Job Summary:
Booz Allen Hamilton is seeking a Consolidated Data Analytics Platform Elastic Engineer to build high-performing systems using Elastic. The role involves aggregating logs, creating visualizations, and maintaining infrastructure to identify and address potential issues.
Responsibilities:
• Work with clients and peers to build a high performing system using Elastic to aggregate logs from many systems into a single common schema.
• Use Elastic Common Schema (ECS) formatted fields, create quality visualizations and alerts that analyst can use for threat hunting, maintain infrastructure, and identify problems or anomalous behavior before they become a larger issue and can be actioned on.
• Work with the vendor to determine best practices for deployment and maintenance of system architecture and deploy within designated security requirements.
Qualifications:
Required:
• 2+ years of experience with Elastic Stack, such as Elasticsearch, Logstash, and Kibana tools, including installing, configuring, maintaining, upgrading, and troubleshooting these products
• 2+ years of experience building high-quality Kibana visualizations and dashboards
• Experience with log pipelines and interpreting logs to determine information, including converting raw logs into ECS formatted documents
• Experience with Logstash plugins, filters, regular expressions, and grok patterns
• Knowledge of cryptography protocols and standards, including TLS, mTLS, hashing algorithms, and Public Key Infrastructure (PKI)
• Knowledge of federal compliance standards, including NIST 800-53, FIPS, STIG, and FedRAMP
• Secret clearance
• HS diploma or GED
Preferred:
• Experience working with Docker, Kubernetes, and cloud containerization solutions, such as Elastic Cloud on Kubernetes (ECK)
• Experience with NiFi, Kafka, and Confluent
• Experience with Office 365 applications and Teams collaboration
• Experience interacting with tools through RDP, web-based UI, SSH, and CLI
• Experience in DoW, Intelligence Community, or other regulated environments
• Knowledge of Elastic Index Lifecycle Management (ILM)
• Knowledge of Linux or UNIX environments, including navigating and troubleshooting basic OS issues
• Knowledge of networking protocols
• Knowledge of how various systems interact with each other
• Knowledge of Zero Trust Architecture (ZTA) principles
Company:
Booz Allen Hamilton is a consulting firm that specializes in analytics, technology, and engineering. Founded in 1914, the company is headquartered in Mclean, USA, with a team of 10001+ employees. The company is currently Late Stage.