ECS Logo

ECS

Sr. EDR Specialist

Posted 16 Days Ago
Be an Early Applicant
In-Office
Colorado Springs, CO
120K-160K Annually
Senior level
In-Office
Colorado Springs, CO
120K-160K Annually
Senior level
The Sr. EDR Specialist will manage Elastic SIEM, analyze threats, develop detection strategies, and communicate findings effectively. Requires strong cybersecurity expertise and analytical skills.
The summary above was generated by AI
Job Summary & Responsibilities

ECS is seeking a Sr Elastic EDR Specialist to work in our Colorado Springs, CO office.  Please Note: This position is contingent upon contract award.

 

As a leading managed cybersecurity services provider, ECS delivers a highly tailored and customized offering to each customer. The Professional Services Team is responsible for working with our customers to understand their needs and delivering a complete solution. We will leverage your unique skills to help solve customers’ challenges, such as engineering a system to address a technical hurdle, protecting customer data, or consulting on a wide range security topics. You are empowered to engage and lead across multiple groups and must have the self-sufficiency and focus to work well without constant oversight.

 

This role requires a blend of technical proficiency with Elastic SIEM, cybersecurity principles, and strong analytical capabilities to effectively protect against and respond to cyber threats. The candidate should also possess excellent interpersonal skills to communicate complex security issues to a broad audience effectively.

Responsibilities:

  • Network Monitoring and Intrusion Detection: Perform analysis using various defense tools, including IDS/IPS, firewalls, and host-based security systems.
  • SIEM Management: Utilize Elastic SIEM to correlate events and identify indicators of threats, creating actionable intelligence.
  • Threat Research: Investigate emerging threats and vulnerabilities to enhance incident identification processes.
  • Threat Detection: Implement both log-based and endpoint-based detection strategies to identify and mitigate threats from multiple sources.
  • Content Development: Develop and customize SIEM content such as machine learning rules, signatures, and dashboards according to customer requirements.
  • Activity Correlation: Correlate data across network, cloud, and endpoints to identify attacks and unauthorized actions.
  • Alert Management: Review and respond to alerts from SIEM and other sensors; document incidents in formal, technical reports.
  • Phishing Analysis: Analyze phishing email submissions to determine threat levels and appropriate responses.
  • Incident Response Support: Provide effective incident response and mitigation strategies to contain and rectify breaches.
  • Threat Intelligence Integration: Collaborate with threat intelligence and threat-hunting teams to maintain up-to-date knowledge of threat landscapes.
  • Tool Evaluation: Assist in assessing new security tools and analytical techniques for integration into managed security services.
  • Breach Investigation: Support both large-scale and smaller-scale cyber breach investigations.
  • Stakeholder Communication: Effectively communicate cyber events and findings to both internal and external stakeholders.

Salary Range: $120,000 - $160,000

General Description of Benefits

Preferred Qualifications
  • 4+ years of cyber experience
  • Deep Knowledge of Elastic SIEM: Proficient in using Elastic SIEM for monitoring, threat detection, and response. Experience with using Kibana, Logstash, Ingest Pipelines, Enterprise Search or Observability preferred.
  • Elastic Defend/EDR Expertise: Strong hands-on experience deploying, tuning, and managing Elastic Defend for endpoint detection and response, including creating detection rules, managing agents, and analyzing endpoint telemetry for threat hunting and incident response.
  • Cybersecurity Expertise: Strong understanding of network protocols, encryption, and vulnerabilities.
  • Analytical Skills: Ability to analyze complex data from various sources to deduce patterns and detect anomalies.
  • Programming/Scripting: Familiarity with scripting languages like Python or PowerShell to automate tasks and manipulate data.
  • Content Creation: Experience in creating and tuning SIEM rules, signatures, and dashboards.
  • Communication Skills: Excellent written and verbal communication skills for reporting and stakeholder engagement.
  • Problem-Solving: Strong problem-solving skills with the ability to work under pressure in a fast-paced environment.
  • Able and willing to support domestic or international on-site travel with customers or at ECS offices. Any travel will be short in duration and well-planned.
  • Possess and maintain a U.S. Passport
  • Must have a Secret clearance, at minimum

Top Skills

Elastic Siem
Kibana
Logstash
Powershell
Python

ECS Colorado Springs, Colorado, USA Office

2310 Executive Circle, Colorado Springs, CO, United States, 80906

Similar Jobs

Yesterday
Hybrid
5 Locations
230K-281K Annually
Expert/Leader
230K-281K Annually
Expert/Leader
Cloud • Information Technology • Security • Software • Cybersecurity
Lead high-impact initiatives for a product platform, architecting security systems, mentoring engineers, and optimizing distributed infrastructures across teams.
Top Skills: GoPostgresPythonTypescript
Yesterday
In-Office or Remote
8 Locations
180K-230K Annually
Senior level
180K-230K Annually
Senior level
Software • Defense
As a Platform Engineer, you'll automate, secure, and scale Onebrief's platform, design and manage CI/CD pipelines, and uphold reliability and security across evolving environments.
Top Skills: AnsibleAWSAzureBashDatadogDockerElkGithub ActionsGitlab Ci/CdGoGCPGrafanaJenkinsKubernetesPrometheusPythonTerraform
Yesterday
In-Office
Louisville, CO, USA
114K-156K Annually
Mid level
114K-156K Annually
Mid level
Aerospace • Hardware • Information Technology • Robotics • Defense • Utilities
As a Planning Manager, you'll oversee production schedules and material requirements, ensuring timely ordering and movement of materials and parts.
Top Skills: Engineering PlanningEnterprise Resource Planning (Erp)Inventory ManagementManufacturingMaterials Requirements Planning (Mrp)

What you need to know about the Colorado Tech Scene

With a business-friendly climate and research universities like CU Boulder and Colorado State, Colorado has made a name for itself as a startup ecosystem. The state boasts a skilled workforce and high quality of life thanks to its affordable housing, vibrant cultural scene and unparalleled opportunities for outdoor recreation. Colorado is also home to the National Renewable Energy Laboratory, helping cement its status as a hub for renewable energy innovation.

Key Facts About Colorado Tech

  • Number of Tech Workers: 260,000; 8.5% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Lockheed Martin, Century Link, Comcast, BAE Systems, Level 3
  • Key Industries: Software, artificial intelligence, aerospace, e-commerce, fintech, healthtech
  • Funding Landscape: $4.9 billion in VC funding in 2024 (Pitchbook)
  • Notable Investors: Access Venture Partners, Ridgeline Ventures, Techstars, Blackhorn Ventures
  • Research Centers and Universities: Colorado School of Mines, University of Colorado Boulder, University of Denver, Colorado State University, Mesa Laboratory, Space Science Institute, National Center for Atmospheric Research, National Renewable Energy Laboratory, Gottlieb Institute

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account