Cyber Security Incident and Event Management/Elastic Specialist Job at Diligent Consulting Inc, Washington DC

cVd6TzNGM2NodFY1Q3FUamlEbzhXYUpSZHc9PQ==
  • Diligent Consulting Inc
  • Washington DC

Job Description

US CITIZEN ONLY. SECRET CLEARANCE REQUIRED.  MUST HAVE IT-II CERT (IE SECURITY+)

SIEM/Elastic Specialist will:

• Be responsible for designing & setting up the ingestion of various customer data flows to include pre-processing data into a useable format, ensuring proper parsing and indexing
• Collaborate with cross-functional teams and responsible for designing & integrating Elastic with a wide variety of data sources and developing associated knowledge objects such as queries, dashboards, reports, alerts for monitoring and analytics
• Perform data transformation using Elastic query language 
• Track the health of the Elastic environment and optimize its performance. Troubleshoot and resolve issues related to security, performance, data indexing, and searches
• Perform watch-officer monitoring duties, including:
○ monitoring, detecting, investigating, and responding to cybersecurity threats and events using Elastic /SIEM Platform
○ Reviewing correlated alerts and logs for compromise scenarios
○ Performing triage of security alerts to prioritize response
○ Identifying false positives
○ Investigating security incidents and determining root cause
○ Collecting and preserving logs for analysis
○ Escalating confirmed incidents to leadership or SOC teams
○ Coordinating with IT or DevOps for containment and remediation
○ Creating after-action reports (AAR) post-incident
• In addition, the role may include assistance with monitoring Vulnerability Management tools, such as ACAS and ePO.

QUALIFICATIONS:

• Have at least three years of working knowledge and hands-on experience with Elastic/Splunk query languages, monitoring SIEM dashboards and real-time alerts, fine-tuning SIEM rules to reduce noise, and NIST 800-53 & DevSecOps frameworks

 

Job Tags

Full time,

Similar Jobs

SGS Consulting

Office Coordinator Job at SGS Consulting

 ...improve workplace communication and employee engagement. Oversee office clear-outs and relocation support at sites where leases are...  ..., detail-oriented, and analytical mindset. Strong project coordination skills with ability to influence without authority.... 

CURA

Freight Broker - Entry-Level Job at CURA

 ...About CURA Freight: CURA is an award-winning third-party logistics provider, responsible for coordinating the movement of goods...  ...prospecting calls/day. Qualifications: Previous phone-sales experience preferred. Associate or Bachelors degree preferred.... 

Los Alamos National Laboratory

Postdoctoral Research Associate Job at Los Alamos National Laboratory

 ...positions. The candidate will be expected to perform outstanding research at the intersection of machine learning, materials science, and...  ...generous benefits package includes: PPO or High Deductible medical insurance with the same large nationwide network Dental and... 

Peraton

Graphic Designer Job at Peraton

 ...current and future evolving needs, including roles in areas like graphic design, content management, multimedia, data visualization, public...  ...PhD ~ TS/SCI with Polygraph level clearance required ~ Experience with the following: Leading the development of gra phics... 

Cox Media Group

Associate Producer (Part-Time) - WHIO TV Job at Cox Media Group

 ...Location:OH-Dayton Job Title: Associate Producer (Part-Time) - WHIO TV Position Overview WHIO TV Dayton, the #1 CBS affiliate in the Nation is looking for a Part-Time Associate News Producer who will be responsible for assisting Producer and/or Executive...