Cyber Security Incident and Event Management/Elastic Specialist Job at Diligent Consulting Inc, Washington DC

ODZTdk93ZGxzTXROcEdMb1YvMnROMDRsZ3c9PQ==
  • Diligent Consulting Inc
  • Washington DC

Job Description

US CITIZEN ONLY. SECRET CLEARANCE REQUIRED.  MUST HAVE IT-II CERT (IE SECURITY+)

SIEM/Elastic Specialist will:

• Be responsible for designing & setting up the ingestion of various customer data flows to include pre-processing data into a useable format, ensuring proper parsing and indexing
• Collaborate with cross-functional teams and responsible for designing & integrating Elastic with a wide variety of data sources and developing associated knowledge objects such as queries, dashboards, reports, alerts for monitoring and analytics
• Perform data transformation using Elastic query language 
• Track the health of the Elastic environment and optimize its performance. Troubleshoot and resolve issues related to security, performance, data indexing, and searches
• Perform watch-officer monitoring duties, including:
○ monitoring, detecting, investigating, and responding to cybersecurity threats and events using Elastic /SIEM Platform
○ Reviewing correlated alerts and logs for compromise scenarios
○ Performing triage of security alerts to prioritize response
○ Identifying false positives
○ Investigating security incidents and determining root cause
○ Collecting and preserving logs for analysis
○ Escalating confirmed incidents to leadership or SOC teams
○ Coordinating with IT or DevOps for containment and remediation
○ Creating after-action reports (AAR) post-incident
• In addition, the role may include assistance with monitoring Vulnerability Management tools, such as ACAS and ePO.

QUALIFICATIONS:

• Have at least three years of working knowledge and hands-on experience with Elastic/Splunk query languages, monitoring SIEM dashboards and real-time alerts, fine-tuning SIEM rules to reduce noise, and NIST 800-53 & DevSecOps frameworks

 

Job Tags

Full time,

Similar Jobs

Bashas'

Truck Driver (CDL Class A) - Home Daily - Distribution Center Job at Bashas'

 ...located within the State of Arizona. Reliable home that you can count on Bashas' CDL (Commercial Drivers License) Driver is responsible for the efficient...  ...Responsible for meeting all D.O.T. requirements. Operate truck and trailer units in a safe manner. Report any... 

Alkezon

Virtual Assistant Job at Alkezon

# **About the Role** We are seeking a highly organized and detail-oriented **Virtual Assistant** to support our daily operations. While this role covers general administrative assistance, the **primary focus is accurate, fast, and well-structured data entry**. You will... 

Del Mar College - Corporate Services

INTERIM PROGRAM COORDINATOR - HEALTH CARE (FULL-TIME TEMPORARY) Job at Del Mar College - Corporate Services

 ...135 This position is open to Open to All Applicants Job Title INTERIM PROGRAM COORDINATOR - HEALTH CARE (FULL-TIME TEMPORARY) Department...  ...Associates Degree. Three (3) years experience working in a healthcare related field. Required Job Knowledge, Skills, Abilities... 

Kokosing

Campus Recruiter Job at Kokosing

 ...Campus Recruiter We are seeking a proactive and relationship-driven Campus Recruiter to lead our university recruiting efforts with a focus on co-op hiring programs. This role will manage the end-to-end recruitment processfrom campus engagement and candidate sourcing... 

JBS USA Holdings, Inc.

Shipping Loader Job at JBS USA Holdings, Inc.

Description Position at Pilgrim's 2nd Shift Key Responsibilities Load and unload trucks and freight elevators safely and efficiently. Maintain accurate inventory counts and documentation. Operate tow motors and forklifts in compliance...