Cyber Security Incident and Event Management/Elastic Specialist Job at Diligent Consulting Inc, Washington DC

ODhiWVg5OFk2bitqdkl2eTBnTWNmSlpDd0E9PQ==
  • Diligent Consulting Inc
  • Washington DC

Job Description

US CITIZEN ONLY. SECRET CLEARANCE REQUIRED.  MUST HAVE IT-II CERT (IE SECURITY+)

SIEM/Elastic Specialist will:

• Be responsible for designing & setting up the ingestion of various customer data flows to include pre-processing data into a useable format, ensuring proper parsing and indexing
• Collaborate with cross-functional teams and responsible for designing & integrating Elastic with a wide variety of data sources and developing associated knowledge objects such as queries, dashboards, reports, alerts for monitoring and analytics
• Perform data transformation using Elastic query language 
• Track the health of the Elastic environment and optimize its performance. Troubleshoot and resolve issues related to security, performance, data indexing, and searches
• Perform watch-officer monitoring duties, including:
○ monitoring, detecting, investigating, and responding to cybersecurity threats and events using Elastic /SIEM Platform
○ Reviewing correlated alerts and logs for compromise scenarios
○ Performing triage of security alerts to prioritize response
○ Identifying false positives
○ Investigating security incidents and determining root cause
○ Collecting and preserving logs for analysis
○ Escalating confirmed incidents to leadership or SOC teams
○ Coordinating with IT or DevOps for containment and remediation
○ Creating after-action reports (AAR) post-incident
• In addition, the role may include assistance with monitoring Vulnerability Management tools, such as ACAS and ePO.

QUALIFICATIONS:

• Have at least three years of working knowledge and hands-on experience with Elastic/Splunk query languages, monitoring SIEM dashboards and real-time alerts, fine-tuning SIEM rules to reduce noise, and NIST 800-53 & DevSecOps frameworks

 

Job Tags

Full time,

Similar Jobs

McKeever RV

Sales Associate Job at McKeever RV

 ...department that drives traffic in and the technology for todays sales environment as well. With our increased sales volume we need to...  ...Experienced Sales Person :2 years prior experience with RV, Boat or high tickets items and a solid proven track record. Must have... 

Fox Corporation

Digital Multi-Media Journalist Job at Fox Corporation

 ...FOX Networks national content. JOB DESCRIPTION FOX 5 Atlanta is a forward-thinking media organization dedicated to delivering high-quality news and entertainment across digital platforms. We are committed to engaging our audience with compelling content that... 

Peak Technologies

Financial Analyst Job at Peak Technologies

 ...Location: Remote, *with preference for candidates in Eastern (USA) time zone* Compensation...  ...: Responsible for supporting the financial planning and analysis team activities to...  ...under guidance of Senior Financial Analyst. Perform various financial analyses and... 

Flagstone Roofing and Exteriors

Door-to-Door Roof Sales - Lead Specialist Job at Flagstone Roofing and Exteriors

 ...Ready to trade the office for the outdoors? As a Door-to-Door Roof Sales - Lead Specialist, youll spend your days connecting with local homeowners, scheduling roof inspections, and being part of a company that rewards hustle and communication. Daily Responsibilities... 

Chick-fil-A

Early Morning Stocker Job at Chick-fil-A

 ...in a positive, people-focused environment. Most Chick-fil-A restaurants are locally owned and operated by independent, franchised Operators who invest in the future of their Team Members and give back to their communities. We are not currently hiring 15-year-olds....