×
Register Here to Apply for Jobs or Post Jobs. X

Elastic Security Engineer; SIEM

Job in Sierra Vista, Cochise County, Arizona, 85635, USA
Listing for: SERVISS LLC
Full Time position
Listed on 2026-07-26
Job specializations:
  • IT/Tech
    Cybersecurity, Systems Engineer, Cloud Computing: Infrastructure & Operations
Salary/Wage Range or Industry Benchmark: 130000 - 190000 USD Yearly USD 130000.00 190000.00 YEAR
Job Description & How to Apply Below
Position: Elastic Security Engineer (SIEM)

Elastic Security Engineer (SIEM)

Location:

Sierra Vista, AZ / Remote

Employment Type:

Full-Time

About SERVISS

At SERVISS, we deliver cutting‑edge cybersecurity and IT solutions to government and commercial clients, with a mission to secure systems, data, and critical infrastructure through innovation and expertise. We don’t just deploy tools; we engineer mission platforms that become foundational systems of record for cyber operations, compliance automation, and national cyber readiness. From CISA CDM to DoW mission enclaves, our work shapes how government sees, governs, and defends its digital terrain.

As a provider of managed cybersecurity services, SERVISS delivers a highly tailored offering to each customer. Our mission is broad and our teams are agile; we look to your unique skills to approach and solve problems in your own way, whether engineering a system to clear a technical hurdle, protecting customer data, or consulting across a wide range of security topics.

You are empowered to engage and lead across multiple groups.

Position Summary

SERVISS is seeking an Elastic Security Engineer to support a Federal DoD SIEM program. This is a technical, hands‑on role in which you will work within a multi‑disciplined team to design, build, secure, maintain, optimize, and document multiple Elastic Stack enterprise solutions (Elasticsearch, Logstash, Kibana, Beats, Machine Learning, and SIEM) deployed globally in a Federal DoD environment, with automation support using Ansible.

You will perform continuous data‑normalization functions and support the delivery of written technical deliverables such as SOPs and process workflows to optimize tool usage and contribute to new capabilities. Your infrastructure, data pipelines, and reporting automation will directly support internal engineering personnel and external customer requirements.

The Work

This is a hands‑on engineering role. The selected candidate will:

  • Design, build, secure, maintain, optimize, and document multiple Elastic Stack enterprise solutions (Elasticsearch, Logstash, Kibana, Beats, Machine Learning, and SIEM) deployed globally in a Federal DoD environment
  • Automate deployment and configuration using Ansible playbooks
  • Perform continuous data‑normalization functions across diverse data sources
  • Build data pipelines and reporting automation that directly support internal engineering personnel and external customer requirements
  • Author written technical deliverables such as SOPs and process workflows to optimize tool usage and contribute to new capabilities
Key Responsibilities
  • Support a Federal DoD SIEM program as part of a multi‑disciplined engineering team
  • Maintain, optimize, and secure enterprise Elastic Stack solutions deployed globally
  • Contribute to new capabilities and the continuous improvement of tool usage
  • Engage and collaborate across engineering teams and customer stakeholders
Required Qualifications
  • Active Top Secret security clearance
  • US citizenship
  • Compliance with DoD 8140 / 8570 IAT Level II certification prior to start date
  • At least 4 years of hands‑on experience in deployment, configuration, and solution development using the Elastic Stack for security and logging use cases (Elastic SIEM experience a plus)
  • Demonstrated experience with the full Elastic Stack:
    Elasticsearch, Logstash, Kibana, Beats, Machine Learning, and REST API integration
  • Demonstrated ability to use Ansible playbooks
Preferred Qualifications
  • Experience integrating Elasticsearch with external systems (e.g., SOAR tools, threat intelligence platforms)
  • Experience with data management: hot/warm/cold architectures, shard allocation and re‑allocation, snapshots and restoration
  • Strong experience evaluating existing Elastic clusters, configuration parameters, indexing, search and query performance tuning, security, and cluster administration
  • Experience integrating Elasticsearch with authentication mechanisms such as SAML, LDAP, and PKI
  • Experience supporting the Elastic Stack in on‑prem and SaaS environments, including system monitoring and tuning
  • Experience securing the Elastic Stack and hardening hosting environments
  • Development experience in multiple languages (Python, Bash, Power Shell,…
To View & Apply for jobs on this site that accept applications from your location or country, tap the button below to make a Search.
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).
 
 
 
Search for further Jobs Here:
(Try combinations for better Results! Or enter less keywords for broader Results)
Location
Increase/decrease your Search Radius (miles)
0
200
Filters
Education Level
Experience Level (years)
Posted in last:
Salary