





Tier-1 brand plus metro location and mid-level experience, but niche SIEM specialization moderates competition.
Specialized SIEM and Elastic Stack expertise makes candidacy less transferable across unrelated domains.
Explicit 6+ years and mandatory Elastic SIEM, detection, and SOAR integration skills increase filter strictness.
Login to See Your Match Score
Create a free account or log in to unlock your CV match score across:
Deploy, configure, and maintain Elastic Stack components including Elasticsearch, Logstash, Kibana, and Beats/Elastic Agent.
Administer Elastic Security (SIEM) focusing on detection rules, alerts, dashboards, and use cases aligned with the MITRE ATT&CK framework.
Ensure platform availability, performance optimization, cluster health management, and integration with SOAR tools, ticketing systems like ServiceNow/Jira, and external threat feeds.
6+ years of relevant work experience.
Strong hands-on experience with Elastic Stack (Elasticsearch, Logstash, Kibana, Beats/Elastic Agent).
Experience administering Elastic Security (SIEM) including detection rules and dashboards.
Not explicitly mentioned in the JD: specific degree requirements, notice period, or location constraints.
Experienced in managing large-scale Elastic Stack deployments with emphasis on security information and event management.
Skilled in log ingestion, parsing, enrichment, and normalization compliant with ECS.
Proficient in integrating Elastic SIEM with security automation/orchestration platforms and ITSM tools for streamlined threat monitoring and response.