Cyber Security Incident and Event Management/Elastic Specialist Job at Diligent Consulting Inc, Washington DC

MUZsSnpwa21keVQrZGtZa2R0K3c0MVk3SlE9PQ==
  • Diligent Consulting Inc
  • Washington DC

Job Description

US CITIZEN ONLY. SECRET CLEARANCE REQUIRED.  MUST HAVE IT-II CERT (IE SECURITY+)

SIEM/Elastic Specialist will:

• Be responsible for designing & setting up the ingestion of various customer data flows to include pre-processing data into a useable format, ensuring proper parsing and indexing
• Collaborate with cross-functional teams and responsible for designing & integrating Elastic with a wide variety of data sources and developing associated knowledge objects such as queries, dashboards, reports, alerts for monitoring and analytics
• Perform data transformation using Elastic query language 
• Track the health of the Elastic environment and optimize its performance. Troubleshoot and resolve issues related to security, performance, data indexing, and searches
• Perform watch-officer monitoring duties, including:
○ monitoring, detecting, investigating, and responding to cybersecurity threats and events using Elastic /SIEM Platform
○ Reviewing correlated alerts and logs for compromise scenarios
○ Performing triage of security alerts to prioritize response
○ Identifying false positives
○ Investigating security incidents and determining root cause
○ Collecting and preserving logs for analysis
○ Escalating confirmed incidents to leadership or SOC teams
○ Coordinating with IT or DevOps for containment and remediation
○ Creating after-action reports (AAR) post-incident
• In addition, the role may include assistance with monitoring Vulnerability Management tools, such as ACAS and ePO.

QUALIFICATIONS:

• Have at least three years of working knowledge and hands-on experience with Elastic/Splunk query languages, monitoring SIEM dashboards and real-time alerts, fine-tuning SIEM rules to reduce noise, and NIST 800-53 & DevSecOps frameworks

 

Job Tags

Full time,

Similar Jobs

CMC

Electrical Engineer - Substation & Power Transmission Job at CMC

 ...8 hours Design, analyze, and specify electrical systems and equipment for installations up to 138kV, including substations, power transmission lines, and distribution networks...  ...Strong understanding of electrical engineering principles and practices. Professional... 

Intellectt INC

Hardware Technician Job at Intellectt INC

Job Description 1. Reworking hardware including Intel motherboards (ex: resistors, capacitors, wiring/unwiring, probing) 2. Inventory management (including lab logistics & tracking inventories within team) 3. Bringing-up new hardware (Installing SoC/CPU, heatsinks...

Wyndy

In search of part-time toddler sitter near UH, TX Job at Wyndy

 ...19 - $27 per hour Start Date: Within 1 Week Location: Houston, TX Job Description Part-time Toddler Sitter needed near UH, TX. Experience with toddlers required. Must provide a safe and nurturing environment. Duties include feeding, diaper changing, and engaging... 

DMB Insurance Agency

sales representative Job at DMB Insurance Agency

 ...Descripcin del puesto: Join a High-Earning Insurance Sales Team $6,000+/Month Potential! Are you ready to take control of your income and build a career with unlimited potential? DMB Insurance Agency , a trusted and stable company with over 15 years of proven... 

innovitusa

Salesforce Developer Job at innovitusa

 ...Visa: Open to any visa type with valid work authorization in the USA Key Responsibilities Design, develop, test, and deploy Salesforce solutions using Apex, Visualforce, Lightning Web Components (LWC), and Salesforce configuration tools Customize...