user avatar

Elastic SIEM / ECK Engineer

CCS Global Tech

Posted today

Job Requirements

Quantico, VA
Top Secret Polygraph Unspecified
Career Level not specified
$180,000 - $230,000

Job Description

Position: Elastic SIEM / ECK Engineer
Location: Quantico VA
Duration: Period of Performance through November. Post November we will look to place the candidate on another project.
Clearance: Active TS
Salary: $180k-$230k

Job Description:
• Design, deploy, and modernize the customer's Elastic platform on AWS by migrating from Elastic Cloud Enterprise (ECE) to Elastic Cloud on Kubernetes (ECK).
• Build out production ready ECK clusters on AWS, including architecture, configuration, and baseline hardening.
• Migrate an existing Splunk SIEM environment (approximately 6 TB/day of data) to Elastic SIEM.
• Transition Splunk knowledge objects, including:

* 375 detection rules
* 470+ dashboards
* 7 SOAR automations
• Configure and validate data ingestion pipelines, normalization, and Elastic Common Schema (ECS) field mappings.
• Implement, tune, and validate detection rules to ensure parity and improved signal quality post migration.
• Integrate SIEM workflows and automation to support security operations and response use cases.
• Implement Elastic Observability for the DISS application, including:
* Application Performance Monitoring (APM)
* Distributed tracing and performance visibility
• Execute production cutover from legacy platforms to Elastic, ensuring continuity of operations.
• Perform end to end validation of data ingestion, detections, dashboards, workflows, automations, and observability telemetry.
• Provide post cutover stabilization and validation support.
group id: 10290999
Find CCS Global Tech on Social Media
Network Employers
user avatar
About Us
CCS Global Tech connects cleared professionals, including veterans and transitioning service members to high-impact federal missions. With 28+ years supporting government IT, we place pre-vetted talent in IT, cybersecurity, engineering, AI, cloud, and data roles across major federal programs. Our network of 100K+ cleared candidates and 50+ specialized recruiters enables fast, reliable placement for TS/SCI, CI Poly, and Full Scope Poly roles in Defense, Intelligence, DHS, civilian agencies, and critical infrastructure. Through CCS Learning Academy, we provide DoD 8570-aligned training and job-ready preparation. Candidates trust us for our speed, clarity, and commitment to helping them grow and make an impact. Learn more: https://ccsglobaltech.com/about/

CCS Global Tech Jobs


Clearance Level
Top Secret