ECS is seeking a Cybersecurity Engineer - SIEM Engineer to work in our Fairfax, VA office. Please Note: This position is contingent upon contract award.
Job Description:
ECS is a leading mid-sized provider of technology services to the United States Federal Government. We are focused on people, values and purpose. Every day, our 3000+ employees focus on providing their technical talent to support the Federal Agencies and Departments of the US Government to serve, protect and defend the American People.
Perl (Programming Language)
Bash (Scripting Language)
Scripting
Information Security
Python (Programming Language)
Job Description:
- Manage SIEM and supporting services including monitoring, alarming, patching, automation, and maintaining standards.
- Develop metrics and trends that demonstrate the SIEM platform's health and operational state.
- Participate in information security audits, ensuring the technical compliance with related (e.g. PCI, ISO, etc.) regulatory requirements
- Define, document, and implement appropriate delivery, parsing, reporting, and retention of security-relevant log information.
- Assist users of the SIEM in real-time investigation and analysis.
- Research and document security best practices to continually improve the deployment and use of supported systems.
- Maintain the health, performance, stabilization, tuning and ongoing planning of the SIEM platform.
- Support the SIEM, SOAR, and UEBA platforms and participate in on-call rotation
- Work with other teams in the integration of security tools.
- Bachelor's degree in computer related field.
- In lieu of a bachelor's degree, at least five (5) years of IT security experience is required.
- 5 - 8 years of experience managing SIEM/SEM or similar log aggregation and alerting technologies.
- 5 - 8 years of experience with Cyber Security related toolsets
- BASH, Perl, Python or similar scripting language skills.
- Familiar with DevOps tools/methods including tools such as GIT, Ansible, & Jenkins.
- Firm understanding of TCP/IP Networks & Infrastructure.
- Able to work independently with little guidance or as a team.
- Familiar working in an Agile and Waterfall project methodologies.
- Hands on experience with LINUX administration.
- Security Experience with Cloud Technologies (Azure, AWS, GCP).
- Experience with McAfee ESM, Elastic SIEM, and/or Azure Sentinel.
- Experienced with Swimlane
ECS is a leading mid-sized provider of technology services to the United States Federal Government. We are focused on people, values and purpose. Every day, our 3000+ employees focus on providing their technical talent to support the Federal Agencies and Departments of the US Government to serve, protect and defend the American People.
Recommended Skills
Cloud TechnologiesPerl (Programming Language)
Bash (Scripting Language)
Scripting
Information Security
Python (Programming Language)