Job Description
Day-to-day (~30% SIEM, ~30% Platform, ~30% AWS, ~10% Coordination):
Deploy and operate Elastic Security clusters across AWS GovCloud and on-prem environments
Build and maintain the underlying infrastructure—EKS clusters, Terraform modules, CI/CD
pipelines
Onboard log sources, build ingest pipelines, and create detection content that actually catches
things
Troubleshoot the full stack—from AWS networking to Kubernetes pods to Elasticsearch
performance
Work with SOC analysts to tune alerts, reduce noise, and improve detection coverage
Document architectures and participate in RMF/ATO activities (you won't own this, but you'll
contribute)
Coordinate with vendors, government stakeholders, and cross-functional teams
PAY RATE $60-80/HR
We are a company committed to creating diverse and inclusive environments where people can bring their full, authentic selves to work every day. We are an equal opportunity/affirmative action employer that believes everyone matters. Qualified candidates will receive consideration for employment regardless of their race, color, ethnicity, religion, sex (including pregnancy), sexual orientation, gender identity and expression, marital status, national origin, ancestry, genetic factors, age, disability, protected veteran status, military or uniformed service member status, or any other status or characteristic protected by applicable laws, regulations, and ordinances. If you need assistance and/or a reasonable accommodation due to a disability during the application or recruiting process, please send a request to HR@insightglobal.com.To learn more about how we collect, keep, and process your private information, please review Insight Global's Workforce Privacy Policy: https://insightglobal.com/workforce-privacy-policy/.
Required Skills & Experience
Requirements
Active clearance; experience in DoD IL4+ environments
Expert-level in 2 of 3 areas (working knowledge of the third):
AWS Engineering
Advanced VPC & IAM design; EC2, S3, EKS, CloudWatch/Trail, KMS
GovCloud preferred; network/API-level troubleshooting
Platform Engineering
Kubernetes administration (EKS/RKE2)
Helm, Terraform (modules/state), CI/CD pipelines
Container troubleshooting
Elastic SIEM Engineering
Elastic Stack administration
Detection rules, ingest pipelines, KQL
ILM and performance tuning
Python and/or Bash scripting
Strong communication and documentation skills
Benefit packages for this role will start on the 1st day of employment and include medical, dental, and vision insurance, as well as HSA, FSA, and DCFSA account options, and 401k retirement account access with employer matching. Employees in this role are also entitled to paid sick leave and/or other paid time off as provided by applicable law.