Cyber Security Incident and Event Management/Elastic Specialist Job at Diligent Consulting Inc, Washington DC

MG1Ub0pOSjdxWVRlSTkvTTF5dGtSZ0ZZVUE9PQ==
  • Diligent Consulting Inc
  • Washington DC

Job Description

US CITIZEN ONLY. SECRET CLEARANCE REQUIRED.  MUST HAVE IT-II CERT (IE SECURITY+)

SIEM/Elastic Specialist will:

• Be responsible for designing & setting up the ingestion of various customer data flows to include pre-processing data into a useable format, ensuring proper parsing and indexing
• Collaborate with cross-functional teams and responsible for designing & integrating Elastic with a wide variety of data sources and developing associated knowledge objects such as queries, dashboards, reports, alerts for monitoring and analytics
• Perform data transformation using Elastic query language 
• Track the health of the Elastic environment and optimize its performance. Troubleshoot and resolve issues related to security, performance, data indexing, and searches
• Perform watch-officer monitoring duties, including:
○ monitoring, detecting, investigating, and responding to cybersecurity threats and events using Elastic /SIEM Platform
○ Reviewing correlated alerts and logs for compromise scenarios
○ Performing triage of security alerts to prioritize response
○ Identifying false positives
○ Investigating security incidents and determining root cause
○ Collecting and preserving logs for analysis
○ Escalating confirmed incidents to leadership or SOC teams
○ Coordinating with IT or DevOps for containment and remediation
○ Creating after-action reports (AAR) post-incident
• In addition, the role may include assistance with monitoring Vulnerability Management tools, such as ACAS and ePO.

QUALIFICATIONS:

• Have at least three years of working knowledge and hands-on experience with Elastic/Splunk query languages, monitoring SIEM dashboards and real-time alerts, fine-tuning SIEM rules to reduce noise, and NIST 800-53 & DevSecOps frameworks

 

Job Tags

Full time,

Similar Jobs

First Watch Restaurants, Inc.

Busser Job at First Watch Restaurants, Inc.

 ...for you, along with spouse / dependent children at all company restaurants~ Child Discount Program at The Learning Experience~...  ...spray bottle, sturdy tray and clean cloth towel, a First Watch Busser uses magician-like moves to clean re-set tables within 3 minutes... 

Ocean Community YMCA

Maintenance Technician Job at Ocean Community YMCA

 ...help create a safe, clean, and welcoming environment for our members and staff! The Westerly-Pawcatuck Branch of the Ocean Community YMCA is seeking a reliable, skilled Maintenance Technician to assist with day-to-day upkeep of our facilities. This role is critical in... 

Sparkbit 360

Entry Level Events Assistant Job at Sparkbit 360

 ...vision that deserves to be seen. As a full-service marketing and public relations agency, were dedicated to helping businesses like yours...  ...Overview: We are searching for an energetic and organized Entry Level Events Assistant to support our Charlotte team. This role... 

Apptad Inc

Salesforce Architect Job at Apptad Inc

 ...Candidates should be flexible to visit client location whenever required. Position type : Contract 12+ Months Job Description Salesforce Architect We are seeking a Salesforce Architect with strong expertise in designing and delivering scalable Salesforce... 

Rooted Talent Solutions

Customer Service Representative (Remote) Job at Rooted Talent Solutions

 ...are seeking motivated and dependable individuals to join our customer service team. Our representatives play an important role in delivering...  ...support to customers while enjoying the flexibility of remote work. Position Overview As a Customer Service Representative...