Posted on: 07/10/2026



Role Overview:
We are looking for an experienced ELK Developer with strong expertise in Elasticsearch, Logstash, Kibana, and SIEM to build and maintain scalable security monitoring and log analytics solutions.
Key Responsibilities:
- Design, develop, configure, and maintain ELK-based log management and security monitoring solutions.
- Work extensively with Elasticsearch, Logstash, Kibana, and Beats for log collection, processing, indexing, and visualization.
- Develop and maintain Logstash pipelines for collecting and transforming logs from multiple sources.
- Configure Elasticsearch indexes, mappings, templates, data streams, and retention policies.
- Develop Kibana dashboards, visualizations, alerts, and security monitoring views.
- Integrate logs from network devices, firewalls, servers, applications, endpoints, cloud platforms, and security tools.
- Support SIEM use cases by developing detection rules, correlation logic, alerts, and monitoring workflows.
- Troubleshoot Elasticsearch cluster performance, indexing, ingestion, and query-related issues.
- Optimize log ingestion pipelines and Elasticsearch queries for performance and scalability.
- Work with security teams to identify monitoring requirements and translate them into SIEM use cases.
- Support incident investigation through log analysis, search, correlation, and visualization.
- Implement appropriate access controls, security configurations, and data retention mechanisms.
- Monitor ELK infrastructure health and ensure high availability and reliability.
- Automate repetitive monitoring and log-management activities where required.
- Maintain technical documentation for integrations, dashboards, pipelines, and SIEM use cases.
Required Skills :
- 5 - 9 years of experience in ELK, Elasticsearch, SIEM, Log Management, or Security Monitoring.
- Strong hands-on experience with Elasticsearch, Logstash, and Kibana.
- Good understanding of Elasticsearch architecture, indexing, mappings, shards, replicas, and cluster management.
- Strong experience in developing Logstash pipelines and log parsing/processing configurations.
- Experience creating Kibana dashboards, visualizations, alerts, and security monitoring views.
- Good understanding of SIEM concepts, event correlation, security alerts, and detection use cases.
- Experience integrating logs from firewalls, servers, applications, endpoints, and security solutions.
- Strong knowledge of Linux and networking fundamentals.
- Experience with REST APIs and scripting/automation is preferred.
- Ability to troubleshoot performance and ingestion issues in large-scale logging environments.
- Strong analytical and problem-solving skills with good understanding of cybersecurity operations.
Did you find something suspicious?
Posted by
Posted in
CyberSecurity
Functional Area
IT Security
Job Code
1677091