Elastic Engineer - Security

THE JUDGE GROUP, INC.
Lampeter, PA, United States
25 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Experience level
Experienced
Experience required
3 years minimum
Compensation
$176,800.0 - $187,200.0
Working hours
Regular working hours
Job source

Tech stack

Java (Programming Language) Artificial Intelligence Microsoft Azure Cloud Computing Security Cyber Security Computer Programming Intrusion Detection and Prevention Python (Programming Language) Machine Learning Windows PowerShell Security Information and Event Management Software Engineering
+8 more
Cloud Platform System Mitre Att&ck Software Troubleshooting Cyber Threat Analysis Cybercrime Data Pipelines Security Orchestration, Automation & Response Golang

Job description

We are seeking a Software Engineer, Cybersecurity with strong experience in Elastic Security and/or Elastic Observability to help design, implement, and optimize enterprise security monitoring and detection capabilities. This role will focus on building scalable security solutions, enhancing SIEM operations, developing detection content, and leveraging advanced analytics and machine learning to identify and respond to cyber threats.

The ideal candidate has a blend of software engineering, cloud security, and cybersecurity expertise, with hands-on experience deploying and managing Elastic-based security solutions. Responsibilities

  • Design, develop, and maintain security monitoring solutions within the Elastic platform.
  • Build and optimize data ingestion pipelines for logs, events, and telemetry from multiple sources.
  • Develop dashboards, visualizations, and reporting capabilities to support security operations.
  • Create, tune, and maintain detection rules, alerts, and automated response workflows.
  • Implement and enhance machine learning and anomaly detection capabilities.
  • Configure and manage Elastic Agents and Fleet deployments.
  • Integrate security tools and third-party technologies using actions and outbound connectors.
  • Leverage Elastic AI capabilities, including Attack Discovery and AI Assistants, to improve threat detection and investigations.
  • Support Cross-Cluster Search implementations for enterprise-scale visibility.
  • Collaborate with security operations, threat intelligence, and engineering teams to improve detection coverage.
  • Align detection strategies with the MITRE ATT&CK framework.
  • Contribute to automation and software engineering initiatives that enhance security operations.

Requirements

  • 3-7+ years of software engineering experience.
  • Hands-on experience with Elastic Security or Elastic Observability.
  • Strong SIEM experience, preferably within Elastic environments.
  • Experience with:
  • Data source and log ingestion
  • Dashboards and visualizations
  • Detection rules and alerts
  • Machine learning and anomaly detection
  • Actions and outbound connectors
  • Experience deploying and managing:
  • Elastic Agent
  • Fleet
  • Cross-Cluster Search
  • Experience with Elastic AI capabilities, especially Attack Discovery.
  • Knowledge of cloud architectures and hyperscalers, particularly Microsoft Azure.
  • Cybersecurity background including:
  • Threat Intelligence
  • XDR/EDR technologies
  • MITRE ATT&CK framework
  • Strong troubleshooting, problem-solving, and collaboration skills., * Elastic Certified Engineer, Elastic Certified Analyst, or other Elastic certifications.
  • Security certifications such as Security+, CySA+, CISSP, GIAC, or equivalent.
  • Experience with security automation and orchestration.
  • Knowledge of scripting and programming languages such as Python, Java, Go, or PowerShell.
  • Experience supporting large-scale enterprise security monitoring environments.

What You’ll Bring

  • Passion for cybersecurity and threat detection.
  • Strong engineering mindset with a focus on automation and scalability.
  • Ability to work across security, cloud, and development teams.
  • Excellent communication and stakeholder management skills.
  • Continuous learning mindset focused on emerging threats and technologies.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.dice.com

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

1:38 min

Using language models to self-detect and flag software vulnerabilities

Julian Totzek-Hallhuber Julian Totzek-Hallhuber · WWC Europe 2026

4:34 min

Motivational categories behind modern cybercriminal activities

Mauro Verderosa · LIVE

1:08 min

Building solutions with open source GoLang infrastructure tools

Jad Wahab · LIVE

1:20 min

Identifying multi-disciplinary talent for developer experience engineering roles

Hazal Mestci +1 · Coffee With Developers

2:11 min

Securing heterogeneous legacy payment infrastructure against AI

Michele Zuccala Michele Zuccala +4 · WWC Europe 2026

3:22 min

Transitioning from software engineering to security roles

Anna Oliveira · Coffee With Developers

Videos

See all

Related articles

See all