A cybersecurity firm is seeking a hands-on Security Engineer specialized in the Elastic Stack. This role involves designing and maintaining security detections and analytics within Elastic, working closely with SOC operations. Ideal candidates will have over 4 years of experience, strong Elasticsearch skills, and a focus on developing detection strategies. The position provides opportunities for professional growth in technical leadership. Benefits include health insurance, 401k match, and generous PTO.
Qualifications
4+ years of experience working with the Elastic Stack in a security, observability, or analytics context.
Strong experience with Elasticsearch query language (ES|QL and/or KQL) and Kibana.
Hands-on experience building security detections, alerts, or analytics.
Responsibilities
Design, implement, and maintain multi-tenant Elastic environments.
Support ingestion, normalization, and enrichment of security telemetry.
Collaborate with SOC leadership and product stakeholders for actionable improvements.
Skills
Elastic Stack
Elasticsearch query language (ES|QL and/or KQL)
Kibana
Building security detections
Communication skills
Education
Relevant certifications or formal education in cybersecurity or related fields
Tools
SIEM or log analytics platforms
Ticketing systems
Job description
A cybersecurity firm is seeking a hands-on Security Engineer specialized in the Elastic Stack. This role involves designing and maintaining security detections and analytics within Elastic, working closely with SOC operations. Ideal candidates will have over 4 years of experience, strong Elasticsearch skills, and a focus on developing detection strategies. The position provides opportunities for professional growth in technical leadership. Benefits include health insurance, 401k match, and generous PTO.