work (SOW).
- Available for travel - up to 30%
Minimum Qualifications:
- Bachelor's degree + 7 years of related experience, OR Master's degree + 4 years, OR PhD + 1 year, OR equivalent relevant work experience.
- Professional-level certification (e.g.,CCNP), DevOps/automationcertificationor equivalent knowledge
- 5+ years of hands-on software implementation experience in a customer-facing professional services role
- Proven technicalexpertiseinXDR/SIEM and monitoring platforms (e.g.,Checkmk,Elasticsearch, Dynatrace, AppDynamics, IBMQRadar), security content development, and security automation/orchestration
- Experience with scripting or programming (Python, Java,.Netor other), REST APIs, and workflow automation.
- Experienceleadingcomplex customer programs and communicatingtechnical recommendations to CISO, architect, and engineering audiences.
Preferred Qualifications
- Certifications: Professional-level networking or security certifications (e.g., CCNP, CISSP, CEH,GIACGCIH).
- Automation/DevOps: Cisco DevNet or equivalent automation certifications; experience with CI/CD pipelines, Infrastructure as Code (IaC), orDevSecOpspractices.
- Splunk Expertise: Hands-on experience with Splunk Enterprise Security, Splunk SOAR/Phantom, or equivalent enterprise SIEM/SOAR platforms. (Splunk-specific certifications are a significantadvantage).
- Background in SOC operations, incident response, threat hunting, or detection engineering.
- Experience delivering compliance programs (PCI-DSS, ISO 27001, NIST CSF, GDPR).
- Familiarity with platforms like Microsoft Sentinel, IBMQRadar, Palo Alto XSOAR, or Google Chronicle.
- Languages:Proficiencyin anadditionalEuropean language (Polish, German, French, or Arabic) is an advantage.
Why Cisco?
At Cisco, we’re revolutionizing how data and infrastructure connect and protect organizations in the AI era – and beyond. We’ve been innovating fearlessly for 40 years to create solutions that power how humans and technology work together across the physical and digital worlds. These solutions provide customers with unparalleled security, visibility, and insights across the entire digital footprint.
Fueled by the depth and breadth of our technology, we experiment and create meaningful solutions. Add to that our worldwide network of doers and experts, and you’ll see that the opportunities to grow and build are limitless. We work as a team, collaborating with empathy to make really big things happen on a global scale. Because our solutions are everywhere, our impact is everywhere.
We are Cisco, and our power starts with you.
Cisco is an Affirmative Action and Equal Opportunity Employer and all qualified applicants will receive consideration for employment without regard to race, color, religion, gender, sexual orientation, national origin, genetic information, age, disability, veteran status, or any other legally protected basis.
Cisco will consider for employment, on a case by case basis, qualified applicants with arrest and conviction records.