Elastic
Senior Information Security Engineer - Security Architecture - InfoSec
United States · Senior
Sponsorship not specifiedDetected 21 hours ago
PythonGitElasticsearchGCPCloud PlatformsKubernetesTerraformHelmCI/CDGitHub ActionsRESTCybersecuritySOC OperationsIncident Response
> stay_score
odds of building a lasting career here
38Risky
Cap-exempt (no lottery)0
Sponsors this role85
Entry-level history0
PERM / green-card track0
Lottery odds40
Fits your clock70
Thin sponsorship signal and lottery-bound. A low-probability bet with your clock running. Prioritize cap-exempt roles and proven entry-level sponsors first.
Lottery odds assume a STEM candidate.
Personalize to your clock →> community_outcomes
No reports yet — be the first to help the next applicant.
About the role
- Keep the Elastic Cloud on Kubernetes clusters healthy.
- Handle index lifecycle management (ILM).
- This includes managing pipelines, index templates, and alerts.
Responsibilities
- Own the "is the security data actually flowing correctly?" question. Monitor backfills. Ensure that schemas and fields are consistent. Keep an eye on costs.
Requirements
- Proven track record of using AI to accelerate development, debug complex systems, and accelerate operations, while still owning the final outcomes.
- Experience with cloud providers.
- Hands-on experience with cloud providers, preferably GCP, and working with audit and logging data.
- Knowledge of GitHub, PR-based workflows, GitHub Actions and Continuous Integration (CI).
- Knowledge of SOC operations and incident response (IR) workflows, including the use of security telemetry during investigations.
- Ability to operate Elastic and Elasticsearch in production. This includes managing ingest pipelines, index templates, mappings, and queries, while ensuring that clusters are healthy and upgraded. Experience with ECK or Elasticsearch on Kubernetes is strongly preferred.
- Kubernetes - deploying and operating workloads (scheduled jobs, Helm charts, operators)
- troubleshooting pods/jobs in a cluster.
- API integration - consuming REST APIs for data ingestion: authentication, pagination, rate limiting concurrency, and error handling.
- Python scripting - able to read, write, and modify ingestion/automation scripts. Scripting-level, not full software-engineering depth.
- Bonus Points:
- <div class="public-DraftStyleDefault-block public-DraftStyleDefault-ltr" style="text-
Nice to have
- Experience with ECK or Elasticsearch on Kubernetes is strongly preferred.
- Ability to operate Elastic and Elasticsearch in production.
- This includes managing ingest pipelines, index templates, mappings, and queries, while ensuring that clusters are healthy and upgraded.
Skills
- Terraform - managing cloud and Elasticsearch resources as code.
- Eligibility to work in Department of Defense (DoD) Impact Level 4 or above cloud service environments.
Benefits
- This includes self-healing jobs and health checks.
Apply directly at Elastic →Create a free account for alerts like thisView Elastic immigration profile
This listing is sourced directly from Elastic's careers page and normalized into a canonical job model.