Cyber Security Incident and Event Management/Elastic Specialist Job at Diligent Consulting Inc, Washington DC

emNva3V4YkMySDVSNGNiRXdzQ0lDbE9zRGc9PQ==
  • Diligent Consulting Inc
  • Washington DC

Job Description

US CITIZEN ONLY. SECRET CLEARANCE REQUIRED.  MUST HAVE IT-II CERT (IE SECURITY+)

SIEM/Elastic Specialist will:

• Be responsible for designing & setting up the ingestion of various customer data flows to include pre-processing data into a useable format, ensuring proper parsing and indexing
• Collaborate with cross-functional teams and responsible for designing & integrating Elastic with a wide variety of data sources and developing associated knowledge objects such as queries, dashboards, reports, alerts for monitoring and analytics
• Perform data transformation using Elastic query language 
• Track the health of the Elastic environment and optimize its performance. Troubleshoot and resolve issues related to security, performance, data indexing, and searches
• Perform watch-officer monitoring duties, including:
○ monitoring, detecting, investigating, and responding to cybersecurity threats and events using Elastic /SIEM Platform
○ Reviewing correlated alerts and logs for compromise scenarios
○ Performing triage of security alerts to prioritize response
○ Identifying false positives
○ Investigating security incidents and determining root cause
○ Collecting and preserving logs for analysis
○ Escalating confirmed incidents to leadership or SOC teams
○ Coordinating with IT or DevOps for containment and remediation
○ Creating after-action reports (AAR) post-incident
• In addition, the role may include assistance with monitoring Vulnerability Management tools, such as ACAS and ePO.

QUALIFICATIONS:

• Have at least three years of working knowledge and hands-on experience with Elastic/Splunk query languages, monitoring SIEM dashboards and real-time alerts, fine-tuning SIEM rules to reduce noise, and NIST 800-53 & DevSecOps frameworks

 

Job Tags

Full time,

Similar Jobs

Oceanfront Helicopters

HELICOPTER TOUR PILOT Job at Oceanfront Helicopters

 ...verifiable total rotorcraft PIC experience ~50 hours Robinson R44 PIC experience ~ Robinson Helicopter Company Factory Pilot Safety Course within previous 5 years ~ Fully dressed flight weight of 200lbs or less ~ Positive, upbeat personality... 

Pure Barre

Pure Barre Teacher Job at Pure Barre

 ...professional demeanor and excellent communication and customer service skills* Warm, welcoming, and engaging personality * Proven public speaking skills * Willingness to evolve with new developments in the fitness industry, specifically in relation to Pure Barre * Team... 

Global Scouting Group

Duty Drawback Account Analyst Job at Global Scouting Group

 ...accurate claim filings. Key Responsibilities: Prepare, review, and file drawback claims with U.S. Customs and Border Protection (CBP) in compliance with applicable regulations. Maintain accurate and organized records of import and export transactions to... 

SGS Consulting

Accountant Job at SGS Consulting

 ...monthly financial close activities, including journal entries and account analyses. Support audit processes and prepare financial...  ...accounting policies and procedures. Education/Experience: ~ Bachelors of Arts & Science Accounting, Finance, or related field required... 

Swiss Re

Business Analyst, L&H - Hybrid, 3 days in the office Job at Swiss Re

 ...the office three days per week. About the Role: As a Business Analyst, you'll collaborate with stakeholders across the organization...  ...years of relevant experience in US Corporation (outside of internships and school projects) Excellent communication skills with the...