Enable job alerts via email!

Digital Forensic & Incident Response Lead Engineer (hybrid)

AmerisourceBergen

Carrollton (TX)

Hybrid

USD 100,000 - 140,000

Full time

18 days ago

Boost your interview chances

Create a job specific, tailored resume for higher success rate.

Job summary

A leading company in health solutions is seeking a Digital Forensic & Incident Response Lead Engineer to enhance their Global Security Operations Center. This role involves managing forensic investigations, leading incident response efforts, and mentoring junior analysts. The ideal candidate will have extensive experience in cybersecurity and digital forensics, with a strong emphasis on leadership and communication skills. Hybrid work options are available in Carrollton, TX.

Benefits

Competitive compensation
Comprehensive benefits
Professional development
Mentorship programs

Qualifications

  • 6+ years in cybersecurity, digital forensics, and incident response.
  • Experience in a lead role preferred.
  • DFIR certifications (e.g., GCFE, GCFA, GNFA) are a plus.

Responsibilities

  • Manage case load and assist with forensic analysis and reporting.
  • Lead cyber incident response engagements.
  • Conduct investigations and root cause analysis.

Skills

Digital forensics
Incident response
Cybersecurity operations
Network traffic analysis
Scripting skills
Communication skills

Education

BA/BS degree or relevant experience

Tools

Axiom
FTK
SIFT
Volatility
Timeline analysis
SIEM
EDR
AWS
Linux/Unix
Windows
Active Directory

Job description

Our team members are at the heart of everything we do. At Cencora, we are united in our responsibility to create healthier futures, and every person here is essential to us being able to deliver on that purpose. If you want to make a difference at the center of health, come join our innovative company and help us improve the lives of people and animals everywhere. Apply today!

Job Details

As a highly skilled Digital Forensic & Incident Response Lead Engineer, you will play a foundational role in the Cencora Global Security Operations Center. You will contribute thought leadership and expertise to the growth of our digital forensics incident response program. You will work closely with team members to perform threat detection and incident response, providing expert guidance to junior analysts and other teams within the organization.

The ideal candidate will have extensive experience in digital and network forensics, incident response, and cybersecurity operations in large, international organizations. Must be comfortable leading investigations and forensic examinations, including evidence acquisition from cloud, on-premise, and remote systems, ensuring chain of custody and adherence to evidence rules.

This position offers hybrid work options in Carrollton, TX.

Primary Duties and Responsibilities
  1. Manage case load and assist with forensic analysis and reporting.
  2. Manage evidence intake, outtake, and storage.
  3. Use network traffic analysis to identify compromised systems and resource anomalies.
  4. Lead cyber incident response engagements as a senior incident response leader.
  5. Serve as backup to the Regional Security Operations Manager.
  6. Support colleagues with complex event and incident analysis.
  7. Collaborate with various security teams to elevate security posture.
  8. Oversee staff development to ensure proper forensic procedures.
  9. Conduct investigations and root cause analysis.
  10. Deliver verbal and written reports.
  11. Participate in on-call rotations and incident response drills.
  12. Conduct training sessions for the Security Operations team.
  13. Develop and implement runbooks and SOPs.
Qualifications
  • BA/BS degree or relevant experience.
  • Six or more years in cybersecurity, digital forensics, and incident response.
  • Experience with Axiom, FTK, SIFT, Volatility, and Timeline analysis.
  • Two years in a lead role (preferred).
  • Knowledge of Windows, Active Directory, MS-SQL, Azure, Linux/Unix, Mac, AWS.
  • Understanding of networking and packet analysis.
  • Experience with SIEM, EDR, email security, SOAR, firewalls, antivirus, web gateways, DNS.
  • Experience handling high-priority cyber incidents.
  • Familiarity with industry frameworks (MITRE ATT&CK, NIST, etc.).
  • Scripting skills (Python, PowerShell, Bash).
  • Excellent communication skills.
  • DFIR certifications (e.g., GCFE, GCFA, GNFA, CFCE).
  • Preferred certifications include MCCE, MCFE, GCFR.

#LI-MD1

What Cencora Offers

We provide competitive compensation, comprehensive benefits, and resources that foster an inclusive culture. Benefits include health coverage, wellness programs, support for working families, training, professional development, mentorship, and more. For details, visit https://www.virtualfairhub.com/cencora.

Equal Employment Opportunity

Cencora is committed to equal opportunity employment, prohibiting discrimination and harassment, and providing reasonable accommodations for individuals with disabilities. To request accommodations, contact 888.692.2272 or email hrsc@cencora.com. Messages unrelated to accommodations will not be addressed.

Affiliated Companies

Affiliated Companies: AmerisourceBergen Services Corporation

Get your free, confidential resume review.
or drag and drop a PDF, DOC, DOCX, ODT, or PAGES file up to 5MB.

Similar jobs

Digital Forensic & Incident Response Lead Engineer (hybrid)

Alloga Network

Carrollton

Hybrid

USD 100,000 - 130,000

3 days ago
Be an early applicant

Digital Forensic & Incident Response Lead Engineer (hybrid)

AmerisourceBergen

Dallas

Hybrid

USD 120,000 - 150,000

6 days ago
Be an early applicant

Digital Forensic & Incident Response Lead Engineer (hybrid)

Cencora

Carrollton

Hybrid

USD 100,000 - 140,000

18 days ago

Digital Forensic & Incident Response Lead Engineer (hybrid)

Cencora

Dallas

Hybrid

USD 100,000 - 140,000

18 days ago