Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.
Insight Global is seeking an Elastic SIEM Engineer for on-site work at Hanscom AFB in Massachusetts. The role involves designing, implementing, and maintaining systems to automate complex cyber activities, with a focus on Elastic Stack components and security operations.
The candidate should have 5+ years of Elastic Stack administration, SIEM experience, and the ability to work onsite with a Secret clearance.
Job Description
Elastic SIEM Engineer
4 Days a Week at Hanscom AFB, Massachussetts
Conversion Salary $180-210k
The Opportunity:
Design, implement, integrate, and maintain systems and tools to automate complex cyber activities. Apply advanced consulting skills or extensive technical expertise, including full industry knowledge. Develop innovative solutions to complex problems. Work without considerable direction, and partner with other engineers; mentor and be viewed as a team player.
We are a company committed to creating diverse and inclusive environments where people can bring their full, authentic selves to work every day. We are an equal opportunity/affirmative action employer that believes everyone matters. Qualified candidates will receive consideration for employment regardless of their race, color, ethnicity, religion, sex (including pregnancy), sexual orientation, gender identity and expression, marital status, national origin, ancestry, genetic factors, age, disability, protected veteran status, military or uniformed service member status, or any other status or characteristic protected by applicable laws, regulations, and ordinances. If you need assistance and/or a reasonable accommodation due to a disability during the application or recruiting process, please send a request to HR@insightglobal.com.To learn more about how we collect, keep, and process your private information, please review Insight Global's Workforce Privacy Policy: https://insightglobal.com/workforce-privacy-policy/.
Skills and Requirements
You Have:
5+ years of experience administering Elastic Stack, including Elasticsearch, Kibana, Logstash, Beats, or Fleet
Experience managing Elasticsearch index lifecycle policies, index templates, and data streams at scale, and building Kibana dashboards, visualizations, and lens-based analytics for security operations
Experience with Elastic Security detection rules, alerts, and case management workflows
Experience with log ingestion pipeline design, including parsing, enrichment, and normalization across heterogeneous log sources such as network, endpoint, identity, and cloud
Experience with Elastic Common Schema (ECS) and mapping non-standard log sources into ECS-compliant fields
Optimization of log collections from AWS platform, endpoints and network devices
Knowledge of AI/ML concepts as applied to security analytics such as anomaly detection, behavioral baselining, or threat scoring
Experience working in government cybersecurity environments such as SOC, SIEM operations, or defensive cyber
Ability to work onsite based on client requirements as directed/needed
Secret clearance
Bachelor’s degree