> Markdown version of [/jobs/ext/1885048-sr-elastic-platform-engineer](https://www.wearedevelopers.com/jobs/ext/1885048-sr-elastic-platform-engineer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Sr. Elastic Platform Engineer - **Company:** Zachary Piper - **Location:** Scott Air Force Base, IL, United States - **Experience:** Expert - **Salary:** $190,000.0 - $240,000.0 - **Contract:** Permanent contract - **Skills:** Amazon Web Services, Amazon Elastic Compute Cloud, Application Lifecycle Management, Microsoft Azure, Bash Shell, Ubuntu (Operating System), Cloud Computing, Cloud Engineering, Cyber Security, Continuous Integration, Data Retention, Linux, Disaster Recovery, Distributed Systems, Elasticsearch, Github, Intrusion Detection and Prevention, JSON, Python (Programming Language), Log Analysis, Node.Js, Performance Tuning, Query Optimization, Red Hat Enterprise Linux, Logstash, Ansible, Security Log, Security Information and Event Management, Data Logging, Google Cloud, Enterprise Software Applications, Data Ingestion, System Availability, Gitlab, Git, SC Clearance, Containerization, Kubernetes, Infrastructure Automation Frameworks, Cybercrime, Kibana, Restful APIs, Terraform, Splunk, Data Pipelines, Devsecops, Docker, Jenkins, Microservices - **Published:** August 1, 2026 - **Apply:** https://www.clearancejobs.com/jobs/9071765/sr-elastic-platform-engineer ## About the Role * Strong hands-on experience engineering, deploying, and administering enterprise Elastic environments. * Experience designing and implementing custom Elastic data ingestion pipelines beyond standard out-of-the-box configurations. * Strong knowledge of Index Lifecycle Management (ILM), security log ingestion, and Elastic cluster administration. * Deep Kubernetes experience, including deploying and managing Elastic Cloud on Kubernetes (ECK) using Kubernetes operators. * Experience troubleshooting and optimizing complex Elastic deployments in enterprise production environments. * Ability to independently design, implement, and secure Elastic architectures supporting large-scale environments. * Active Top Secret security clearance (with TS/SCI eligibility) * Ability to work onsite five days per week in Scott Air Force Base, IL. * Preferred : + Experience leading or supporting migrations from Splunk to Elastic. + Experience supporting enterprise SIEM and security logging environments. + Experience supporting federal government or Department of Defense environments., Operations Center, Cybersecurity, Threat Hunting, Security Analytics, Detection Engineering, SIEM Engineering, Security Engineering, Observability, Monitoring, Metrics, Logging, Distributed Systems, REST API, JSON, Linux, Red Hat, RHEL, Ubuntu, Bash, Python, Automation, Infrastructure as Code, Terraform, Ansible, Git, GitHub, GitLab, CI/CD, Jenkins, DevSecOps, Cloud Infrastructure, AWS, Azure, GCP, Cloud Native, Production Support, Enterprise Architecture, Enterprise Logging, Troubleshooting, Root Cause Analysis, Performance Optimization, Capacity Planning, Scalability, Enterprise Systems, Government, Federal, DoD, Department of Defense, Secret Clearance, TS, Top Secret, Mission Critical, Scott Air Force Base. ## Description Zachary Piper Solutions is seeking a Senior Elastic Engineer to support a fully funded, mission-critical government modernization initiative located at Scott Air Force Base, IL. This senior engineering role will serve as a key contributor in a large-scale migration from Splunk to Elastic, designing and implementing secure, scalable Elastic environments supporting enterprise security operations. The ideal candidate is a hands-on Elastic expert with deep Kubernetes knowledge who can independently architect, deploy, and troubleshoot complex Elastic solutions in a secure government environment. This role is fully on-site at Scott AFB in Illinois and requires an active Top Secret security clearance., * Design, deploy, and manage enterprise Elastic clusters supporting large-scale security logging and SIEM operations. * Lead the migration of security monitoring capabilities from Splunk to Elastic, ensuring a seamless transition and optimized platform performance. * Design and implement custom data ingestion pipelines tailored to enterprise security and operational requirements. * Configure and manage Index Lifecycle Management (ILM) policies to optimize data retention, storage, and performance. * Deploy, configure, and maintain Elastic Cloud on Kubernetes (ECK) environments using Kubernetes operators. * Troubleshoot and resolve complex Elastic, Kubernetes, and data ingestion issues across production environments. * Collaborate with engineering, cybersecurity, and infrastructure teams to develop secure, scalable Elastic architectures. * Continuously optimize Elastic environments to improve reliability, performance, scalability, and operational efficiency., Keywords: Elastic, Elastic Stack, Elasticsearch, Elastic Engineer, Elastic Search, Elastic Cloud, Elastic Cloud Enterprise, Elastic Cloud on Kubernetes, ECK, Kubernetes, Kubernetes Operators, K8s, Helm, Docker, Containerization, Microservices, Splunk, Splunk Migration, Splunk to Elastic, SIEM, Security Information and Event Management, Security Logging, Log Management, Log Analytics, Centralized Logging, Index Lifecycle Management, ILM, Index Templates, Ingest Pipelines, Data Pipelines, Data Ingestion, Logstash, Beats, Filebeat, Metricbeat, Winlogbeat, Auditbeat, Packetbeat, Elastic Agent, Fleet, Kibana, Kibana Dashboards, Kibana Visualizations, Elasticsearch Clusters, Cluster Administration, Cluster Scaling, Cluster Management, Node Management, Index Management, Search Performance, Query Optimization, Performance Tuning, High Availability, Disaster Recovery, Data Retention, Snapshot Management, Snapshot Lifecycle Management, SLM, Security Monitoring, Threat Detection, SOC, Security ## Related Videos - [How a Small Team Shrank a Microsoft Monorepo by 94%](https://www.wearedevelopers.com/videos/1236-how-a-small-team-shrank-a-microsoft-monorepo-by-94) - [Tips and Tricks for Working with JSON](https://www.wearedevelopers.com/videos/1229-tips-and-tricks-for-working-with-json) - [Docker network without Docker](https://www.wearedevelopers.com/videos/1418-docker-network-without-docker) - [How I saved 200K/yr in direct costs writing 0 code lines in K8s](https://www.wearedevelopers.com/videos/1055-how-i-saved-200k-yr-in-direct-costs-writing-0-code-lines-in-k8s) - [Git for Code Reviews](https://www.wearedevelopers.com/videos/429-git-for-code-reviews) - [Add Location-based Searching to Site with ElasticSearch](https://www.wearedevelopers.com/videos/77-add-location-based-searching-to-site-with-elasticsearch) ## Related Articles - [Highest Paying Tech Companies for Developers](https://www.wearedevelopers.com/magazine/220-highest-paying-tech-companies-for-developers) - [The Best X (Twitter) Accounts for Developers](https://www.wearedevelopers.com/magazine/294-the-best-x-twitter-accounts-for-developers) - [The Best Software Developer Blogs to Read](https://www.wearedevelopers.com/magazine/156-the-best-software-developer-blogs-to-read) - [DevOps Engineer Salary [2023]](https://www.wearedevelopers.com/magazine/203-devops-engineer-salary-2023) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [Dev Digest 162: AI careers, MCP, AWS best practices & floppy sweaters](https://www.wearedevelopers.com/magazine/571-dev-digest-162-ai-careers-mcp-aws-best-practices-floppy-sweaters)