Enterprise Logging Solution (ELS) Engineer (Mid)
Accenturefederalservices · Leesburg, VA
About this role
**Enterprise Logging Solution (ELS) Engineer (Mid)** **About the role** The Enterprise Logging Solution (ELS)/SIEM Engineer supports centralized security monitoring and audit/reporting capabilities. This senior-level role involves analyzing, developing, and testing ELS/SIEM enhancements, integrating streaming-ingestion architecture into cloud and on-prem environments, onboarding new systems, creating dashboards for stakeholders, and maintaining a Master Project Schedule. Responsibilities include tuning correlation rules, maintaining whitelists/blacklists, and integrating ML/AI capabilities. **TS/SCI clearance is required**. **What you’ll do** - Analyze, develop, and test proposed ELS/SIEM enhancements using vendor/industry best practices - Assess current capabilities against security/logging regulations and perform gap analyses - Migrate/implement ELS/SIEM architecture in cloud and on-prem environments - Architect and integrate streaming processing solutions for data onboarding/ingestion - Develop implementation plans and present change requests at Change Control Board meetings - Onboard new systems into ELS/SIEM (data design requirements + ingestion testing) - Create dashboards for System Owners, ISSM/ISSO, executive management, and developers - Maintain SIEM data sources (IDS, firewall, proxy, DLP, antivirus, cloud logs, vulnerability scanners) - Develop correlation rules, signatures, and risk-based scoring enhancements - Develop, deploy, and integrate ML/AI into the Agency’s ELS/SIEM - Provide user support for ELS/SIEM dashboards and respond to outages/data-feed issues **What you need** - Minimum **5 years** experience in system administration, database administration, network engineering, software engineering, or software development with a concentration in **Cyber Security**; **or** - With a bachelor’s degree in Computer Science, Engineering, Information Technology, Cybersecurity, or related field: **3 years** of relevant experience - **TS/SCI clearance is mandatory** **Nice to have** - Splunk Certified Admin **Pay transparency (where applicable)** Base pay range: **$81,000 – $162,400 USD** (states listed in the posting).
Listing freshness
CronJobs last confirmed this listing 2h ago. If its source stops confirming the opening for seven days, this page is removed from active inventory.