Engineer II - Cyber Incident Response

Relha LLC

Conshohocken, Northern (Montgomery County, KY)

Hybrid

USD 90,000 - 130,000

Full time

2 days ago
Be an early applicant
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Benefits offered by this job

Medical, dental, and vision
Training and professional development
Mentorship programs

Job summary

Cencora is seeking an Engineer II, Cyber Incident Response, to join the Security Operations Center and advance our capabilities in detecting, investigating, and containing cyber threats. You will work with global teams to strengthen detection, respond to incidents, and contribute to playbooks and runbooks.

The role requires hands-on technical expertise, strong analytical skills, and the ability to thrive in a fast-paced environment.

Qualifications

  • Bachelor’s degree in Cybersecurity, Computer Science, Information Technology, or equivalent work experience.
  • Strong knowledge of cybersecurity fundamentals, incident response methodology, and adversary tactics.
  • Familiarity with NIST, MITRE ATT&CK, and ISO 27035 frameworks.

Responsibilities

  • Investigate and respond to cybersecurity incidents, including phishing, malware, ransomware, and unauthorized access attempts.
  • Perform analysis of logs, alerts, and forensic data to determine the scope and impact of incidents.
  • Escalate complex or high-severity incidents to Engineer III, Lead, or Principal staff with clear documentation.
  • Assist in containment, eradication, and recovery activities during incident response.
  • Contribute to development and maintenance of SOC playbooks, runbooks, and SOPs.
  • Collaborate with threat intel, vulnerability mgmt, and forensics to strengthen detection and response.
  • Participate in lessons-learned sessions and improve SOC processes and tooling.
  • Support junior analysts (Engineer I) with guidance on investigative techniques.

Skills

Cybersecurity basics
Incident response
Threat intelligence
Analytical thinking
Communication skills

Education

Bachelor’s degree in Cybersecurity, CS, IT, or equivalent

Tools

SIEM
EDR
Splunk
CrowdStrike
Wireshark

Job description

Our team members are at the heart of everything we do. At Cencora, we are united in our responsibility to create healthier futures, and every person here is essential to us being able to deliver on that purpose. If you want to make a difference at the center of health, come join our innovative company and help us improve the lives of people and animals everywhere.

Position Summary

The Engineer II, Cyber Incident Response, is a mid-level technical role within the Security Operations Center (SOC) responsible for detecting, investigating, and responding to cybersecurity incidents. This role performs in-depth analysis of alerts, escalates complex cases, and contributes to the improvement of response processes and playbooks. The Engineer II will collaborate with global cyber defense teams to contain threats, minimize business impact, and strengthen detection capabilities. This position requires strong analytical skills, hands-on technical expertise, and the ability to operate effectively in a fast-paced environment.

Primary Duties and Responsibilities

Investigate and respond to cybersecurity incidents, including phishing, malware, ransomware, and unauthorized access attempts.

Perform analysis of logs, alerts, and forensic data to determine the scope and impact of incidents.

Escalate complex or high-severity incidents to Engineer III, Lead, or Principal staff, providing clear documentation and evidence.

Assist in containment, eradication, and recovery activities during incident response.

Contribute to the development and maintenance of SOC playbooks, runbooks, and standard operating procedures.

Collaborate with threat intelligence, vulnerability management, and forensics teams to strengthen detection and response strategies.

Participate in lessons-learned sessions and recommend improvements to SOC processes and tooling.

Support junior analysts (Engineer I) by sharing knowledge and providing guidance on investigative techniques.

Education and Qualifications

Bachelor’s degree in Cybersecurity, Computer Science, Information Technology, or equivalent work experience.

Strong knowledge of cybersecurity fundamentals, incident response methodology, and adversary tactics.

Familiarity with industry frameworks such as NIST, MITRE ATT&CK, and ISO 27035.

Preferred Certifications
  • GIAC Certified Incident Handler (GCIH)
  • GIAC Certified Intrusion Analyst (GCIA)
  • CompTIA Security+ or CySA+
  • Certified Ethical Hacker (CEH)
Work Experience

3–5 years of progressive experience in cybersecurity, with at least 2 years in SOC operations or incident response.

Hands-on experience with SIEM, EDR, and forensic tools (e.g., Splunk, CrowdStrike, Wireshark).

Demonstrated ability to analyze logs, alerts, and artifacts to support incident investigations.

Strong written and verbal communication skills for documenting findings and briefing stakeholders.

What Cencora offers

We provide compensation, benefits, and resources that enable a highly inclusive culture and support our team members’ ability to live with purpose every day. In addition to traditional offerings like medical, dental, and vision care, we also provide a comprehensive suite of benefits that focus on the physical, emotional, financial, and social aspects of wellness. This encompasses support for working families, which may include backup dependent care, adoption assistance, infertility coverage, family building support, behavioral health solutions, paid parental leave, and paid caregiver leave. To encourage your personal growth, we also offer a variety of training programs, professional development resources, and opportunities to participate in mentorship programs, employee resource groups, volunteer activities, and much more. For details, visit https://www.virtualfairhub.com/cencora

Cencora is committed to providing equal employment opportunity without regard to race, color, religion, sex, sexual orientation, gender identity, genetic information, national origin, age, disability, veteran status or membership in any other class protected by federal, state or local law.

The company’s continued success depends on the full and effective utilization of qualified individuals. Therefore, harassment is prohibited and all matters related to recruiting, training, compensation, benefits, promotions and transfers comply with equal opportunity principles and are non-discriminatory.

Cencora is committed to providing reasonable accommodations to individuals with disabilities during the employment process which are consistent with legal requirements. If you wish to request an accommodation while seeking employment, please call 888.692.2272 or email [emailprotected] . We will make accommodation determinations on a request-by-request basis. Messages and emails regarding anything other than accommodations requests will not be returned

Affiliated Companies
  • AmerisourceBergen Services Corporation
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Threat Hunting Engineer Lead
Threat Hunting Engineer Lead

Cencora • Carrollton (TX)

On-site
USD 140,000 - 190,000
Medical, dental, and vision coverage
Parental leave
Training and mentorship programs
+1
Engineer III, Red Team
Engineer III, Red Team

AmerisourceBergen Corporation (Cencora) • Carrollton (TX)

On-site
USD 120,000 - 180,000
Engineer III, Red Team
Engineer III, Red Team

AmerisourceBergen Corporation (Cencora) • Conshohocken

On-site
USD 140,000 - 190,000
Engineer III, Red Team
Engineer III, Red Team

Cencora • Carrollton (TX)

On-site
USD 150,000 - 210,000
Senior Director of Cyber Defense Architecture & Engineering
Senior Director of Cyber Defense Architecture & Engineering

Cencora • Dallas (TX)

On-site
USD 142,000 - 283,000
Threat Hunting Engineer Lead
Threat Hunting Engineer Lead

AmerisourceBergen Corporation (Cencora) • Conshohocken

On-site
USD 120,000 - 180,000
Senior Director of Cyber Defense Architecture & Engineering
Senior Director of Cyber Defense Architecture & Engineering

Cencora • Pennsylvania

On-site
USD 142,000 - 283,000
Senior Director of Cyber Defense Architecture & Engineering
Senior Director of Cyber Defense Architecture & Engineering

RXinsider LTD. • Town of Texas (WI)

On-site
USD 142,000 - 283,000
Threat Hunting Engineer Lead
Threat Hunting Engineer Lead

AmerisourceBergen Corporation (Cencora) • Carrollton (TX)

On-site
USD 130,000 - 180,000
Engineer III - OT Security Engineer
Engineer III - OT Security Engineer

Cencora • United (PA)

On-site
USD 88,000 - 127,000
Medical, dental, and vision care
Comprehensive wellness benefits
Professional development opportunities