Cyber Security Incident and Event Management/Elastic Specialist Job at Diligent Consulting Inc, Washington DC

bDJsR1MydjFweC9kTkJ4NkFsaWFNOW90dXc9PQ==
  • Diligent Consulting Inc
  • Washington DC

Job Description

US CITIZEN ONLY. SECRET CLEARANCE REQUIRED.  MUST HAVE IT-II CERT (IE SECURITY+)

SIEM/Elastic Specialist will:

• Be responsible for designing & setting up the ingestion of various customer data flows to include pre-processing data into a useable format, ensuring proper parsing and indexing
• Collaborate with cross-functional teams and responsible for designing & integrating Elastic with a wide variety of data sources and developing associated knowledge objects such as queries, dashboards, reports, alerts for monitoring and analytics
• Perform data transformation using Elastic query language 
• Track the health of the Elastic environment and optimize its performance. Troubleshoot and resolve issues related to security, performance, data indexing, and searches
• Perform watch-officer monitoring duties, including:
○ monitoring, detecting, investigating, and responding to cybersecurity threats and events using Elastic /SIEM Platform
○ Reviewing correlated alerts and logs for compromise scenarios
○ Performing triage of security alerts to prioritize response
○ Identifying false positives
○ Investigating security incidents and determining root cause
○ Collecting and preserving logs for analysis
○ Escalating confirmed incidents to leadership or SOC teams
○ Coordinating with IT or DevOps for containment and remediation
○ Creating after-action reports (AAR) post-incident
• In addition, the role may include assistance with monitoring Vulnerability Management tools, such as ACAS and ePO.

QUALIFICATIONS:

• Have at least three years of working knowledge and hands-on experience with Elastic/Splunk query languages, monitoring SIEM dashboards and real-time alerts, fine-tuning SIEM rules to reduce noise, and NIST 800-53 & DevSecOps frameworks

 

Job Tags

Full time,

Similar Jobs

Rapid Response Monitoring

Summer 2026 Accounting Internship Job at Rapid Response Monitoring

 ...our facility on site in Syracuse, NY. Job SummaryAs an Accounting Intern, you will support the accounting and finance team by performing...  ...procedures. Pay Range $22.50 per hour Hours: Summer Full-Time~Monday-Friday, 8:00am-5:00pm Responsibilities... 

A5 Labs

Senior Game Developer (Remote) Job at A5 Labs

&##127775; Senior Game Developer &##127775;&##128640; At A5 Labs, we are pioneers in creating exceptional AI-driven solutions that redefine industry standards. Our innovative approaches empower users and businesses worldwide. We are now seeking a Senior Data Engineer... 

BGSF

Apartment Leasing Consultant Job at BGSF

Leasing Consultant $22-23/hr | Weekly Pay | Immediate Start!Are you a people-person with leasing experience and a passion for customer...  ...:~Greet and tour prospective residents, promoting available apartment homes~Guide applicants through the leasing process and... 

Capital One

Lead Software Engineer, Back End/Full Stack (Intelligent Foundations & Experiences) Job at Capital One

 ...Lead a portfolio of diverse technology projects and a team of developers with deep experience in distributed microservices, and full stack...  ...with and learning new technologies, participating in internal & external technology communities, mentoring other members of... 

DK Security

Security Officer - Warehouse Job at DK Security

 ...Overview DK Security is Michigans fastest growing security company. Established in 1995, we began as an investigations firm and quickly expanded to provide uniform security, event staff security, loss prevention services, and much more based on the needs of our clients...