Salesforce Product Manager (with Marketing Cloud)
Rivago Infotech Pvt
Full-time
Remote
Job description
Senior Elastic Engineer (EDR/Defend Focus)
Location: Schriever Space Force Base, Colorado Springs, CO or Redstone Arsenal, Huntsville, AL Relocation Assistance: None available at this time
Remote/Telework: NO - Not available for this position Clearance Type: DoD Secret
Shift: Day shift
Travel Required: Up to 10% of the time
Description of Duties:
The Senior Elastic Engineer (EDR/Defend Focus) supports the Missile Defense Agency (MDA) on the Integrated Research and Development for Enterprise Solutions (IRES) contract. The candidate will:
·Be a key contributor to the design, implementation, and maintenance of our Elastic Stack environment, with a primary focus on leveraging Elastic EDR and Defend capabilities to enhance our cybersecurity posture.
·Be responsible for ensuring the security, scalability, and performance of our Elastic Stack infrastructure, and will work closely with other teams to integrate it with existing security tools and workflows.
Key Responsibilities:
· Architect, deploy, and maintain a highly available and scalable Elastic Stack environment, specializing in Elastic EDR/ Defend.
·Configure and optimize Elastic EDR/Defend policies and data pipelines for threat detection, prevention, and security event enrichment.
·Develop and maintain Kibana dashboards and visualizations for real-time security monitoring, threat identification, and incident response tracking.
· Perform proactive threat hunting and in-depth security analysis using Elastic EDR/Defend capabilities.
·Troubleshoot complex Elastic Stack issues, develop comprehensive documentation, and mentor junior engineers to ensure operational excellence.
The successful candidate will have:
· Expert knowledge of the Elastic Stack (Elasticsearch, Logstash, Kibana)
· Expert knowledge of Elastic EDR and Defend capabilities
· Strong understanding of data indexing, sharding, replication, and data lifecycle management.
· Strong understanding of Linux and Windows operating systems
· Strong understanding of security principles, threat detection, and incident response.
· Knowledge of common coding flaws and security vulnerabilities.
· Knowledge of network protocols and security concepts.
· Knowledge of security frameworks and compliance standards (e.g., NIST, FedRAMP).
· Ability to interpret and incorporate data from multiple tool sources.
· Ability to analyze complex requirements and translate them into clear, actionable tasks.
· Ability to work independently and as part of a team.
· Excellent communication and interpersonal skills.
Resumes, in month and year format, must be submitted with application in order to be considered for the position. The selected candidate may be assigned as an employee for one of our teammate companies.
Qualifications - External Basic Requirements:
· Must have 10, or more, years of general (full-time) work experience
· May be reduced with completion of advanced education
· Must have 5, or more, years of experience working with the Elastic Stack (Elasticsearch, Logstash, Kibana).
· Must have 3, or more, years of experience specifically implementing and managing Elastic EDR and Defend solutions.
· Must have 2, or more, years of experience in a lead or senior role, mentoring and guiding other team members.
· Must have 1, or more, years of experience working in a management or leadership role
· Must have a strong understanding of security principles, threat detection, and incident response.
· Must have experience with data ingestion, processing, and enrichment techniques.
· Must be proficient in at least one scripting language (e.g., Python, Bash, PowerShell).
·Must have aa current DoD 8570.01-M IAT Level II certification with Continuing Education (CE) - (CCNA-Security, CySA+, GICSP, GSEC, Security+ CE, CND, SSCP)
· Must have an active DoD Secret Security Clearance
· Must be able to obtain an active DoD Top Secret Security Clearance
Desired Requirements:
· Have experience with Linux and Windows Server administration.
· Have experience with containerization technologies (Docker, Kubernetes).
· Have experience with automation tools (Ansible, Puppet, Chef).
· Have experience with cloud platforms (AWS, Azure, GCP).
· Have experience with SIEM technologies and security event management.
· Have experience with security frameworks and compliance standards (e.g., NIST, FedRAMP).
· Have a strong understanding of network protocols and security concepts.
· Have experience with threat intelligence platforms and data feeds.
· Have 1, or more, relevant security certifications (e.g., CISSP, CISM, CEH).
· Have experience tuning and optimizing Elastic EDR and Defend for specific threat landscapes.
Job Type: Full-time
Pay: $105,000.00 - $145,000.00 per year
Benefits:
- 401(k)
- 401(k) matching
- Dental insurance
- Employee assistance program
- Health insurance
- Life insurance
- Paid time off
- Tuition reimbursement
- Vision insurance
Work Location: In person