Security Consulting Engineer
Cisco
- Location
- Minato, Japan
- Work model
- On-Site
- Level
- Entry
- Posted
- Sep 2, 2026
Skills
About this role
Job Summary / Role Overview We are seeking a Security Consulting Engineer to join the Japan Customer Experience Security Delivery team and support the expansion of SOC and managed security services. This role is responsible for SOC delivery, customer onboarding, security monitoring operations, incident response support, and operational improvement for strategic customers, with a focus on Splunk ES / Splunk Cloud. You will collaborate with customer environments, Cisco delivery teams, Sales, Customer Success, Support, and product and engineering teams to provide a unified customer experience throughout the customer lifecycle. You will also integrate Cisco and third-party security technologies into customer environments, helping standardize SOC operating models, improve service quality, and enable long-term customer self-sufficiency. This role requires practical knowledge of SOC operations, SIEM, incident triage, threat detection, and security service delivery, along with strong customer-facing communication and technical consulting skills. You are also expected to leverage AI, automation, and CiscoIQ-enabled practices to improve delivery efficiency, operational quality, customer self-enablement, and service scalability. Work Conditions This role includes shift-based work as part of SOC service delivery. This role also includes on-call responsibilities as required for customer support, incident handling, and security operations support. Details of shift and on-call coverage will be determined based on the assigned services, customer requirements, and team structure. What You’ll Do Lead or support the delivery of SOC and security operations services for strategic customers, with a focus on monitoring, detection, analysis, and reporting using Splunk ES / Splunk Cloud. Support customer onboarding activities, including requirements clarification, operational readiness, migration planning, handoff design, and service transition. Design, deploy, optimize, migrate, and troubleshoot security solutions that integrate Cisco and third-party technologies into customer environments. Perform SOC-related alert triage, incident investigation support, escalation handling, and operational improvement to enhance customer security operations quality. Collaborate with network, server, cloud, security, TAC, TCE, Sales, Customer Success, and partner teams to align customer business requirements with technical delivery. Apply knowledge of security frameworks, threat models, regulatory requirements, and customer risk management policies to help build resilient, scalable, and policy-aligned security operating models. Create and improve reusable technical deliverables such as runbooks, playbooks, standard operating procedures, service reports, design documents, migration plans, and operational handoff materials. Leverage AI, automation, and CiscoIQ-enabled practices to reduce operational overhead, improve analysis quality, streamline workflows, and scale best practices across the team.
Minimum Qualifications
Bachelor’s degree with 7+ years of related experience, or Master’s degree with 4+ years of related experience, or PhD with 1+ year of related experience, or equivalent relevant work experience. Experience in security consulting, SOC delivery, managed security services, SIEM operations, network security, cloud security, or related technical delivery roles. Practical knowledge of security monitoring, incident triage, log analysis, threat detection, escalation handling, and security operations processes. Hands-on experience or practical working knowledge of SIEM platforms. Experience with Splunk, Splunk Enterprise Security, or Splunk Cloud is a plus. Understanding of network, server, cloud, endpoint, and security infrastructure fundamentals, with the ability to collaborate across multiple technical domains. Experience working with enterprise customers, strategic accounts, or complex