Cyber Security Incident and Event Management/Elastic Specialist Job at Diligent Consulting Inc, Washington DC

UGlUbUZRTWdod29SN3BsQUhrb2hXNkR3MUE9PQ==
  • Diligent Consulting Inc
  • Washington DC

Job Description

US CITIZEN ONLY. SECRET CLEARANCE REQUIRED.  MUST HAVE IT-II CERT (IE SECURITY+)

SIEM/Elastic Specialist will:

• Be responsible for designing & setting up the ingestion of various customer data flows to include pre-processing data into a useable format, ensuring proper parsing and indexing
• Collaborate with cross-functional teams and responsible for designing & integrating Elastic with a wide variety of data sources and developing associated knowledge objects such as queries, dashboards, reports, alerts for monitoring and analytics
• Perform data transformation using Elastic query language 
• Track the health of the Elastic environment and optimize its performance. Troubleshoot and resolve issues related to security, performance, data indexing, and searches
• Perform watch-officer monitoring duties, including:
○ monitoring, detecting, investigating, and responding to cybersecurity threats and events using Elastic /SIEM Platform
○ Reviewing correlated alerts and logs for compromise scenarios
○ Performing triage of security alerts to prioritize response
○ Identifying false positives
○ Investigating security incidents and determining root cause
○ Collecting and preserving logs for analysis
○ Escalating confirmed incidents to leadership or SOC teams
○ Coordinating with IT or DevOps for containment and remediation
○ Creating after-action reports (AAR) post-incident
• In addition, the role may include assistance with monitoring Vulnerability Management tools, such as ACAS and ePO.

QUALIFICATIONS:

• Have at least three years of working knowledge and hands-on experience with Elastic/Splunk query languages, monitoring SIEM dashboards and real-time alerts, fine-tuning SIEM rules to reduce noise, and NIST 800-53 & DevSecOps frameworks

 

Job Tags

Full time,

Similar Jobs

Disneyland Resort

Security Investigator Job at Disneyland Resort

 ...Job Summary: About the Role & Team The Security Investigator is part of a team thatis responsible fora variety of investigative...  ...federal policies. You will be required to work nights, weekends, and holidays in accordance with operational hours. You will... 

The University of Iowa

GENERAL PEDIATRICS PEDIATRICIAN Job at The University of Iowa

 ...Description:University of Iowa Stead Family Department of Pediatrics, Division of Developmental and Behavioral Pediatrics seeks a general pediatrician with interest in developmental and behavioral pediatrics.Appointment rank is open and may be to either the tenure track or... 

Tap Growth ai

LVN / LPN / Correctional Facility Nurse (State Contract Role) Job at Tap Growth ai

&##127973; We're Hiring:LVN / LPN / Correctional Facility Nurse (State Contract Role) &##127973; We are seeking an experienced LVN / LPN...  ...document patient conditions; promptly report changes to the RN or primary care provider. &##128680; Educate patients on health... 

Chanel

Fashion Advisor Job at Chanel

Chanel is seeking a Fashion Advisor in Dallas to enhance client experience and drive brand loyalty. The role involves developing new customers, optimizing service, and building client relationships. Candidates should have at least 3 years of related experience, excellent...

Globe Life AO

Remote Insurance Representative (No Experience Needed | Flexible Hours) Job at Globe Life AO

 ...Start Working From Home This Week! No experience? No problem we train you from day one. Weekly pay + uncapped bonuses. Apply now Interview in 2448 hours Get hired this week! Company: Globe Life AO Location: Remote U.S. Based Only (Suggested: Miami,...