Security Consulting Engineer
905 Cisco Systems G.K. · Minato, Japan
About The Role
Job Summary / Role Overview
We are seeking a Security Consulting Engineer to join the Japan Customer Experience Security Delivery team and support the expansion of SOC and managed security services.
This role is responsible for SOC delivery, customer onboarding, security monitoring operations, incident response support, and operational improvement for strategic customers, with a focus on Splunk ES / Splunk Cloud.
You will collaborate with customer environments, Cisco delivery teams, Sales, Customer Success, Support, and product and engineering teams to provide a unified customer experience throughout the customer lifecycle.
You will also integrate Cisco and third-party security technologies into customer environments, helping standardize SOC operating models, improve service quality, and enable long-term customer self-sufficiency.
This role requires practical knowledge of SOC operations, SIEM, incident triage, threat detection, and security service delivery, along with strong customer-facing communication and technical consulting skills.
You are also expected to leverage AI, automation, and CiscoIQ-enabled practices to improve delivery efficiency, operational quality, customer self-enablement, and service scalability.
Work Conditions
- This role includes shift-based work as part of SOC service delivery.
- This role also includes on-call responsibilities as required for customer support, incident handling, and security operations support.
- Details of shift and on-call coverage will be determined based on the assigned services, customer requirements, and team structure.
What You’ll Do
- Lead or support the delivery of SOC and security operations services for strategic customers, with a focus on monitoring, detection, analysis, and reporting using Splunk ES / Splunk Cloud.
- Support customer onboarding activities, including requirements clarification, operational readiness, migration planning, handoff design, and service transition.
- Design, deploy, optimize, migrate, and troubleshoot security solutions that integrate Cisco and third-party technologies into customer environments.
- Perform SOC-related alert triage, incident investigation support, escalation handling, and operational improvement to enhance customer security operations quality.
- Collaborate with network, server, cloud, security, TAC, TCE, Sales, Customer Success, and partner teams to align customer business requirements with technical delivery.
- Apply knowledge of security frameworks, threat models, regulatory requirements, and customer risk management policies to help build resilient, scalable, and policy-aligned security operating models.
- Create and improve reusable technical deliverables such as runbooks, playbooks, standard operating procedures, service reports, design documents, migration plans, and operational handoff materials.
- Leverage AI, automation, and CiscoIQ-enabled practices to reduce operational overhead, improve analysis quality, streamline workflows, and scale best practices across the team.
Minimum Qualifications
- Bachelor’s degree with 7+ years of related experience, or Master’s degree with 4+ years of related experience, or PhD with 1+ year of related experience, or equivalent relevant work experience.
- Experience in security consulting, SOC delivery, managed security services, SIEM operations, network security, cloud security, or related technical delivery roles.
- Practical knowledge of security monitoring, incident triage, log analysis, threat detection, escalation handling, and security operations processes.
- Hands-on experience or practical working knowledge of SIEM platforms. Experience with Splunk, Splunk Enterprise Security, or Splunk Cloud is a plus.
- Understanding of network, server, cloud, endpoint, and security infrastructure fundamentals, with the ability to collaborate across multiple technical domains.
- Experience working with enterprise customers, strategic accounts, or complex multi-vendor environments.
- Strong customer-facing communication skills, including the ability to clearly explain technical issues, risks, recommendations, and operational findings to both technical and non-technical stakeholders.
- Professional-level security or networking knowledge, such as CCNP Security level or equivalent practical experience.
- Business-level Japanese communication skills and the ability to work with English technical documentation, tools, and global stakeholders.
- Ability to support shift-based work and on-call responsibilities.
Preferred Qualifications
- CCIE Security, CISSP, CCSP, SSCP, ISC2 CC , or equivalent advanced security certifications.
- GIAC certifications such as GCIH, GCIA, GCFA, GSEC, GMON, GCED, GCTI , or equivalent practical knowledge.
- Cloud security certifications such as AWS Certified Security – Specialty, Azure Security Engineer, Google Cloud Professional Cloud Security Engineer , or equivalent.
- Splunk certifications or hands-on experience with Splunk Enterprise Security, Splunk Cloud, SPL, detection use case development, or SIEM content management.
- Experience with EDR, NDR, XDR, SOAR, threat intelligence, digital forensics, incident response, or security automation.
- Experience supporting public sector, municipality, critical infrastructure, financial services, or large enterprise customers in SOC, managed security services, or security operations improvement engagements.
Success Measures / Expected Outcomes
- Successful onboarding, migration, and stable operation of customer SOC and Splunk ES environments.
- Improved quality, consistency, and scalability of SOC delivery through standardized operating models that can be applied across multiple customers.
- Effective integration of Cisco and third-party security technologies to support customer security operations and risk management objectives.
- Increased productivity, service quality, and customer self-enablement through the use of AI, automation, and CiscoIQ-enabled practices.
Why Cisco?
At Cisco, we’re revolutionizing how data and infrastructure connect and protect organizations in the AI era – and beyond. We’ve been innovating fearlessly for 40 years to create solutions that power how humans and technology work together across the physical and digital worlds. These solutions provide customers with unparalleled security, visibility, and insights across the entire digital footprint.
Fueled by the depth and breadth of our technology, we experiment and create meaningful solutions. Add to that our worldwide network of doers and experts, and you’ll see that the opportunities to grow and build are limitless. We work as a team, collaborating with empathy to make really big things happen on a global scale. Because our solutions are everywhere, our impact is everywhere.
We are Cisco, and our power starts with you.
Similar roles you might like
See all →This is an external listing. JobSpring does not represent or verify the employer. Report this listing
