Cyber Security Incident and Event Management/Elastic Specialist Job at Diligent Consulting Inc, Washington DC

MG1Ub0pOSjdxWVRlSTkvTTF5dGtSZ0ZZVUE9PQ==
  • Diligent Consulting Inc
  • Washington DC

Job Description

US CITIZEN ONLY. SECRET CLEARANCE REQUIRED.  MUST HAVE IT-II CERT (IE SECURITY+)

SIEM/Elastic Specialist will:

• Be responsible for designing & setting up the ingestion of various customer data flows to include pre-processing data into a useable format, ensuring proper parsing and indexing
• Collaborate with cross-functional teams and responsible for designing & integrating Elastic with a wide variety of data sources and developing associated knowledge objects such as queries, dashboards, reports, alerts for monitoring and analytics
• Perform data transformation using Elastic query language 
• Track the health of the Elastic environment and optimize its performance. Troubleshoot and resolve issues related to security, performance, data indexing, and searches
• Perform watch-officer monitoring duties, including:
○ monitoring, detecting, investigating, and responding to cybersecurity threats and events using Elastic /SIEM Platform
○ Reviewing correlated alerts and logs for compromise scenarios
○ Performing triage of security alerts to prioritize response
○ Identifying false positives
○ Investigating security incidents and determining root cause
○ Collecting and preserving logs for analysis
○ Escalating confirmed incidents to leadership or SOC teams
○ Coordinating with IT or DevOps for containment and remediation
○ Creating after-action reports (AAR) post-incident
• In addition, the role may include assistance with monitoring Vulnerability Management tools, such as ACAS and ePO.

QUALIFICATIONS:

• Have at least three years of working knowledge and hands-on experience with Elastic/Splunk query languages, monitoring SIEM dashboards and real-time alerts, fine-tuning SIEM rules to reduce noise, and NIST 800-53 & DevSecOps frameworks

 

Job Tags

Full time,

Similar Jobs

Pattern Promotions

Entry Level Communications Coordinator Job at Pattern Promotions

Job Ad: Pattern Promotions San Antonio, TX Entry Level Communications CoordinatorJob Title: Entry Level Communications CoordinatorCompany...  ...looking to start their careers in communications, public relations, or marketing. The Entry Level Communications Coordinator will... 

Family Career and Community Leaders of America

Communications and Public Relations Manager Job at Family Career and Community Leaders of America

Communications and Public Relations Manager Location Hybrid work in Herndon, VA : Date Written or Revised: May 2025 Title: Communications and Public Relations Manager Supervisor: Development and Communications Director Job Status: [X] Full-time [X] Exempt... 

Slate & Associates, Attorneys at Law

Fire Chief Job at Slate & Associates, Attorneys at Law

The City of Pearland is seeking an authentic, visionary, and people-centered leader to serve as Fire Chief- a pivotal executive role responsible for providing senior-level administrative and operational leadership for the Fire Department. Reporting directly to the... 

TalentOla

Senior React Developer Job at TalentOla

 ...Job Title : Senior React Developer Work location : San Leandro, CA (Onsite/hybrid) Experience : 8+ Years Job Summary: We are seeking a highly skilled React Developer with over 5 years of professional experience in building scalable, high-performance... 

University of Cincinnati

Sr. Research Assistant, Information Technology Solutions Center, School of Information Technology Job at University of Cincinnati

 ...Innovation District, the oldest cooperative education (co-op) program in the country with...  ...to UC's success. About the School of Information Technology The School of Information...  ...Technology) is home to Ohio's first Master of Science and Doctor of Philosophy degrees in...