Virginia Staffing
SIEM Engineer (Elastic + Confluent) - Interim Secret Clearance Required
Virginia Staffing, Fort Belvoir, Virginia, United States, 22060
Sr. Siem Engineer
Seeking a Sr. SIEM Engineer specializing in Elastic Stack and Confluent in support of the PEO Enterprise SIEM Consolidation / Cyber Defense effort. This effort is focused on the consolidation of PEO Enterprise multiple SIEM solutions (approx. 40) into one consolidated SIEM. This individual should have extensive experience with Security Information and Event Management (SIEM) deployment and tuning as well as Security Orchestration Automation and Response (SOAR) development and implementation. Responsibilities: Design, deploy, configure, and maintain Elastic stack and Confluent deployments Manage, patch, and upgrade Elasticsearch, Confluent, and other related systems Tune and optimize Elastic stack deployments based on application/customer needs Design and configure ETL data pipelines to ingest customer defined data sets such as application logs, metrics, and or threat events Create custom visualizations and dashboards using Kibana Configure and maintain index templates and information lifecycle management (ILM) policies Develop Elastic alerting solutions using Watcher and/or Kibana Rules and Connectors with integrations to ticketing systems, email, and messaging apps as required Develop Machine Learning (ML) jobs to dynamically monitor and alert on identified metrics, KPIs, and/or data anomalies Follow ITIL based change management processes to move solutions from Dev to Test and into Production Run the day-to-day operations of the security operations center Investigate incidents and lead response efforts as applicable Additional Skills & Qualifications Desired Skills: Experience using and developing Ansible playbooks for automation of system deployment and/or configuration Experience with developing in multiple languages (Python, Bash, PowerShell, Painless, etc.) Understanding of the MITRE ATT&CK framework Certified Elastic Engineer or willingness to gain certification within 90 days of hire Experience with cloud environments (e.g., Azure, AWS, GCP, etc.) and cloud security architecture Experience condensing large environments to a single pane of glass view to facilitate optimal operational efficiency Experience leading incident response and forensic investigative initiatives Demonstrated ability to create and present executive level briefings Experience with Army policies, regulations, and processes preferred This position requires an active DoD Clearance (Secret, Top Secret, Top Secret/SCI) or the ability to be obtain an (Interim Secret, Interim Top Secret). Because an active or interim DoD clearance is required, U.S. Citizenship is required. Pay and Benefits The pay range for this position is $67.31 - $76.92/hr. Eligibility requirements apply to some benefits and may depend on your job classification and length of employment. Benefits are subject to change and may be subject to specific elections, plan, or program terms. If eligible, the benefits available for this temporary role may include the following: Medical, dental & vision Critical Illness, Accident, and Hospital 401(k) Retirement Plan Pre-tax and Roth post-tax contributions available Life Insurance (Voluntary Life & AD&D for the employee and dependents) Short and long-term disability Health Spending Account (HSA) Transportation benefits Employee Assistance Program Time Off/Leave (PTO, Vacation or Sick Leave) Workplace Type This is a fully onsite position in Fort Belvoir, VA. Application Deadline This position is anticipated to close on Oct 1, 2025. About TEKsystems We're partners in transformation. We help clients activate ideas and solutions to take advantage of a new world of opportunity. We are a team of 80,000 strong, working with over 6,000 clients, including 80% of the Fortune 500, across North America, Europe and Asia. As an industry leader in Full-Stack Technology Services, Talent Services, and real-world application, we work with progressive leaders to drive change. That's the power of true partnership. TEKsystems is an Allegis Group company. The company is an equal opportunity employer and will consider all applications without regards to race, sex, age, color, religion, national origin, veteran status, disability, sexual orientation, gender identity, genetic information or any characteristic protected by law.
Seeking a Sr. SIEM Engineer specializing in Elastic Stack and Confluent in support of the PEO Enterprise SIEM Consolidation / Cyber Defense effort. This effort is focused on the consolidation of PEO Enterprise multiple SIEM solutions (approx. 40) into one consolidated SIEM. This individual should have extensive experience with Security Information and Event Management (SIEM) deployment and tuning as well as Security Orchestration Automation and Response (SOAR) development and implementation. Responsibilities: Design, deploy, configure, and maintain Elastic stack and Confluent deployments Manage, patch, and upgrade Elasticsearch, Confluent, and other related systems Tune and optimize Elastic stack deployments based on application/customer needs Design and configure ETL data pipelines to ingest customer defined data sets such as application logs, metrics, and or threat events Create custom visualizations and dashboards using Kibana Configure and maintain index templates and information lifecycle management (ILM) policies Develop Elastic alerting solutions using Watcher and/or Kibana Rules and Connectors with integrations to ticketing systems, email, and messaging apps as required Develop Machine Learning (ML) jobs to dynamically monitor and alert on identified metrics, KPIs, and/or data anomalies Follow ITIL based change management processes to move solutions from Dev to Test and into Production Run the day-to-day operations of the security operations center Investigate incidents and lead response efforts as applicable Additional Skills & Qualifications Desired Skills: Experience using and developing Ansible playbooks for automation of system deployment and/or configuration Experience with developing in multiple languages (Python, Bash, PowerShell, Painless, etc.) Understanding of the MITRE ATT&CK framework Certified Elastic Engineer or willingness to gain certification within 90 days of hire Experience with cloud environments (e.g., Azure, AWS, GCP, etc.) and cloud security architecture Experience condensing large environments to a single pane of glass view to facilitate optimal operational efficiency Experience leading incident response and forensic investigative initiatives Demonstrated ability to create and present executive level briefings Experience with Army policies, regulations, and processes preferred This position requires an active DoD Clearance (Secret, Top Secret, Top Secret/SCI) or the ability to be obtain an (Interim Secret, Interim Top Secret). Because an active or interim DoD clearance is required, U.S. Citizenship is required. Pay and Benefits The pay range for this position is $67.31 - $76.92/hr. Eligibility requirements apply to some benefits and may depend on your job classification and length of employment. Benefits are subject to change and may be subject to specific elections, plan, or program terms. If eligible, the benefits available for this temporary role may include the following: Medical, dental & vision Critical Illness, Accident, and Hospital 401(k) Retirement Plan Pre-tax and Roth post-tax contributions available Life Insurance (Voluntary Life & AD&D for the employee and dependents) Short and long-term disability Health Spending Account (HSA) Transportation benefits Employee Assistance Program Time Off/Leave (PTO, Vacation or Sick Leave) Workplace Type This is a fully onsite position in Fort Belvoir, VA. Application Deadline This position is anticipated to close on Oct 1, 2025. About TEKsystems We're partners in transformation. We help clients activate ideas and solutions to take advantage of a new world of opportunity. We are a team of 80,000 strong, working with over 6,000 clients, including 80% of the Fortune 500, across North America, Europe and Asia. As an industry leader in Full-Stack Technology Services, Talent Services, and real-world application, we work with progressive leaders to drive change. That's the power of true partnership. TEKsystems is an Allegis Group company. The company is an equal opportunity employer and will consider all applications without regards to race, sex, age, color, religion, national origin, veteran status, disability, sexual orientation, gender identity, genetic information or any characteristic protected by law.