Elastic Cloud Security Engineer: AI-Driven Threat Detection

Seneca Resources

Lexington (MA)

On-site

USD 140,000 - 190,000

Full time

2 days ago
Be an early applicant
Application generator

A complete application in a minute — tailored resume and cover letter, ready to send.

Get past ATS filters

Job summary

Seneca Resources seeks an experienced Elastic Stack Security Engineer to design, implement, and operate systems that automate advanced cyber activities. You will work with Elasticsearch, Kibana, Logstash, and Beats, contributing to security analytics, detection rules, and data pipelines.

This role requires deep experience with ECS, SIEM workflows, and log ingestion across heterogeneous sources, with preference for government cybersecurity backgrounds and potential for a Secret clearance.

Qualifications

  • 5+ years of experience administering Elastic Stack, including Elasticsearch, Kibana, Logstash, Beats, or Fleet.
  • Experience managing Elasticsearch index lifecycle policies, index templates, and data streams at scale, and building Kibana dashboards, visualizations, and lens-based analytics for security operations.
  • Experience with Elastic Security detection rules, alerts, and case management workflows.
  • Experience with log ingestion pipeline design, including parsing, enrichment, and normalization across heterogeneous log sources such as network, endpoint, identity, and cloud.
  • Experience with Elastic Common Schema (ECS) and mapping non-standard log sources into ECS-compliant fields.
  • Experience working in government cybersecurity environments such as SOC, SIEM operations, or defensive cyber.
  • Experience optimizing log collections from AWS platform, endpoints, and network devices.
  • Knowledge of AI/ML concepts as applied to security analytics such as anomaly detection, behavioral baselining, or threat scoring.
  • Ability to obtain a Secret clearance.
  • Bachelor’s degree

Responsibilities

  • Designs, implements, integrates, and maintains systems and tools to automate complex cyber activities.
  • Applies leading-edge principles, theories, and concepts.
  • Contributes to the development of new principles and concepts.
  • Works on unusually complex problems and provides highly innovative solutions.
  • Operates with substantial latitude for unreviewed action or decision.
  • Mentors or supervises employees in both company and technical competencies.

Skills

Elastic Stack admin
Elasticsearch
Kibana dashboards
Logstash & Beats
SIEM operations
AWS log ingestion
Elastic Common Schema (ECS)
Security analytics
Clearance eligibility
Bachelor’s degree

Education

Bachelor’s degree

Tools

Elastic Security ML jobs
Elastic AI Assistant
LLM integration
Elastic Agent fleet management
Kubernetes certification

Job description

Seneca Resources seeks an experienced Elastic Stack Security Engineer to design, implement, and operate systems that automate advanced cyber activities. You will work with Elasticsearch, Kibana, Logstash, and Beats, contributing to security analytics, detection rules, and data pipelines.

This role requires deep experience with ECS, SIEM workflows, and log ingestion across heterogeneous sources, with preference for government cybersecurity backgrounds and potential for a Secret clearance.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Elastic Cloud Security Engineer (R0248356)
Elastic Cloud Security Engineer (R0248356)

Seneca Resources • Lexington (MA)

On-site
USD 140,000 - 190,000
Elastic SIEM Engineer - Remote, Enterprise Security
Elastic SIEM Engineer - Remote, Enterprise Security

ASRC Federal • Quantico (VA)

Hybrid
USD 150,000 - 165,000
Health care
Dental
Vision
+4
Elastic Cloud Security Specialist
Elastic Cloud Security Specialist

Booz Allen Hamilton • Lexington (MA)

On-site
USD 113,000 - 257,000
Elastic Security Engineer: Threat Hunting & ECS
Elastic Security Engineer: Threat Hunting & ECS

Booz Allen Hamilton • Utah

On-site
USD 87,000 - 198,000
Detection Analyst (Elastic)
Detection Analyst (Elastic)

BreakPoint Labs LLC • Charleston (SC), Northern (KY)

On-site
USD 110,000 - 140,000
Elasticsearch Engineer (TS/SCI Clearance)
Elasticsearch Engineer (TS/SCI Clearance)

ShorePoint • Herndon (VA)

On-site
USD 110,000 - 140,000
144 hours of PTO
85% of insurance premium covered
401k
+1
Junior Elastic SIEM Engineer – DCO & Threat Detection
Junior Elastic SIEM Engineer – DCO & Threat Detection

Maximus, Inc. • San Antonio (TX)

On-site
USD 90,000 - 110,000
Elasticsearch Engineer – Security Analytics (Onsite Lincoln)
Elasticsearch Engineer – Security Analytics (Onsite Lincoln)

TEKsystems • Lincoln (MA)

On-site
USD 120,000 - 250,000
Full benefits
401K
Vacation
Sr. Elastic Engineer
Sr. Elastic Engineer

ecsfederal • Illinois

On-site
USD 90,000 - 130,000
Hybrid Elastic Data Engineer for Cyber Telemetry & SIEM
Hybrid Elastic Data Engineer for Cyber Telemetry & SIEM

Jcssolutions • Adelphi (MD)

Hybrid
USD 135,000 - 162,000
Health, dental, vision insurance
Life insurance
Disability insurance
+3