Lead Threat Detection Engineer - Automation & SIEM

McKesson’s Corporate

Irving, Winslow Township (TX, NJ)

On-site

USD 139,000 - 232,000

Full time

14 days+
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Job summary

McKesson is seeking a Lead Threat Detection Engineer to advance automated detection capabilities within a global security team. You will help mature Detection-as-Code, design detection content, and ensure scalable alert performance across our stack.

The role requires extensive experience in threat monitoring, rule writing, and SIEM tooling, plus collaboration with Intel, SOC, and Red Teams to improve coverage and reduce risk to McKesson operations.

Qualifications

  • 10+ years of professional experience in detection engineering or related fields.
  • Strong knowledge of threat actors, TTPs, and security operations.
  • Experience with rule writing and alert tuning to reduce false positives.

Responsibilities

  • Mature detection from manual to automated, Detection-as-Code.
  • Develop use-cases from intel, red team findings, and incident data.
  • Write detection and correlation rules across our stack.
  • Onboard logs and identify gaps in data for alerts.
  • Collaborate with Intel, SOC, and Red Teams to improve coverage.

Skills

Detection engineering
Rule development
Python scripting
Threat intelligence
Cross-team collaboration

Education

Bachelor’s degree in Computer Science, Information Security, Security Engineering, Statistics, or Data Science

Tools

Splunk SPL
SIEM

Job description

McKesson is seeking a Lead Threat Detection Engineer to advance automated detection capabilities within a global security team. You will help mature Detection-as-Code, design detection content, and ensure scalable alert performance across our stack.

The role requires extensive experience in threat monitoring, rule writing, and SIEM tooling, plus collaboration with Intel, SOC, and Red Teams to improve coverage and reduce risk to McKesson operations.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Lead Threat Detection Engineer
Lead Threat Detection Engineer

McKesson’s Corporate • Irving (TX), Winslow Township (NJ)

On-site
USD 139,000 - 232,000
Lead Detection Engineer — Splunk ES & Threat Hunting (Remote)
Lead Detection Engineer — Splunk ES & Threat Hunting (Remote)

K&A Technologies LLC • Washington

Hybrid
USD 165,000 - 190,000
Lead Security Detection & Response Engineer
Lead Security Detection & Response Engineer

Cybersecurity Jobs • Kansas City (MO)

Hybrid
USD 120,000 - 190,000
Senior Threat Detection Lead - SOAR & SIEM Expert
Senior Threat Detection Lead - SOAR & SIEM Expert

ADP • Roseland (NJ)

On-site
USD 150,000 - 210,000
AI-Driven Threat Detection Engineer
AI-Driven Threat Detection Engineer

Capgemini • New York (NY)

On-site
USD 105,000 - 145,000
Senior Threat Engineer: AI-Powered Detection & Red Teaming
Senior Threat Engineer: AI-Powered Detection & Red Teaming

CDW LLC. • United States

Remote
USD 137,000 - 191,000
Threat Defense Engineer — SIEM/EDR Expert
Threat Defense Engineer — SIEM/EDR Expert

Kids for the Future • United States

Remote
USD 105,000 - 120,000
Detection Engineer: SIEM & Threat Analytics
Detection Engineer: SIEM & Threat Analytics

CBIZ • Independence Township (OH)

On-site
USD 110,000 - 170,000
Remote Threat Detection Engineer - SIEM & Threat Hunting
Remote Threat Detection Engineer - SIEM & Threat Hunting

Beacon Hill Staffing Group, LLC • Concord (NH)

Remote
USD 110,000 - 150,000
Medical insurance
Dental insurance
Vision insurance
+1
Detection & Response Engineer — Threat Hunting & SIEM Pro
Detection & Response Engineer — Threat Hunting & SIEM Pro

Coalfire • United States

Hybrid
USD 120,000 - 150,000
Flexible work model
Certification reimbursement
Comprehensive insurance options
+1