Senior Elastic Engineer; EDR/Defend Focus ADVBE
Listed on 2026-03-14
-
IT/Tech
Cybersecurity, Systems Engineer
Senior Elastic Engineer (EDR/Defend Focus) - (ADV
000BE
2)
Full time | Geo Control Systems, Inc. | United States
Posted On 03/11/2026
Job InformationDepartment Name IRES GCS
Job Status Exempt
Work Experience Fresher
Government/Military
City Colorado Springs
State/Province Colorado
80901
Job DescriptionPosition Title:
Senior Elastic Engineer (EDR/Defend Focus)
Location:
Schriever Space Force Base, Colorado Springs, CO or Redstone Arsenal, Huntsville, AL
Remote/Telework: NO - Not available for this position
Clearance Type:
DoD Secret
Shift: Day shift
MUST BE A US CITIZEN Description of DutiesThe Senior Elastic Engineer (EDR/Defend Focus) supports the Missile Defense Agency (MDA) on the Integrated Research and Development for Enterprise Solutions (IRES) contract. The candidate will:
- Be a key contributor to the design, implementation, and maintenance of our Elastic Stack environment, with a primary focus on leveraging Elastic EDR and Defend capabilities to enhance our cybersecurity posture.
- Be responsible for ensuring the security, scalability, and performance of our Elastic Stack infrastructure, and will work closely with other teams to integrate it with existing security tools and workflows.
- Architect, deploy, and maintain a highly available and scalable Elastic Stack environment, specializing in Elastic EDR/Defend.
- Configure and optimize Elastic EDR/Defend policies and data pipelines for threat detection, prevention, and security event enrichment.
- Develop and maintain Kibana dashboards and visualizations for real-time security monitoring, threat identification, and incident response tracking.
- Perform proactive threat hunting and in-depth security analysis using Elastic EDR/Defend capabilities.
- Troubleshoot complex Elastic Stack issues, develop comprehensive documentation, and mentor junior engineers to ensure operational excellence.
- Expert knowledge of the Elastic Stack (Elasticsearch, Logstash, Kibana)
- Expert knowledge of Elastic EDR and Defend capabilities
- Strong understanding of data indexing, sharding, replication, and data lifecycle management.
- Strong understanding of Linux and Windows operating systems
- Strong understanding of security principles, threat detection, and incident response.
- Knowledge of common coding flaws and security vulnerabilities.
- Knowledge of network protocols and security concepts.
- Knowledge of security frameworks and compliance standards (e.g., NIST, FedRAMP).
- Ability to interpret and incorporate data from multiple tool sources.
- Ability to analyze complex requirements and translate them into clear, actionable tasks.
- Ability to work independently and as part of a team.
- Excellent communication and interpersonal skills.
Resumes, in month and year format, must be submitted with application in order to be considered for the position. The selected candidate may be assigned as an employee for one of our teammate companies.
Requirements Qualifications - External Basic Requirements- Must have 10 or more years of general (full-time) work experience
- May be reduced with completion of advanced education
- Must have 5 or more years of experience working with the Elastic Stack (Elasticsearch, Logstash, Kibana)
- Must have 3 or more years of experience specifically implementing and managing Elastic EDR and Defend solutions
- Must have 2 or more years of experience in a lead or senior role, mentoring and guiding other team members
- Must have 1 or more year of experience working in a management or leadership role
- Must have a strong understanding of security principles, threat detection, and incident response
- Must have experience with data ingestion, processing, and enrichment techniques
- Must be proficient in at least one scripting language (e.g., Python, Bash, Power Shell)
- Must have a current DoD 8570.01-M IAT Level II certification with Continuing Education (CE) - (CCNA-Security, CySA+, GICSP, GSEC, Security+ CE, CND, SSCP)
- Must have an active DoD Secret Security Clearance
- Must be able to obtain an active DoD Top Secret Security Clearance
- Have experience with Linux and Windows Server administration
- Have experience with containerization technologies (Docker, Kubernetes)
- Have experience with automation tools (Ansible, Puppet, Chef)
- Have experience with cloud platforms (AWS, Azure, GCP)
- Have experience with SIEM technologies and security event management
- Have experience with security frameworks and compliance standards (e.g., NIST, FedRAMP)
- Have a strong understanding of network protocols and security concepts
- Have experience with threat intelligence platforms and data feeds
- Have 1 or more relevant security certifications (e.g., CISSP, CISM, CEH)
- Have experience tuning and optimizing Elastic EDR and Defend for specific threat landscapes
This position is expected to pay $130,000 - $150,000 annually; depending on experience, education, and any certifications that are directly related to the position.
GCS health and welfare benefits are designed to invest in you, and in the things you care about.…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).