Elastic Engineer

Jolera

United States

On-site

USD 120,000 - 160,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Competitive compensation
Company events
Career development

Job summary

Jolera in the United States seeks an experienced Elastic Engineer to design, deploy, and operate scalable Elastic environments powering cybersecurity analytics and threat detection. You will own log ingestion pipelines, optimize cluster performance, and translate complex data into clear insights for technical and non-technical stakeholders.

Applicants should be a certified Elastic Engineer with hands-on ES, Logstash, and Kibana expertise, proficiency in Java/Python/Ruby, and a track record in

Qualifications

  • Certified Elastic Engineer with hands-on Elastic Stack experience.
  • Experience configuring and troubleshooting Elastic environments on-prem and in Elastic Cloud.
  • Deep knowledge of Elasticsearch indexing, search, and data aggregation.
  • Proficiency in Elasticsearch Query DSL for complex queries and analytics.
  • Proficiency in Java, Python, or Ruby; scripting for automation beneficial.
  • Proven cybersecurity experience with ELK-based defense.
  • Knowledge of security measures in Elasticsearch: RBAC, encryption, index security, audit logging.
  • Experience parsing logs using GROK/DISSECT, ETL workflows.
  • Developing Elasticsearch Watchers and alerting; building dashboards in Kibana.
  • Ability to work with multiple data sources and data pipelines; IaC familiarity a plus.

Responsibilities

  • Design, deploy, and operate scalable Elastic environments powering cybersecurity analytics.
  • Own log ingestion pipelines and optimize cluster performance.
  • Build dashboards and investigations in Kibana.
  • Develop and maintain Logstash pipelines and ingest pipelines.
  • Integrate data sources and third-party platforms into Elastic with clean data models.
  • Create automation/scripts to detect anomalies and improve workflows.
  • Administer Linux systems for Elastic components and data pipelines.
  • Collaborate with detection/engineering teams on network intrusion analytics.

Skills

Elastic Stack
Elasticsearch internals
Query DSL
Java
Python
Ruby
GROK/DISSECT
Security analytics
Threat detection

Tools

Kibana
Logstash
Elastic Cloud
Watchers

Job description

Who We Are

Jolera offers MSPs & IT solution providers next-generation managed services, enabling them to create world-class experiences for their clients. Your clients receive award-winning solutions built on over 20 years of experience servicing businesses worldwide.

We’ve helped transform hundreds of MSPs & solution providers worldwide! With our collection of tenured experts, we provide an elevated managed service experience for a variety of clients. At Jolera, we treat each MSP partner with specialized care and uniquely organize our products for your individual business needs.

Who You Are

We are seeking an energetic, passionate individual with strong communication skills and the ability to work collaboratively. You are a self-starter who thrives in an environment of personal accountability and enjoys being part of a challenging outcome orientated culture. You want to build your career by digging in being a part of a high-performance team where there is an opportunity to up your game, sharing your knowledge and working with some of the best in the business.

What You Will Do

You’ll design, deploy, and operate scalable Elastic (Elasticsearch, Logstash, Kibana) environments that power cybersecurity analytics, threat hunting, and data-driven detection use cases. You’ll own reliable log ingestion pipelines, optimize cluster performance, and turn technical outcomes into clear insights for both technical and non-technical stakeholders.

Key Responsibilities
  • Design and operate distributed Elastic clusters, including capacity planning, performance tuning, and scaling strategy
  • Build and maintain ingestion pipelines aligned to security frameworks and Elastic Common Schema (ECS)
  • Manage large-scale Elastic Agent and Fleet deployments
  • Serve as the SME for log ingestion, parsing, normalization, and analysis
  • Deliver Elastic infrastructure as code (IaC) and automate deployments/configuration where possible
  • Develop and maintain Logstash pipelines (e.g., Syslog and other structured/unstructured sources)
  • Integrate multiple data sources and third-party platforms into Elastic with clean, searchable data models
  • Create automation/scripts to detect anomalies and improve operational workflows
  • Build dashboards, visualizations, and investigation workflows in Kibana
  • Continuously improve reliability and efficiency by optimizing pipelines, automating manual work, and enhancing architecture
  • Support development of network intrusion analytics in collaboration with a broader detection/engineering team
  • Administer supporting Linux systems for Elastic components and data pipeline services
Qualifications
  • Certified Elastic Engineer
  • Ability to configure, maintain, and troubleshoot multiple Elastic environments at on-premises and Elastic-Cloud.
  • Experience with Elastic Stack architecture, design, and deployment.
  • Deep understanding of Elasticsearch internals, including indexing, search, and data aggregation.
  • Skills in managing enterprise level Elasticsearch clusters, handling cluster health, performance tuning, scaling, and ensuring high availability.
  • Proficiency in Elasticsearch Query DSL for complex queries, aggregations, and data analytics.
  • Proficiency in programming languages such as Java, Python, or Ruby. Knowledge of scripting languages for automation is also beneficial.
  • Proven track record working in cybersecurity, understanding common attack vectors, threat landscapes, and defensive technologies.
  • Proficiency in implementing security measures within Elasticsearch, such as role-based access control, encryption, index security, and audit logging.
  • Skills in managing and analyzing logs and security events from various sources (firewalls, IDS/IPS systems, network devices, operating systems) using the ELK stack.
  • Advanced ability to craft complex queries, alerts, and visualizations tailored for cybersecurity needs, such as detecting anomalies and potential threats.
  • Proficiency in data parsing using GROK/DISSECT, ingestion, and ETL workflows.
  • Expertise in developing complex Elasticsearch Watchers.
  • Experience in Elastic Security, Detection Rules, Machine Learning and AI Assistant.
  • Proficiency in developing Elasticsearch solutions to specific security needs, such as custom dashboards and reports for ongoing monitoring.
  • Competitive compensation package & benefits package
  • Company events, recognitions, and celebrations
  • Career development and growth opportunity.

At Jolera, we are committed to creating a diverse, equal and inclusive. Our goal is to attract and retain the best talent while embracing diversity in all its forms. We value and respect differences in ethnic background, gender, age, religion, identity, disability, or any other characteristic protected by applicable law.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Elastic Engineer: Scalable Stack for Cyber Threat Analytics
Elastic Engineer: Scalable Stack for Cyber Threat Analytics

Jolera • United States

On-site
USD 120,000 - 160,000
Competitive compensation
Company events
Career development
Senior Elastic Engineer
Senior Elastic Engineer

CyberMaxx, Inc. • Linthicum (MD)

On-site
USD 160,000 - 230,000
Flexible PTO
401k with company match
Medical, Dental and Vision insurance
+2
Senior Elastic Engineer
Senior Elastic Engineer

CyberMaxx • Linthicum (MD)

On-site
USD 140,000 - 190,000
401k with company match
Medical, Dental, and Vision coverage
Paid time off
+1
Elastic Engineer
Elastic Engineer

Phase2 Technology • Honolulu (HI)

On-site
USD 86,000 - 198,000
Elasticsearch Lead Engineer - SIEM Platform
Elasticsearch Lead Engineer - SIEM Platform

Vanguard • Malvern

On-site
USD 170,000 - 230,000
Senior Information Security Infrastructure Engineer - Security Architecture - InfoSec
Senior Information Security Infrastructure Engineer - Security Architecture - InfoSec

Socket.dev • United States

On-site
USD 133,000 - 211,000
Stock program
401k matching
Health coverage
+4
Elastic Data Engineer
Elastic Data Engineer

JCS Solutions LLC • Adelphi (MD)

Hybrid
USD 135,000 - 162,000
Health, dental, and vision insurance
Life insurance
Short- and long-term disability
+4
Senior Information Security Infrastructure Engineer - Security Architecture - InfoSec
Senior Information Security Infrastructure Engineer - Security Architecture - InfoSec

Referral Board • United States

On-site
USD 133,100 - 210,600
Health coverage
Flexible locations and schedules
Generous vacation days
+2
Platform - Engineering Productivity - Software Engineer II
Platform - Engineering Productivity - Software Engineer II

Elastic Cloud • McLean (VA)

On-site
USD 92,000 - 147,000
Company-matched 401k
Flexible working locations
Generous vacation days
Principal Solutions Architect, Security Specialist
Principal Solutions Architect, Security Specialist

Elasticsearch B.V. • United States

On-site
USD 129,000 - 204,000
Competitive pay based on performance
Flexible locations and schedules
Health coverage for employees and families
+2