Cyber Security Incident and Event Management/Elastic Specialist Job at Diligent Consulting Inc, Washington DC

V0pZa2xvb0hJY2RlTFR4cExCd0M5SHh4dlE9PQ==
  • Diligent Consulting Inc
  • Washington DC

Job Description

US CITIZEN ONLY. SECRET CLEARANCE REQUIRED.  MUST HAVE IT-II CERT (IE SECURITY+)

SIEM/Elastic Specialist will:

• Be responsible for designing & setting up the ingestion of various customer data flows to include pre-processing data into a useable format, ensuring proper parsing and indexing
• Collaborate with cross-functional teams and responsible for designing & integrating Elastic with a wide variety of data sources and developing associated knowledge objects such as queries, dashboards, reports, alerts for monitoring and analytics
• Perform data transformation using Elastic query language 
• Track the health of the Elastic environment and optimize its performance. Troubleshoot and resolve issues related to security, performance, data indexing, and searches
• Perform watch-officer monitoring duties, including:
○ monitoring, detecting, investigating, and responding to cybersecurity threats and events using Elastic /SIEM Platform
○ Reviewing correlated alerts and logs for compromise scenarios
○ Performing triage of security alerts to prioritize response
○ Identifying false positives
○ Investigating security incidents and determining root cause
○ Collecting and preserving logs for analysis
○ Escalating confirmed incidents to leadership or SOC teams
○ Coordinating with IT or DevOps for containment and remediation
○ Creating after-action reports (AAR) post-incident
• In addition, the role may include assistance with monitoring Vulnerability Management tools, such as ACAS and ePO.

QUALIFICATIONS:

• Have at least three years of working knowledge and hands-on experience with Elastic/Splunk query languages, monitoring SIEM dashboards and real-time alerts, fine-tuning SIEM rules to reduce noise, and NIST 800-53 & DevSecOps frameworks

 

Job Tags

Full time,

Similar Jobs

Bestica

IL-- MLT/MLS JR103643 Job at Bestica

Role Specific Responsibilities Supports and communicates Laboratory initiatives and philosophies. Collects, Processes and Receives specimens (including blood, urine, fecal, body fluid) to be analyzed in all departments of the clinical laboratory (listed above). Evaluates...

RADcube

Front-End Developer (Intern) Job at RADcube

 ...Job Title: Front-End Developer (Intern) Location: Carmel, Indiana (Onsite) About the Role We are looking for a motivated...  ...Developer Intern who has hands-on experience with modern web development and basic exposure to deploying front-end applications. This... 

Bose

Copywriter Job at Bose

 ...eager to help shape our brands identity across social. What Youll Do Copywriting for paid and organic content: Write engaging, ownable social copy for all organic and paid content and posts across TikTok, Instagram, and YouTube that align with brand... 

Archdiocese of Indianapolis

High School Secretary Job at Archdiocese of Indianapolis

 ...Seton Catholic High School in Richmond, IN is hiring a welcoming, organized, and faith-centered School Secretary to serve as the first point of contact for our school community. This individual plays a key role in supporting daily school operations while fostering a positive... 

Magi K

All languages - English Over the phone Interpreter Job at Magi K

We are hiring ALL LANGUAGES-ENGLISH OVER-THE-PHONE INTERPRETERS&##128170; We are an equal opportunity employer!&##128204;Freelance Contract Your role Your job as an Over-the-Phone interpreter involves providing clear and accurate interpretation between languages...