15 Aug
|
Cleared
|
Canberra
Are you looking for a new role where you can own and scale large Elastic deployments, tune ingest pipelines and shape how security data is stored, searched and surfaced? Do you enjoy working in a small team, managing the platform that underpins detection and response for numerous customers? Do you like the idea of applying your ideas in uplifting an Elastic stack to a current benchmark? This role might be for you.
We're looking for people who think outside the box and are keen to join our Infrastructure team, providing support to our security services across all manner of customers, from Government to small, medium and large private industry.
This is not a contract role in some BS agency doing some BS stuff, you will be joining our internal team, doing non BS stuff.
What you'll be doing
You'll be joining a small, skilled team whose focus is maintaining the back end infrastructure that underpins our security services. You'll be primarily working across our Elastic stack, managed as code through automation and Git workflows. Key areas of the role are:
- Deploying, tuning and maintaining Elastic clusters at scale.
- Building and optimising ingest pipelines, parsers and data onboarding from a wide range of log sources.
- Managing index lifecycle, retention, sharding and cluster performance.
- Building dashboards, detections and alerting in Kibana to support our security services.
- Securing the stack in line with the ASD ISM.
- Working across other technical teams providing support on complex data and infrastructure issues.
What're we looking for?
Required
- Outside of the box attitude to problem solving and securing our environments.
- 3 years of experience in an IT role (or equivalent study).
- Hands-on experience with the Elastic Stack (Elasticsearch, Kibana, Logstash,
Beats or Elastic Agent).
- Experience building and troubleshooting ingest pipelines and parsing varied log formats.
- Experience in administering and securing Linux operating systems.
- Experience in Git workflows and automation tooling such as Ansible or Terraform.
- Understanding of basic networking concepts.
- Willingness to learn and adapt to new and emerging ways of operating.
- Australian citizen.
- Baseline clearance, but we may be able to support no clearance requirement depending on the applicant (sponsorship is mandatory).
Nice to have
- Experience running Elastic as a SIEM, including detection rules and alerting.
- Experience with other SIEM platforms (Splunk/Sentinel).
- Cluster sizing, capacity planning and performance tuning at scale.
- Experience across multiple Elastic deployment platforms (ECE, ECK, Elastic Cloud, Elastic Serverless).
- Container stacks, including Kubernetes and Docker.
- Cloud automation experience.
- Security Engineering or detection engineering experience.
- Elastic certifications (Elastic Certified Engineer or Analyst).
- Negative Vetting 1 clearance or above.
What do we offer?
Working from home? You bet. We don't mind where you work, we have a hybrid work culture that supports the way you want to work.
Fair pay? No doubt. We're sure you're worth it.
Training? Obviously. We want our people to be the best, and to keep it that way we need to invest, simple.
A bit about us
Cleared has been providing bespoke cyber advice and services since 2019, helping customers mature and grow their cyber capability and respond and handle threats. We provide ethical and cost-effective solutions to our customers' problems and find our unique business culture is important to our success.
https://cleared.io/careers
📌 Elastic Engineer (Canberra)
🏢 Cleared
📍 Canberra