SIEM (Elastic) Administrator - 2453727 Job at Mount Indie, Huntsville, AL

MlVZejgweDhqNVhnNmpOMi9nOGNoK0lHOVE9PQ==
  • Mount Indie
  • Huntsville, AL

Job Description

Job Description

Job Description

General Summary:

Mount Indie is looking for a Security Information and Event Management (SIEM) analyst for the AvMC contract. The candidate should have a background in cybersecurity compliance monitoring tools such as Elastic and Splunk, as well as extensive Linux system administration knowledge.

The candidate will provide support and administration for transitioning current DoD Splunk environment to Elastic (ELK). Duties include but not limited to Linux platform administration, dashboard creation, and architecture enhancements needed in a dynamic environment. Candidate needs to possess understanding of evaluating, maintaining, and sustaining current SIEM related tools with possibility of other software evaluations. Candidate must have strong communication skills, work in a team environment to include mentoring more junior team members and understand both server backend and application frontend configurations.

Principal Duties and Responsibilities (*Essential Functions):

  • Administer, maintain, troubleshoot, and support an ElasticSearch environment on RHEL (Red Hat Enterprise Linux) servers on-premises.
  • Tune and optimize systems and data sources to better align with the organizations strategic Integrated Operating Center goals.
  • Ensure the Elasticsearch configurations continue to run under optimal conditions.
  • Develop dashboards and applications with custom JavaScript, HTML and CSS features to fulfill dynamic organizational requirements with visual metrics for stakeholders.
  • Onboard new data sources, parse, and extract relevant data while also monitoring license usage.
  • Create data retention policies and perform index administration, maintenance, and optimization.
  • Complete/Maintain STIG configuration checklists of Elastic deployment to support Army and DoD requirements.
  • Configure Elastic infrastructure to utilize trusted DoD certificates for all communication.
  • Develop customized Elasticsearch queries, filters, and visualizations to meet customer requirements.
  • Work with AvMC CIO G6 teams to identify inefficiencies in current monitoring services, propose and implement changes to streamline alerts or automate remediations.

Required Qualifications

  • Bachelors degree in related field, or the equivalent experience.
  • Minimum of 8 years' work-related experience.
  • Working knowledge of Elasticsearch, Logstash, and Kibana (ELK Stack), including configuration, optimization, and troubleshooting.
  • Active CompTIA Security+ CE certification
  • U.S. Citizenship required; must be able to obtain/maintain a DoD Secret clearance.
  • Implementation of security best practices and ensure compliance with relevant regulations and standards (e.g., DISA STIGs) within the Elastic environment.
  • Work related experience within DoD.
  • Strong and effective communication skills

Preferred Qualifications

  • Active DoD Secret clearance
  • Working knowledge of scripting languages for automation and customization.
  • Understanding of application performance concepts, VMware, Linux and Windows operating systems, and network infrastructure concepts.
  • Working knowledge with Elastic Stack solutions
  • Hands-on Linux system administration
  • Working knowledge of ACAS scanning

Job Tags

Contract work,

Similar Jobs

Traveling with Mchaila

Remote Travel Agent Job at Traveling with Mchaila

 ...others create unforgettable memories? Were looking for a Remote Travel Advisor to join our team. In this role, youll design personalised...  ...experiences for clientsfrom city breaks and family holidays to luxury escapes and global adventures. Youll handle every detail, making... 

Intel Corporation

Director Government Affairs Job at Intel Corporation

Job DetailsThe Director of U.S. Government Affairs will work as part of a global government affairs team, coordinating closely with colleagues on the team and other groups throughout Intel to craft effective, consistent positions on the issues of greatest importance... 

FIRST STEPS NURSING AND THERAPY SERVICES PLLC

LVN/RN Pediatric Private Duty Nursing (North)***** Job at FIRST STEPS NURSING AND THERAPY SERVICES PLLC

 ...where you can continue to learn and grow, come apply with First Steps Nursing and Therapy now! We have an immediate opportunity for Registered Nurses or Licensed Vocational Nurses with recent Private Duty Nursing Home Health experience.Full Time and Part time positions... 

Transworld Business Advisors of West Central Ohio

Business Broker / M&A Advisors Job at Transworld Business Advisors of West Central Ohio

 ...and learn from growth. Passionate about working with small businesses. Excel at building strong networks and relationships....  ...mentoring groups. Invaluable mentorship and access to an international community of brokers and advisors. Earning Potential (No BS... 

5 Star Global Recruitment Partners

Nurse Practitioner - USA Yakima Job at 5 Star Global Recruitment Partners

 ...About the job Nurse Practitioner - USA Yakima Join an award-winning womens health and aesthetics clinic as we expand to Yakima...  ...willing to train you. Required Citizenship / Work Permit / Visa Status Must be a US Citizen, no visa sponsorship supported.