Senior NDR & Platform Observability Engineer Senior NDR & Platform Observability Engineer will ... Exposure to data engineering platforms (Kafka, Elasticsearch, Loki). Knowledge of MITRE ATT&CK and ...
Senior NDR & Platform Observability Engineer Senior NDR & Platform Observability Engineer will ... Exposure to data engineering platforms (Kafka, Elasticsearch, Loki). Knowledge of MITRE ATT&CK and ...
... s and Observability Engineer, on contract. The role covers infrastructure automation, CI/CD ... Splunk and/or ELK Stack (Elasticsearch, Logstash, Kibana) • Observability and alerting:
New
Quick apply
... s and Observability Engineer, on contract. The role covers infrastructure automation, CI/CD ... Splunk and/or ELK Stack (Elasticsearch, Logstash, Kibana) • Observability and alerting:
New
Sr. Elastic Engineer
$103K - $142K/yr
... Observability Engineer ECK/Kubernetes Knowledge of Kubernetes and able to create visualization ... Design, deploy, and maintain Elastic Stack environments, including Elasticsearch, Kibana, Logstash ...
Sr. Elastic Engineer
$103K - $142K/yr
... Observability Engineer ECK/Kubernetes Knowledge of Kubernetes and able to create visualization ... Design, deploy, and maintain Elastic Stack environments, including Elasticsearch, Kibana, Logstash ...
This role combines the engineering rigor of Elasticsearch/observability management with the specialized focus of Elastic Security and EDR. You will work closely with cross-functional teams to build ...
This role combines the engineering rigor of Elasticsearch/observability management with the specialized focus of Elastic Security and EDR. You will work closely with cross-functional teams to build ...
This role combines the engineering rigor of Elasticsearch/observability management with the specialized focus of Elastic Security and EDR. You will work closely with cross-functional teams to build ...
Quick apply
This role combines the engineering rigor of Elasticsearch/observability management with the specialized focus of Elastic Security and EDR. You will work closely with cross-functional teams to build ...
Senior Site Reliability Engineer - Observability
Austin, TX · Hybrid
$56.50 - $75/hr
Thecurrentobservability platformisprimarilycomprisedofon-premises ELK(Elasticsearch, Logstash ... Support engineering teamsin onboarding to observability platforms- helping teams instrument their ...
Senior Site Reliability Engineer - Observability
Austin, TX · Hybrid
$56.50 - $75/hr
Thecurrentobservability platformisprimarilycomprisedofon-premises ELK(Elasticsearch, Logstash ... Support engineering teamsin onboarding to observability platforms- helping teams instrument their ...
Senior Site Reliability Engineer - Observability
Austin, TX · On-site
$56.50 - $75/hr
The current observability platform is primarily comprised of on-premises ELK (Elasticsearch ... Support engineering teams in onboarding to observability platforms - helping teams instrument their ...
Senior Site Reliability Engineer - Observability
Austin, TX · On-site
$56.50 - $75/hr
The current observability platform is primarily comprised of on-premises ELK (Elasticsearch ... Support engineering teams in onboarding to observability platforms - helping teams instrument their ...
Senior Site Reliability Engineer - Observability
Charlotte, NC · Hybrid
$55.75 - $74/hr
Thecurrentobservability platformisprimarilycomprisedofon-premises ELK(Elasticsearch, Logstash ... Support engineering teamsin onboarding to observability platforms- helping teams instrument their ...
Senior Site Reliability Engineer - Observability
Charlotte, NC · Hybrid
$55.75 - $74/hr
Thecurrentobservability platformisprimarilycomprisedofon-premises ELK(Elasticsearch, Logstash ... Support engineering teamsin onboarding to observability platforms- helping teams instrument their ...
Engineer
Chandler, AZ · On-site
$110K - $125K/yr
Must Have Technical/Functional Skills Job Summary Seeking an experienced Reporting & Observability ... Elasticsearch, Splunk, SQL databases, or equivalent. • Solid understanding of metrics, logs, and ...
Engineer
Chandler, AZ · On-site
$110K - $125K/yr
Must Have Technical/Functional Skills Job Summary Seeking an experienced Reporting & Observability ... Elasticsearch, Splunk, SQL databases, or equivalent. • Solid understanding of metrics, logs, and ...
Interface Integration Engineer
$80K - $128K/yr
This role sits at the intersection of API engineering, identity security, and observability ... Configure and manage ELK Stack (Elasticsearch, Logstash, Kibana) for log ingestion, monitoring, and ...
Interface Integration Engineer
$80K - $128K/yr
This role sits at the intersection of API engineering, identity security, and observability ... Configure and manage ELK Stack (Elasticsearch, Logstash, Kibana) for log ingestion, monitoring, and ...
Senior Software Engineer, Observability
Sunnyvale, CA · On-site
$143K - $188K/yr
As a Senior Software Engineer on the Observability team, you will design, build, and maintain core ... e.g., Loki, ClickHouse, Elasticsearch, Prometheus, VictoriaMetrics, Grafana, Thanos). • ...
Senior Software Engineer, Observability
Sunnyvale, CA · On-site
$143K - $188K/yr
As a Senior Software Engineer on the Observability team, you will design, build, and maintain core ... e.g., Loki, ClickHouse, Elasticsearch, Prometheus, VictoriaMetrics, Grafana, Thanos). • ...
Security Architect (NDR, Observability)
$67.75 - $87.75/hr
Exposure to data engineering platforms (Kafka, Elasticsearch, Loki). Knowledge of MITRE ATT&CK and ... Security Architect (NDR, Observability)Connecticut,Minnesota
Security Architect (NDR, Observability)
$67.75 - $87.75/hr
Exposure to data engineering platforms (Kafka, Elasticsearch, Loki). Knowledge of MITRE ATT&CK and ... Security Architect (NDR, Observability)Connecticut,Minnesota
... Observability Engineer Certifications * Experience maintaining and administering enterprise Elastic implementations. * 3+ years of Elasticsearch stack (Elasticsearch, Logstash, Beats, Kibana ...
... Observability Engineer Certifications * Experience maintaining and administering enterprise Elastic implementations. * 3+ years of Elasticsearch stack (Elasticsearch, Logstash, Beats, Kibana ...
... Observability Engineer Certifications * Experience maintaining and administering enterprise Elastic implementations. * 3+ years of Elasticsearch stack (Elasticsearch, Logstash, Beats, Kibana ...
... Observability Engineer Certifications * Experience maintaining and administering enterprise Elastic implementations. * 3+ years of Elasticsearch stack (Elasticsearch, Logstash, Beats, Kibana ...
Senior Software Engineer, Observability
Manhattan, NY · On-site
$134K - $177K/yr
... Elasticsearch, Prometheus, VictoriaMetrics, Grafana, Thanos) • Familiarity with data streaming systems for observability pipelines (e.g., Kafka, Kafka Connect) • Experience automating ...
Senior Software Engineer, Observability
Manhattan, NY · On-site
$134K - $177K/yr
... Elasticsearch, Prometheus, VictoriaMetrics, Grafana, Thanos) • Familiarity with data streaming systems for observability pipelines (e.g., Kafka, Kafka Connect) • Experience automating ...
Senior Scalability Engineer - Observability
$125K - $165K/yr
They are seeking a Senior Scalability Engineer focused on observability platform development and ... Hands-on experience building or operating search systems using OpenSearch, Elasticsearch, Lucene ...
Senior Scalability Engineer - Observability
$125K - $165K/yr
They are seeking a Senior Scalability Engineer focused on observability platform development and ... Hands-on experience building or operating search systems using OpenSearch, Elasticsearch, Lucene ...
Senior Scalability Engineer - Observability
$125K - $165K/yr
They are seeking a Senior Scalability Engineer focused on observability platform development ... Hands-on experience building or operating search systems using OpenSearch, Elasticsearch, Lucene ...
Senior Scalability Engineer - Observability
$125K - $165K/yr
They are seeking a Senior Scalability Engineer focused on observability platform development ... Hands-on experience building or operating search systems using OpenSearch, Elasticsearch, Lucene ...
Elastic SRE - Security & Observability
$180K - $200K/yr
Keywords elastic sre, site reliability engineer, elastic stack, elasticsearch, kibana, logstash, beats, observability, telemetry, logging infrastructure, distributed systems, kubernetes, eck, elastic ...
Elastic SRE - Security & Observability
$180K - $200K/yr
Keywords elastic sre, site reliability engineer, elastic stack, elasticsearch, kibana, logstash, beats, observability, telemetry, logging infrastructure, distributed systems, kubernetes, eck, elastic ...
Senior Software Engineer, Observability
New York, NY · On-site
$139K - $220K/yr
As a Senior Software Engineer on the Observability team, you will design, build, and maintain core ... Elasticsearch, Prometheus, VictoriaMetrics, Grafana, Thanos). * Familiarity with data streaming ...
Senior Software Engineer, Observability
New York, NY · On-site
$139K - $220K/yr
As a Senior Software Engineer on the Observability team, you will design, build, and maintain core ... Elasticsearch, Prometheus, VictoriaMetrics, Grafana, Thanos). * Familiarity with data streaming ...
Senior Software Engineer, Observability
Sunnyvale, CA · On-site
$139K - $220K/yr
As a Senior Software Engineer on the Observability team, you will design, build, and maintain core ... Elasticsearch, Prometheus, VictoriaMetrics, Grafana, Thanos). * Familiarity with data streaming ...
Quick apply
Senior Software Engineer, Observability
Sunnyvale, CA · On-site
$139K - $220K/yr
As a Senior Software Engineer on the Observability team, you will design, build, and maintain core ... Elasticsearch, Prometheus, VictoriaMetrics, Grafana, Thanos). * Familiarity with data streaming ...
Elasticsearch Observability Engineer information
How does an Elasticsearch Observability Engineer typically collaborate with development and operations teams?
What does an Elasticsearch Observability Engineer do?
What are the key skills and qualifications needed to thrive as an Elasticsearch Observability Engineer, and why are they important?
What is the difference between Elasticsearch Observability Engineer vs Elasticsearch Developer?
| Aspect | Elasticsearch Observability Engineer | Elasticsearch Developer |
|---|---|---|
| Primary Focus | Monitoring, logging, and observability of Elasticsearch clusters and related systems | Developing, customizing, and optimizing Elasticsearch applications and integrations |
| Skills & Certifications | Knowledge of Elasticsearch, Prometheus, Grafana, scripting, and monitoring tools | Proficiency in Elasticsearch APIs, Java, REST, and development frameworks |
| Work Environment | Operations teams, DevOps, SREs, cloud environments | Development teams, software engineers, backend developers |
While both roles require expertise in Elasticsearch, the Elasticsearch Observability Engineer focuses on system monitoring and ensuring Elasticsearch health, whereas the Elasticsearch Developer concentrates on building and customizing Elasticsearch-based applications. Their skills and daily tasks differ, but both are essential in Elasticsearch-centric environments.

Job description
Senior NDR & Platform Observability Engineer
Senior NDR & Platform Observability Engineer will support the operational health, visibility, and performance of the enterprise Network Detection & Response (NDR) environment, with a primary focus on the Corelight platform and surrounding telemetry pipelines. This role combines security operations expertise with the ability to build a modern monitoring and observability framework leveraging APIs, time series databases, automation, and data visualization tools.
The engineer will design and implement a comprehensive health monitoring architecture that ensures accurate, timely detection of platform degradation, enhanced visibility into sensor and pipeline performance, and operational insights that support Security Operations, Incident Response, and Network Engineering teams.
Role Overview
This role is responsible for:
Operating and maintaining the NDR ecosystem.
Developing automated collection of health and performance metrics using Python and REST APIs.
Building a production ready observability stack using Grafana, Prometheus, InfluxDB, and Telegraf.
Ensuring platform reliability, data quality, and visibility through dashboards, alerts, and automation workflows.
Providing advanced troubleshooting support to ensure uninterrupted NDR coverage across the enterprise.
The individual will play a critical role in improving detection efficacy, reducing noise, optimizing sensor uptime, and delivering insights that enhance the organization's overall security posture.
Key Responsibilities
NDR Operations
Oversee daily operations of NDR sensors, appliances, and Zeek based detection pipelines.
Monitor sensor health, data ingestion, packet throughput, and drop rates.
Perform triage of NDR alerts and work with SOC/IR teams on escalations.
Support tuning of Zeek scripts, Suricata rules, and Corelight detection packs.
Identify data gaps, ingest delays, or coverage issues and drive resolution.
Troubleshoot packet broker connections, SPAN/TAP feeds, and network visibility paths.
Observability & Monitoring Architecture
Design an enterprise grade observability solution for NDR platform and related telemetry systems.
Build metrics collectors using Python to ingest REST API data into monitoring platforms.
Integrate metrics into Prometheus, InfluxDB, or similar time series databases.
Configure Telegraf pipelines for data collection, parsing, tagging, and forwarding.
Develop dashboards and visualizations in Grafana for real time and historical performance analysis.
Establish SLIs/SLOs related to NDR reliability, sensor uptime, ingest freshness, and data pipeline availability.
Automation & API Integration
Develop Python automation scripts to standardize health checks, data validation, and system reporting.
Integrate with SIEM, and packet broker APIs to extract key operational metrics.
Build custom Prometheus exporters or collectors when native solutions are not available.
Automate repetitive tasks such as sensor status checks, alert validation, and data integrity verification.
Documentation & Knowledge Transfer
Create and maintain runbooks, playbooks, architecture diagrams, and troubleshooting guides.
Produce regular reports on platform status, performance, alert trends, and risk areas.
Train SOC, IR, and engineering teams on dashboards, alerting workflows, and monitoring best practices.
Stakeholder Coordination
Work closely with Security Operations to improve triage precision and reduce alert noise.
Partner with the Incident Response team to enhance detection and correlation capabilities.
Coordinate with Network Engineering to resolve sensor visibility or traffic path issues.
Collaborate with platform owners to support upgrades, tuning cycles, and architectural enhancements.
Required Qualifications
5+ years in security operations, NDR, network engineering, or observability engineering.
Hands-on experience with Corelight, Endace, cpacket, Zeek, Suricata, or related NDR technologies.
Strong Python development skills, especially for API integrations and automation.
Experience with monitoring and visualization platforms (Grafana, Prometheus, InfluxDB, Telegraf).
Solid understanding of network traffic, packet capture, and troubleshooting.
Ability to create dashboards, alerts, and metrics pipelines for large-scale environments.
Experience supporting security operations teams or incident response workflows.
Preferred Qualifications
Experience developing custom Prometheus exporters (Python/Go).
Prior exposure to Corelight APIs and Zeek script customization.
Familiarity with Docker, Kubernetes, or containerized exporters.
Experience with SIEM platforms and log ingestion pipelines.
Exposure to data engineering platforms (Kafka, Elasticsearch, Loki).
Knowledge of MITRE ATT&CK and NDR detection engineering.
Required AI Skills:
- All contractor resources are expected to demonstrate baseline proficiency in enterprise-approved AI tools as part of their day-to-day responsibilities.
This includes, but is not limited to:
-Consistent Use: Maintain a minimum of 90% weekly usage of AI tools such as GitHub Copilot, Microsoft 365 Copilot, and other GenAI platforms approved by the enterprise.
-Applied Productivity: Leverage AI tools to enhance coding, documentation, data analysis, and decision-making workflows.
-Continuous Learning: Stay current with evolving AI capabilities and features, and apply them to improve delivery quality and velocity.
About W3Global
Sourced by ZipRecruiter
W3Global has been delivering staffing solutions for nearly two decades; we know which recruiting strategies work best. Our expert team is committed to developing a customized solution to fit your company’s unique needs. As a W3Global client, you’ll also receive personalized assistance from a seasoned team of staffing specialists. We are committed to providing both technical support and industry expertise to simplify the hiring process. We know that your time matters. W3Global will help you streamline the hiring process, getting it done and getting it right.
Industry
Recruiting and staffing services
Company size
501 - 1,000 Employees
Headquarters location
Frisco, TX, US
Year founded
2006