Cyber Security Incident and Event Management/Elastic Specialist Job at Diligent Consulting Inc, Washington DC

U2JKYkU5SWxkSk5BNHBNbFBOeFJibUFSNFE9PQ==
  • Diligent Consulting Inc
  • Washington DC

Job Description

US CITIZEN ONLY. SECRET CLEARANCE REQUIRED.  MUST HAVE IT-II CERT (IE SECURITY+)

SIEM/Elastic Specialist will:

• Be responsible for designing & setting up the ingestion of various customer data flows to include pre-processing data into a useable format, ensuring proper parsing and indexing
• Collaborate with cross-functional teams and responsible for designing & integrating Elastic with a wide variety of data sources and developing associated knowledge objects such as queries, dashboards, reports, alerts for monitoring and analytics
• Perform data transformation using Elastic query language 
• Track the health of the Elastic environment and optimize its performance. Troubleshoot and resolve issues related to security, performance, data indexing, and searches
• Perform watch-officer monitoring duties, including:
○ monitoring, detecting, investigating, and responding to cybersecurity threats and events using Elastic /SIEM Platform
○ Reviewing correlated alerts and logs for compromise scenarios
○ Performing triage of security alerts to prioritize response
○ Identifying false positives
○ Investigating security incidents and determining root cause
○ Collecting and preserving logs for analysis
○ Escalating confirmed incidents to leadership or SOC teams
○ Coordinating with IT or DevOps for containment and remediation
○ Creating after-action reports (AAR) post-incident
• In addition, the role may include assistance with monitoring Vulnerability Management tools, such as ACAS and ePO.

QUALIFICATIONS:

• Have at least three years of working knowledge and hands-on experience with Elastic/Splunk query languages, monitoring SIEM dashboards and real-time alerts, fine-tuning SIEM rules to reduce noise, and NIST 800-53 & DevSecOps frameworks

 

Job Tags

Full time,

Similar Jobs

Cornerstone Academy of Lithonia

Early Childhood - Center Director Job at Cornerstone Academy of Lithonia

 ...children, families, and staff confidentiality. Initiate and maintain good Center relations with parents and the community. Attend community meetings, open houses, and community functions as a representative of the agency. Conduct Center tours and and agency presentations... 

NTT DATA, Inc.

Inbound Call Centre Sales Representative - Remote Job at NTT DATA, Inc.

 ...and answer any questions Implement sales strategies to achieve personal and business goals Conduct sales transactions through online e-commerce software Offer feedback to management for methods of improving performance and results Requirements: Sales... 

CoverFour

E-Commerce Director / Marketing Job at CoverFour

 ...CoverFour is building the next generation of sports equipment and performance gear brandsspanning baseball, softball, football, pickleball...  ...innovation. We are looking for a strategic, data-driven Marketing & E-Commerce Director to lead the growth engine behind our portfolio... 

Thermo Fisher Scientific

Lab Warehouse Order Picker Job at Thermo Fisher Scientific

 ...and quality to deliver groundbreaking innovations. Discover Impactful Work: As a Kit Production Coordinator or "Lab Warehouse Order Picker", you will have a pivotal role in the flawless production and distribution of laboratory kits. Your contributions will help... 

BrightSpring Health Services

Pharmacy Technician / IV Compounding Job at BrightSpring Health Services

 ...Company Amerita Overview Amerita, Inc. is a leading provider in home Infusion therapy. We are looking for a Pharmacy Technician - Compounding to join our Pharmacy team as we grow to be one of the top home infusion providers in the country. The Pharmacy...