ELK Administrator

Adelphi, MD
Sep 09, 2021
Sep 20, 2021
Full Time
Description Job Description:Leidos is seeking an ELK Administrator to support the C5ISR Center Sustaining Base Network Assurance Branch (SBNAB) Defensive Cyber Operations (DCO) Security Operations Center (SOC).This position is located at Aberdeen Proving Grounds, MD and requires an active Secret clearance with ability to obtain Top Secret/SCI clearance.Primary ResponsibilitiesDesign/implement new Elastic toolset solutions to enable efficiencies in the C5ISR CSSP environment and with related monitoring and alerting requirements.A' Assist in identification and implementation of new ELK tool features that will enhance the CSSP analyst experience and better enable them to defend a multitude of subscriber networks.Interface with both customer and vendor to understand unique requirements and determine best modification/use of the ELK toolset to solution these challenges.A' Maintain smooth operation of multi-user computer systems, including coordination with network engineers.Monitor and manage system resources, including CPU usage, disk usage, and response times to maintain operating efficiency.Perform systems security administration functions including creating user profiles and accounts. Other duties may include setting up administrator accounts, maintaining system documentation, tuning system performance, installing system wide software and allocating mass storage space.Interact with users and evaluate vendor products. Make recommendations to purchase hardware and software, coordinate installation and provide backup recovery.Develop and monitor policies and standards for allocation related to the use of computing resources.Work under only general direction, provide technical solutions to a wide range of challenging problems. Able to determine and develop approach to solutions.Basic QualificationsBachelor's (or equivalent) with 4+ years of experience, or a Master's with 2+ years of experience. 4 years of relevant work experience may be used in lieu of degree.Requires active Secret clearance with ability to obtain TS/SCI clearance.Must hold IAT Level II 8570 Certification prior to start date.Must hold Computing Environment Certification prior to start date.Must hold CSSP Infrastructure Support 8570 Certification or obtain within 45 days of start date.Preferred QualificationsDeep technical understanding of core current cybersecurity technologies as well as emerging capabilities.Hands-on cybersecurity experience (Protect, Detect, Respond and Sustain) within a Computer Incident Response organization.Demonstrated understanding of the life cycle of cybersecurity threats, attacks, attack vectors and methods of exploitation with an understanding of intrusion set tactics, techniques and procedures (TTPs).CND experience (Protect, Detect, Respond and Sustain) within a Computer Incident Response organization.Experience in a 24x7 environment.SBNABAPGExternal Referral EligibleExternal Referral Bonus:EligibleExternal Referral Bonus $:$3000Potential for Telework:NoClearance Level Required:SecretTravel:Yes, 10% of the timeScheduled Weekly Hours:40Shift:DayRequisition Category:ProfessionalJob Family:Systems EngineeringPay Range:

Similar jobs