Regions Financial Logo

Regions Financial

Cyber Security Incident and Event Management/Elastic Specialist

Posted 3 Months Ago
Be an Early Applicant
Remote
Hiring Remotely in DC
Mid level
Remote
Hiring Remotely in DC
Mid level
The SIEM/Elastic Specialist is responsible for data ingestion, monitoring cybersecurity threats, optimizing Elastic performance, and collaborating with cross-functional teams.
The summary above was generated by AI
US CITIZEN ONLY. SECRET CLEARANCE REQUIRED.  MUST HAVE IT-II CERT (IE SECURITY+)
SIEM/Elastic Specialist will:
    • Be responsible for designing & setting up the ingestion of various customer data flows to include pre-processing data into a useable format, ensuring proper parsing and indexing
    • Collaborate with cross-functional teams and responsible for designing & integrating Elastic with a wide variety of data sources and developing associated knowledge objects such as queries, dashboards, reports, alerts for monitoring and analytics
    • Perform data transformation using Elastic query language 
    • Track the health of the Elastic environment and optimize its performance. Troubleshoot and resolve issues related to security, performance, data indexing, and searches
    • Perform watch-officer monitoring duties, including:
        ○ monitoring, detecting, investigating, and responding to cybersecurity threats and events using Elastic /SIEM Platform
        ○ Reviewing correlated alerts and logs for compromise scenarios
        ○ Performing triage of security alerts to prioritize response
        ○ Identifying false positives
        ○ Investigating security incidents and determining root cause
        ○ Collecting and preserving logs for analysis
        ○ Escalating confirmed incidents to leadership or SOC teams
        ○ Coordinating with IT or DevOps for containment and remediation
        ○ Creating after-action reports (AAR) post-incident
    • In addition, the role may include assistance with monitoring Vulnerability Management tools, such as ACAS and ePO.
QUALIFICATIONS:
• Have at least three years of working knowledge and hands-on experience with Elastic/Splunk query languages, monitoring SIEM dashboards and real-time alerts, fine-tuning SIEM rules to reduce noise, and NIST 800-53 & DevSecOps frameworks
 

Top Skills

Elastic
Nist 800-53
Security+
SIEM

Similar Jobs at Regions Financial

3 Months Ago
Remote
DC, USA
Senior level
Senior level
Fintech
Lead the design and implementation of security architecture for software applications, focusing on User Authentication, Provisioning, and Segregation of Duties. Oversee a team, report progress, and align security measures with project goals.
Top Skills: AppianGrcNextlabsSailpoint IgaSap IbpSap S/4HanaSecurity+ Certification
3 Months Ago
Remote
DC, USA
Expert/Leader
Expert/Leader
Fintech
Responsible for providing expertise in SAP Defense and Security Module and leading SAP S/4 HANA implementation projects for defense and security organizations.
Top Skills: SAPSap S/4 Hana
3 Months Ago
Remote
United States
Senior level
Senior level
Fintech
The LAN Lead oversees network development from inception to completion, coordinating with vendors and user representatives to ensure satisfaction and solutions.
Top Skills: A+ CeCcna-SecurityCndLanNetwork+ CeSscp

What you need to know about the Charlotte Tech Scene

Ranked among the hottest tech cities in 2024 by CompTIA, Charlotte is quickly cementing its place as a major U.S. tech hub. Home to more than 90,000 tech workers, the city’s ecosystem is primed for continued growth, fueled by billions in annual funding from heavyweights like Microsoft and RevTech Labs, which has created thousands of fintech jobs and made the city a go-to for tech pros looking for their next big opportunity.

Key Facts About Charlotte Tech

  • Number of Tech Workers: 90,859; 6.5% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Lowe’s, Bank of America, TIAA, Microsoft, Honeywell
  • Key Industries: Fintech, artificial intelligence, cybersecurity, cloud computing, e-commerce
  • Funding Landscape: $3.1 billion in venture capital funding in 2024 (CED)
  • Notable Investors: Microsoft, Google, Falfurrias Management Partners, RevTech Labs Foundation
  • Research Centers and Universities: University of North Carolina at Charlotte, Northeastern University, North Carolina Research Campus

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account