ActiveJobs

Technical Leader, Splunk Security

Cisco · Krakow, Poland

Full-timeOn-sitePosted 20 August 2026
Apply on Company Site →

Job description

Meet the Team Cisco Professional Services is looking for a Security Consulting Engineering Technical Leader to join our Splunk Security practice in Poland. Splunk (now part of Cisco) is a top-tier data platform. Security teams worldwide use it to catch threats, automate responses, and keep an eye on complex environments in real-time. As a Technical Leader, you’ll be the most senior authority on our Splunk Security delivery team in Krakow. You will be the go-to technical authority for the practice, lead architecture for our most complex customer programs in EMEA, and create the internal resources that help our whole team succeed. Your Impact You’ll work with high autonomy, acting as the main person to call when complex security platform issues arise. You’ll influence more than just individual projects—you'll help shape the Splunk product roadmap by working closely with our engineering teams and building tools that make the entire team faster and more efficient. Please note: this is a strategic, customer-facing role that requires travel. Your Responsibilities: Technical Leadership: You will oversee the delivery of high-stakes programs, define the blueprints for things like SOAR frameworks and hybrid cloud environments, and advise senior leadership (CIOs, CISOs, VPs) on their long-term security strategy. Building Knowledge: You will create and share essential assets like threat detection libraries, blueprints for SOCs, and deployment guides to make sure our delivery is always high-quality and consistent. Security Engineering: You will design advanced threat detection systems (using things like MITRE ATT&CK and risk-based alerting) and build complex automation programs. You’ll also lead data onboarding and ensure everyone stays aligned with standards like PCI-DSS, ISO 27001, GDPR, NIST CSF, and SOX. Coaching & Pre-Sales: You will mentor more junior security consultants and lead pre-sales work, such as running architecture workshops and writing RFP responses. You’ll also drive innovation by finding ways to bring AI and machine learning into our daily security workflows. Minimum qualifications: Education: A Bachelor’s in CS, Electrical Engineering, or a related field with 8+ years of experience; a Master’s with 5+ years; or a PhD with 2+ years. (Relevant work experience is also fine). Certifications: You hold an expert-level certification (like CCIE or CISSP) or have proof of deep technical mastery. A professional-level DevNet or automation certification is a plus. Consulting Experience: You have 7+ years of experience in enterprise security—specifically in consulting or professional services—with at least 3 years as a technical or delivery lead. Deep Expertise: You are an expert in at least one of these: Splunk Enterprise Security architecture, SIEM platform design, SOC operations, security automation, or threat detection engineering. Proven Impact: You have a history of building tools, playbooks, or frameworks that other people actually use to get work done. Collaboration: You have experience working with product and engineering teams to solve complex problems and can influence the direction of a product. Technical Skills: You are strong in scripting (Python is our favorite), you know your way around REST APIs, and you’re comfortable with automation and workflow tools. Communication: You can explain complex tech to executives like CISOs and VPs, and you’re good at persuading people at all levels, whether they are technical or not. AI Ready: Demonstrated applied experience with AI-enabled solution delivery: working knowledge of AI-assisted CI/CD practices, API and automation integration with AI-driven tools, and AI solution validation techniques (output quality assurance, performance benchmarking, drift monitoring) in a consulting, engineering, or security context Preferred qualifications Splunk Certs: Any Splunk-specific certifications (Architect, Cybersecurity Analyst, SOAR Developer, etc.) and deep experience with Splunk Enterprise Security or SOAR/Phantom. AI Certs: AWS AI Practitioner, Azure AI App & Agent Developer, AWS ML Engineer - Associate Security Domains: You have certifications like CEH, GIAC, or CompTIA Security+. You know your way around threat hunting, red/blue team ops, compliance (PCI-DSS, etc.), or threat intel frameworks (MITRE, Sigma, etc.). Innovation: You have worked with CI/CD, Infrastructure as Code, or DevSecOps. You have a handle on AI/ML in security or know your way around other platforms like Sentinel, QRadar, or Palo Alto XSOAR. Languages: If you speak Polish, German, French, or Arabic, Spanish or Dutch, let us know! Why Cisco? At Cisco, we’re revolutionizing how data and infrastructure connect and protect organizations in the AI era – and beyond. We’ve been innovating fearlessly for 40 years to create solutions that power how humans and technology work together across the physical and digital worlds. These solutions provide customers with unparalleled security, visibility, and insights across the entire digital footprint. Fueled by the depth and breadth of our technology, we experiment and create meaningful solutions. Add to that our worldwide network of doers and experts, and you’ll see that the opportunities to grow and build are limitless. We work as a team, collaborating with empathy to make really big things happen on a global scale. Because our solutions are everywhere, our impact is everywhere. We are Cisco, and our power starts with you.

Verified and listed by ActiveJobs. Applications are made directly on Cisco's own career page — we never sit in the middle.