Elastic Engineer with Security Clearance
Zachary Piper Solutions is seeking an Elastic Engineer to support a mission-critical federal program at Schriever Space Force Base (SFB). This on-site role focuses on designing, implementing, and maintaining large-scale log ingestion architectures using the Elastic Stack. The ideal candidate brings deep expertise in Logstash pipeline engineering, ECS normalization, and high-volume ingestion across heterogeneous data sources, including restricted and air-gapped environments. Responsibilities of the Elastic Engineer include:Design and deploy ingestion pipelines for:Endpoint security telemetryNetwork devices and firewallsCloud security platformsLinux audit logsWindows Event LogsKubernetes/OpenShift logsCustom application logsNormalize incoming data into Elastic Common Schema (ECS) compliant formatsImplement parsing using Grok, Dissect, KV, JSON decoding, and Translate filtersDesign and manage multi-pipeline Logstash architectures, including pipeline-to-pipeline routing and output isolator patternsTune Logstash JVM performance and troubleshoot ingestion bottlenecksDeploy and manage Elastic Agents using Fleet Server and centralized policy managementSupport air-gapped artifact and package repositoriesImplement ingestion resiliency, redundancy, and failover strategiesValidate ingestion correctness, ECS alignment, and lifecycle management complianceSupport high-availability production environments, including restricted and disconnected networks Qualifications for the Elastic Engineer include:3+ years of hands-on Elastic Stack experienceAdvanced Logstash pipeline engineering expertiseStrong knowledge of Elastic Common Schema (ECS)Linux administration experienceProven experience troubleshooting high-volume ingestion and pipeline performance issuesPreferred Qualifications:Experience with air-gapped Elastic deploymentsKubernetes/OpenShift logging ingestion experienceElastic Defend and SIEM ingestion experienceAutomation experience with Ansible, Python, Bash, or similar scripting tools Success Metrics:Improved ingestion reliability and resiliencyReduced dropped or malformed eventsIncreased pipeline throughput and stabilityConsistent, standardized ECS mapping implementation Position Details:Location: Schriever Space Force Base (SFB)Environment: On-site, secure facilityCollaboration with cybersecurity, platform engineering, and mission operations teams Compensation for the Elastic Engineer includes:Salary Range: (depends on experience)Benefits: Medical, Dental, Vision, 401K, PTO, Sick Leave (as required), Holidays