Current jobs related to Elastic SIEM Security Analyst - Fairfax - ECS Corporate Services

  • (SIEM) Analyst

    1 month ago


    Fairfax, United States AlxTel, Inc. Full time

    Job DescriptionJob DescriptionSecurity Information and Event Management (SIEM) Analyst Experience: 5- 10 yearsMinimum/General Experience:SIEM Expertise: Extensive experience with major SIEM products, including configuring, maintaining, troubleshooting, writing query and correlation rules, and generating reports and alerts.Regulatory Knowledge: Strong...


  • Fairfax, VA, United States HuntsBot Full time

    Software Engineer II (Full Stack) at Elastic Title: Search Search Relevance - Software Engineer II (Full Stack)Location: Distributed, EMEAJob Description: Elastic is a free and open search company that powers enterprise search, observability, and security solutions built on one technology stack that can be deployed anywhere. From finding documents to...


  • Fairfax, United States ECS Corporate Services Full time

    ECS is seeking a Senior Security Detection Engineer to work in our Fairfax, VA office.Job Description: At ECS Federal, we're driven by a commitment to excellence and innovation in solving complex challenges. As a premier provider of advanced technology solutions and services, our mission is to secure and optimize the most critical commercial, government,...


  • Fairfax, United States The One 23 Group Full time

    Job DescriptionJob DescriptionDescription:At The One 23 Group, our mission is to set the benchmark for excellence in government services. We empower our clients in the Department of Defense, Intelligence Community, and Federal Civilian sectors to excel with our advanced capabilities. Our dedication lies in fostering a people-first culture, underpinned by...


  • Fairfax, United States The One 23 Group Full time

    Job DescriptionJob DescriptionDescription:At The One 23 Group, our mission is to set the benchmark for excellence in government services. We empower our clients in the Department of Defense, Intelligence Community, and Federal Civilian sectors to excel with our advanced capabilities. Our dedication lies in fostering a people-first culture, underpinned by...


  • Fairfax, United States Progression, Inc. Full time

    I nalyst Fairfax, VA MUST: Active Public Trust Required Experienced Information Security Analyst 5+ years applying, selecting and testing the NIST 800-53 Rev 4 security controls. 5+ years in-depth knowledge of NIST 800-37 Risk Management Framework. 5+ years experience with a Governance, Risk and Compliance tool (e.g., Xacta, RSA Archer, CSAM or eMASS)....


  • Fairfax, United States ECS Corporate Services Full time

    ECS is seeking a Security Engineering and Compliance Manager to work hybrid in our Fairfax, VA office. Job Description: ECS is seeking talented professionals who love a challenge to join us in building the next-generation Continuous Diagnostics and Mitigation (CDM) Cyber data solution. The CDM Program is the Cybersecurity and Infrastructure Security...


  • Fairfax, United States ECS Corporate Services Full time

    ECS is seeking a Security Analyst/Documentation SME to work in our Fairfax, VA office (Hybrid). Job Description: ECS is seeking talented professionals who love a challenge to join us in building the next-generation Continuous Diagnostics and Mitigation (CDM) Cyber data solution. The CDM Program is the Cybersecurity and Infrastructure Security Agency's...


  • Fairfax, United States Tevora Full time

    Job DescriptionJob DescriptionInformation Security Analyst (Penetration Testing)at TevoraIrvine, CA and Fairfax, VAIf you haven't heard of Tevora, it's because we've done our job!Tevora is a tight-knit community of professionals with a shared passion for our craft. Every day, we combine in-depth knowledge of cybersecurity, technology, and...


  • Fairfax, United States The One 23 Group Full time

    Job DescriptionJob DescriptionDescription:At The One 23 Group, our mission is to set the benchmark for excellence in government services. We empower our clients in the Department of Defense, Intelligence Community, and Federal Civilian sectors to excel with our advanced capabilities. Our dedication lies in fostering a people-first culture, underpinned by...

  • Management Analyst

    3 weeks ago


    Fairfax, United States GD Resources LLC Full time

    Join GD Resources for dynamic opportunities in business management and IT, where innovation meets excellence.GD Resources LLC is a Veteran Women-Owned Business Management and Information Technology company committed to excellence. We offer dynamic opportunities for veterans and professionals alike to contribute to innovative projects and drive success in a...

  • Management Analyst

    3 weeks ago


    Fairfax, United States GD Resources LLC Full time

    Join GD Resources for dynamic opportunities in business management and IT, where innovation meets excellence.GD Resources LLC is a Veteran Women-Owned Business Management and Information Technology company committed to excellence. We offer dynamic opportunities for veterans and professionals alike to contribute to innovative projects and drive success in a...

  • Management Analyst

    3 weeks ago


    Fairfax, United States GD Resources LLC Full time

    Job DescriptionJob Description"Join GD Resources for dynamic opportunities in business management and IT, where innovation meets excellence."GD Resources LLC is a Veteran Women-Owned Business Management and Information Technology company committed to excellence. We offer dynamic opportunities for veterans and professionals alike to contribute to innovative...


  • Fairfax, Virginia, United States General Dynamics Information Technology Full time

    About the Role:We are seeking a highly skilled Senior Cybersecurity Analyst to join our team at General Dynamics Information Technology. As a Senior Cybersecurity Analyst, you will play a critical role in ensuring the security and integrity of our clients' information systems.Key Responsibilities:Perform cybersecurity activities, including vulnerability...

  • SOC Analyst

    1 month ago


    FAIRFAX, United States Foxhole Technology Full time

    Job Title: SOC Analyst (Tier 2) Clearance: Secret Location: Leesburg, VA (Onsite) Shift: Day Team B Foxhole Technology provides robust cybersecurity and IT support capabilities for federal civilian and defense agencies. A recognized leader in navigating technology and security challenges, Foxhole delivers mission-focused innovations to answer...

  • Business Analyst

    4 weeks ago


    Fairfax, United States GD Resources LLC Full time $40 - $60

    Job DescriptionJob Description"Join GD Resources for dynamic opportunities in business management and IT, where innovation meets excellence."GD Resources LLC is a Veteran Women-Owned Business Management and Information Technology company committed to excellence. We offer dynamic opportunities for veterans and professionals alike to contribute to innovative...


  • Fairfax, United States Progression, Inc. Full time

    IA Analyst Fairfax, VA MUST: Active Public Trust Required Experienced Information Security Analyst 5+ years applying, selecting and testing the NIST 800-53 Rev 4 security controls. 5+ years in-depth knowledge of NIST 800-37 Risk Management Framework. 5+ years experience with a Governance, Risk and Compliance tool (e.g., Xacta, RSA Archer, CSAM or...

  • IT Systems Analyst

    4 weeks ago


    Fairfax, Virginia, United States George Mason University Full time

    Department: University LifeClassification: Information Technology Specialist 2Job Category: Classified StaffJob Type: Full-TimeWork Schedule: Full-time (1.0 FTE, 40 hrs/wk)Location: Fairfax, VAWorkplace Type: Hybrid EligiblePay Band: 05Salary: Starting from low $70ks; salary commensurate with education and experienceRestricted: YesCriminal Background Check:...


  • Fairfax, Virginia, United States Leidos Full time

    Job Title: Senior Foreign Disclosure AnalystAbout the Role:Leidos is seeking a highly skilled Senior Foreign Disclosure Analyst to support the Defense Combating Terrorism Office for an Intelligence agency. As a key member of our team, you will be responsible for processing requests for disclosure of information to partners, reviewing various products for...


  • Fairfax, United States Navitas Full time

    Job DescriptionJob DescriptionSecurity Engineer Fairfax, VAHybrid.Implement, administer, and use cybersecurity tools, systems, and applications; develop policies, standards, and guidelines to ensure secure enterprise-wide operations, performance, and resiliency. Deploy, administer, and support security systems and infrastructure to include endpoint...

Elastic SIEM Security Analyst

4 months ago


Fairfax, United States ECS Corporate Services Full time
ECS is seeking an Elastic SIEM Security Analyst to work in our Fairfax, VA office.

Job Description:

As a leading managed cybersecurity services provider, ECS delivers a highly tailored and customized offering to each customer. The Professional Services Team is responsible for working with our customers to understand their needs and delivering a complete solution. We will leverage your unique skills to help solve customers' challenges, such as engineering a system to address a technical hurdle, protecting customer data, or consulting on a wide range of security topics. You are empowered to engage and lead across multiple groups and must have the self-sufficiency and focus to work well without constant oversight.

This role requires a blend of technical proficiency with Elastic SIEM, cybersecurity principles, and strong analytical capabilities to effectively protect against and respond to cyber threats. The candidate should also possess excellent interpersonal skills to communicate complex security issues to a broad audience effectively.

Responsibilities:
  • Network Monitoring and Intrusion Detection: Perform analysis using various defense tools, including IDS/IPS, firewalls, and host-based security systems.
  • SIEM Management: Utilize Elastic SIEM to correlate events and identify indicators of threats, creating actionable intelligence.
  • Threat Research: Investigate emerging threats and vulnerabilities to enhance incident identification processes.
  • Threat Detection: Implement both log-based and endpoint-based detection strategies to identify and mitigate threats from multiple sources.
  • Content Development: Develop and customize SIEM content such as machine learning rules, signatures, and dashboards according to customer requirements.
  • Activity Correlation: Correlate data across network, cloud, and endpoints to identify attacks and unauthorized actions.
  • Alert Management: Review and respond to alerts from SIEM and other sensors; document incidents in formal, technical reports.
  • Phishing Analysis: Analyze phishing email submissions to determine threat levels and appropriate responses.
  • Incident Response Support: Provide effective incident response and mitigation strategies to contain and rectify breaches.
  • Threat Intelligence Integration: Collaborate with threat intelligence and threat-hunting teams to maintain up-to-date knowledge of threat landscapes.
  • Tool Evaluation: Assist in assessing new security tools and analytical techniques for integration into managed security services.
  • Breach Investigation: Support both large-scale and smaller-scale cyber breach investigations.
  • Stakeholder Communication: Effectively communicate cyber events and findings to both internal and external stakeholders.

Required Skills:
  • Deep Knowledge of Elastic SIEM: Proficient in using Elastic SIEM for monitoring, threat detection, and response. Experience with using Kibana, Logstash, Ingest Pipelines, Enterprise Search or Observability preferred.
  • Cybersecurity Expertise: Strong understanding of network protocols, encryption, and vulnerabilities.
  • Analytical Skills: Ability to analyze complex data from various sources to deduce patterns and detect anomalies.
  • Programming/Scripting: Familiarity with scripting languages like Python or PowerShell to automate tasks and manipulate data.
  • Content Creation: Experience in creating and tuning SIEM rules, signatures, and dashboards.
  • Communication Skills: Excellent written and verbal communication skills for reporting and stakeholder engagement.
  • Problem-Solving: Strong problem-solving skills with the ability to work under pressure in a fast-paced environment.
  • Certifications: Preferred certifications include CISSP, CEH, GCIH, or Elastic Certified Analyst.
  • Experience: Previous experience in a cybersecurity operations center (SOC) environment is highly desirable.
  • Bachelor's degree; preferably in Computer Science, Information Security, or a related field. Will consider experience in lieu of a degree.

Desired Skills:
  • Prior experience working as an analyst in a Security Operations Center (SOC).
  • Prior experience working EDR, SIEM, SOAR, and ticketing technologies.
  • Knowledge of threat actor tactics, techniques, and procedures (TTPs).
  • Ability to support ad hoc scripting in any language.
  • Possess an industry-recognized entry-level certification (e.g., A+, Net+, Sec+, GSEC, etc.)

ECS is an equal opportunity employer and does not discriminate or allow discrimination on the basis of race, color, religion, sex, age, sexual orientation, gender identity or expression, national origin, ancestry, citizenship, genetic information, registered domestic partner status, marital status, status as a crime victim, disability, protected veteran status, or any other characteristic protected by law. ECS promotes affirmative action for minorities, women, disabled persons, and veterans.

ECS is a leading mid-sized provider of technology services to the United States Federal Government. We are focused on people, values and purpose. Every day, our 3800+ employees focus on providing their technical talent to support the Federal Agencies and Departments of the US Government to serve, protect and defend the American People.

General Description of Benefits