Threat Hunting Engineer Lead

World Courier

Carrollton (TX)

On-site

USD 140,000 - 190,000

Full time

8 days ago

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Cencora in the United States is seeking a Threat Hunting Engineer Lead to lead proactive threat hunting within the Security Operations Center. You will apply adversarial techniques and telemetry to improve detection, response, and security controls across the enterprise.

The role requires coordinating with multiple teams, conducting research on emerging threats, developing monitoring and analytics methodologies for SIEM/EDR/SOAR, and delivering security briefings on critical issues impacting the

Qualifications

  • Bachelor’s degree in Cybersecurity or related field; equivalent experience considered.
  • 7+ years of progressive cybersecurity experience with focus on incident response, forensics, threat hunting, or detection.
  • Exposure to threat detection and logging platforms (SIEM/EDR/SOAR).
  • Strong understanding of Windows, Linux, MacOS networks, cloud security, and defensive tech.
  • Familiarity with MITRE ATT&CK framework.
  • Hands-on scripting in Python/Go/PowerShell.

Responsibilities

  • Conduct threat hunting to identify, classify, prioritize, and report on cyber threats.
  • Research emerging threats; correlate and trend incident activity.
  • Craft methodologies for monitoring, detection, and analytics for SIEM/EDR/SOAR.
  • Provide security gap analyses and assessments of platform effectiveness.
  • Formulate methods to monitor and respond to security events.
  • Coordinate across teams for incident response, investigation, and recovery.
  • Analyze incidents to improve alerting schemas and defenses.
  • Deliver security briefings on critical enterprise issues.

Skills

Threat hunting
Incident response
Forensics
Security analytics
Scripting
Automation
Cloud security
Network protocols
Communication
MITRE ATT&CK

Education

Bachelor’s degree in Cybersecurity
Master’s degree in Cybersecurity
6+ years of cybersecurity experience

Tools

SIEM
EDR
SOAR
MITRE ATT&CK
Python
Go
PowerShell
Windows
Linux
MacOS

Job description

Our team members are at the heart of everything we do. At Cencora, we are united in our responsibility to create healthier futures, and every person here is essential to us being able to deliver on that purpose. If you want to make a difference at the center of health, come join our innovative company and help us improve the lives of people and animals everywhere.

Job Details

The Threat Hunting Engineer Lead is a technical leader in the Cencora Security Operations Center who applies their knowledge of adversarial tactics and techniques and their experience with security controls, infrastructure, and networking to proactively investigate potential cyber threats. They will use their findings to improve detection, response, and security controls.

RESPONSIBILITIES
  • Conduct threat hunting to identify, classify, prioritize, and report on cyber threats following industry best practices.
  • Conduct research on emerging security threats; Provide correlation and trending of cyber incident activity.
  • Craft methodologies for monitoring , detection, and analytics for SIEM, EDR, SOAR, and other platforms.
  • Provide security gap analysis and effectiveness assessments of security platform technologies.
  • Formulates methodologies to monitor for as well as respond to security related events.
  • Identification of and correlation with other data sources to enhance security event detection, monitoring and response capabilities.
  • Collaborates across multiple teams on the response to information security incidents, investigation, countermeasures, and recovery.
  • Analysis of security incidents for further enhancement of alerting schema.
  • Provides security briefings to advise on critical issues that may affect the enterprise.
EDUCATION & QUALIFICATIONS
  • Bachelor’s degree in Cybersecurity, Computer Science, Information Systems, or equivalent work experience
  • 7+ years of progressive experience in cybersecurity, with at least 4 years dedicated to incident response, forensics, threat hunting, threat detection, or related role.
  • Expertise with common threat detection and logging platforms for SIEM, EDR, SOAR, etc.
  • Strong understanding of network protocols, operating system internals (Windows, Linux, MacOS), cloud security, and defensive security technologies.
  • Familiarity with intelligence frameworks such as MITRE ATT&CK.
  • Hands-on experience with at least one scripting or programming language for tooling and automation (e.g., Python, Go, Powershell).
  • Strong written and verbal communication skills, with the ability to articulate complex technical findings to a non-technical audience.
PREFERRED CERTIFICATIONS
  • GIAC GCFA — Certified Forensic Analyst
  • GIAC GCFR — Cloud Forensics Responder
  • GIAC GNFA — Network Forensic Analyst
  • GIAC GCIA — Certified Intrusion Analyst
  • GIAC GCDA — Certified Detection Analyst
  • GIAC GDAT — Defending Advanced Threats
  • Bachelor’s degree in cyber security, computer science, information technology, information systems, or a related field, or equivalent experience required.
  • Master’s degree in cyber security, computer science, information technology, information systems, or a related field, or equivalent experience preferred.
  • 6+ years of experience in cyber threat intelligence, cyber security, security operations, incident response, threat analysis, or a related field required.
  • Certified in Cybersecurity (CC) or equivalent certification preferred.
  • Certified Threat Intelligence Analyst (CTIA) or equivalent certification preferred.
  • Certified Ethical Hacker (CEH) or equivalent certification preferred.
  • In addition to traditional offerings like medical, dental, and vision care, we also provide a comprehensive suite of benefits that focus on the physical, emotional, financial, and social aspects of wellness.
  • This encompasses support for working families, which may include backup dependent care, adoption assistance, infertility coverage, family building support, behavioral health solutions, paid parental leave, and paid caregiver leave.
  • To encourage your personal growth, we also offer a variety of training programs, professional development resources, and opportunities to participate in mentorship programs, employee resource groups, volunteer activities, and much more.
  • For details, visit https://www.virtualfairhub.com/cencora

Full time Equal Employment Opportunity

Cencora is committed to providing equal employment opportunity without regard to race, color, religion, sex, sexual orientation, gender identity, genetic information, national origin, age, disability, veteran status or membership in any other class protected by federal, state or local law. The company’s continued success depends on the full and effective utilization of qualified individuals. Therefore, harassment is prohibited and all matters related to recruiting, training, compensation, benefits, promotions and transfers comply with equal opportunity principles and are non-discriminatory.

Cencora is committed to providing reasonable accommodations to individuals with disabilities during the employment process which are consistent with legal requirements. If you wish to request an accommodation while seeking employment, please call 888.692.2272 or email hrsc@cencora.com. We will make accommodation determinations on a request-by-request basis.

Messages and emails regarding anything other than accommodations requests will not be returned.

Affiliated Companies Affiliated Companies: AmerisourceBergen Services Corporation

Cencora is a leading global pharmaceutical solutions company that is committed to improving the lives of people and animals everywhere. We connect manufacturers, providers, and patients to ensure that anyone can get the therapies they need, where and when they need them. We’re a purpose-driven organization, where all of our team members around the world are united in our responsibility to create healthier futures. We work together every day to help our partners bring their innovations to patients worldwide, creating unparalleled access and impact at the center of health.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Director of Cyber Defense Architecture & Engineering
Senior Director of Cyber Defense Architecture & Engineering

AmerisourceBergen Corporation • Dallas (TX), Northern (KY)

Hybrid
USD 142,000 - 283,000
Senior Director of Cyber Defense Architecture & Engineering
Senior Director of Cyber Defense Architecture & Engineering

AmerisourceBergen Services Corporation • Town of Texas (WI)

Hybrid
USD 142,000 - 283,000
Senior Director of Cyber Defense Architecture & Engineering
Senior Director of Cyber Defense Architecture & Engineering

Micro Technologies • Dallas (TX), Northern (KY)

Hybrid
USD 142,000 - 283,000
Threat Hunting Engineer Lead
Threat Hunting Engineer Lead

Cencora • Conshohocken

On-site
USD 150,000 - 190,000
Medical insurance
Dental insurance
Vision care
+3
Engineer III, Vulnerability Management
Engineer III, Vulnerability Management

Micro Technologies • Philadelphia

On-site
USD 120,000 - 160,000
Engineer III, Vulnerability Management
Engineer III, Vulnerability Management

American Health Packaging • Philadelphia

Hybrid
USD 120,000 - 180,000
Engineer III, Red Team
Engineer III, Red Team

American Health Packaging • Northern (KY)

Hybrid
USD 120,000 - 180,000
Medical coverage
Dental coverage
Vision coverage
+2
Senior Director of Cloud Security
Senior Director of Cloud Security

AmerisourceBergen Services Corporation • Pennsylvania

Hybrid
USD 142,000 - 283,000
Senior Director of Cloud Security
Senior Director of Cloud Security

World Courier • Philadelphia

On-site
USD 142,000 - 283,000
Senior Director of Enterprise Security Architecture
Senior Director of Enterprise Security Architecture

Micro Technologies • Philadelphia

On-site
USD 142,000 - 283,000