Elastic Engineer

Jolera

United States

Remote

USD 140,000 - 180,000

Full time

14 days+
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Benefits offered by this job

Competitive compensation package
Benefits package
Company events and recognitions

Job summary

Jolera is seeking a skilled Elastic Stack Engineer to design, deploy, and operate distributed Elastic environments for cybersecurity analytics and threat hunting.

You will own log ingestion pipelines, optimize performance, and translate complex data into clear insights for technical and non-technical stakeholders. The role emphasizes IaC, automation, and collaboration with a broader detection team.

Qualifications

  • Certified Elastic Engineer required.
  • Experience configuring and troubleshooting Elastic environments on-prem and Elastic Cloud.
  • Strong Elastic Stack architecture, design, deployment knowledge.
  • Deep understanding of Elasticsearch internals: indexing, search, data agg.
  • Experience managing large Elasticsearch clusters with high availability.
  • Proficiency in Elasticsearch Query DSL for complex queries and analytics.
  • Programming in Java, Python, or Ruby; scripting for automation beneficial.
  • Experience in cybersecurity and threat landscapes; defensive tech familiarity.
  • Knowledge of security measures in Elasticsearch: RBAC, encryption, index security, audit logs.
  • Experience handling logs/security events from various sources using ELK Stack.
  • Ability to craft complex queries, alerts, and visualizations for cybersecurity needs.
  • Data parsing using GROK/DISSECT, ingestion, ETL workflows.
  • Developing Elasticsearch Watchers.
  • Experience with Elastic Security, Detection Rules, ML & AI Assistant.
  • Develop Elasticsearch solutions for dashboards and ongoing monitoring.

Responsibilities

  • Design and operate distributed Elastic clusters with capacity planning and scaling.
  • Build and maintain ingestion pipelines aligned to ECS.
  • Manage large-scale Elastic Agent and Fleet deployments.
  • Serve as SME for log ingestion, parsing, normalization, and analysis.
  • Deliver Elastic infrastructure as code and automate deployments.
  • Develop and maintain Logstash pipelines (Syslog and others).
  • Integrate data sources into Elastic with clean, searchable data models.
  • Create automation/scripts to detect anomalies and improve workflows.
  • Build dashboards, visualizations, and investigation workflows in Kibana.
  • Continuously improve reliability by optimizing pipelines and architecture.
  • Support development of network intrusion analytics with the detection team.
  • Administer Linux systems for Elastic components and data pipelines.

Skills

Elastic Stack expertise
Cybersecurity experience
Log ingestion expertise
Java/Python/Ruby
ELK/WAF security

Education

Certified Elastic Engineer

Tools

Elasticsearch
Logstash
Kibana
Elastic Agent
Fleet

Job description

Who We Are

Jolera offers MSPs & IT solution providers next-generation managed services, enabling them to create world-class experiences for their clients. Your clients receive award-winning solutions built on over 20 years of experience servicing businesses worldwide.

We’ve helped transform hundreds of MSPs & solution providers worldwide! With our collection of tenured experts, we provide an elevated managed service experience for a variety of clients. At Jolera, we treat each MSP partner with specialized care and uniquely organize our products for your individual business needs.

Who You Are

We are seeking an energetic, passionate individual with strong communication skills and the ability to work collaboratively. You are a self-starter who thrives in an environment of personal accountability and enjoys being part of a challenging outcome orientated culture. You want to build your career by digging in being a part of a high-performance team where there is an opportunity to up your game, sharing your knowledge and working with some of the best in the business.

What You Will Do

You’ll design, deploy, and operate scalable Elastic (Elasticsearch, Logstash, Kibana) environments that power cybersecurity analytics, threat hunting, and data-driven detection use cases. You’ll own reliable log ingestion pipelines, optimize cluster performance, and turn technical outcomes into clear insights for both technical and non-technical stakeholders.

Key Responsibilities:
  • Design and operate distributed Elastic clusters, including capacity planning, performance tuning, and scaling strategy
  • Build and maintain ingestion pipelines aligned to security frameworks and Elastic Common Schema (ECS)
  • Manage large-scale Elastic Agent and Fleet deployments
  • Serve as the SME for log ingestion, parsing, normalization, and analysis
  • Deliver Elastic infrastructure as code (IaC) and automate deployments/configuration where possible
  • Develop and maintain Logstash pipelines (e.g., Syslog and other structured/unstructured sources)
  • Integrate multiple data sources and third-party platforms into Elastic with clean, searchable data models
  • Create automation/scripts to detect anomalies and improve operational workflows
  • Build dashboards, visualizations, and investigation workflows in Kibana
  • Continuously improve reliability and efficiency by optimizing pipelines, automating manual work, and enhancing architecture
  • Support development of network intrusion analytics in collaboration with a broader detection/engineering team
  • Administer supporting Linux systems for Elastic components and data pipeline services
Qualifications
  • Certified Elastic Engineer
  • Ability to configure, maintain, and troubleshoot multiple Elastic environments at on-premises and Elastic-Cloud.
  • Experience with Elastic Stack architecture, design, and deployment.
  • Deep understanding of Elasticsearch internals, including indexing, search, and data aggregation.
  • Skills in managing enterprise level Elasticsearch clusters, handling cluster health, performance tuning, scaling, and ensuring high availability.
  • Proficiency in Elasticsearch Query DSL for complex queries, aggregations, and data analytics.
  • Proficiency in programming languages such as Java, Python, or Ruby. Knowledge of scripting languages for automation is also beneficial.
  • Proven track record working in cybersecurity, understanding common attack vectors, threat landscapes, and defensive technologies.
  • Proficiency in implementing security measures within Elasticsearch, such as role-based access control, encryption, index security, and audit logging.
  • Skills in managing and analyzing logs and security events from various sources (firewalls, IDS/IPS systems, network devices, operating systems) using the ELK stack.
  • Advanced ability to craft complex queries, alerts, and visualizations tailored for cybersecurity needs, such as detecting anomalies and potential threats.
  • Proficiency in data parsing using GROK/DISSECT, ingestion, and ETL workflows.
  • Expertise in developing complex Elasticsearch Watchers.
  • Experience in Elastic Security, Detection Rules, Machine Learning and AI Assistant.
  • Proficiency in developing Elasticsearch solutions to specific security needs, such as custom dashboards and reports for ongoing monitoring.
  • Competitive compensation package & benefits package
  • Company events, recognitions, and celebrations
  • Career development and growth opportunity.

At Jolera, we are committed to creating a diverse, equal and inclusive. Our goal is to attract and retain the best talent while embracing diversity in all its forms. We value and respect differences in ethnic background, gender, age, religion, identity, disability, or any other characteristic protected by applicable law.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Platform - Engineering Productivity - Software Engineer II
Platform - Engineering Productivity - Software Engineer II

Elastic Cloud • McLean (VA)

On-site
USD 92,500 - 146,300
Company-matched 401k
Flexible working locations
Generous vacation days
Senior Software Engineer - EDR Workflows - Security
Senior Software Engineer - EDR Workflows - Security

Elastic • Washington

On-site
USD 140,000 - 180,000
Health coverage
Flexible schedules
Generous vacation
+2
Senior Software Engineer - EDR Workflows - Security
Senior Software Engineer - EDR Workflows - Security

Elastic • Little Elm (TX)

On-site
USD 140,000 - 200,000
Health coverage
Flexible locations & schedules
Generous vacation days
+3
Senior Software Engineer - EDR Workflows - Security
Senior Software Engineer - EDR Workflows - Security

Elastic • Nashville (TN)

On-site
USD 130,000 - 190,000
Health coverage
Flexible schedules
Vacation days
+3
Senior Software Engineer - EDR Workflows - Security
Senior Software Engineer - EDR Workflows - Security

Elastic • Columbus (OH)

On-site
USD 140,000 - 190,000
Health coverage for you and yourfamily
Flexible locations and schedules
Generous vacation days
+3
Sr. Elastic Engineer
Sr. Elastic Engineer

ECS • Bedford (MA)

On-site
USD 180,000 - 210,000
Elastic Stack Engineer: Security Analytics & Ingestion
Elastic Stack Engineer: Security Analytics & Ingestion

Jolera • United States

Remote
USD 140,000 - 180,000
Competitive compensation package
Benefits package
Company events and recognitions
Principal Solutions Architect, Security Specialist
Principal Solutions Architect, Security Specialist

Elasticsearch B.V. • United States

On-site
USD 129,000 - 204,000
Competitive pay based on performance
Flexible locations and schedules
Health coverage for employees and families
+2
Senior Java Engineer - Core/Infra - Elasticsearch
Senior Java Engineer - Core/Infra - Elasticsearch

Referral Board • United States

On-site
USD 133,100 - 210,600
Health coverage
Flexible locations and schedules
Generous vacation days
+3
Sr. Elastic Engineer
Sr. Elastic Engineer

ECS • Shiloh (IL)

On-site
USD 100,000 - 130,000