Cyber Security Incident and Event Management/Elastic Specialist Job at Diligent Consulting Inc, Washington DC

MDRjWjlJaEtmQ3lYcjdRYkZLeXh4Si8vWkE9PQ==
  • Diligent Consulting Inc
  • Washington DC

Job Description

US CITIZEN ONLY. SECRET CLEARANCE REQUIRED.  MUST HAVE IT-II CERT (IE SECURITY+)

SIEM/Elastic Specialist will:

• Be responsible for designing & setting up the ingestion of various customer data flows to include pre-processing data into a useable format, ensuring proper parsing and indexing
• Collaborate with cross-functional teams and responsible for designing & integrating Elastic with a wide variety of data sources and developing associated knowledge objects such as queries, dashboards, reports, alerts for monitoring and analytics
• Perform data transformation using Elastic query language 
• Track the health of the Elastic environment and optimize its performance. Troubleshoot and resolve issues related to security, performance, data indexing, and searches
• Perform watch-officer monitoring duties, including:
○ monitoring, detecting, investigating, and responding to cybersecurity threats and events using Elastic /SIEM Platform
○ Reviewing correlated alerts and logs for compromise scenarios
○ Performing triage of security alerts to prioritize response
○ Identifying false positives
○ Investigating security incidents and determining root cause
○ Collecting and preserving logs for analysis
○ Escalating confirmed incidents to leadership or SOC teams
○ Coordinating with IT or DevOps for containment and remediation
○ Creating after-action reports (AAR) post-incident
• In addition, the role may include assistance with monitoring Vulnerability Management tools, such as ACAS and ePO.

QUALIFICATIONS:

• Have at least three years of working knowledge and hands-on experience with Elastic/Splunk query languages, monitoring SIEM dashboards and real-time alerts, fine-tuning SIEM rules to reduce noise, and NIST 800-53 & DevSecOps frameworks

 

Job Tags

Full time,

Similar Jobs

Archdiocese of St. Louis

Instructional Aide Job at Archdiocese of St. Louis

 ...and at the end of each day) Job Requirements Prevent and Protect certification through the Archdiocese of St. Louis or other Catholic Diocese Complete additional tasks that are asked by the Teacher or Principal The Archdiocese of St. Louis is an Equal Opportunity... 

Best Buy

Custom Home Lead Installer Job at Best Buy

 ...Electrical Code and Uniform Building Code standards as well as any Code or applicable laws mandated by the authorizing jurisdiction. At Best Buy, we create work environments where every employee feels like they truly belong and contribute to our shared purpose. We are one of... 

Peraton

Jr Linux Security Compliance Engineer with Red Hat Enterprise Linux (RHEL) - Active Secret Job at Peraton

 ...role, you will: Perform security compliance duties for Linux systems, ensuring the secure, compliant, and reliable operation of Red Hat Enterprise Linux (RHEL) systems and associated applications. You will be responsible for applying DoD security standards, implementing... 

Dr Reddy's Laboratories Limited

Packaging Engineer Job at Dr Reddy's Laboratories Limited

 ...the role and are open to exploring candidates with a less traditional background. Job Description We are seeking a Packaging Engineer to support our North America Groups packaging commercialization efforts for their U.S. OTC store brand and owned brand business... 

Professional Alternatives

Pipeline Control Room Operator Job at Professional Alternatives

 ...monitoring, controlling, and coordinating the transportation of crude oil and natural gas through the company's pipeline systems using...  ...abnormal or emergency conditions. Communicate and coordinate with field personnel, third-party shippers, and other control centers to...