Cyber Security Incident and Event Management/Elastic Specialist Job at ClearanceJobs, Washington DC

UmFIVTZGUkU4dVV2b2lsYUZXZk82NEhaSGc9PQ==
  • ClearanceJobs
  • Washington DC

Job Description

divh2SIEM/Elastic Specialist/h2pUS CITIZEN ONLY. SECRET CLEARANCE REQUIRED. MUST HAVE IT-II CERT (IE SECURITY+)/ppSIEM/Elastic Specialist will:/pulliBe responsible for designing setting up the ingestion of various customer data flows to include pre-processing data into a useable format, ensuring proper parsing and indexing/liliCollaborate with cross-functional teams and responsible for designing integrating Elastic with a wide variety of data sources and developing associated knowledge objects such as queries, dashboards, reports, alerts for monitoring and analytics/liliPerform data transformation using Elastic query language/liliTrack the health of the Elastic environment and optimize its performance. Troubleshoot and resolve issues related to security, performance, data indexing, and searches/liliPerform watch-officer monitoring duties, including: monitoring, detecting, investigating, and responding to cybersecurity threats and events using Elastic /SIEM Platform Reviewing correlated alerts and logs for compromise scenarios Performing triage of security alerts to prioritize response Identifying false positives Investigating security incidents and determining root cause Collecting and preserving logs for analysis Escalating confirmed incidents to leadership or SOC teams Coordinating with IT or DevOps for containment and remediation Creating after-action reports (AAR) post-incident/liliIn addition, the role may include assistance with monitoring Vulnerability Management tools, such as ACAS and ePO./li/ulpQUALIFICATIONS:/ppHave at least three years of working knowledge and hands-on experience with Elastic/Splunk query languages, monitoring SIEM dashboards and real-time alerts, fine-tuning SIEM rules to reduce noise, and NIST 800-53 DevSecOps frameworks/p/div

Job Tags

Similar Jobs

Agility Partners

Concept Artist Job at Agility Partners

 ...Job Description Agility Partners is seeking a qualified Concept Artist to fill an open position with a Fortune 15 company based in the...  ...AAA sci-fi FPS title, shaping the visual foundation that guides 3D teams and outsourcing partners. As a key member of the concept art... 

RCM HealthCare Travel

Local Contract Speech Language Pathologist Job at RCM HealthCare Travel

 ...Job Description RCM HealthCare Travel is seeking a local contract Speech Language Pathologist for a local contract job in Las Cruces...  ...services to school students in NEW MEXICO. This position is 100% remote/work from home, utilizing our HIPPA/FERPA compliant platform... 

R+L Carriers

Dock Hand/Marine Mechanic Job at R+L Carriers

 ...resorts Click here to learn more about our employee resorts R+L Carriers - Women in Trucking Company Culture Port Sanibel Marina currently has a position for Dock hand/Marine Mechanic on Sanibel Islands. Job Responsibilities: Fueling boats... 

Spectra Logic

Sr Software Engineer Job at Spectra Logic

Description About the Role: We are seeking a highly skilledSenior Software Engineerwith deep expertise in FreeBSD and low-level systems programming. The ideal candidate will have significant experience integrating hardware with the FreeBSD operating system,...

RCM Healthcare Services

Board Certified Behavior Analyst (BCBA) Job at RCM Healthcare Services

 ...Board Certified Behavior Analyst (BCBA)RCM Healthcare is currently staffing BCBA's for in-home and via telehealth to provide Pre-ETS (vocational) supervision of services to students ages 13-21 on the Autism Spectrum in the State of South Carolina. Job Title: Board...