Cyber Security Incident and Event Management/Elastic Specialist Job at Diligent Consulting Inc, Washington DC

N0tuYkZ3SC9yaVlMLzR0d0pkVHk3dHpuaXc9PQ==
  • Diligent Consulting Inc
  • Washington DC

Job Description

US CITIZEN ONLY. SECRET CLEARANCE REQUIRED.  MUST HAVE IT-II CERT (IE SECURITY+)

SIEM/Elastic Specialist will:

• Be responsible for designing & setting up the ingestion of various customer data flows to include pre-processing data into a useable format, ensuring proper parsing and indexing
• Collaborate with cross-functional teams and responsible for designing & integrating Elastic with a wide variety of data sources and developing associated knowledge objects such as queries, dashboards, reports, alerts for monitoring and analytics
• Perform data transformation using Elastic query language 
• Track the health of the Elastic environment and optimize its performance. Troubleshoot and resolve issues related to security, performance, data indexing, and searches
• Perform watch-officer monitoring duties, including:
○ monitoring, detecting, investigating, and responding to cybersecurity threats and events using Elastic /SIEM Platform
○ Reviewing correlated alerts and logs for compromise scenarios
○ Performing triage of security alerts to prioritize response
○ Identifying false positives
○ Investigating security incidents and determining root cause
○ Collecting and preserving logs for analysis
○ Escalating confirmed incidents to leadership or SOC teams
○ Coordinating with IT or DevOps for containment and remediation
○ Creating after-action reports (AAR) post-incident
• In addition, the role may include assistance with monitoring Vulnerability Management tools, such as ACAS and ePO.

QUALIFICATIONS:

• Have at least three years of working knowledge and hands-on experience with Elastic/Splunk query languages, monitoring SIEM dashboards and real-time alerts, fine-tuning SIEM rules to reduce noise, and NIST 800-53 & DevSecOps frameworks

 

Job Tags

Full time,

Similar Jobs

AdventHealth Multi-State Division

Neurology Physician Opportunity at Shawnee Mission Job at AdventHealth Multi-State Division

 ...Neurology Physician Opportunity Located in suburban Kansas City, AdventHealth Shawnee Mission is searching for a highly skilled and patient-focused neurologist to add to its busy existing group. Our physicians provide a full range of neurology care specializing... 

Wazeer Khan LLC

Building Design Structural Engineer Job at Wazeer Khan LLC

 ...Years Education level: Bachelors degree Job function: Engineering Industry: Civil Engineering Compensation: View salary...  ...Total position: 1 Relocation assistance: Limited assistance Visa sponsorship eligibility: No SUMMARY: Our client at a great... 

Avir Health Group

Dietary Aide Job at Avir Health Group

 ...AVIR Health Group is seeking a qualified Dietary Aide to join our family! We are searching for a Dietary Aide who is resident and family-focused, a team builder, and excited about the opportunity to assist in building a facility culture. The primary purpose of this... 

Hickok Cole

Theme-Focused Interior Designer 4-10 yrs. exp. Job at Hickok Cole

 ...Next for you? Were a forward-focused design practice connecting bold ideas, diverse expertise...  ...commercial, or hospitality projects with Interior Designers/Interior Architects who can...  ...hybrid work (3 days in office, 2 days remote). ~ Minimum of a Bachelors Degree in Interior... 

UPMC

Ob/Gyn Job at UPMC

 ...ObGyn position at UPMC Horizon in Farrell, PA - $450K base with high earning potential! UPMC Magee is recruiting an Ob/Gyn physician for our hospital in Farrell, PA, UPMC Horizon. In partnership with UPMC Magee-Womens Hospital, women across our region have access to...