Leidos has a current job opportunity for a Senior Cybersecurity Engineer specializing in data integration, content development, and system architecture. Working with Elastic Stack (Elasticsearch, Logstash, Kibana), the individual will lead a team in developing, managing, and optimizing scalable search and analytics solutions for the DISA GSM-O II program in Pearl Harbor, HI.
A successful candidate will have experience in cyber analysis, incident response, SIEM operations, content development, visualizations, and reporting. This role requires technical expertise with Elastic, a deep understanding of SIEM architecture, and hands-on experience working with cybersecurity relevant data, cyber incident handling, and monitoring in secure environments.
POSITION SUMMARY:
The Senior Cybersecurity / Elastic Detection Engineer will lead the development of SIEM/SOAR capabilities to support the team's Cyber Security Service Provider (CSSP) services. They will create, test, implement, and execute standard procedures for the "front-end" operation within Elastic. They will also develop reports, dashboards, analytic rules, filters, and metrics.
PRIMARY RESPONSIBILITIES:
- Monitor and optimize the performance of content within the Elastic Stack clusters to ensure high availability, reliability, and performance of content supporting the Cyber Security Service Provider (CSSP) services.
- Create and maintain comprehensive documentation for content, processes, and procedures.
- Design, develop, and maintain custom dashboards using Elastic for monitoring and visualization of metrics, logs, and traces.
- Support customer-driven visualization requirements and collaborate on data integration and Kibana dashboard development.
- Work with the site threat emulation/analytic development team to maximize detection opportunities correlated with the MITRE ATT&CK framework.
BASIC QUALIFICATIONS:
- Active DoD Secret security clearance and ability to obtain TS/SCI.
- Ability to think critically, work independently, and communicate updates to stakeholders.
- Highly motivated with the ability to work independently and in a team environment.
- Strong written and oral communication skills, along with analytical and troubleshooting skills.
- In-depth knowledge of Elastic Stack architecture, engineering, and operations.
- Commitment to ongoing training and proficiency in cybersecurity domains.
- Bachelor's degree and 8+ years of relevant experience; additional work experience or certifications may substitute for a degree.
- Must obtain DoD 8570 CSSP-A certification such as CEH, CySA+, GCIA within 180 days of hire.
- Must have DoD 8570 IAT level II or higher certification such as Security+ CE prior to starting.
PREFERRED QUALIFICATIONS:
- CND experience within a Computer Incident Response organization.
- Advanced certifications or formal training in Elastic or other SIEMs.
- Strong knowledge of SIEM systems, data pipelines, and threat detection methodologies.
- Understanding of network threats, attack vectors, TTPs, and intrusion tactics.
- Advanced knowledge of TCP/IP, networking protocols, system administration, and security principles.
- Experience developing, testing, and deploying security analytics and detection rules, preferably with scripting languages like Python.
- Proficiency with version control and collaboration tools (e.g., GitLab, Teams, Slack).
- Experience with Intelligence-Driven Defense and Cyber Kill Chain methodologies.
- Excellent analytical and problem-solving skills, with a focus on security gaps.
- Ability to analyze and improve existing security processes.
Additional certifications such as CEH, CySA+ are advantageous.
WHY LEIDOS?
- Company-paid relocation to Hawaii
- Competitive compensation, health and wellness programs, flexible leave, and 401k
- Opportunities for professional development, mentorship, and career growth in cybersecurity
Original Posting: April 29, 2025
For U.S. positions, the job is expected to remain open for at least 3 days from the posting date.
Pay Range: $104,650.00 - $189,175.00
The pay range is a guideline; actual compensation depends on responsibilities, experience, skills, and other factors.
#J-18808-Ljbffr