Cyber Security Incident and Event Management/Elastic Specialist Job at Diligent Consulting Inc, Washington DC

WDJMOWZXeTFxT1c0MUNIZHBnc3p5TmdEdlE9PQ==
  • Diligent Consulting Inc
  • Washington DC

Job Description

US CITIZEN ONLY. SECRET CLEARANCE REQUIRED.  MUST HAVE IT-II CERT (IE SECURITY+)

SIEM/Elastic Specialist will:

• Be responsible for designing & setting up the ingestion of various customer data flows to include pre-processing data into a useable format, ensuring proper parsing and indexing
• Collaborate with cross-functional teams and responsible for designing & integrating Elastic with a wide variety of data sources and developing associated knowledge objects such as queries, dashboards, reports, alerts for monitoring and analytics
• Perform data transformation using Elastic query language 
• Track the health of the Elastic environment and optimize its performance. Troubleshoot and resolve issues related to security, performance, data indexing, and searches
• Perform watch-officer monitoring duties, including:
○ monitoring, detecting, investigating, and responding to cybersecurity threats and events using Elastic /SIEM Platform
○ Reviewing correlated alerts and logs for compromise scenarios
○ Performing triage of security alerts to prioritize response
○ Identifying false positives
○ Investigating security incidents and determining root cause
○ Collecting and preserving logs for analysis
○ Escalating confirmed incidents to leadership or SOC teams
○ Coordinating with IT or DevOps for containment and remediation
○ Creating after-action reports (AAR) post-incident
• In addition, the role may include assistance with monitoring Vulnerability Management tools, such as ACAS and ePO.

QUALIFICATIONS:

• Have at least three years of working knowledge and hands-on experience with Elastic/Splunk query languages, monitoring SIEM dashboards and real-time alerts, fine-tuning SIEM rules to reduce noise, and NIST 800-53 & DevSecOps frameworks

 

Job Tags

Full time,

Similar Jobs

Clark Transfer

Owner Operators Job at Clark Transfer

Let's get the show on the road! Since 1949, the people of Clark Transfer have moved the sets, lights and costumes for countless Broadway shows and live entertainment productions. This is specialized work which requires us to fit into a uniquely show-business way of...

Doc Cafe

Surgery-Plastic Physician - $360 - $700/yearly Job at Doc Cafe

 ...DocCafe has an immediate opening for the following position: Physician - Surgery-Plastic in Culver City, California. Make $360 - $700/yearly. DocCafe is the premier physician and advanced practice job board to help you advance your healthcare career. ----------... 

Chick-fil-A

Chick-fil-A Hospitality Team member Early morning Job at Chick-fil-A

 ...Chick-fil-A Hospitality Team Member Early Morning Chick-fil-A of Austin Peay is seeking hospitality professionals. At Chick-fil-A of Austin Peay the team member role is more than just a job, it's an opportunity to be a hospitality professional and earn a premium wage... 

DataAnnotation

Math Tutor - AI Trainer Job at DataAnnotation

 ...their logic, and solve problems to improve the quality of each model. In this role you will need to hold an expert level of mathematical reasoning- a completed or in progress Masters/PhD is preferred but not required. Other related fields include, but are not limited... 

Sanford Health

RN - Hillsboro Long Term Care Job at Sanford Health

Careers With Purpose Sanford Health is one of the largest and fastest-growing not-for-profit health systems in the United States. We're proud to offer many development and advancement opportunities to our nearly 50,000 members of the Sanford Family who are dedicated...