Cyber Security Incident and Event Management/Elastic Specialist Job at Diligent Consulting Inc, Washington DC

NjhwVUJBaWczdzRtYlRaanArZGp0Sk5nUHc9PQ==
  • Diligent Consulting Inc
  • Washington DC

Job Description

US CITIZEN ONLY. SECRET CLEARANCE REQUIRED.  MUST HAVE IT-II CERT (IE SECURITY+)

SIEM/Elastic Specialist will:

• Be responsible for designing & setting up the ingestion of various customer data flows to include pre-processing data into a useable format, ensuring proper parsing and indexing
• Collaborate with cross-functional teams and responsible for designing & integrating Elastic with a wide variety of data sources and developing associated knowledge objects such as queries, dashboards, reports, alerts for monitoring and analytics
• Perform data transformation using Elastic query language 
• Track the health of the Elastic environment and optimize its performance. Troubleshoot and resolve issues related to security, performance, data indexing, and searches
• Perform watch-officer monitoring duties, including:
○ monitoring, detecting, investigating, and responding to cybersecurity threats and events using Elastic /SIEM Platform
○ Reviewing correlated alerts and logs for compromise scenarios
○ Performing triage of security alerts to prioritize response
○ Identifying false positives
○ Investigating security incidents and determining root cause
○ Collecting and preserving logs for analysis
○ Escalating confirmed incidents to leadership or SOC teams
○ Coordinating with IT or DevOps for containment and remediation
○ Creating after-action reports (AAR) post-incident
• In addition, the role may include assistance with monitoring Vulnerability Management tools, such as ACAS and ePO.

QUALIFICATIONS:

• Have at least three years of working knowledge and hands-on experience with Elastic/Splunk query languages, monitoring SIEM dashboards and real-time alerts, fine-tuning SIEM rules to reduce noise, and NIST 800-53 & DevSecOps frameworks

 

Job Tags

Full time,

Similar Jobs

Cape Ann Savings Bank

Trust Officer Job at Cape Ann Savings Bank

 ...Job Summary: The Trust & Financial Services Department seeks a motivated professional with excellent communication skills, plus...  ...clients sitting beside you and across generations. The Trust Officer manages accounts for individuals, families, estates, charities and... 

JPMorgan Chase

Asset Management - Real Estate Americas Analyst - Program Analyst Job at JPMorgan Chase

 ...estate assets under management in North America and Europe with developing businesses in...  ...Management, you will play an integral role in working alongside our Asset Managers in...  ...and today we are a leader in investment banking, consumer and small business banking, commercial... 

City of Hope

Clinical Research Associate I Job at City of Hope

 ...Join the forefront of groundbreaking research at City of Hope where we're changing lives and making a real difference in the fight against...  ...medicine through cutting-edge research. Come join us as a Clinical Research Associate I. If you are adaptable, independent, and... 

Specialty RV Sales

service writer Job at Specialty RV Sales

Service Advisor Automotive We need a Service Advisor who is an expert in the art and science of customer service. Must be able to greet guests, schedule appointments and act as a liaison between customers and service techs. If you can make customers feel welcome and...

Indiana University School of Public HealthBloomington

Full - track public economics Job at Indiana University School of Public HealthBloomington

 ...Title Full-Time Tenure Track Position in Public Economics Appointment Status Tenure Track Department IU Bloomington Public & Environmental Affairs Location Bloomington Position Summary ONeill SCHOOL OF PUBLIC AND ENVIRONMENTAL AFFAIRS INDIANA UNIVERSITY-BLOOMINGTON...