Data Engineer (Elastic SME) TS/SCI Required
Job Description
Job Description
The Opportunity
We are seeking a highly skilled Data Engineer to serve as a Subject Matter Expert (SME) in designing, implementing, and maintaining large-scale log ingestion architectures. This role focuses on building robust ingestion pipelines from multiple heterogeneous data sources and supporting high-availability production environments on air-gapped and restricted networks. You will be primarily responsible for ensuring data ingested into Elastic Security is identified, categorized, processed, and transformed in a reliable, scalable, and secure manner.
This position focuses on the integration of the Elastic Stack within a Managed Security Services (MSS) framework. You will be responsible for ensuring that security data is efficiently ingested and enriched to support real-time threat detection and analysis.
Core Responsibilities- Pipeline Architecture: Design and manage multi-pipeline Logstash architectures, including pipeline-to-pipeline routing and output isolator patterns.
- Data Normalization: Normalize incoming data into Elastic Common Schema (ECS) compliant formats.
- Performance Tuning: Tune Logstash JVM performance and troubleshoot ingestion bottlenecks to ensure mission-critical uptime.
- Strategic Engineering: Work directly with security analysts and customers to prioritize high-value data, efficiently archiving less valuable data and eliminating zero-value noise.
- Secure Data Flow: Apply data processing routines at the most efficient location as data flows through the pipelines, ensuring networks are not directly exposed by utilizing specific devices or DMZs for collection.
- System Maintenance: Maintain the technical baseline of Logstash nodes deployed as VMs and Kubernetes Pods.
- Elastic Stack Expertise: Deep experience with Elasticsearch, Logstash, Kibana, and Elastic Agent/Fleet.
- Parsing & Transformation: Expert proficiency with Grok, Dissect, KV, JSON decoding, and Translate filters.
- Environment Experience: Proven ability to support air-gapped artifact and package repositories and implement ingestion resiliency/failover strategies.
- Data Sources: Experience ingesting logs from endpoints, network devices, cloud-native resources, Linux Audit, and Windows Event Logs.
- Team Leadership: Ability to mentor team members by providing specialized data engineering training.
- Work Environment: This position requires being onsite 4–5 days per week.
- Clearance Growth: While a Secret clearance is required for certain tasks, there may be opportunities for clearance upgrades to the TS/SCI level based on mission requirements.
- Benefits: Very strong 401(k), family medical benefits, thousands of dollars in training budget and much more
- Interstate relocation package
Recommended Jobs
High Energy Laser (HEL) Power and Thermal Subsystem Engineer
Job Description Job Description Avion Solutions Inc., an employee-owned company, seeks candidates for a High Energy Laser (HEL) Power and Thermal Subsystem Engineer to support the US Army at R…
Program Assistant
Job Description Job Description SEASONAL About the Role: We are seeking a highly motivated Program Assistant to join our team in Steele, AL . As a Program Assistant, you will be respons…
Director of Marketing & Communications
DEPLOY is seeking a Director of Marketing and Communications: DEPLOY 's client is a vibrant leader in independent education in the Birmingham metropolitan region. DEPLOY 's client offer…
Occupational Therapy Assistant
Job Description Job Description Occupational Therapist Assistant Career Opportunity Your Calling, Close to Home and Heart Are you in search of a rewarding career that extends beyond just …
Model Simulation Developer
Qualis LLC is seeking a motivated individual to support the development of physics-based simulation software in support of the Mars Campaign office Earth Independent Operation’s Mission Management po…
Wireless Retail Sales Representative
Job Description Job Description Consultor de ventas minoristas – Distribuidor autorizado de AT&T Blue Link Wireless, LLC CATEGORÍA: Tienda minorista de AT&T - Contratación inmediat…
Customer Service Rep
Job Description Job Description Customer Service Rep Location: Red Diamond | Moody, AL Schedule: Monday–Friday, 8:00 AM – 5:00 PM Join Red Diamond’s service support team and help keep …
Hotel Front Desk Service Representative
Job Description Job Description An exciting opportunity awaits you at our esteemed establishment in Spanish Fort, AL! We are on the lookout for an individual capable of providing efficient, court…
Consumer Care Representative
Handles incoming and outgoing calls Adheres to 5 Star Customer Service guidelines and maintains professionalism when dealing with community, co-workers and consumers. Answers all incoming calls …
Customer Service Representative - Aligned Insurance Agency
Position Title: Customer Service Representative Reports to: Customer Service Manager Mission Statement: Our mission is to protect the assets of our clients through thoughtful risk anal…