Current jobs related to Elastic SIEM Engineer - Hanover - ASRC Federal Holding Company

  • Splunk SOAR Engineer

    3 weeks ago


    Hanover, United States Woodside Staffing Solutions & Consulting Full time

    Splunk SOAR Engineer - TS/SCI with FS Poly - 11869 Clearance: TS/SCI with Full Scope Polygraph Job Code: 11869 Locations: McLean VA, Washington DC, Columbia MD, Baltimore MD, Herndon VA, Richmond VA Splunk SOAR Engineer is an individual who can operate independently and will be entrusted with delivering success for our Client's customers to achieve...


  • Hanover, United States Woodside Staffing Solutions & Consulting Full time

    Sr. Splunk Engineer - TS SCI with CI PolyClearance: TS/SCI with CI Poly required (must be current and active) Locations: Herndon VA, Washington DC A Senior Engineer is an individual who operates independently without direct supervision who is responsible for leading the delivery of an engagement with the sole intent of providing immense value for our...


  • Hanover Hills, Maryland, United States Leidos Full time

    Job Overview:We are seeking a highly skilled Data Science Engineer to join our team at Leidos.About the Role:This is an exciting opportunity for a talented Data Science Engineer to work on high-profile projects, developing innovative data-driven solutions and AI technologies for our customers.Key Responsibilities:Design, develop, test, and deploy software...


  • Hanover, United States ASRC Federal Full time

    ASRC Federal is seeking an experienced Cybersecurity System EngineerLead to our team in support of the Defense Counterintelligence Security Agency (DCSA) in Hanover, MD.This is primarily a Telework position with a requirement to be onsite at least one (1) day a week in Hanover MD.Job Description:As the Cybersecurity Engineering Lead, you will be at the...


  • Hanover, United States Top Prospect Group Full time

    Are you ready to take the lead in defending against tomorrow s cyber threats? Join us as a Senior Cybersecurity Defense Analyst, where your expertise will drive critical decisions and safeguard our digital infrastructure.Full time, Direct HireHybrid in NC$115-125KSkills: Protect organizations digital infrastructure from cyber threats, operations, reports on...


  • Hanover, United States Dragos, Inc. Full time

    OverviewDragos is on a relentless mission to defend industrial organizations that provide us with the necessities of modern civilization; running water, functioning electricity, and safe industrial working environments. As the market leader in ICS/OT Cybersecurity, we are dedicated to arming our customers with best-in-class technology, threat intelligence,...


  • Hanover, United States Dragos, Inc. Full time

    OverviewDragos is on a relentless mission to defend industrial organizations that provide us with the necessities of modern civilization; running water, functioning electricity, and safe industrial working environments. As the market leader in ICS/OT Cybersecurity, we are dedicated to arming our customers with best-in-class technology, threat intelligence,...


  • Hanover, United States Top Secret Clearance Jobs Full time

    About the job Senior Software Developer Top Secret Clearance Jobs is dedicated to helping those with the most exclusive security clearance find their next career opportunity and get interviews within 48 hours. Belay Technologies has been voted Baltimore Business Journal's (BBJ) Best Places to Work 2019, runner up in 2020 and a finalist in 2021! Belay...


  • Hanover, United States ASTRION, INC. Full time

    OverviewSoftware Test Automator - Senior - TGC Be the Difference Astrion offers comprehensive services that boost preparedness, optimize performance, and ensure success across various domains, from Cyber to Digital, Mission and Systems, servicing our nation's Civilian, Defense and Space communities. We support customers with Centers of Excellence in...

Elastic SIEM Engineer

2 months ago


Hanover, United States ASRC Federal Holding Company Full time

ASRC Federal Broadleaf Division is hiring for a Cybersecurity Engineer (SIEM) to support the DCSA in Hanover, MD. These positions have been approved for a hybrid work schedule (1 day per week on-site) JOB DESCRIPTION: This is a technical, hands-on role responsible for the successful operation of a variety of cybersecurity tools, logging framework, and cybersecurity infrastructure Design, develop, and maintain custom dashboards using Elastic stack for monitoring and visualization of system metrics, logs, and traces. Monitor and optimize the performance of Elastic Stack clusters to ensure high availability, reliability, and performance. Work with data sources and ETL processes to integrate and normalize data into Elasticsearch, ensuring data quality and consistency. Implement and maintain security best practices for Elastic Stack, including access controls, encryption, and compliance with regulatory standards. Contributions to infrastructure, data pipeline, analytics dashboards, and other resources will be delivered to threat analysts for consumption Facilitate data ingestion of logs including Extract, Transform, and Load (ETL) functions to develop dashboards, visualization, and alerting Create Standard Operation Procedures (SOPs) and perform index administration, maintenance and optimization Develop daily and weekly PowerPoint presentations to brief management and the team Ability to analyze security vulnerability reports and develop/implement a plan to Recognizes and seizes opportunities to improve products, services or approaches Design, document, build, secure, and maintain Elastic Stack solutions deployed in the Cloud or on-premises Engagement with avenues of influence (Splunk product managers, user groups) to align platform capabilities with business requirements #Broadleaf #dice Requirements: BASIC QUALIFICATIONS: EXPERIENCE: At least five (5) years of experience in information technology or security engineering and three (3) years of direct Elastic administration experience Experience with developing automated capabilities for securing environments. Experience with STIG compliance and vulnerability management Knowledge of JFQ DoDIN DoD 8510.01 RMF IA Controls (IACs) and implementation. Requires an extensive knowledge of application or infrastructure systems architecture, usually having experience with multiple system technologies Ability to mitigate critical vulnerabilities. ADDITIONAL DESIRED SKILLS Swimlane – Integration DevSecOps experience Cloud certifications and experience (AWS, Azure) EDUCATION Bachelor's degree in Information Security or related field and/or equivalent combination of experience. CERTIFICATION(S) DoD 8140/8570 IAT Level II/III certifications required One or more certifications: GIAC Certified Detection Analyst (GCDA) CompTIA Cybersecurity Analyst (CySA+) Elastic Certified Engineer Elastic Certified Analyst Elastic Certified Observability Engineer Certified SOC Analyst (EC-CSA) CLEARANCE LEVEL: Minimum Secret Ability to obtain and maintain Top Security/SCI clearance ASRC Federal and its Subsidiaries are Equal Opportunity / Affirmative Action employers. All qualified applicants will receive consideration for employment without regard to race, gender, color, age, sexual orientation, gender identification, national origin, religion, marital status, ancestry, citizenship, disability, protected veteran status, or any other factor prohibited by applicable law.