Sr. Elastic Platform Engineer

Zachary Piper
Scott Air Force Base, United States of America
2 days ago

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Working hours
Regular working hours
Languages
English
Experience level
Senior
Compensation
$ 240K

Job location

Scott Air Force Base, United States of America

Tech stack

Amazon Web Services (AWS)
Amazon Web Services (AWS)
Application Lifecycle Management
Azure
Bash
Ubuntu (Operating System)
Cloud Computing
Cloud Engineering
Computer Security
Continuous Integration
Data Retention
Linux
Disaster Recovery
Distributed Systems
Elasticsearch
Github
Intrusion Detection and Prevention
JSON
Python
Log Analysis
Node.js
Performance Tuning
Query Optimization
Red Hat Enterprise Linux - RHEL
Logstash
Ansible
Security Log
Security Information and Event Management
Data Logging
Google Cloud Platform
Enterprise Software Applications
Data Ingestion
System Availability
Gitlab
GIT
SC Clearance
Containerization
Kubernetes
Infrastructure Automation Frameworks
Cybercrime
Kibana
REST
Terraform
Splunk
Data Pipelines
Devsecops
Docker
Jenkins
Microservices

Job description

Zachary Piper Solutions is seeking a Senior Elastic Engineer to support a fully funded, mission-critical government modernization initiative located at Scott Air Force Base, IL. This senior engineering role will serve as a key contributor in a large-scale migration from Splunk to Elastic, designing and implementing secure, scalable Elastic environments supporting enterprise security operations. The ideal candidate is a hands-on Elastic expert with deep Kubernetes knowledge who can independently architect, deploy, and troubleshoot complex Elastic solutions in a secure government environment. This role is fully on-site at Scott AFB in Illinois and requires an active Top Secret security clearance., * Design, deploy, and manage enterprise Elastic clusters supporting large-scale security logging and SIEM operations.

  • Lead the migration of security monitoring capabilities from Splunk to Elastic, ensuring a seamless transition and optimized platform performance.
  • Design and implement custom data ingestion pipelines tailored to enterprise security and operational requirements.
  • Configure and manage Index Lifecycle Management (ILM) policies to optimize data retention, storage, and performance.
  • Deploy, configure, and maintain Elastic Cloud on Kubernetes (ECK) environments using Kubernetes operators.
  • Troubleshoot and resolve complex Elastic, Kubernetes, and data ingestion issues across production environments.
  • Collaborate with engineering, cybersecurity, and infrastructure teams to develop secure, scalable Elastic architectures.
  • Continuously optimize Elastic environments to improve reliability, performance, scalability, and operational efficiency., Keywords: Elastic, Elastic Stack, Elasticsearch, Elastic Engineer, Elastic Search, Elastic Cloud, Elastic Cloud Enterprise, Elastic Cloud on Kubernetes, ECK, Kubernetes, Kubernetes Operators, K8s, Helm, Docker, Containerization, Microservices, Splunk, Splunk Migration, Splunk to Elastic, SIEM, Security Information and Event Management, Security Logging, Log Management, Log Analytics, Centralized Logging, Index Lifecycle Management, ILM, Index Templates, Ingest Pipelines, Data Pipelines, Data Ingestion, Logstash, Beats, Filebeat, Metricbeat, Winlogbeat, Auditbeat, Packetbeat, Elastic Agent, Fleet, Kibana, Kibana Dashboards, Kibana Visualizations, Elasticsearch Clusters, Cluster Administration, Cluster Scaling, Cluster Management, Node Management, Index Management, Search Performance, Query Optimization, Performance Tuning, High Availability, Disaster Recovery, Data Retention, Snapshot Management, Snapshot Lifecycle Management, SLM, Security Monitoring, Threat Detection, SOC, Security

Requirements

  • Strong hands-on experience engineering, deploying, and administering enterprise Elastic environments.
  • Experience designing and implementing custom Elastic data ingestion pipelines beyond standard out-of-the-box configurations.
  • Strong knowledge of Index Lifecycle Management (ILM), security log ingestion, and Elastic cluster administration.
  • Deep Kubernetes experience, including deploying and managing Elastic Cloud on Kubernetes (ECK) using Kubernetes operators.
  • Experience troubleshooting and optimizing complex Elastic deployments in enterprise production environments.
  • Ability to independently design, implement, and secure Elastic architectures supporting large-scale environments.
  • Active Top Secret security clearance (with TS/SCI eligibility)
  • Ability to work onsite five days per week in Scott Air Force Base, IL.
  • Preferred :
  • Experience leading or supporting migrations from Splunk to Elastic.
  • Experience supporting enterprise SIEM and security logging environments.
  • Experience supporting federal government or Department of Defense environments., Operations Center, Cybersecurity, Threat Hunting, Security Analytics, Detection Engineering, SIEM Engineering, Security Engineering, Observability, Monitoring, Metrics, Logging, Distributed Systems, REST API, JSON, Linux, Red Hat, RHEL, Ubuntu, Bash, Python, Automation, Infrastructure as Code, Terraform, Ansible, Git, GitHub, GitLab, CI/CD, Jenkins, DevSecOps, Cloud Infrastructure, AWS, Azure, GCP, Cloud Native, Production Support, Enterprise Architecture, Enterprise Logging, Troubleshooting, Root Cause Analysis, Performance Optimization, Capacity Planning, Scalability, Enterprise Systems, Government, Federal, DoD, Department of Defense, Secret Clearance, TS, Top Secret, Mission Critical, Scott Air Force Base.

Benefits & conditions

  • Salary Range: $190,000 - $240,000 depending on experience
  • Comprehensive Benefits: Medical, Dental, Vision, 401k Plan, PTO, Holidays, Sick Leave if required by law

Apply for this position