Cyber Security Incident and Event Management/Elastic Specialist Job at Diligent Consulting Inc, Washington DC

eVk3VTdVYythQlpWL1pCQ0lPMTFQSGFDcGc9PQ==
  • Diligent Consulting Inc
  • Washington DC

Job Description

US CITIZEN ONLY. SECRET CLEARANCE REQUIRED.  MUST HAVE IT-II CERT (IE SECURITY+)

SIEM/Elastic Specialist will:

• Be responsible for designing & setting up the ingestion of various customer data flows to include pre-processing data into a useable format, ensuring proper parsing and indexing
• Collaborate with cross-functional teams and responsible for designing & integrating Elastic with a wide variety of data sources and developing associated knowledge objects such as queries, dashboards, reports, alerts for monitoring and analytics
• Perform data transformation using Elastic query language 
• Track the health of the Elastic environment and optimize its performance. Troubleshoot and resolve issues related to security, performance, data indexing, and searches
• Perform watch-officer monitoring duties, including:
○ monitoring, detecting, investigating, and responding to cybersecurity threats and events using Elastic /SIEM Platform
○ Reviewing correlated alerts and logs for compromise scenarios
○ Performing triage of security alerts to prioritize response
○ Identifying false positives
○ Investigating security incidents and determining root cause
○ Collecting and preserving logs for analysis
○ Escalating confirmed incidents to leadership or SOC teams
○ Coordinating with IT or DevOps for containment and remediation
○ Creating after-action reports (AAR) post-incident
• In addition, the role may include assistance with monitoring Vulnerability Management tools, such as ACAS and ePO.

QUALIFICATIONS:

• Have at least three years of working knowledge and hands-on experience with Elastic/Splunk query languages, monitoring SIEM dashboards and real-time alerts, fine-tuning SIEM rules to reduce noise, and NIST 800-53 & DevSecOps frameworks

 

Job Tags

Full time,

Similar Jobs

GreatAuPair LLC

Personal Assistant Job at GreatAuPair LLC

Get hired for Ronnie's assistant Job in Centerville, TX. Live in Caregiver/personal assistant. Find assistant care work in Centerville.

eStoreLabs

Brand Store Specialist | Freelance Job at eStoreLabs

 ...eCommerce company, we serve global enterprises and help build online sales for brands. We provide measurable results through performance-...  ...across e-retailer platforms Solid understanding of digital marketing principles, combined with strong analytical skills and... 

Kaleidoscope Family Solutions, Inc.

Master's Level Outpatient Therapist - Flexible Hours Job at Kaleidoscope Family Solutions, Inc.

 .... Services are primarily provided in the home or community, focusing on empowering youth...  ...a difference. * Flexible Scheduling: Work around your availabilitymost sessions...  ...contracting through KFS are classified and compensated as self-employed independent contractors.... 

Blanchard Equipment Company, Inc

Small Engine Mechanic Job at Blanchard Equipment Company, Inc

 ...Small Engine Mechanic Position Specifics: Department: Service Reports to: Service Manager or Service Location Manager Supervises...  ...: None Purpose: Performs basic diagnostics, service repairs and maintenance work on customer and/or dealer-owned... 

Cornerstone Building Brands

Painter/Loader - Overhead Crane Operator Day Shift Job at Cornerstone Building Brands

 ..., and completes observations Inspect equipment for safety Read and understand a production...  ...Management Maintain promotability to Operator II and Operator III Standing and...  ...regularly working 30+ hours per week. **Union programs may vary depending on the...