Cyber Security Incident and Event Management/Elastic Specialist Job at Diligent Consulting, Washington DC

VHhObkU1bWVtN2JnaS95ZGlxMGNTWWxk
  • Diligent Consulting
  • Washington DC

Job Description


US CITIZEN ONLY. SECRET CLEARANCE REQUIRED. MUST HAVE IT-II CERT (IE SECURITY+)

SIEM/Elastic Specialist will:

• Be responsible for designing & setting up the ingestion of various customer data flows to include pre-processing data into a useable format, ensuring proper parsing and indexing
• Collaborate with cross-functional teams and responsible for designing & integrating Elastic with a wide variety of data sources and developing associated knowledge objects such as queries, dashboards, reports, alerts for monitoring and analytics
• Perform data transformation using Elastic query language 
• Track the health of the Elastic environment and optimize its performance. Troubleshoot and resolve issues related to security, performance, data indexing, and searches
• Perform watch-officer monitoring duties, including:
○ monitoring, detecting, investigating, and responding to cybersecurity threats and events using Elastic /SIEM Platform
○ Reviewing correlated alerts and logs for compromise scenarios
○ Performing triage of security alerts to prioritize response
○ Identifying false positives
○ Investigating security incidents and determining root cause
○ Collecting and preserving logs for analysis
○ Escalating confirmed incidents to leadership or SOC teams
○ Coordinating with IT or DevOps for containment and remediation
○ Creating after-action reports (AAR) post-incident
• In addition, the role may include assistance with monitoring Vulnerability Management tools, such as ACAS and ePO.

QUALIFICATIONS:

• Have at least three years of working knowledge and hands-on experience with Elastic/Splunk query languages, monitoring SIEM dashboards and real-time alerts, fine-tuning SIEM rules to reduce noise, and NIST 800-53 & DevSecOps frameworks

Job Tags

Full time,

Similar Jobs

Coforge

IBM Mainframe System Programmer Job at Coforge

 ...Job Title: IBM Mainframe System Programmer Skills: Mainframe, REXX, Filenet, CICS, Cobol Experience: 10+ years Location: Des Moines, IA/ Sioux falls, SD (Hybrid) Duration: Fulltime We at Coforge are hiring an IBM Mainframe System Programmer following skillset... 

Agape Care Group

Licensed Medical Social Worker Job at Agape Care Group

 ...Job Description Overview: Join Our Team as a Social Worker Are you passionate about helping patients get the care they deserve...  ...Insurance ~ Financial and Legal Assistance Program ~ Mental Health and Counseling Programs ~ Dental and Orthodontic Coverage ~... 

Advastar, Inc. | Recruiting & Staffing

Architectural CAD Designer: Commercial Builds & 3D Rendering Job at Advastar, Inc. | Recruiting & Staffing

A leading recruitment firm is seeking a Detail-Oriented Design Drafter in Phoenix, AZ. This full-time role involves creating detailed architectural and structural designs, collaborating with engineering teams, and ensuring compliance with building codes. Candidates should...

USAA

Director, Claims Operations - Injury Job at USAA

 ...Why USAA? At USAA, our mission is to empower our members to achieve financial security through highly competitive products, exceptional service and trusted advice. We seek to be the #1 choice for the military community and their families. Embrace a fulfilling career... 

Diligent Consulting

Cyber Security Incident and Event Management/Elastic Specialist Job at Diligent Consulting

 ...CITIZEN ONLY. SECRET CLEARANCE REQUIRED. MUST HAVE IT-II CERT (IE SECURITY+) SIEM/Elastic Specialist will: Be responsible for...  ...detecting, investigating, and responding to cybersecurity threats and events using Elastic /SIEM Platform Reviewing correlated alerts...