Minimum of 5 years' experience as a Consulting Architect, Senior Consultant, or in a senior IT technical leadership role, delivering and executing professional services engagements, ideally in the security domain
Solid experience deploying Elastic Security or comparable SIEM platforms (e.g., Splunk, MS Sentinel, QRadar, ArcSight) and/or EDR platforms (e.g., CrowdStrike, MS Defender), or at least 2 years as a Security Analyst / Detection Engineer in a threat detection and response role
An architect's view of the security ecosystem across varied customer environments: SOAR, vulnerability management, penetration testing, ticketing, and security policies, and how they connect in a SOC
Scripting skills, ideally in Python, and exposure to modern delivery practices such as Infrastructure-as-Code and CI/CD are strongly preferred
Hands-on experience with Linux and Windows operating systems, and on-prem and/or public cloud platforms (AWS, Azure, GCP)
Strong customer advocacy, relationship-building, and communication skills, with the ability to pivot easily between delivery and strategic engagements
Eligibility to obtain national security clearance in your country of employment (screening sponsored by Elastic where required)
Willingness to travel and work onsite with customers (up to 60% of the time), combined with comfort working remotely in a highly distributed team
Strong proficiency in both English (our company-wide operating language) and the local market language
Experience with advanced Elasticsearch operations: cluster architecture, shard management, data ingestion, and data tiering at scale
Experience with detection-as-code: authoring, testing, and versioning detection content managed in Git
Experience automating deployments and lifecycle management with Python, Terraform, and CI/CD tooling (e.g., GitLab pipelines)
Experience deploying and operating containerised workloads on Kubernetes, cloud-managed or self-hosted (EKS, AKS, GKE, OpenShift)
Experience with Agentic AI and LLM-based security workflows: AI assistants, automated triage, and agent-driven investigation
Experience as a Tier-2/Tier-3 SOC Analyst, Threat Hunter, or DevSecOps Engineer
Experience in large distributed environments or MSSPs, from architecture through deployment
Experience delivering enablement sessions, technical workshops, or product training to technical audiences
Elastic Certified Engineer certification, or security certifications such as GIAC or CISSP
Additional Information - We Take Care of Our People
As a distributed company, diversity drives our identity. Whether you’re looking to launch a new career or grow an existing one, Elastic is the type of company where you can balance great work with great life. Your age is only a number. It doesn’t matter if you’re just out of college or your children are; we need you for what you can do
We strive to have parity of benefits across regions and while regulations differ from place to place, we believe taking care of our people is the right thing to do
Competitive pay based on the work you do here and not your previous salary
Health coverage for you and your family in many locations
Ability to craft your calendar with flexible locations and schedules for many roles
Generous number of vacation days each year
Increase your impact - We match up to $2000 (or local currency equivalent) for financial donations and service
Up to 40 hours each year to use toward volunteer projects you love
Embracing parenthood with minimum of 16 weeks of parental leave
Please see here for our Privacy Statement