elastic Deutschlandweit vor 5 Tagen

Consulting Architect - Security (EMEA / Public Sector eligible )

Jetzt bewerben bei elastic Sichere Bewerbung über StudySmarter
Aus der Stellenanzeige

Die ganze Ausschreibung von elastic

Das ist der Job

Your age is only a number.

Darum lohnt es sich

By taking advantage of all structured and unstructured data — securing and protecting private information more effectively — Elastic’s complete, cloud-based solutions for search, security, and observability help organizations deliver on the promise of AI.What is The RoleElastic Security is one of the fastest-growing parts of our business, and our customers (including government and public sector organisations) rely on our Security Solution to modernise their SOC, threat detection, and response capabilities.You will lead the hands-on delivery of Elastic Security projects (new implementations, migrations, and use-case expansions) from discovery through architecture design and build.

Along the way, you'll develop trusted relationships with senior stakeholders and work closely with our Services, Engineering and Sales teams.Elastic is a remote-first company, but many of the projects you'll deliver might require onsite availability, making the role hybrid in practice, varying by project, with travel of up to 60%.Some of these engagements, given the organisations involved, also require national security screening or clearance; eligibility to obtain one in your country of employment is a strong advantage, and Elastic will sponsor the process where required.What You Will Be DoingAssess and DesignAnalyse customer goals, pain points, existing architecture, and threat landscape, translating them into technical requirementsDesign Elastic Security solution architectures (SIEM, endpoint, cloud security) that integrate with the customer's wider security ecosystemAdvise on the customer's security strategy and own the Elastic side of it, aligning recommendations through regular sessions with senior and key stakeholdersImplement and DeliverLead hands-on delivery of Elastic Security projects end-to-end, including greenfield deployments and migrations from legacy SIEM/EDR platforms in mission-critical environmentsDeploy and secure the Elastic platform: cluster architecture, RBAC and role mapping, single sign-on, private connectivity (private links, VPC peering), and hardening for enterprise and government environmentsArchitect and build large-scale data ingestion with Elastic Agent, Beats, and Logstash, normalising data to ECS and integrating sources such as Kafka, Azure Event Hub, and AWS S3Develop security content aligned to the customer's threat landscape: detection rules, dashboards, and alerting workflowsDrive security migrations from competing platforms, applying deep knowledge of Elastic's capabilities to translate each use case into its best form, whether through feature parity mapping or full redesignEstablish detection-as-code practices for customers managing detections programmatically: developing, testing, versioning, and deploying detection content with Python, Git, and CI/CD pipelinesApply and enable Elastic's Agentic AI capabilities (AI Assistant, Attack Discovery, agent-driven workflows) to accelerate customers' detection and responseGrow and CollaborateIdentify and deliver new security use cases as customers mature their cyber defence journey with ElasticDeliver engagements on time and within the agreed Statement of Work (SOW) scope, surfacing opportunities for follow-on workCommunicate confidently with stakeholders from SOC engineers up to CISO / C-suite levelPartner with Elastic Sales and pre-sales to assess technical risks and shape opportunitiesFeed field insight back to Elastic Engineering, Product Management, and Support to drive feature enhancementsMentor and share knowledge with fellow Elastic consultants across a highly distributed teamLead or assist with demos and proof-of-concepts that showcase the value of the Elastic Stack, and deliver enablement sessions and hands-on workshops that make customer teams self-sufficient What You Bring AlongMinimum of 5 years' experience as a Consulting Architect, Senior Consultant, or in a senior IT technical leadership role, delivering and executing professional services engagements, ideally in the security domainSolid experience deploying Elastic Security or comparable SIEM platforms (e.g., Splunk, MS Sentinel, QRadar, ArcSight) and/or EDR platforms (e.g., CrowdStrike, MS Defender), or at least 2 years as a Security Analyst / Detection Engineer in a threat detection and response roleAn architect's view of the security ecosystem across varied customer environments: SOAR, vulnerability management, penetration testing, ticketing, and security policies, and how they connect in a SOCScripting skills, ideally in Python, and exposure to modern delivery practices such as Infrastructure-as-Code and CI/CD are strongly preferredHands-on experience with Linux and Windows operating systems, and on-prem and/or public cloud platforms (AWS, Azure, GCP)Strong customer advocacy, relationship-building, and communication skills, with the ability to pivot easily between delivery and strategic engagementsEligibility to obtain national security clearance in your country of employment (screening sponsored by Elastic where required)Willingness to travel and work onsite with customers (up to 60% of the time), combined with comfort working remotely in a highly distributed teamStrong proficiency in both English (our company-wide operating language) and the local market language.Bonus PointsExperience with advanced Elasticsearch operations: cluster architecture, shard management, data ingestion, and data tiering at scaleExperience with detection-as-code: authoring, testing, and versioning detection content managed in GitExperience automating deployments and lifecycle management with Python, Terraform, and CI/CD tooling (e.g., GitLab pipelines)Experience deploying and operating containerised workloads on Kubernetes, cloud-managed or self-hosted (EKS, AKS, GKE, OpenShift)Experience with Agentic AI and LLM-based security workflows: AI assistants, automated triage, and agent-driven investigationExperience as a Tier-2/Tier-3 SOC Analyst, Threat Hunter, or DevSecOps EngineerExperience in large distributed environments or MSSPs, from architecture through deploymentExperience delivering enablement sessions, technical workshops, or product training to technical audiencesElastic Certified Engineer certification, or security certifications such as GIAC or CISSP#LI-PF1Additional Information - We Take Care of Our PeopleAs a distributed company, diversity drives our identity.

It doesn’t matter if you’re just out of college or your children are; we need you for what you can do.We strive to have parity of benefits across regions and while regulations differ from place to place, we believe taking care of our people is the right thing to do.Competitive pay based on the work you do here and not your previous salaryHealth coverage for you and your family in many locationsAbility to craft your calendar with flexible locations and schedules for many rolesGenerous number of vacation days each yearIncrease your impact - We match up to $2000 (or local currency equivalent) for financial donations and serviceUp to 40 hours each year to use toward volunteer projects you loveEmbracing parenthood with minimum of 16 weeks of parental leaveDifferent people approach problems differently.

Elastic, the Search AI Company, enables everyone to find the answers they need in real time, using all their data, at scale — unleashing the potential of businesses and people.

The Elastic Search AI Platform, used by more than 50% of the Fortune 500, brings together the precision of search and the intelligence of AI to enable everyone to accelerate the results that matter. Whether you’re looking to launch a new career or grow an existing one, Elastic is the type of company where you can balance great work with great life.

We need that. Elastic is an equal opportunity employer and is committed to creating an inclusive culture that celebrates different perspectives, experiences, and backgrounds.

Qualified applicants will receive consideration for employment without regard to race, ethnicity, color, religion, sex, pregnancy, sexual orientation, gender perception or identity, national origin, age, marital status, protected veteran status, disability status, or any other basis protected by federal, state or local law, ordinance or regulation.We welcome individuals with disabilities and strive to create an accessible and inclusive experience for all individuals.

To request an accommodation during the application or the recruiting process, please email candidate_accessibility@elastic.co.

We will reply to your request within 24 business hours of submission.Applicants have rights under Federal Employment Laws, view posters linked below:Family and Medical Leave Act (FMLA)Poster; Pay Transparency Nondiscrimination Provision Poster; Employee Polygraph Protection Act (EPPA)Poster and Know Your Rights (Poster)Elasticsearch develops and distributes technology and information that is subject to U.S. and other countries’ export controls and licensing requirements for individuals who are located in or are nationals of the following sanctioned countries and regions: Belarus, Cuba, Iran, North Korea, Syria, or Russia, including the Ukrainian territories annexed by Russia (The Crimea region of Ukraine, The Donetsk People's Republic (DNR), The Luhansk People's Republic (LNR), Kherson or Zaporizhzhia).

If you are located in or are a national of one of the listed countries or regions, an export license may be required as a condition of your employment in this role. Please note that national origin and/or nationality do not affect eligibility for employment with Elastic.Please see here for our Privacy Statement.

Bereit?

Bewerbung wird direkt an elastic übergeben — kein Konto nötig.

Jetzt bewerben
Beim Arbeitgeber

Aktuell die einzige offene Stelle bei elastic.

Neue Stellen kommen monatlich dazu — schau gerne später noch mal rein.

Ähnliche Stellen

Wenn dir dieser Job gefällt, schau dir auch an:

Weiter stöbern:

Kostenfrei starten