Cyber Security Incident and Event Management/Elastic Specialist Job at Diligent Consulting Inc, Washington DC

TmRveTlWdEpSejE3VW5tZ0R3OE1ReWJNdWc9PQ==
  • Diligent Consulting Inc
  • Washington DC

Job Description

US CITIZEN ONLY. SECRET CLEARANCE REQUIRED.  MUST HAVE IT-II CERT (IE SECURITY+)

SIEM/Elastic Specialist will:

• Be responsible for designing & setting up the ingestion of various customer data flows to include pre-processing data into a useable format, ensuring proper parsing and indexing
• Collaborate with cross-functional teams and responsible for designing & integrating Elastic with a wide variety of data sources and developing associated knowledge objects such as queries, dashboards, reports, alerts for monitoring and analytics
• Perform data transformation using Elastic query language 
• Track the health of the Elastic environment and optimize its performance. Troubleshoot and resolve issues related to security, performance, data indexing, and searches
• Perform watch-officer monitoring duties, including:
○ monitoring, detecting, investigating, and responding to cybersecurity threats and events using Elastic /SIEM Platform
○ Reviewing correlated alerts and logs for compromise scenarios
○ Performing triage of security alerts to prioritize response
○ Identifying false positives
○ Investigating security incidents and determining root cause
○ Collecting and preserving logs for analysis
○ Escalating confirmed incidents to leadership or SOC teams
○ Coordinating with IT or DevOps for containment and remediation
○ Creating after-action reports (AAR) post-incident
• In addition, the role may include assistance with monitoring Vulnerability Management tools, such as ACAS and ePO.

QUALIFICATIONS:

• Have at least three years of working knowledge and hands-on experience with Elastic/Splunk query languages, monitoring SIEM dashboards and real-time alerts, fine-tuning SIEM rules to reduce noise, and NIST 800-53 & DevSecOps frameworks

 

Job Tags

Full time,

Similar Jobs

California State University

25-26 AY Temporary Faculty Pool - Agricultural Education Job at California State University

 ...per Academic Policy Manual 306 , paragraph 2. Instructors are responsible for the preparation, delivery, conducting, proctoring, and grading (as appropriate) lectures, office hours, homework assignments, quizzes, class projects, and midterm and final exams. All classes... 

FocusGroupPanel

Remote Data Entry Specialist Job at FocusGroupPanel

 ...About the Data Entry Research Participant position We are looking for dependable, trustworthy individuals from various work experience...  ...no more than 25 miles from your home. This is an entry level position requiring no prior experiences. The hiring company conducting... 

City Vision University

Tech-Savvy Administrative Assistant at Online Christian University Job at City Vision University

 ...Academic Administration. The position is full-time and is a work-from-home position anywhere in the United States. Duties include: Academic...  ...at least one year of previous administrative experience in a Christian nonprofit organization Have a demonstrated commitment to... 

Aequor Allied

School-Based Occupational Therapist Job at Aequor Allied

 ...Allied is seeking a travel Occupational Therapist for a travel job in Burbank, Illinois....  ...Therapy Staff Job ID #1687770. Pay package is based on 8 hour shifts and 40 hours per week (...  ...stipend amount to be determined. Posted job title: Occupational Therapist (OT) - School... 

Marvin

Event Marketer Job at Marvin

 ...premium windows and doors, is seeking a creative and enthusiastic Event Marketer to join our dynamic marketing team. This role involves...  ...the industry. As an Event Marketer at Marvin, you will manage, coordinate, and execute all aspects of our events from concept to completion...