Elastic Stack Engineer – Threat Analytics & Dashboards

Everwatch

Corridor North (MD)

On-site

USD 99,187 - 125,361

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

EverWatch is seeking an Elastic Engineer to design and operate a scalable Elastic Stack platform. You will integrate logs from multiple systems into a unified ECS schema, build dashboards and alerts for threat hunting, and collaborate with the vendor to secure deployment and ongoing maintenance in a compliant environment.

Qualification highlights include 2+ years with Elastic Stack, Kibana visualization, log pipelines, and DoD8570 IAT II certification.

Qualifications

  • 2+ years of experience with Elastic Stack (Elasticsearch, Logstash, Kibana) including install, configure, maintain, upgrade, and troubleshoot.
  • 2+ years building high-quality Kibana visualizations and dashboards.
  • Experience with log pipelines and interpreting logs to ECS formatted documents.
  • Experience with Logstash plugins, filters, regular expressions, and grok patterns.
  • Knowledge of TLS, mTLS, hashing algorithms, and PKI.
  • Knowledge of NIST 800-53, FIPS, STIG, and FedRAMP.
  • Secret clearance.
  • HS Diploma or GED.
  • DoD8570 IAT II compliant Certification (e.g., Security+, CCNA Security, GSEC)

Responsibilities

  • Work with clients and peers to build a high performing system using Elastic to aggregate logs from many systems into a single common schema. Use ECS formatted fields, create quality visualizations and alerts that analysts can use for threat hunting, maintain infrastructure, and identify problems or anomalous behavior before they become a larger issue and can be actioned on.
  • Join us. The world can’t wait.

Job description

EverWatch is seeking an Elastic Engineer to design and operate a scalable Elastic Stack platform. You will integrate logs from multiple systems into a unified ECS schema, build dashboards and alerts for threat hunting, and collaborate with the vendor to secure deployment and ongoing maintenance in a compliant environment.

Qualification highlights include 2+ years with Elastic Stack, Kibana visualization, log pipelines, and DoD8570 IAT II certification.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Elastic Stack Engineer – Threat Analytics & Dashboards
Elastic Stack Engineer – Threat Analytics & Dashboards

EverWatch • Maryland

On-site
USD 99,000 - 125,000
Elastic Stack Engineer — Threat Hunting Dashboards
Elastic Stack Engineer — Threat Hunting Dashboards

Phase2 Technology • Honolulu (HI)

On-site
USD 86,000 - 198,000
Elastic Stack Engineer: ECS & Threat Analytics
Elastic Stack Engineer: ECS & Threat Analytics

Booz Allen Hamilton • Fort Meade (MD)

On-site
USD 87,000 - 198,000
Elastic Engineer
Elastic Engineer

Everwatch • Corridor North (MD)

On-site
Elastic Engineer
Elastic Engineer

EverWatch • Maryland

On-site
USD 99,000 - 125,000
Elastic Stack Engineer: ECS-driven Logs & Threat Hunting
Elastic Stack Engineer: ECS-driven Logs & Threat Hunting

Booz Allen Hamilton • Fort Meade (MD)

On-site
USD 87,000 - 198,000
Elasticsearch Engineer
Elasticsearch Engineer

AUGUST SCHELL ENTERPRISES, INC. • Fort Meade (MD)

Hybrid
USD 110,000 - 150,000
Elasticsearch Engineer
Elasticsearch Engineer

August Schell • Fort Meade (MD)

Hybrid
USD 120,000 - 160,000
Elastic Engineer: Scalable Stack for Cyber Threat Analytics
Elastic Engineer: Scalable Stack for Cyber Threat Analytics

Jolera • United States

On-site
USD 120,000 - 160,000
Competitive compensation
Company events
Career development
Elasticsearch Engineer — Cybersecurity & DoD Analytics
Elasticsearch Engineer — Cybersecurity & DoD Analytics

August Schell • Fort Meade (MD)

Hybrid
USD 120,000 - 160,000