Engineer I - Cyber Incident Response

AmerisourceBergen Corporation

Pune District

On-site

INR 600,000 - 900,000

Full time

4 days ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Cencora in Pune, India is seeking a Junior Engineer I in Cyber Incident Response for the Security Operations Center. You will analyze alerts, investigate incidents, and support containment and recovery efforts while learning from senior staff.

You will work with SIEM, EDR, and forensic tools to strengthen detection, document findings, and help maintain SOC playbooks and runbooks. A 2+ year foundation in cybersecurity and a bachelor’s degree are required.

Qualifications

  • Bachelor’s degree in cybersecurity, computer science, information technology, or equivalent.
  • Strong knowledge of incident response and cybersecurity fundamentals.
  • Familiarity with NIST, MITRE ATT&CK, ISO 27035.
  • Hands-on experience with SIEM, EDR, and forensic tools.

Responsibilities

  • Investigate and respond to cybersecurity incidents including phishing, malware, ransomware.
  • Analyze logs, alerts, and forensic data to determine scope and impact.
  • Escalate complex incidents to higher-level engineers with clear documentation.
  • Contribute to development of SOC playbooks and runbooks.
  • Collaborate with threat intelligence and vulnerability teams to strengthen detection.

Skills

Cybersecurity fundamentals
Incident response methodology
Adversary tactics

Education

Bachelor’s degree in Cybersecurity / CS / IT

Tools

SIEM
EDR
Forensic tools (Splunk, CrowdStrike, Wireshark)

Job description

Our team members are at the heart of everything we do. At Cencora, we are united in our responsibility to create healthier futures, and every person here is essential to us being able to deliver on that purpose. If you want to make a difference at the center of health, come join our innovative company and help us improve the lives of people and animals everywhere.

Corporation Overview

Cencora is a leading global pharmaceutical solutions company that is committed to improving the lives of people and animals everywhere. We connect manufacturers, providers, and patients to ensure that anyone can get the therapies they need, where and when they need them. We’re a purpose-driven organization, where all of our team members around the world are united in our responsibility to create healthier futures. We work together every day to help our partners bring their innovations to patients worldwide, creating unparalleled access and impact at the center of health.

Job Details

The Engineer I - Cyber Incident Response, is a junior‑level technical role within the Security Operations Center (SOC) responsible for detecting, investigating, and responding to cybersecurity incidents. This role performs in‑depth analysis of alerts, escalates complex cases, and contributes to the improvement of response processes and playbooks. The Engineer I will collaborate with global cyber defense teams to contain threats, minimize business impact, and strengthen detection capabilities.

Primary Duties and Responsibilities
  • Investigate and respond to cybersecurity incidents, including phishing, malware, ransomware, and unauthorized access attempts.
  • Perform analysis of logs, alerts, and forensic data to determine the scope and impact of incidents.
  • Escalate complex or high‑severity incidents to Engineer II/III, Lead, or Principal staff, providing clear documentation and evidence.
  • Assist in containment, eradication, and recovery activities during incident response.
  • Contribute to the development and maintenance of SOC playbooks, runbooks, and standard operating procedures.
  • Collaborate with threat intelligence, vulnerability management, and forensics teams to strengthen detection and response strategies.
  • Participate in lessons‑learned sessions and recommend improvements to SOC processes and tooling.
Education and Qualifications
  • Bachelor’s degree in Cybersecurity, Computer Science, Information Technology, or equivalent work experience.
  • Strong knowledge of cybersecurity fundamentals, incident response methodology, and adversary tactics.
  • Familiarity with industry frameworks such as NIST, MITRE ATT&CK, and ISO 27035.
Preferred Certifications (at least 1)
  • GIAC Certified Incident Handler (GCIH)
  • GIAC Certified Intrusion Analyst (GCIA)
  • CompTIA Security+ or CySA+
  • Certified Ethical Hacker (CEH)
Work Experience
  • 2+ years of progressive experience in cybersecurity, with knowledge in SOC operations or incident response.
  • Hands‑on experience with SIEM, EDR, and forensic tools (e.g., Splunk, CrowdStrike, Wireshark).
  • Demonstrated ability to analyze logs, alerts, and artifacts to support incident investigations.
  • Strong written and verbal communication skills for documenting findings and briefing stakeholders.
  • Critical: Must have Bachelor’s degree in cybersecurity, computer science, information technology, or a related field, or equivalent experience.
  • Less than 2 years of experience in IT support, network administration, security operations (SOC), or entry‑level cybersecurity required.
  • Preferred Certifications such as CompTIA Security+, GIAC Information Security Fundamentals (GISF), Certified in Cybersecurity (CC), or equivalent.
  • Beginning to moderate expertise in foundational IT and security concepts (e.g., networking protocols, operating systems, basic malware behavior).
  • Ability to apply standard practices to resolve routine issues and follow documented steps accurately.
  • Strong willingness to learn and build technical capability in the incident response domain.
  • Effective written and verbal communication skills to share progress and basic observations within the immediate team.
  • Detail‑oriented approach to ensure accuracy and timeliness of localized outputs and alert handling.
What Cencora offers

Benefit offerings outside the US may vary by country and will be aligned to local market practice. The eligibility and effective date may differ for some benefits and for team members covered under collective bargaining agreements.

Full time Affiliated Companies

Affiliated Companies: CENCORA BUSINESS SERVICES INDIA PRIVATE LIMITED

Equal Employment Opportunity

Cencora is committed to providing equal employment opportunity without regard to race, color, religion, sex, sexual orientation, gender identity, genetic information, national origin, age, disability, veteran status or membership in any other class protected by federal, state or local law. The company’s continued success depends on the full and effective utilization of qualified individuals. Therefore, harassment is prohibited and all matters related to recruiting, training, compensation, benefits, promotions and transfers comply with equal opportunity principles and are non‑discriminatory.

Cencora is committed to providing reasonable accommodations to individuals with disabilities during the employment process which are consistent with legal requirements. If you wish to request an accommodation while seeking employment, please call 888.692.2272 or email hrsc@cencora.com. We will make accommodation determinations on a request-by-request basis.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Engineer I - Cyber Incident Response
Engineer I - Cyber Incident Response

CENCORA BUSINESS SERVICES INDIA PRIVATE LIMITED • Pune District

On-site
INR 700,000 - 1,100,000
Engineer I - Cyber Incident Response
Engineer I - Cyber Incident Response

Cencora • Maharashtra

On-site
INR 600,000 - 800,000
Engineer II - Cyber Incident Response
Engineer II - Cyber Incident Response

AmerisourceBergen Corporation • Pune District

On-site
INR 900,000 - 1,500,000
Engineer III - Cyber Incident Response
Engineer III - Cyber Incident Response

Cencora • New Delhi

On-site
INR 1,800,000 - 2,800,000
Engineer III - Cyber Incident Response
Engineer III - Cyber Incident Response

Cencora • Maharashtra

On-site
INR 1,200,000 - 2,000,000
Engineer II - Cyber Incident Response
Engineer II - Cyber Incident Response

CENCORA BUSINESS SERVICES INDIA PRIVATE LIMITED • Pune District

On-site
INR 900,000 - 1,300,000
Engineer II - Cyber Incident Response
Engineer II - Cyber Incident Response

Cencora • New Delhi

On-site
INR 1,500,000 - 2,500,000
Engineer III - Cyber Incident Response
Engineer III - Cyber Incident Response

AmerisourceBergen Corporation • Pune District

On-site
INR 2,500,000 - 4,500,000
Engineer III - Cyber Incident Response
Engineer III - Cyber Incident Response

CENCORA BUSINESS SERVICES INDIA PRIVATE LIMITED • Pune District

On-site
INR 2,000,000 - 4,200,000
Lead Engineer, IAM Platform Engineering
Lead Engineer, IAM Platform Engineering

Cencora • Maharashtra

On-site
INR 4,000,000 - 7,000,000