Today
Secret
Unspecified
Unspecified
IT - Security
Remote/Hybrid• (Off-Site/Hybrid)
**Federal Project - Applicant must be a United States Citizen with Active Secret Clearance**
Baer is looking for SIEM Cyber Security Specialist for a 6+ month Federal remote project.
Title: SIEM Cyber Security Specialist
Location: Remote with occasional travel to Kingstowne, VA
Duration: 6 months with possible extension
Rate: Hourly Plus Expenses Reimbursed
Alignment: W2 or C2C
Description:
Requirements:
Company Overview:
Baer provides best-in-class engagement experiences for our consultants. Our job requirements are carefully vetted and are typically associated with pivotal programs offering tremendous opportunities to expand your skills leveraging the latest solutions.
Baer is an equal opportunity employer including disability/veteran.
ALL OPEN JOBS
#IND1
refMONa
Baer is looking for SIEM Cyber Security Specialist for a 6+ month Federal remote project.
Title: SIEM Cyber Security Specialist
Location: Remote with occasional travel to Kingstowne, VA
Duration: 6 months with possible extension
Rate: Hourly Plus Expenses Reimbursed
Alignment: W2 or C2C
Description:
- Design and configure ingestion pipelines for various data sources, ensuring accurate parsing, normalization, and indexing.
- Integrate Elastic / SIEM with multiple systems and data sources to support security monitoring and analytics.
- Develop and maintain queries, dashboards, alerts, and reports using Elastic Query Language (EQL).
- Monitor the health and performance of the Elastic environment; troubleshoot performance, indexing, and search issues.
- Perform cyber threat monitoring and incident response activities, including:
- Detecting, investigating, and responding to security threats and anomalies.
- Reviewing correlated alerts and logs for signs of compromise.
- Triaging alerts, identifying false positives, and prioritizing responses.
- Investigating incidents to determine root cause and scope of impact.
- Coordinating containment and remediation with IT or DevOps teams.
- Producing After-Action Reports (AARs) post-incident
- Support vulnerability management monitoring through tools such as ACAS and ePO as needed.
Requirements:
- 3+ years of hands-on experience with Elastic (ELK Stack), Splunk, or similar SIEM platforms.
- Strong proficiency in query development, dashboard creation, and alert tuning to reduce false positives.
- Experience in SIEM integration, data ingestion, and log analysis.
- Familiarity with NIST 800-53 and DevSecOps security frameworks.
- Strong analytical, troubleshooting, and incident response skills.
- Excellent communication and teamwork abilities in cross-functional environments.
- Experience in Department of Defense (DoD) or Federal cybersecurity environments.
- Certifications such as Elastic Certified Engineer, Splunk Certified Power User, Security+, or CEH.
Company Overview:
Baer provides best-in-class engagement experiences for our consultants. Our job requirements are carefully vetted and are typically associated with pivotal programs offering tremendous opportunities to expand your skills leveraging the latest solutions.
Baer is an equal opportunity employer including disability/veteran.
ALL OPEN JOBS
#IND1
refMONa
group id: baerga