Talent.com
Cyber Security Incident and Event Management / Elastic Specialist

Cyber Security Incident and Event Management / Elastic Specialist

Diligent Consulting IncDC, US
3 days ago
Job type
  • Full-time
  • Quick Apply
Job description

US CITIZEN ONLY.

SECRET CLEARANCE REQUIRED.  MUST HAVE IT-II CERT (IE SECURITY+) SIEM / Elastic Specialist will :

  • Be responsible for designing & setting up the ingestion of various customer data flows to include pre-processing data into a useable format, ensuring proper parsing and indexing
  • Collaborate with cross-functional teams and responsible for designing & integrating Elastic with a wide variety of data sources and developing associated knowledge objects such as queries, dashboards, reports, alerts for monitoring and analytics
  • Perform data transformation using Elastic query language
  • Track the health of the Elastic environment and optimize its performance.

Troubleshoot and resolve issues related to security, performance, data indexing, and searches

  • Perform watch-officer monitoring duties, including :
  • ○ monitoring, detecting, investigating, and responding to cybersecurity threats and events using Elastic / SIEM Platform         ○ Reviewing correlated alerts and logs for compromise scenarios         ○ Performing triage of security alerts to prioritize response         ○ Identifying false positives         ○ Investigating security incidents and determining root cause         ○ Collecting and preserving logs for analysis         ○ Escalating confirmed incidents to leadership or SOC teams         ○ Coordinating with IT or DevOps for containment and remediation         ○ Creating after-action reports (AAR) post-incident
  • In addition, the role may include assistance with monitoring Vulnerability Management tools, such as ACAS and ePO.
  • QUALIFICATIONS :

  • Have at least three years of working knowledge and hands-on experience with Elastic / Splunk query languages, monitoring SIEM dashboards and real-time alerts, fine-tuning SIEM rules to reduce noise, and NIST 800-53 & DevSecOps frameworks   Powered by JazzHR
  • Create a job alert for this search

    Cyber Security • DC, US

    Related jobs
    • Promoted
    Information Security Specialist II

    Information Security Specialist II

    OceaneeringHanover, MD, US
    Full-time
    Oceaneering Technologies (OTECH) develops, manufactures, and operates customized marine systems, shipboard equipment, subsea vehicles, and engineered solutions for commercial and U.Oceaneering Aero...Show moreLast updated: 4 days ago
    • Promoted
    Industrial Security Specialist

    Industrial Security Specialist

    BOOZ, ALLEN & HAMILTON, INC.Springfield, VA, US
    Full-time +1
    Industrial Security Specialist.Manage and perform daily security measures in the client classified and unclassified spaces. Create DoD task order Security Classification Specifications, including DD...Show moreLast updated: 4 days ago
    • Promoted
    Identity Access Management (IAM) Manager - Cyber Security - Bowie, MD

    Identity Access Management (IAM) Manager - Cyber Security - Bowie, MD

    WesBanco Bank Inc.Bowie, MD, United States
    Full-time +1
    Identity Access Management (IAM) Manager - Cyber Security.Bowie, Maryland, United States.This position is 100% remote within the Bank's footprint. Employee will work full time remote outside of a We...Show moreLast updated: 3 days ago
    • Promoted
    Management Information Analyst

    Management Information Analyst

    Legal & General AmericaFrederick, MD, United States
    Full-time
    Management Information Analyst.At Legal & General America, we aim to make a positive difference in the lives of our customers, partners, colleagues, and the communities in which they live.As a reco...Show moreLast updated: 14 days ago
    • Promoted
    Information Assurance Security Specialist

    Information Assurance Security Specialist

    Orbis, Inc.Washington, DC, US
    Full-time
    Requires skills to assess, plan, and enact security measures to help protect an organization from security breaches and attacks on its computer networks and systems. Be able to identify vulnerabilit...Show moreLast updated: 4 days ago
    • Promoted
    Information Security Specialist II

    Information Security Specialist II

    Oceaneering International, Inc.Hanover, MD, United States
    Full-time
    Oceaneering Technologies (OTECH) develops, manufactures, and operates customized marine systems, shipboard equipment, subsea vehicles, and engineered solutions for commercial and U.Oceaneering Aero...Show moreLast updated: 28 days ago
    Event Security

    Event Security

    Pirate VenturesWashington, DC, USA
    Full-time
    Quick Apply
    As Event Security , you will be an essential part of our team responsible for delivering outstanding service and creating memorable moments for our guests during events. You will be working in a fas...Show moreLast updated: 23 days ago
    • Promoted
    Incident Response Engineer

    Incident Response Engineer

    LeidosAlexandria, VA, US
    Full-time
    At Leidos, we're not just delivering solutions – we're pioneering the future of defense and intelligence technology.Our diverse teams of innovators unite around a singular purpose : em...Show moreLast updated: 1 day ago
    • Promoted
    Lead Security Engineer - Cyber Security

    Lead Security Engineer - Cyber Security

    RelativityBaltimore, MD, United States
    Full-time
    As a Lead Cyber Security Engineer, you will ensure the security of Relativity's network and infrastructure.In this role, the main responsibilities will be to investigate and analyze emerging threat...Show moreLast updated: 30+ days ago
    Information Management Security Specialist

    Information Management Security Specialist

    Graham TechnologiesSpringfield, VA, USA
    Full-time
    Quick Apply
    GTECH is seeking an Information Management Security Specialist to support its customer.The selected candidate will provide advanced technical and administrative support to manage, secure, and main...Show moreLast updated: 16 days ago
    • Promoted
    • New!
    Travel Echo Tech - $2,655 per week in Bethesda, MD

    Travel Echo Tech - $2,655 per week in Bethesda, MD

    AlliedTravelCareersGermantown, Maryland, US
    Full-time
    AlliedTravelCareers is working with FlexCare to find a qualified Echo Tech in Bethesda, Maryland, 20810!.FlexCare is a nationwide leader in the staffing of travel nurses and clinicians.With access ...Show moreLast updated: 21 hours ago
    • Promoted
    Advanced Security Engineer - Cyber Security

    Advanced Security Engineer - Cyber Security

    RelativityBaltimore, MD, United States
    Full-time
    As an Advanced Cyber Security Engineer, you will ensure the security of Relativity's network and infrastructure.In this role, the main responsibilities will be to investigate and analyze emerging t...Show moreLast updated: 30+ days ago
    • Promoted
    Information Systems Security Officer, Classified (#1882)

    Information Systems Security Officer, Classified (#1882)

    BNBIFort Detrick, MD, United States
    Temporary
    The National Biodefense Analysis and Countermeasures Center (NBACC) is a one-of-a-kind facility located on Fort Detrick in Frederick MD and is dedicated to defending the nation against biological t...Show moreLast updated: 10 days ago
    • Promoted
    Delivery Consultant - DevOps, National Security (NatSec) Professional Services (ProServe)

    Delivery Consultant - DevOps, National Security (NatSec) Professional Services (ProServe)

    Amazon Web Services, Inc.Highland, MD, US
    Full-time
    The Amazon Web Services Professional Services (ProServe) team is seeking a skilled Delivery Consultant to join our team at Amazon Web Services (AWS). In this role, you'll work closely with custo...Show moreLast updated: 30+ days ago
    • Promoted
    Senior Security Engineer

    Senior Security Engineer

    Legal & General AmericaFrederick, MD, United States
    Full-time
    At Legal & General America, we aim to make a positive difference in the lives of our customers, partners, colleagues, and the communities in which they live. As a recognized market leader of term li...Show moreLast updated: 30+ days ago
    • Promoted
    Cyber Incident Manager / Incident Manager

    Cyber Incident Manager / Incident Manager

    Node.DigitalArlington, VA, US
    Full-time
    Cyber Incident Manager / Incident Manager.Must have an active Top Secret Security Clearance.Government customer to provide support for onsite incident response to civilian Government agencies and cr...Show moreLast updated: 30+ days ago
    • Promoted
    Enterprise Functional Applications and Security Analyst

    Enterprise Functional Applications and Security Analyst

    InsideHigherEdBowie, Maryland, United States
    Permanent
    JR101151 Enterprise Functional Applications and Security Analyst (Open).This is a lead functional and security role within Information Technology (IT). The IT Enterprise Functional Applications & Se...Show moreLast updated: 30+ days ago
    • Promoted
    Manager Information Technology (On-site)

    Manager Information Technology (On-site)

    Leonardo DRSGermantown, MD, United States
    Full-time
    DRS RADA Technologies, a subsidiary of Leonardo DRS, is focused on proprietary radar solutions and legacy avionics systems supporting the defense industry globally. The company is a global pioneer o...Show moreLast updated: 10 days ago