Cyber Security Incident and Event Management/Elastic Specialist Job at Diligent Consulting Inc, Washington DC

TXVVY05kckRUbnV2TGNPenNRSUdDb0YwdlE9PQ==
  • Diligent Consulting Inc
  • Washington DC

Job Description

US CITIZEN ONLY. SECRET CLEARANCE REQUIRED.  MUST HAVE IT-II CERT (IE SECURITY+)

SIEM/Elastic Specialist will:

• Be responsible for designing & setting up the ingestion of various customer data flows to include pre-processing data into a useable format, ensuring proper parsing and indexing
• Collaborate with cross-functional teams and responsible for designing & integrating Elastic with a wide variety of data sources and developing associated knowledge objects such as queries, dashboards, reports, alerts for monitoring and analytics
• Perform data transformation using Elastic query language 
• Track the health of the Elastic environment and optimize its performance. Troubleshoot and resolve issues related to security, performance, data indexing, and searches
• Perform watch-officer monitoring duties, including:
○ monitoring, detecting, investigating, and responding to cybersecurity threats and events using Elastic /SIEM Platform
○ Reviewing correlated alerts and logs for compromise scenarios
○ Performing triage of security alerts to prioritize response
○ Identifying false positives
○ Investigating security incidents and determining root cause
○ Collecting and preserving logs for analysis
○ Escalating confirmed incidents to leadership or SOC teams
○ Coordinating with IT or DevOps for containment and remediation
○ Creating after-action reports (AAR) post-incident
• In addition, the role may include assistance with monitoring Vulnerability Management tools, such as ACAS and ePO.

QUALIFICATIONS:

• Have at least three years of working knowledge and hands-on experience with Elastic/Splunk query languages, monitoring SIEM dashboards and real-time alerts, fine-tuning SIEM rules to reduce noise, and NIST 800-53 & DevSecOps frameworks

 

Job Tags

Full time,

Similar Jobs

Tata Consultancy Services

Business Analyst Job at Tata Consultancy Services

 ...Functional Skills Responsibilities An Accounting BSA (Business Systems Analyst) plays a crucial role in bridging the gap between accounting...  ...and deployment of accounting systems (e.g., ERP systems like SAP, Oracle, Workday). Ensure systems support accurate... 

Department of Veterans Affairs

Analyst II Job at Department of Veterans Affairs

 ...Job Description and Duties This is an exciting opportunity to join our team at the California Department of Veterans Affairs (CalVet). We advocate with purpose and passion every day for our states veterans and their families and connect them to their earned benefits... 

Dermafix Spa

Spa Manager Job at Dermafix Spa

 ...Our Spa Center is on the lookout for a dedicated and passionate sales expert to join our team as a Sales Manager; you'll play a vital role in promoting and selling our range of treatments, packages, and skincare regimens while providing expert advice to customers and... 

Mai Placement

Director of Finance Job at Mai Placement

 ...capital, including inventory, receivables, and payables Manage banking relationships and support financing activities as needed...  ...function that operates as a trusted strategic partner , not just a back office Leadership confident in financial data and decision-making... 

EssilorLuxottica Group

Training Coordinator (Manufacturing) Job at EssilorLuxottica Group

 ...Discover more by following us on LinkedIn! GENERAL FUNCTION The Training Cooridnator takes action to make the Manufacturing Facility ...  ...facility. MAJOR DUTIES & RESPONSIBILITIES Develops, coordinates and provides strong hands-on training to current and new associates...