Onsite Elastic SIEM Engineer

Posted 1 hour ago

Apply now

About the role

  • Elastic SIEM Engineer designing and maintaining systems to automate cyber activities at Booz Allen. Collaborating, mentoring, and developing innovative solutions for complex problems.

Responsibilities

  • Design, implement, integrate, and maintain systems and tools to automate complex cyber activities
  • Apply advanced consulting skills or extensive technical expertise
  • Develop innovative solutions to complex problems
  • Work without considerable direction, and mentor and supervise team members

Requirements

  • 3+ years of experience administering Elastic Stack, including Elasticsearch, Kibana, Logstash, Beats, or Fleet
  • Experience managing Elasticsearch index lifecycle policies, index templates, and data streams at scale, building Kibana dashboards for security operations
  • Experience with Elastic Security detection rules, alerts, and case management workflows
  • Experience with log ingestion pipeline design, including parsing, enrichment, and normalization
  • Experience with Elastic Common Schema (ECS) and mapping non-standard log sources into ECS-compliant fields
  • Experience working in a DoD, IC, or federal cybersecurity environment
  • Knowledge of AI/ML concepts as applied to security analytics
  • Ability to work on-site per program requirements, and travel up to 25% of the time
  • TS/SCI clearance
  • Bachelor’s degree

Benefits

  • health, life, disability, financial, and retirement benefits
  • paid leave
  • professional development
  • tuition assistance
  • work-life programs
  • dependent care
  • recognition awards program

Job title

Elastic SIEM Engineer

Job type

Experience level

Mid levelSenior

Salary

$86,800 - $198,000 per year

Degree requirement

Bachelor's Degree

Location requirements

Report this job

See something inaccurate? Let us know and we'll update the listing.

Report job