Senior Information Security Infrastructure Engineer - Security Architecture - InfoSec
elastic
In this role you will protect Elastic’s data and systems by building and maintaining the security telemetry ingestion pipeline into Elasticsearch. You will own end-to-end data ingestion, from new data sources to indexed results, while keeping Elastic Cloud on Kubernetes healthy and scalable. You’ll apply infrastructure as code and automation to reduce toil, and ensure data quality and cost controls. This is a hands-on, cross-functional position that shapes the security data landscape and supports incident response and detection efforts.
Pay / Benefits- competitive pay
- health coverage
- flexible locations/schedules
- generous vacation days
- donation matching up to 2000
- volunteer time
- Security telemetry ingestion into Elasticsearch from multiple sources (cloud provider logs, identity/SaaS, endpoint/asset data) via integrations and APIs
- Maintain and upgrade Elastic Cloud on Kubernetes clusters; manage capacity, shards, ILM, and cross-cluster search
- Manage cloud infrastructure and Elasticsearch resources using Terraform; define pipelines and alerts
- Deploy scheduled ingest jobs with Kubernetes and Helm
- Leverage AI automation and tooling to reduce toil, implement self-healing jobs, health checks, and AI-assisted workflows
- Monitor data flow quality, backfills, schema consistency, and cost controls
- Operate Elastic/Elasticsearch in production (ingest pipelines, index templates, mappings, queries) and keep clusters healthy and up-to-date
- Experience with ECK or Elasticsearch on Kubernetes (strongly preferred)
- Proven track record of using AI to accelerate development and operations while owning outcomes
- Kubernetes for deploying/operating workloads and troubleshooting pods/jobs
- Terraform for cloud and Elasticsearch resources as code
- API integration for data ingestion (REST APIs: auth, pagination, rate limiting, error handling)
- Python scripting for ingestion/automation scripts (scripting-level)
- Eligibility to work in DoD Impact Level 4+ cloud environments
- colaboration
- problem solving
- ability to work with security-focused teams
- Elastic/Elasticsearch production operations
- Ingest pipelines, index templates, mappings and queries
- ECK or Elasticsearch on Kubernetes
Reference: WJ-747_30159111