Threat Hunting Analyst (TS/SCI) Position Available In Durham, North Carolina

Tallo's Job Summary: The Threat Hunting Analyst (TS/SCI) role at Cisco's Security Visibility and Incident Command (SVIC) involves onsite work at the RTP office, requiring existing or previous Government Security Clearance. Responsibilities include documenting cases, collaborating with data source SMEs, updating security programs, and enhancing detection logic. This position offers the opportunity to contribute to a global impact on Cisco's security operations.

Company:
Cisco
Salary:
JobFull-timeOnsite

Job Description

Application window is expected to close by 04/30/2025. Job posting may be removed earlier if the position is filled or if enough applications are received. Existing or previous Government Security Clearance is required with ability to obtain TS/SCI. Work must be completed onsite in a secure space at our RTP office. No Hybrid or Remote. Meet the Team Cisco’s Security Visibility and Incident Command (SVIC) forms part of the investigative branch of Cisco’s Security and Trust Organization (S&TO) and is Cisco’s cyber investigations and forensics team. It provides Cisco with tailored security monitoring services in order to protect Cisco from cyber-attacks and the loss of its intellectual assets. The primary mission of SVIC is to help ensure company, system, and data preservation by performing comprehensive investigations into computer security incidents, and to give to the prevention of such incidents by engaging in dedicated threat assessment, mitigation planning, incident trend analysis, and security architecture review. The SVIC is a highly-functioning, diverse, and globally distributed group of best-in-class professionals from various technical backgrounds. We’re Open-Source Software contributors, technical authors, tool builders, DFIR community members, lock pickers, makers, and breakers. Your Impact SVIC is looking for an experienced security professional to join the Computer Security Incident Response Team. This is an opportunity to contribute to a highly transparent security operations function with global impact upon Cisco, its diversified business, business units, service ventures, partners, and customers. We are looking for a motivated individual with good team fit and the ability to focus on data security and incident analysis. You have a very strong interest in complex problem solving, ability to challenge assumptions, consider alternative perspectives, nimble thinking and perform in high-stress situations, while operating exceedingly well in a strong, tight-knit, collaborative team environment. Responsibilities Include

  • Document cases, procedures, analysis, and investigations accurately and thoroughly (including best-practice documentation).
  • Assist with setup and tuning of multiple security monitoring products and data feeds
  • Collaborate with data source SMEs in SVIC and InfoSec to enhance, improve, or modify cloud (IaaS, SaaS, etc) based security detection and response.
  • Update, modify, and enhance existing programs used for security detection and response.
  • Develop documentation on all custom solutions.
  • Identify attackers and their methods but also use your IT and networking expertise to improve detection logic.
  • Occasional travel (

Other jobs in Durham

Other jobs in North Carolina

Start charting your path today.

Connect with real educational and career-related opportunities.

Get Started