LaunchTech ยท 8 hours ago
Senior Elastic Engineer (EDR/Defend Focus)
LaunchTech is seeking a Senior Elastic Engineer (EDR/Defend Focus) to support the Missile Defense Agency (MDA). This role is critical in designing, deploying, and optimizing the Elastic Stack environment with a specialized focus on Elastic EDR and Defend capabilities, helping to strengthen cybersecurity posture across the enterprise.
CRMInformation Technology
Responsibilities
Be a key contributor to the design, implementation, and maintenance of the Elastic Stack environment, with a primary focus on Elastic EDR and Defend
Ensure the security, scalability, and performance of the Elastic Stack infrastructure, integrating it with existing security tools and workflows
Architect, deploy, and maintain a highly available and scalable Elastic Stack environment specializing in Elastic EDR/Defend
Configure and optimize Elastic EDR/Defend policies and data pipelines for threat detection, prevention, and security event enrichment
Develop and maintain Kibana dashboards and visualizations for real-time monitoring, threat identification, and incident response tracking
Perform proactive threat hunting and in-depth security analysis using Elastic EDR/Defend
Troubleshoot complex Elastic Stack issues, develop documentation, and mentor junior engineers to ensure operational excellence
Qualification
Required
Active Secret Clearance (or higher)
10, or more, years of general (full-time) work experience
5, or more, years of experience working with the Elastic Stack (Elasticsearch, Logstash, Kibana)
3, or more, years of experience implementing and managing Elastic EDR and Defend solutions
2, or more, years of experience in a lead or senior role mentoring and guiding team members
1, or more, years of experience working in a management or leadership role
Strong understanding of security principles, threat detection, and incident response
Experience with data ingestion, processing, and enrichment techniques
Proficient in at least one scripting language (Python, Bash, PowerShell)
Current DoD 8570.01-M IAT Level II certification with Continuing Education (CE) (CCNA-Security, CySA+, GICSP, GSEC, Security+ CE, CND, SSCP)
Active DoD Secret Security Clearance
Able to obtain an active DoD Top Secret Security Clearance
Preferred
Experience with Linux and Windows Server administration
Experience with containerization technologies (Docker, Kubernetes)
Experience with automation tools (Ansible, Puppet, Chef)
Experience with cloud platforms (AWS, Azure, GCP)
Experience with SIEM technologies and security event management
Experience with security frameworks and compliance standards (NIST, FedRAMP)
Strong understanding of network protocols and security concepts
Experience with threat intelligence platforms and data feeds
One or more relevant security certifications (CISSP, CISM, CEH)
Experience tuning and optimizing Elastic EDR and Defend
Benefits
Medical, Dental, and Vision coverage
401(k) with company match
Paid Time Off (PTO)
Opportunities to make a meaningful impact while advancing your career
And more
Company
LaunchTech
Information Assurance and Cybersecurity, IT Modernization and Support
Funding
Current Stage
Early StageCompany data provided by crunchbase