Cyber Security Incident and Event Management/Elastic Specialist Job at Diligent Consulting Inc, Washington DC

Yk1tWHc5TVVmZG1jQlRlNU13MUpEbkY1TGc9PQ==
  • Diligent Consulting Inc
  • Washington DC

Job Description

US CITIZEN ONLY. SECRET CLEARANCE REQUIRED.  MUST HAVE IT-II CERT (IE SECURITY+)

SIEM/Elastic Specialist will:

• Be responsible for designing & setting up the ingestion of various customer data flows to include pre-processing data into a useable format, ensuring proper parsing and indexing
• Collaborate with cross-functional teams and responsible for designing & integrating Elastic with a wide variety of data sources and developing associated knowledge objects such as queries, dashboards, reports, alerts for monitoring and analytics
• Perform data transformation using Elastic query language 
• Track the health of the Elastic environment and optimize its performance. Troubleshoot and resolve issues related to security, performance, data indexing, and searches
• Perform watch-officer monitoring duties, including:
○ monitoring, detecting, investigating, and responding to cybersecurity threats and events using Elastic /SIEM Platform
○ Reviewing correlated alerts and logs for compromise scenarios
○ Performing triage of security alerts to prioritize response
○ Identifying false positives
○ Investigating security incidents and determining root cause
○ Collecting and preserving logs for analysis
○ Escalating confirmed incidents to leadership or SOC teams
○ Coordinating with IT or DevOps for containment and remediation
○ Creating after-action reports (AAR) post-incident
• In addition, the role may include assistance with monitoring Vulnerability Management tools, such as ACAS and ePO.

QUALIFICATIONS:

• Have at least three years of working knowledge and hands-on experience with Elastic/Splunk query languages, monitoring SIEM dashboards and real-time alerts, fine-tuning SIEM rules to reduce noise, and NIST 800-53 & DevSecOps frameworks

 

Job Tags

Full time,

Similar Jobs

USAA

Injury Adjuster Job at USAA

 ...Why USAA? At USAA, our mission is to empower our members to achieve financial security through highly competitive products, exceptional service and trusted advice. We seek to be the #1 choice for the military community and their families. Embrace a fulfilling career... 

Arkansas Staffing

CNA / Certified Nursing Assistant - Hospice Aide Job at Arkansas Staffing

Hospice CNA Opportunity in Little Rock, AR Hospice Home Care is seeking a passionate, dedicated Hospice CNA to join our team in Little Rock, AR. Our hospice CNAs provide dignity, comfort, and support at a critical time in people's lives. If you're ready to work in a...

Direct Impact Logistics

Final Mile Logistics Ops Manager - Furniture Delivery Job at Direct Impact Logistics

 ...A logistics company in Newton, North Carolina is seeking an Operations Manager for 3PL Final Mile Furniture Delivery. This full-time role involves overseeing daily operations, designing strategies for growth, and managing budgets. Candidates should have a High School... 

Marriott International Inc

Cook I Job at Marriott International Inc

 ...Additional Information Job Number 25162598 Job Category Food and Beverage & Culinary Location The Ritz-Carlton Naples Tiburon, 2600 Tiburon Drive, Naples, Florida, United States, 34109VIEW ON MAP Schedule Full Time Located Remotely? N Position Type... 

Rsm Us Llp.

NetSuite ERP Implementation Lead (San Francisco) Job at Rsm Us Llp.

 ...A leading professional services firm in California seeks a NetSuite Consulting Manager to enhance business processes through effective ERP implementations. The role demands over 8 years of ERP application implementation experience, particularly in NetSuite. Candidates...