Cyber Security Incident and Event Management/Elastic Specialist Job at Diligent Consulting Inc, Washington DC

Yk1tWHc5TVVmZG1jQlRlNU13MUpEbkY1TGc9PQ==
  • Diligent Consulting Inc
  • Washington DC

Job Description

US CITIZEN ONLY. SECRET CLEARANCE REQUIRED.  MUST HAVE IT-II CERT (IE SECURITY+)

SIEM/Elastic Specialist will:

• Be responsible for designing & setting up the ingestion of various customer data flows to include pre-processing data into a useable format, ensuring proper parsing and indexing
• Collaborate with cross-functional teams and responsible for designing & integrating Elastic with a wide variety of data sources and developing associated knowledge objects such as queries, dashboards, reports, alerts for monitoring and analytics
• Perform data transformation using Elastic query language 
• Track the health of the Elastic environment and optimize its performance. Troubleshoot and resolve issues related to security, performance, data indexing, and searches
• Perform watch-officer monitoring duties, including:
○ monitoring, detecting, investigating, and responding to cybersecurity threats and events using Elastic /SIEM Platform
○ Reviewing correlated alerts and logs for compromise scenarios
○ Performing triage of security alerts to prioritize response
○ Identifying false positives
○ Investigating security incidents and determining root cause
○ Collecting and preserving logs for analysis
○ Escalating confirmed incidents to leadership or SOC teams
○ Coordinating with IT or DevOps for containment and remediation
○ Creating after-action reports (AAR) post-incident
• In addition, the role may include assistance with monitoring Vulnerability Management tools, such as ACAS and ePO.

QUALIFICATIONS:

• Have at least three years of working knowledge and hands-on experience with Elastic/Splunk query languages, monitoring SIEM dashboards and real-time alerts, fine-tuning SIEM rules to reduce noise, and NIST 800-53 & DevSecOps frameworks

 

Job Tags

Full time,

Similar Jobs

Empire National, Inc.

Sprinter / Cargo Van Owner Operator Job at Empire National, Inc.

 .... Empire National Inc. considers its owner-operators an essential part of the family, treating...  ...: Ownership of a Sprinter Van or Small Straight Truck (GVWR Minimum...  ...0,000 Auto Liability and $100,000 Motor Cargo coverage (deductible $1,000). Passport... 

Mount Sinai Health System - 1428 Madison Ave

Travel RDN - Registered Dietitian Nutritionist Job at Mount Sinai Health System - 1428 Madison Ave

 ...Job Description Certification Details ~ Registered Dietitian (RD) Job Details Under the direction of the Director of Clinical Nutrition, provides quality nutrition care and education to patients and family members. Assesses the nutritional status of patients... 

QSAC, Inc.

Leadership Positions in Special Education Job at QSAC, Inc.

 ..."Urgently Hiring!! Looking to fill as soon as possible!!" Leadership Positions in Special Education The salary range for these positions is $70,000-$90,000 annually. Job Summary QSAC is seeking various leadership positions in our preschool & school... 

Independence Construction

Project Manager Job at Independence Construction

 ...Independence Construction is looking to add a seasoned Project Manager to our growing team in Cleveland, Ohio! Who is IC? Independence Construction is one of the largest CM businesses headquartered in Northeast Ohio. As part of the DiGeronimo Companies, we offer... 

National Association of Latino Healthcare Executives

Pharmacy Assistant Job at National Association of Latino Healthcare Executives

 ...Job Summary: Provides public reception; sells pharmacy merchandise; transcribes information for prescription labels; assists pharmacist with clerical functions according to established procedures. Essential Responsibilities: Upholds Kaiser Permanentes Policies...