asrcfh17h ago
New
New
$150,000 – $165,450/yr
Elastic SIEM Engineer
mid
OtherEngineer
2 views0 saves0 applied
Quick Summary
Overview
ASRC Federal is actively hiring an Elastic SIEM Engineer in support of our Defense Counterintelligence Security Agency (DCSA) program based out of Hanover MD. Remote flexibility available!
Technical Tools
OtherEngineer
ASRC Federal is actively hiring an Elastic SIEM Engineer in support of our Defense Counterintelligence Security Agency (DCSA) program based out of Hanover MD.
Remote flexibility available! Telework offered with a requirement to be onsite up to one (1) day a week at Hanover, MD.
We invest in the lives of our employees, both in and out of the workplace, by providing competitive pay and benefit packages. This position is offering a pay range of $150,000.00 - $165,450.00 depending on experience, seniority, geographic locations, and factors permitted by law. Benefits offered may include health care, dental, vision, life insurance; 401k; education assistance; paid time off including Paid Time Off, holidays and any other paid leave required by law.
Job Description:
As an Elastic SIEM Engineer, your primary duty is to maintain enterprise-scale Elastic Stack security solutions that safeguard our national security systems. You will design and implement advanced detection rules, correlation searches, and analytics pipelines using Elasticsearch, Logstash, Kibana, and Elastic Security to identify sophisticated threats and adversary activity. A key part of your role involves optimizing data ingestion pipelines from diverse sources including cloud platforms (AWS, Azure, GCP), network devices, endpoints, and security tools, ensuring high availability, performance, and scalability of the SIEM infrastructure. You will develop custom dashboards, visualizations, and threat hunting workbenches that empower SOC analysts to detect and respond to incidents effectively, while collaborating with security operations, engineering teams, and government stakeholders to enhance detection capabilities. Additionally, you will be responsible for tuning detection logic to reduce false positives, automating security workflows, integrating threat intelligence feeds, and ensuring all activities align with critical compliance standards like NIST 800-53 and RMF through comprehensive documentation and technical leadership.
Minimum Requirements:
At least five (5) Years – Direct Elastic engineering/administration experience
Active Secret Clearance REQUIRED, eligible to be upgraded to TS/SCI
Bachelor’s degree in information security or related field and/or equivalent combination of experience
Certifications:
Must meet DoD 8140/8570 IAM or IAT Level II certifications’ requirements at the time of hire by having one of the following certifications. (CCNA Security, CySA +, GICSP, GSEC, Security+, SSSP, CAP, CASP CE, CISM, CISSP (or Associate) or GSLC
Highly Desired:
Two (2) plus years of AWS experience
Basic Qualifications:
Experience in the support and maintenance of an Elastic infrastructure in a highly available configuration in an AWS Cloud environment
Proven experience as an Elastic Engineer or similar role
Strong understanding of Elastic architecture in a cloud environment, including data ingestion, indexing, search, and visualization
Prior experience customizing and configuring Elastic environments according to client needs, including developing scripts and apps as necessary
Proficiency in scripting languages such as Python or Bash for Elastic app and dashboard development
Experience with data transformation and normalization to ensure compatibility with Elastic
Troubleshoot Elastic indexers, search heads and forwarder problems
Familiarity with networking principles and protocols
Excellent problem-solving skills and the ability to work under pressure
Strong communication and interpersonal skills, with the ability to explain technical concepts to non-technical stakeholders
Experience analyzing log files from network traffic logs, firewall logs, IDS logs, DNS logs and ESS to ID possible security threats e.g., determine rogue systems, infected systems, unauthorized system changes and unauthorized hardware connections
Work Environment and Physical Demands
This is primarily a Telework position with a requirement to be onsite up to two (2) days a week at Fort Meade, MD
If alternate worksite is other than DCSA facilities or corporate office space, must have the reliable ability to communicate over voice (cell phone preferred) and stable, capable internet connection
Must be able to work flexible hours to support critical security incidents, maintenance windows, and emergency response activities as needed
Location & Eligibility
Where is the job
—
Location terms not specified
Listing Details
- Posted
- July 23, 2026
- First seen
- July 23, 2026
- Last seen
- July 23, 2026
Posting Health
- Days active
- 0
- Repost count
- 0
- Trust Level
- 49%
- Scored at
- July 23, 2026
Signal breakdown
freshnesssource trustcontent trustemployer trust
Salary
$150,000 – $165,450
per year
External application · ~5 min on asrcfh's site
Please let asrcfh know you found this job on Jobera.
4 other jobs at asrcfh
View all →Explore open roles at asrcfh.
Similar Engineer jobs
View all →Engineer II – Sewer
Aerospace Certification Engineer
From $0k/yr
Contract
Senior Engineer I, Field Process
Piping/Plumbing Engineer I
$75k–$90k/yr
Agent Engineer (Solutions / FDE) — HR AI (Growth-stage)
Senior Engineer, Design & Modeling - Harness
Browse Similar Jobs
Manager7.7kTeam Member6.6kAssistant Manager5.9kTechnician3.8kDirector3.8kAssociate3.7kAssistant3.7kConsultant3.4kCoordinator3.2kSupervisor2.6kPart Time2.5kData Collector2.4kAnalyst2.1kFitness & Wellness2.1kTeam Leader2.1kRestaurant General Manager2kOperator1.7kLead1.6kDevelopment1.6kAssistant General Manager1.5k
Newsletter
Stay ahead of the market
Get the latest job openings, salary trends, and hiring insights delivered to your inbox every week.
A
B
C
D
No spam. Unsubscribe at any time.