Lead Threat Hunter & Detection Architect

AmerisourceBergen Corporation (Cencora)

Conshohocken (Montgomery County)

On-site

USD 120,000 - 180,000

Full time

11 days ago

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Cencora's Threat Hunting Engineer Lead within the Security Operations Center leads proactive cyber threat investigations, develops detection strategies, and guides incident response. The role requires deep experience in threat hunting, forensics, and security controls across endpoints, networks, and cloud environments.

You will collaborate with IT and security teams, craft monitoring methodologies for SIEM, EDR, and SOAR, and communicate findings clearly to non-technical partners.

Qualifications

  • Bachelor's degree in Cybersecurity, Computer Science, Information Systems, or equivalent.
  • 7+ years of progressive cybersecurity experience, with at least 4 years in incident response, forensics, threat hunting, detection, or related role.
  • Expertise with common threat detection and logging platforms for SIEM, EDR, SOAR, etc.
  • Strong understanding of network protocols, OS internals (Windows, Linux, MacOS), cloud security, and defensive security technologies.
  • Familiarity with MITRE ATT&CK frameworks.
  • Hands-on scripting or programming experience (Python, Go, PowerShell).
  • Strong written and verbal communication skills, with ability to articulate findings to a non-technical audience.

Responsibilities

  • Conduct threat hunting to identify, classify, prioritize, and report on cyber threats following industry best practices.
  • Conduct research on emerging security threats; provide correlation and trending of cyber incident activity.
  • Craft methodologies for monitoring, detection, and analytics for SIEM, EDR, SOAR, and other platforms.
  • Provide security gap analysis and effectiveness assessments of security platform technologies.
  • Formulates methodologies to monitor for as well as respond to security related events.
  • Identification of and correlation with other data sources to enhance security event detection, monitoring and response capabilities.
  • Collaborates across multiple teams on the response to information security incidents, investigation, countermeasures, and recovery.
  • Analysis of security incidents for further enhancement of alerting schema.
  • Provides security briefings to advise on critical issues that may affect the enterprise.

Skills

Threat hunting
Incident response
Forensics
Communication

Education

Bachelor's degree in Cybersecurity
Bachelor's degree in Computer Science / Information Systems
Master's degree preferred

Tools

SIEM
EDR
SOAR
Python
PowerShell

Job description

Cencora's Threat Hunting Engineer Lead within the Security Operations Center leads proactive cyber threat investigations, develops detection strategies, and guides incident response. The role requires deep experience in threat hunting, forensics, and security controls across endpoints, networks, and cloud environments.

You will collaborate with IT and security teams, craft monitoring methodologies for SIEM, EDR, and SOAR, and communicate findings clearly to non-technical partners.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Threat Hunter & SOC Lead
Senior Threat Hunter & SOC Lead

World Courier • Carrollton (TX)

On-site
USD 140,000 - 190,000
Threat Hunting Lead: Architect of Proactive Cyber Defense
Threat Hunting Lead: Architect of Proactive Cyber Defense

AmerisourceBergen Corporation (Cencora) • Carrollton (TX)

On-site
USD 130,000 - 180,000
Threat Hunting Lead: Architect of Proactive Defense
Threat Hunting Lead: Architect of Proactive Defense

Cencora • Carrollton (TX)

On-site
USD 140,000 - 190,000
Medical, dental, and vision coverage
Parental leave
Training and mentorship programs
+1
Lead Threat Hunter & Adversary Emulation Engineer
Lead Threat Hunter & Adversary Emulation Engineer

Elastic • Mountain View (CA)

Hybrid
USD 160,000 - 253,000
Health coverage
Flexible locations & schedules
Vacation days
+4
Senior Cyber Threat Intelligence & Threat Hunting Lead
Senior Cyber Threat Intelligence & Threat Hunting Lead

cFocus Software Incorporated • Washington

On-site
USD 180,000 - 230,000
Lead Threat Hunting & Adversary Emulation Engineer
Lead Threat Hunting & Adversary Emulation Engineer

Elastic • United States

Remote
USD 160,000 - 253,000
Health coverage for you and family
Stock program and 401k matching
Generous vacation days
+1
Lead Threat Hunting & Adversary Emulation Engineer
Lead Threat Hunting & Adversary Emulation Engineer

Referral Board • United States

On-site
USD 160,000 - 253,000
Stock program
401k matching
Cyber Threat Hunt Lead - Proactive Defense Leader
Cyber Threat Hunt Lead - Proactive Defense Leader

Accenture Federal Services • Virginia (MN)

On-site
USD 117,000 - 243,000
Senior Threat Hunter & Incident Response Leader
Senior Threat Hunter & Incident Response Leader

Foresite Cybersecurity • Overland Park (KS)

On-site
USD 90,000 - 120,000
Health insurance
Paid time off
Professional development
+2
Cyber Defense Architecture & Engineering Lead
Cyber Defense Architecture & Engineering Lead

Cencora • Dallas (TX)

On-site
USD 142,000 - 283,000