Talent.com
Diligent Consulting Inc
Cyber Security Incident and Event Management/Elastic SpecialistDiligent Consulting Inc • DC, US
Cyber Security Incident and Event Management/Elastic Specialist

Cyber Security Incident and Event Management/Elastic Specialist

Diligent Consulting Inc • DC, US
30+ days ago
Job type
  • Full-time
  • Quick Apply
Job description

US CITIZEN ONLY.

SECRET CLEARANCE REQUIRED. MUST HAVE IT-II CERT (IE SECURITY+) SIEM/Elastic Specialist will:

  • • Be responsible for designing & setting up the ingestion of various customer data flows to include pre-processing data into a useable format, ensuring proper parsing and indexing • Collaborate with cross-functional teams and responsible for designing & integrating Elastic with a wide variety of data sources and developing associated knowledge objects such as queries, dashboards, reports, alerts for monitoring and analytics • Perform data transformation using Elastic query language • Track the health of the Elastic environment and optimize its performance.

Troubleshoot and resolve issues related to security, performance, data indexing, and searches • Perform watch-officer monitoring duties, including:

  • ○ monitoring, detecting, investigating, and responding to cybersecurity threats and events using Elastic /SIEM Platform ○ Reviewing correlated alerts and logs for compromise scenarios ○ Performing triage of security alerts to prioritize response ○ Identifying false positives ○ Investigating security incidents and determining root cause ○ Collecting and preserving logs for analysis ○ Escalating confirmed incidents to leadership or SOC teams ○ Coordinating with IT or DevOps for containment and remediation ○ Creating after-action reports (AAR) post-incident • In addition, the role may include assistance with monitoring Vulnerability Management tools, such as ACAS and ePO.

QUALIFICATIONS:

  • • Have at least three years of working knowledge and hands-on experience with Elastic/Splunk query languages, monitoring SIEM dashboards and real-time alerts, fine-tuning SIEM rules to reduce noise, and NIST 800-53 & DevSecOps frameworks Powered by JazzHR
Create a job alert for this search

Cyber Security Incident and Event Management/Elastic Specialist • DC, US

Similar jobs

Event Specialist-PT

CROSSMARKLaurel, MD, United States
Part-time +1

CROSSMARK is a leading sales and marketing services company in the consumer goods industry that expertly guides our clients along "The Way to Market" by delivering growth solutions with exceptional... Show more

 • Promoted

Customer Experience Lead-The Mall in Columbia

Victoria's SecretColumbia, MD, United States
Full-time

Why You Belong Here At Victoria's Secret & Co, you'll join a world-leading specialty retail brand recognized globally for innovation and excellence in lingerie and fashion.You'll work alongside in... Show more

 • Promoted

Information Technology Professional

US NavyMount Airy, MD, US
Full-time

Information Technology Professional (IT/CTN/IS).Information Systems Technicians, Cryptologic Technician Networks, and Intelligence Specialists keep the Fleet connected, informed, and secure by oper... Show more

 • Promoted

Director, Event Programming and Experience Design

ArgentumWashington, DC, US
Full-time

ARGENTUM  is the leading national trade association serving companies that own, operate, and support professionally managed senior living communities in the United States.Our staff thrives on servi... Show more

 • Promoted

Chief Global Member Engagement Officer (CGMEO)

ConfidentialAlexandria, VA, United States
Full-time

Chief Global Member Engagement Officer (CGMEO).Globally recognized association for security professionals.The Company is in search of a Chief Global Member Engagement Officer (CGMEO) to take on a s... Show more

 • Promoted

Senior Relay Engineering Analyst

Constellation EnergyClarksville, MD, United States
Full-time

As the nation's largest producer of clean, carbon-free energy, Constellation is focused on our purpose: accelerating the transition to a carbon-free future.We have been the leader in clean energy p... Show more

 • Promoted

Intermediate Security Specialist

ITC DefenseFort Belvoir, VA, United States
Permanent

Intermediate Security Specialist.Location: Fort Belvoir, VA (On-Site).ITC is seeking a qualified candidate to serve as an on-site Intermediate Security Specialist for the Missile Defense Agency.In ... Show more

 • Promoted

Security Engineer TS/SCI — On-Site DC, HBSS & DISA Specialist

SCOUT SolutionsWashington, District of Columbia, United States
Full-time

An established industry player in cybersecurity is seeking a dedicated Security Engineer to join their dynamic team.This role offers the chance to manage security infrastructure across Windows and ... Show more

 • Promoted

Network & Security Engineer

Sourced IntelligenceAlexandria, Virginia, United States
$90,000.00 yearly
Full-time

Salary: $90,000 - 135,000 per year.We need 3+ years of hands-on experience supporting enterprise or SMB network infrastructure, including firewalls, switching, wireless, and VPNs.We require proven ... Show more

 • Promoted

Security Officer Part Time Patrol Watch

Allied Universal SecurityBrookeville, MD, United States
Full-time +1

Allied Universal, North America's leading security and facility services company, offers rewarding careers that provide you a sense of purpose.While working in a dynamic, welcoming, and collaborati... Show more

 • Promoted

Security Specialist

MANTECHFort Belvoir, VA, US
Full-time

The Security Specialist provides special access security oversight for the Missile Defense Agency supporting 10,0000 personnel at numerous geographically separated locations.Responsibilities includ... Show more

 • Promoted

Security Engineer: Incident Response & Vulnerability

Jobright.aiWashington, District of Columbia, United States
Full-time

A leading tech company is seeking a Security Engineer to enhance its cybersecurity efforts.The role involves administering security tools, conducting vulnerability scans, and managing incident resp... Show more

 • Promoted

Security Engineer

TekSynapWashington, District of Columbia, United States
Full-time

Be among the first 25 applicants.Responsibilities & Qualifications.Manage vulnerability scanning, remediation, and POA&M tracking.Support FISMA and NIST SP 800-53 compliance reviews.Implement SIEM ... Show more

 • Promoted

Event Security Assignment - Upscale Hotel

K17 SecurityWashington, DC, United States
Full-time

Overview This is a 1-week event.You'll be assigned inside an upscale hotel in NW DC, working in close proximity with military personnel and teenagers attending the event.Because of the environment ... Show more

 • Promoted

Cyber Security Engineer — Cloud & On-Prem Security

Leidos IncBethesda, MD, United States
Full-time

A leading technology company is seeking a Cyber Security Engineer to support innovative technology solutions in Bethesda, MD.This role involves providing technical security expertise for both cloud... Show more

 • Promoted

Cyber Security Engineer — Impact in Cloud & On-Prem

LeidosBethesda, Maryland, United States
Full-time

A leading technology solutions provider in Bethesda, MD is seeking a Cyber Security Engineer to deliver expertise and support in cloud and on-premises security infrastructures.The ideal candidate w... Show more

 • Promoted

Information Assurance & Security Manager (RMF/NIST)

OCT Consulting LLCWashington, District of Columbia, United States
Full-time

A consulting firm in Washington, DC is seeking an Information Assurance/Security Engineer, Manager.The role involves developing security policies, monitoring systems, and managing a team.Citizens w... Show more

 • Promoted

Information Security Analyst

TradeJobsWorkForce22217 Arlington, VA, US
Full-time

Monitor their organization’s networks for security breaches and investigate a violation when one occurs Install and use software, such as firewalls and data encryption programs, to protect sensitiv... Show more