Cyber Security Incident and Event Management/Elastic Specialist Job at Diligent Consulting, Washington DC

VHhObkU1bWVtN2JnaS95ZGlxMGNTWWxk
  • Diligent Consulting
  • Washington DC

Job Description


US CITIZEN ONLY. SECRET CLEARANCE REQUIRED. MUST HAVE IT-II CERT (IE SECURITY+)

SIEM/Elastic Specialist will:

• Be responsible for designing & setting up the ingestion of various customer data flows to include pre-processing data into a useable format, ensuring proper parsing and indexing
• Collaborate with cross-functional teams and responsible for designing & integrating Elastic with a wide variety of data sources and developing associated knowledge objects such as queries, dashboards, reports, alerts for monitoring and analytics
• Perform data transformation using Elastic query language 
• Track the health of the Elastic environment and optimize its performance. Troubleshoot and resolve issues related to security, performance, data indexing, and searches
• Perform watch-officer monitoring duties, including:
○ monitoring, detecting, investigating, and responding to cybersecurity threats and events using Elastic /SIEM Platform
○ Reviewing correlated alerts and logs for compromise scenarios
○ Performing triage of security alerts to prioritize response
○ Identifying false positives
○ Investigating security incidents and determining root cause
○ Collecting and preserving logs for analysis
○ Escalating confirmed incidents to leadership or SOC teams
○ Coordinating with IT or DevOps for containment and remediation
○ Creating after-action reports (AAR) post-incident
• In addition, the role may include assistance with monitoring Vulnerability Management tools, such as ACAS and ePO.

QUALIFICATIONS:

• Have at least three years of working knowledge and hands-on experience with Elastic/Splunk query languages, monitoring SIEM dashboards and real-time alerts, fine-tuning SIEM rules to reduce noise, and NIST 800-53 & DevSecOps frameworks

Job Tags

Full time,

Similar Jobs

Zillow

Search Engine Marketing, Marketing Specialist Job at Zillow

 ...About The Team We are the team that develops and implements the marketing channel strategy across various Search Engine Marketing (SEM) platforms to achieve both brand and performance goals. We help people discover Zillow and connect them to our tools and services,... 

AAA - Automobile Club of Southern California

Claims Auto Adjuster Job at AAA - Automobile Club of Southern California

Claims Auto AdjusterJob SummaryThis entry-level position supports the Auto Claims Operation by providing service pursuant to the policy...  ...QualificationsBachelors Equivalent combination of education and experience PreferredNo prior claims experience.Knowledge of... 

Barrington James

Senior Director Business Development Job at Barrington James

 ...specializes in, in vivo and in vitro services. To support their continued growth across...  ...America, they are looking to hire a Business Development Leader to join their commercial team....  .... Maintain a robust pipeline and manage activity using CRM platforms such as Salesforce... 

Forsyth Barnes

UI/UX Designer (Ref: 192299) Job at Forsyth Barnes

 ...Job Description Title: UI/UX Designer Salary: $80,000-110,000 Location: Downers Grove (3 days/week onsite) Contact: ****@*****.*** The UI/UX Designer plays a pivotal role in shaping the digital experience and engagement for customers... 

JobsRUs.com

Construction Installer : 370153 Job at JobsRUs.com

 ...oriented staffing/recruiting company dedicated to working closely with our clients. We are currently hiring for Construction Installers in Syracuse, NY. $23+/hour DOE...  ...to 1 month at a time **Prior construction experience required** The Installers workday typically...