Cyber Security Incident and Event Management/Elastic Specialist Job at Diligent Consulting Inc, Washington DC

SDlJZlE0QnpQVTkxajkvR1B4TG5KRlIxWnc9PQ==
  • Diligent Consulting Inc
  • Washington DC

Job Description

US CITIZEN ONLY. SECRET CLEARANCE REQUIRED.  MUST HAVE IT-II CERT (IE SECURITY+)

SIEM/Elastic Specialist will:

• Be responsible for designing & setting up the ingestion of various customer data flows to include pre-processing data into a useable format, ensuring proper parsing and indexing
• Collaborate with cross-functional teams and responsible for designing & integrating Elastic with a wide variety of data sources and developing associated knowledge objects such as queries, dashboards, reports, alerts for monitoring and analytics
• Perform data transformation using Elastic query language 
• Track the health of the Elastic environment and optimize its performance. Troubleshoot and resolve issues related to security, performance, data indexing, and searches
• Perform watch-officer monitoring duties, including:
○ monitoring, detecting, investigating, and responding to cybersecurity threats and events using Elastic /SIEM Platform
○ Reviewing correlated alerts and logs for compromise scenarios
○ Performing triage of security alerts to prioritize response
○ Identifying false positives
○ Investigating security incidents and determining root cause
○ Collecting and preserving logs for analysis
○ Escalating confirmed incidents to leadership or SOC teams
○ Coordinating with IT or DevOps for containment and remediation
○ Creating after-action reports (AAR) post-incident
• In addition, the role may include assistance with monitoring Vulnerability Management tools, such as ACAS and ePO.

QUALIFICATIONS:

• Have at least three years of working knowledge and hands-on experience with Elastic/Splunk query languages, monitoring SIEM dashboards and real-time alerts, fine-tuning SIEM rules to reduce noise, and NIST 800-53 & DevSecOps frameworks

 

Job Tags

Full time,

Similar Jobs

Boston Scientific

Peripheral Vascular Consultant - Minneapolis Job at Boston Scientific

 ...your ambitions. About the role: The Peripheral Vascular Consultant position requires someone with strong clinical aptitude that can...  ...address their specific needs. Observes actual procedures in the lab and operating room of hospital accounts to gain insight into... 

Valor Healthcare, Inc

Primary Care Physician (MD/DO) - Veteran Affairs Contract Job at Valor Healthcare, Inc

 ...Position Summary The Primary Care Physician (MD/DO) diagnoses and treats diseases and injuries of human internal organ systems and...  ...business. Addresses the clinical needs of all walk-in/triage/urgent care patients. Agrees to cross cover other providers,... 

University of Pennsylvania

Associate Professor - Neuromuscular Medicine Neurologist - AC Track Job at University of Pennsylvania

 ...Location: Philadelphia, PA Open Date: Sep 24, 2025 Deadline: Sep 24, 2027 at 11:59 PM Eastern Time The Department of Neurology at the Perelman School of Medicine at the University of Pennsylvania seeks candidates for several Associate Professor positions in... 

Providence Health and Services

Medical Assistant - Express Care MT-Southgate Missoula Job at Providence Health and Services

 ...Description Certified Medical Assistant works closely with a team of staff including physicians...  ...the delivery of high quality patient care. MA duties include assisting with exams...  ...Across our seven state footprint, the ACN Urgent Care clinics, surgical services and imaging... 

Minikahda Court Apartments

Leasing Agent Job at Minikahda Court Apartments

 ...Reports to: Property Manager Summary The Leasing Consultantplaysan integral role in the success of our team, our community andincreating a place our residents are proud to call home by providing unparalleled service to applicants and residents to find them the...