
SNA Engineering
Posted Aug 14

Posted Aug 14
This is a fully remote position, open to applicants in Ireland.
• Configure, coordinate, and oversee the Cisco Secure Network Analytics infrastructure, which includes Flow Collectors, Flow Sensors, and Management Consoles.
• Process and analyze NetFlow, IPFIX, and sFlow data to establish dynamic baselines of typical network behavior.
• Monitor network traffic and identify as well as prioritize security events such as lateral movement, data exfiltration, and command-and-control traffic.
• Integrate Cisco SNA data with Cisco XDR and/or third-party SIEM/SOAR platforms.
• Lead forensic investigations into network anomalies and assist in root-cause analysis.
• Conduct SNA health checks, track capacity, perform software upgrades, and handle system maintenance.
• Adjust detection rules and policies to enhance threat detection while reducing false positives.
• Monitor behavioral baselines and network analytics for any abnormal or suspicious activities.
• Troubleshoot the Cisco SNA infrastructure and resolve both technical and security-related issues.
• Collaborate with teams across network, security, infrastructure, and client domains.
• Maintain technical documentation and records of change management.
• Provide L2/L3 technical support and contribute to activities within security operations.
• Over 5 years of experience in ICT/telecommunications, specifically in enterprise network security operations.
• Extensive hands-on experience with Cisco Secure Network Analytics (SNA) / Stealthwatch.
• Practical administration experience with Cisco SNA/Stealthwatch, Cisco ISE, and Cisco Firewalls.
• In-depth knowledge of TCP/IP, routing and switching protocols, network traffic analysis, and network security principles.
• Strong familiarity with NetFlow, IPFIX, and sFlow.
• Experience in network threat detection, behavioral analytics, and anomaly detection.
• Background in integrating security analytics with Cisco XDR, SIEM, and SOAR platforms.
• Awareness of lateral movement, data exfiltration, command-and-control traffic, and other network-based security threats.
• Experience conducting forensic investigations and root-cause analyses of network anomalies.
• Proficiency in system health checks, capacity tracking, software upgrades, and rule tuning.
• Possession of CCN5 / CCNA / CCNP or equivalent Cisco security specialization credentials.
• Strong analytical, troubleshooting, and problem-solving abilities.
• Excellent client-facing communication skills, with the capability to explain complex security analytics to both technical and non-technical stakeholders.
• Flexible working arrangements.
• Opportunity for repeat engagements based on performance.
• Access to CX guidance and market insights through our professional network.
Synaptikon GmbH
Dyrt
Learning Lot, Inc
Get handpicked remote jobs straight to your inbox weekly.