ポジションについて
The Splunk Area Technical Account Manager is responsible for delivering high-quality technical solutions and onboarding enablement for customers using Splunk Security products, including Enterprise Security, UBA/UEBA, and SOAR. The role involves developing technical action plans, conducting health reviews, and providing strategic consulting to address complex technical challenges. Candidates must have deep technical knowledge of Splunk Enterprise Security, strong skills in data management, and expertise in Search Processing Language (SPL). Experience with the Common Information Model (CIM), data integration, and risk-based analytics is essential. Preferred qualifications include expertise in additional security products, cybersecurity frameworks, industry certifications, and enterprise architecture knowledge. Strong communication, relationship management, and conflict resolution skills are also required.
The Splunk Area Technical Account Manager at Cisco is a customer-facing role focused on delivering high-quality technical solutions for Splunk Enterprise Security, User Behavior Analytics, and Security Orchestration, Automation, and Response products. The position requires deep technical expertise to guide account teams and customers, ensuring optimal use of Splunk products and supporting their adoption and implementation. The role involves onboarding, enabling, and troubleshooting customers, as well as collaborating with internal teams to address complex technical challenges. Candidates are expected to deliver strategic, case-based consulting, drive process improvements, and foster strong partnerships with both customers and internal stakeholders. This position is pivotal in supporting Cisco’s commitment to security and innovation across its global customers.
Meet the Team
As a Customer Success Security Area TAM, you are passionate about customers and will fuel solutions to ensure every customer request makes the deepest impact possible for our customers and share the best-of-the-best with the team. You will be a Splunk expert and adept at understanding, adapting, and guiding our account teams and customers on how to best use our Platform.
Are you up for the challenge?
Responsibilities:
-
Highly skilled and aligned to Splunk Security license products, such as Enterprise Security (ES), security applications like Splunk User Behavior Analytics (UBA), and/or SOAR (Security Orchestration, Automation, and Response).
-
Aligned to a specific Area to strategically support the Customer Success Executive, Technical Success Engineer, Solution Engineer, Solution Architect motions.
-
Develop strong partnership with Sales/Customer Success roles to assist Area aligned customers with Value Realization. Activities include, but not limited to:
-
Onboarding & Enablement – deliver workshops, prescriptive guidance/assistance, achieve onboarding milestones.
-
Health Review & Remediation - audit usage, indexes, data models, assets/identities, dashboards, correlation searches, notable events, frameworks, etc. and remediate identified issues.
-
Security Use Case Activation - planning & development of detections/analytics (e.g. identify MITRE ATT&CK coverage gaps, integrate/normalize data, drive CIM compliance, write custom SPL, etc.).
-
Feature/Framework/Product Activation (e.g. Risk Base-Alerting, Threat Intel, Threat Hunt, UBA/UEBA, SOAR/Automation, etc.).
-
Proactively engaging Customer Success Executives and Solution Architects on Security-related adoption/use case work opportunity.
-
Proactively engaging Technical Success Engineers on health-related work opportunity related to Security products.
-
Scoping the level of effort and developing a technical action plan to address the technical situation based on your assessment.
-
Proactively engage Area aligned CS/SE Management to ensure priority focus alignment and address risk accounts/area themes.
-
Strategic case-based delivery, up to 90 days of assistance, which is requested by internal Area aligned account teams or management. This typically involves providing customers with high-quality technical advice on Enterprise level architecture, implementation, configuration and optimization work in complex environments for Splunk Enterprise Security, UBA/UEBA, and/or SOAR.
Customer Success Area TAM, you will:
-
Be passionate about customers and deliver impactful solutions.
-
Address organizations’ complex technical challenges, proactively identifying and resolving issues before they impact the customer.
-
Be a self-motivated Splunk expert eager to learn and adapt in a dynamic environment.
-
Guide account team members and customers on optimal use of the Splunk Enterprise Security, UBA/UEBA, and/or SOAR. Provide recommendations for improving customer’s technical health.
-
Deliver strategic, case-based technical consulting (up to 90 days).
-
Collaborate with internal resources and customer-facing teams to manage customer needs.
-
Conduct research from various resources with the ability to consistently find answers to questions and solve complex technical problems.
-
Execute consultative conversations with decision makers to diagnose and establish the potential value of solving business issues, change or expand existing solution requirements based on your discovery/assessment, and provide broader based recommendations to help customers accelerate their product initiatives, optimize cost, and maximize performance.
-
Gain agreement with account team members and customer decision-makers on the tangible value of proposed solutions.
-
Deliver customer onboarding enablement-based workshops and achieve success milestones.
-
Contribute to practice KPIs through process and collateral improvements, tool development, and implementation.
Minimum Qualifications
- Deep technical knowledge of Splunk Enterprise Security (ES) configuration, administration, and development, including expertise in Assets and Identities, Threat Intelligence, Notable Events, Adaptive Response, and Risk-based Analytics.
- Data Management: Experience with integrating and normalising data from diverse sources. Understanding of the Common Information Model (CIM) and experience with data onboarding, including forwarding architecture and technical add-ons.
- Strong command of Search Processing Language (SPL); experience developing and optimizing correlation and risk-based alerting rules.
Preferred Qualifications
- Additional Security Products/Applications: Expertise in UBA/UEBA and/or SOAR.
- Cybersecurity Domain: Solid foundation in security operations, forensics, threat hunting, insider threats, and compliance.
- Cybersecurity Frameworks: Solid foundation in NIST CSF, CIS, HIPAA, PCI DSS
- Industry Standard Security Certifications: GIAC, CISSP, OSCP or equivalent
- Infrastructure: Understanding of enterprise architecture across on-premise and Cloud environments (AWS, Azure, GCP).
- Splunk Certifications/Accreditations: ES Implementation Accreditation and/or SOAR consultant I & II
Soft Skills
-
Trusted technical advisor with the ability to manage assigned tickets and Area aligned priorities. Engages in “out of the box” thinking to resolve problems
-
Relationship Management
-
Establish technical credibility with a wide range of internal and customer contacts with the ability to “read” the internal/customer contact and adapt behavior / approach
-
Conflict Resolution
-
Ability to engage in escalation management
-
Influencing/Negotiating
-
Ability to influence peers, Splunk leadership and customers. Ability to manage highly complex/distributed IT environments and/or accounts that demand a high level of negotiation and conflict resolution abilities
-
Problem/Need Identification
-
Demonstrates a deep comprehension of Area management, account team and/or customer’s business strategy, business objectives & challenges, success criteria/how customer measures success, and training needs. Analyzes trends to predict changes that may impact customer’s long-term business goals
-
Mentor/Team Player
-
Possesses ability to take on mentorship roles as identified by management team. Identifies, defines, and leads Priorities to Improve to help team reach its goals
-
Communication: Excellent written and oral communication skills. Active listening and objective consideration of others’ opinions.
-
Strong customer-facing skills to instill confidence and guide towards resolution.
-
Ability to balance multiple account teams, customers and competing priorities effectively.
Why Cisco?
At Cisco, we’re revolutionizing how data and infrastructure connect and protect organizations in the AI era – and beyond. We’ve been innovating fearlessly for 40 years to create solutions that power how humans and technology work together across the physical and digital worlds. These solutions provide customers with unparalleled security, visibility, and insights across the entire digital footprint.
Fueled by the depth and breadth of our technology, we experiment and create meaningful solutions. Add to that our worldwide network of doers and experts, and you’ll see that the opportunities to grow and build are limitless. We work as a team, collaborating with empathy to make really big things happen on a global scale. Because our solutions are everywhere, our impact is everywhere.
We are Cisco, and our power starts with you.
Meet the Team As a Customer Success Security Area TAM, you are passionate about customers and will fuel solutions to ensure every customer request makes the deepest impact possible for our customers an
Responsibilities:
- Responsible for delivering onboarding and enablement workshops for Splunk Enterprise Security, User Behavior Analytics, and Security Orchestration, Automation, and Response products.
- Play a key role in shaping health reviews and remediation processes by auditing usage, indexes, data models, and dashboards, and addressing identified issues.
- Help drive innovation in security use case activation by planning and developing detections and analytics, including identifying MITRE ATT&CK coverage gaps and integrating data.
- Take ownership of feature and product activation, such as risk base alerting, threat intelligence, threat hunting, and UBA/UEBA.
- Collaborate cross-functionally to engage with Customer Success Executives, Technical Success Engineers, and Solution Architects on security-related adoption and health-related work.
- Lead efforts to scope effort levels, develop technical action plans, and ensure priority focus alignment for risk accounts and area themes.
- Deliver high-quality, strategic, case-based technical consulting up to 90 days, providing technical advice on architecture, implementation, configuration, and optimisation.
- Conduct research and consultative conversations to diagnose and establish the value of solutions, providing recommendations to accelerate product initiatives and optimise performance.
- Collaborate with internal resources and customer-facing teams to manage customer needs and deliver customer onboarding enablement-based workshops.
- Contribute to practice KPIs through process and collateral improvements, tool development, and implementation.
Skills:
- Deep technical knowledge of Splunk Enterprise Security configuration, administration, and development, including Assets and Identities, Threat Intelligence, Notable Events, Adaptive Response, and Risk-based Analytics.
- Experience with integrating and normalising data from diverse sources and understanding the Common Information Model (CIM).
- Strong command of Search Processing Language (SPL) and experience developing and optimising correlation and risk-based alerting rules.
- Expertise in User Behavior Analytics (UBA) and/or Security Orchestration, Automation, and Response (SOAR) is preferred.
- Solid foundation in security operations, forensics, threat hunting, insider threats, and compliance, as well as knowledge of cybersecurity frameworks such as NIST CSF, CIS, HIPAA, and PCI DSS.
- Understanding of enterprise architecture across on-premise and cloud environments, including AWS, Azure, and GCP.
- Excellent written and oral communication skills, with strong customer-facing abilities and active listening skills.
- Ability to manage complex IT environments, negotiate and resolve conflicts, and influence peers and customers.
- Demonstrated ability to mentor team members, identify priorities, and balance multiple priorities effectively.
Education:
- Industry standard security certifications such as GIAC, CISSP, OSCP or equivalent are preferred.
- Splunk Certifications/Accreditations, including ES Implementation Accreditation and/or SOAR consultant I & II, are preferred.
Splunkについて
Hong Kong
本社所在地
