Threat Hunting Analyst / Senior Analyst

  • Location:
    Shanghai, China
  • Alternate Location
    Beijing
  • Area of Interest
    Security
  • Job Type
    Professional
  • Technology Interest
    Security
  • Job Id
    1425317
New
Please note this posting is to advertise potential job opportunities. This exact role may not be open today, but could open in the near future. When you apply, a Cisco representative may contact you directly if a relevant position opens.

Cisco is seeking multiple full-time Senior Information Security Analysts. The role involves reducing security incident risks for Cisco businesses, proactive threat hunting and assessment, mitigation planning, incident detection and response, incident trending with analysis, and security architecture.

Responsibilities:

- Monitor security alerts using Splunk and other security tools, perform thorough investigation and remediation of security incidents.

- Develop and refine detection strategies to identify security threats and anomalies, including custom detection rules, alerts and dashboards in Splunk.

- Stay ahead of emerging cyber threats and trends, and conduct regular threat hunting activities

- Use technical expertise to address security challenges across various platforms, including Cloud environments. (AWS, GCP, Azure, etc)

- Create automation scripts and tools to improve operations.

- Collaborate with IT and DevOps for security integration.

- Assist Threat Hunting Investigators and external support teams in triage and event resolution

- Document cases, triage procedures and findings accurately and thoroughly

- Inform higher-level priorities, improvements and problem resolutions to improve effectiveness.

- Develop security controls and conduct vulnerability assessments.

- Respond to cybersecurity breaches and perform root cause analysis.

- Continuously learn and adapt to new technologies and environments.

Key Requirements:

- Above 5 years relevant working experience with degree in IT / CS / MIS / Information Security or equivalent operational experience (postgraduate degrees are a plus).

- IT technical experience in areas such as IT Infrastructure services (DNS, Web Servers, Email, etc…), Network, Operating Systems (Windows/Mac/Unix)/ Cloud security (AWS, GCP, Azure, etc…), identity management, web application management, security operations, and SIEM technologies (especially Splunk Enterprise).

- Strong knowledge of incident response, security trends, malware, antivirus, threat intelligence, and risk management.

- Detection Engineering Pipeline (and the development of detection rules)

- Experience with automation scripting (Python)

- Ability to work in a high-pressure Global environment, handle Security incidents, and be available for off-hours and on-call shifts.

- Fluent in spoken English and Chinese, documentation & communication skills.

- The ideal candidate is a problem solver, quick thinker, and works well under stress in a global collaborative team.

Why You’ll Love Cisco

We change the World, you will become passionate about your employer and the brand you represent. Everything is converging on the Internet, making networked connections more meaningful than ever before in our lives. Our employees' groundbreaking ideas impact everything. Here, that means we take creative ideas from the drawing board to dynamic solutions that have real world impact. You'll collaborate with Cisco leaders, partner with mentors, and develop incredible relationships with colleagues who share your interest in connecting the unconnected. You'll be part a team that cares about its customers, enjoys having fun, and you'll take part in changing the lives of those in our local communities. Come prepared to be encouraged and inspired.

At Cisco, each person brings their unique talents to work as a team and make a difference.

Yes, our technology changes the way the world works, lives, plays and learns, but our edge comes from our people.

-  We connect everything – people, process, data and things – and we use those connections to change our world for the better.

-  We innovate everywhere - From launching a new era of networking that adapts, learns and protects, to building Cisco Services that accelerate businesses and business results. Our technology powers entertainment, retail, healthcare, education and more – from Smart Cities to your everyday devices.

-  We benefit everyone - We do all of this while striving for a culture that empowers every person to be the difference, at work and in our communities.

We are an equal opportunity employer and value diversity at our company. We do not discriminate on the basis of race, religion, color, national origin, gender, sexual orientation, age, marital status, veteran status, or disability status.


Message to applicants applying to work in the U.S. and/or Canada:

When available, the salary range posted for this position reflects the projected hiring range for new hire, full-time salaries in U.S. and/or Canada locations, not including equity or benefits. For non-sales roles the hiring ranges reflect base salary only; employees are also eligible to receive annual bonuses. Hiring ranges for sales positions include base and incentive compensation target. Individual pay is determined by the candidate's hiring location and additional factors, including but not limited to skillset, experience, and relevant education, certifications, or training. Applicants may not be eligible for the full salary range based on their U.S. or Canada hiring location. The recruiter can share more details about compensation for the role in your location during the hiring process.

U.S. employees have access to quality medical, dental and vision insurance, a 401(k) plan with a Cisco matching contribution, short and long-term disability coverage, basic life insurance and numerous wellbeing offerings. Employees receive up to twelve paid holidays per calendar year, which includes one floating holiday, plus a day off for their birthday. Employees accrue up to 20 days of Paid Time Off (PTO) each year and have access to paid time away to deal with critical or emergency issues without tapping into their PTO. We offer additional paid time to volunteer and give back to the community. Employees are also able to purchase company stock through our Employee Stock Purchase Program.

Employees on sales plans earn performance-based incentive pay on top of their base salary, which is split between quota and non-quota components. For quota-based incentive pay, Cisco typically pays as follows:

.75% of incentive target for each 1% of revenue attainment up to 50% of quota;

1.5% of incentive target for each 1% of attainment between 50% and 75%;

1% of incentive target for each 1% of attainment between 75% and 100%; and once performance exceeds 100% attainment, incentive rates are at or above 1% for each 1% of attainment with no cap on incentive compensation.

For non-quota-based sales performance elements such as strategic sales objectives, Cisco may pay up to 125% of target. Cisco sales plans do not have a minimum threshold of performance for sales incentive compensation to be paid.

Share