Home
/
Comprehensive
/
elastic siem analyst
elastic siem analyst-March 2024
Plano
Mar 28, 2026
About elastic siem analyst

  elastic siem analyst.

  plano , texas

  posted 6 days ago

  job details

  summary

  $60 - $65 per hour

  contract

  bachelor degree

  category computer and mathematical occupations

  reference1039490

  job details

  job summary:

  Responsibilities

  Implements security monitoring and documents standard operations procedures for the Incident Management Team.

  Implements security monitoring rules, reports and dashboard while maintaining best practices to ensure maximum security tool efficiency. Monitors security systems, analyzes events and investigates security-related incidents.

  Creates Threat Hunting models for Endpoints and Network Traffic. Analyzes endpoint including logging, EDR, IPS and DLP tools. Analyzes network monitoring including IPS, WAF, PCAP and Netflow tools. Focuses on critical systems within Vanguard's network to detect, respond and handle incidents related to unauthorized activity, malware, and APTs

  Keeps management within the department informed by communicating progress, issues, concerns and opportunities. Assesses and immediately notifies manager of any potential information security breech and security issues that may have a negative impact on business operations.

  Identifies opportunities to improve the quality, efficiency and effectiveness of the department as well as the processes that affect the divisions and the enterprise. Maintains an awareness of the department's dashboard and provides suggestions to improve performance.

  Identifies Tactical Intelligence relevant to Vanguard systems. Works with Incident Management and Threat management to follow incident response procedures to ensure proper detection, mitigation controls.

  Escalates internal threat issues to the Insider Threat Team.

  Participates in special projects and performs other duties as assigned.

  Qualifications

  Experience creating security monitoring within a SIEM.

  Experience creating alert, dashboards and pipelines in Elastic

  Demonstrated initiative and ability to work independently with attention to detail.

  Demonstrated ability to be flexible and exercise good judgment.

  Demonstrated strong organization and time management skills. Excellent multitasking and time management skills.

  Experience analyzing endpoint logging, detection, response and forensic tools.

  Working knowledge of AWS, Azure or GCP

  location: Plano, Texas

  job type: Contract

  salary: $60 - 65 per hour

  work hours: 8am to 4pm

  education: Bachelors

  responsibilities:

  Responsibilities

  Implements security monitoring and documents standard operations procedures for the Incident Management Team.

  Implements security monitoring rules, reports and dashboard while maintaining best practices to ensure maximum security tool efficiency. Monitors security systems, analyzes events and investigates security-related incidents.

  Creates Threat Hunting models for Endpoints and Network Traffic. Analyzes endpoint including logging, EDR, IPS and DLP tools. Analyzes network monitoring including IPS, WAF, PCAP and Netflow tools. Focuses on critical systems within Vanguard's network to detect, respond and handle incidents related to unauthorized activity, malware, and APTs

  Keeps management within the department informed by communicating progress, issues, concerns and opportunities. Assesses and immediately notifies manager of any potential information security breech and security issues that may have a negative impact on business operations.

  Identifies opportunities to improve the quality, efficiency and effectiveness of the department as well as the processes that affect the divisions and the enterprise. Maintains an awareness of the department's dashboard and provides suggestions to improve performance.

  Identifies Tactical Intelligence relevant to Vanguard systems. Works with Incident Management and Threat management to follow incident response procedures to ensure proper detection, mitigation controls.

  Escalates internal threat issues to the Insider Threat Team.

  Participates in special projects and performs other duties as assigned.

  Qualifications

  Experience creating security monitoring within a SIEM.

  Experience creating alert, dashboards and pipelines in Elastic

  Demonstrated initiative and ability to work independently with attention to detail.

  Demonstrated ability to be flexible and exercise good judgment.

  Demonstrated strong organization and time management skills. Excellent multitasking and time management skills.

  Experience analyzing endpoint logging, detection, response and forensic tools.

  Working knowledge of AWS, Azure or GCP

  qualifications:

  Experience level: Experienced

  Education: Bachelors

  skills:

  Elastic (2 years of experience is required)

  Firewall EngineeringEqual Opportunity Employer: Race, Color, Religion, Sex, Sexual Orientation, Gender Identity, National Origin, Age, Genetic Information, Disability, Protected Veteran Status, or any other legally protected group status.At Randstad Digital, we welcome people of all abilities and want to ensure that our hiring and interview process meets the needs of all applicants. If you require a reasonable accommodation to make your application or interview experience a great one, please contact [email protected] offered to a successful candidate will be based on several factors including the candidate's education, work experience, work location, specific job duties, certifications, etc. In addition, Randstad Digital offers a comprehensive benefits package, including health, an incentive and recognition program, and 401K contribution (all benefits are based on eligibility).Applications accepted on ongoing basis until filled.

Comments
Welcome to zdrecruit comments! Please keep conversations courteous and on-topic. To fosterproductive and respectful conversations, you may see comments from our Community Managers.
Sign up to post
Sort by
Show More Comments
SIMILAR JOBS
Patient Care Technician Float Pool
Description Introduction Last year our HCA Healthcare colleagues invested over 156,000 hours volunteering in our communities. As a Patient Care Technician with Mission Hospital you can be a part of a
BARISTA (FULL TIME)
Bon Appetit We are hiring immediately for a full time BARISTA position. Location: 1100 Enterprise, Sunnyvale, CA 94089 Note: online applications accepted only. Schedule: Full time schedule. 8:00 am -
Specialty Representative, Migraine - Burbank, CA
Responsibilities Deliver sales performance, brand KPIs, financial targets, marketing objectives, etc. to meet or exceed on those objectives. Create pre-call plan objectives and execute post-call eval
Radiology Technologist at Henrietta Medical Campus
Description HOW WE CARE FOR YOU: At Rochester Regional Health, we are dedicated to getting health care right. Our robust benefits and total rewards foster employee wellbeing, professional development
Medical Biller
Description Robert Half Buffalo continuously looking for skilled and detail-oriented Medical Billers to join our dynamic healthcare team. As a Medical Biller, you will be responsible for accurately b
REGULATORY ANALYST I - 61000159
REGULATORY ANALYST I - 61000159 Date: Jan 19, 2024 Location: TALLAHASSEE, FL, US, 32308 TALLAHASSEE, FL, US, 32301 TALLAHASSEE, FL, US, 32302 TALLAHASSEE, FL, US, 32303 TALLAHASSEE, FL, US, 32304 TAL
Junior Sous Chef - Pastry - Jumeirah Al Naseem
About Jumeirah & the Hotel For more than two decades, Jumeirah Group, a member of Dubai Holding, has been making a distinct mark on the global hospitality with its unwavering Stay Different™ bran
ServiceNow Platform Architect-Remote
Bringing smiles is what we do at TTEC… for you and the customer. As a Systems Software Principal Engineer working remotely in Mexico, you'll be a part of creating and delivering amazing customer expe
Principal Consultant, Gas AMI
Principal Consultant, Gas AMI Date: Jan 18, 2024 Location: US Company: Black & Veatch Family of Companies At Black & Veatch, our employee-owners go beyond the project. For over a century, we
Commercial Operations Officer (US)
427418BR Job Title: Commercial Operations Officer (US) Company Overview: Our Values At TD, we're guided by our purpose to enrich the lives of our customers, communities and colleagues, and share a se
Copyright 2023-2026 - www.zdrecruit.com All Rights Reserved