Cyber Security Incident and Event Management/Elastic Specialist Job at Diligent Consulting Inc, Washington DC

WHdhV0FZdk9IOWhEOW9SQ05JOC9tYmJGL3c9PQ==
  • Diligent Consulting Inc
  • Washington DC

Job Description

US CITIZEN ONLY. SECRET CLEARANCE REQUIRED.  MUST HAVE IT-II CERT (IE SECURITY+)

SIEM/Elastic Specialist will:

• Be responsible for designing & setting up the ingestion of various customer data flows to include pre-processing data into a useable format, ensuring proper parsing and indexing
• Collaborate with cross-functional teams and responsible for designing & integrating Elastic with a wide variety of data sources and developing associated knowledge objects such as queries, dashboards, reports, alerts for monitoring and analytics
• Perform data transformation using Elastic query language 
• Track the health of the Elastic environment and optimize its performance. Troubleshoot and resolve issues related to security, performance, data indexing, and searches
• Perform watch-officer monitoring duties, including:
○ monitoring, detecting, investigating, and responding to cybersecurity threats and events using Elastic /SIEM Platform
○ Reviewing correlated alerts and logs for compromise scenarios
○ Performing triage of security alerts to prioritize response
○ Identifying false positives
○ Investigating security incidents and determining root cause
○ Collecting and preserving logs for analysis
○ Escalating confirmed incidents to leadership or SOC teams
○ Coordinating with IT or DevOps for containment and remediation
○ Creating after-action reports (AAR) post-incident
• In addition, the role may include assistance with monitoring Vulnerability Management tools, such as ACAS and ePO.

QUALIFICATIONS:

• Have at least three years of working knowledge and hands-on experience with Elastic/Splunk query languages, monitoring SIEM dashboards and real-time alerts, fine-tuning SIEM rules to reduce noise, and NIST 800-53 & DevSecOps frameworks

 

Job Tags

Full time,

Similar Jobs

Robert Half

SEO Specialist Job at Robert Half

 ...Specialist to join our team in Fort Worth, Texas. This long-term contract position offers an excellent opportunity to lead organic search strategies, optimize website performance, and provide valuable insights to support content and media teams. If you thrive in a collaborative... 

Alliance Technical Group

Oil and Gas Field Technician Job at Alliance Technical Group

 ...Oil & Gas Field Technician The Field Technicians primary responsibility is to perform routine field sampling operations and sampling equipment maintenance. This includes, but is not limited to, cleaning and repair of sample media, coordinating with field contacts,... 

The Avaline at River Oaks

Director of Wellness Job at The Avaline at River Oaks

 ...benefits package, designed to enhance your well-being and career longevity. In this role,...  ...Senior Living is hiring an experienced Director of Wellness to join our team at our beautiful...  ...Benefits for Full Time Employees: * Health Insurance* Dental Insurance*... 

The Shops at Farmington Valley

NextGen Smarty Pants is hiring Teachers Job at The Shops at Farmington Valley

 ...them and helping them to prepare for a technological future.Programs include Engineering, Robotics, Coding, Circuits, Animation, Video-GameDesign, 3D Printing, and more! If you enjoy learning; and have a passion for bringingout the best in your students, we want to... 

Brook Services

Customer Service Representative Job at Brook Services

 ...Customer Service Representative Remote Company: Brooks Services Employment Type: Full-Time/Part-Time (Remote) Job Overview: Brooks...  ...scheduling options ~ Paid training ~ Growth opportunities within Brooks Services ~ Supportive virtual team environment...