Threat Hunting Engineer Lead

myhrabc

Carrollton (TX)

On-site

USD 150,000 - 190,000

Full time

4 days ago
Be an early applicant
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Benefits offered by this job

Comprehensive benefits
Training and development

Job summary

Cencora seeks a Threat Hunting Engineer Lead to guide security operations, investigate adversarial activity, and improve detection, response, and controls across the enterprise. You will leverage your experience with threat hunts, incident response, forensics, and security tooling to drive proactive defense strategies.

Ideal candidates bring 7+ years in cybersecurity with hands-on skills in threat hunting, threat detection, and platform analytics, plus strong communication to translate technical

Qualifications

  • Bachelor's degree in Cybersecurity, Computer Science, Information Systems, or equivalent work experience.
  • 7+ years of progressive experience in cybersecurity, with at least 4 years dedicated to incident response, forensics, threat hunting, threat detection, or related role.
  • Expertise with common threat detection and logging platforms for SIEM, EDR, SOAR, etc.
  • Strong understanding of network protocols, operating system internals (Windows, Linux, MacOS), cloud security, and defensive security technologies.
  • Familiarity with MITRE ATT&CK.

Responsibilities

  • Conduct threat hunting to identify, classify, prioritize, and report on cyber threats following industry best practices.
  • Conduct research on emerging security threats; Provide correlation and trending of cyber incident activity.
  • Craft methodologies for monitoring , detection, and analytics for SIEM, EDR, SOAR, and other platforms.
  • Provide security gap analysis and effectiveness assessments of security platform technologies.
  • Formulates methodologies to monitor for as well as respond to security related events.
  • Identification of and correlation with other data sources to enhance security event detection, monitoring and response capabilities.
  • Collaborates across multiple teams on the response to information security incidents, investigation, countermeasures, and recovery.
  • Analysis of security incidents for further enhancement of alerting schema.
  • Provides security briefings to advise on critical issues that may affect the enterprise.

Skills

Threat hunting
Incident response
Threat detection
Security analytics
Communication
Scripting languages
MITRE ATT&CK

Education

Bachelor's degree in Cybersecurity/CS/IT
Master's degree in Cybersecurity/CS/IT
6+ years cybersecurity experience

Tools

SIEM
EDR
SOAR
Python
Go
PowerShell

Job description

Job Details

The Threat Hunting Engineer Lead is a technical leader in the Cencora Security Operations Center who applies their knowledge of adversarial tactics and techniques and their experience with security controls, infrastructure, and networking to proactively investigate potential cyber threats. They will use their findings to improve detection, response, and security controls.



Responsibilities


  • Conduct threat hunting to identify, classify, prioritize, and report on cyber threats following industry best practices.

  • Conduct research on emerging security threats; Provide correlation and trending of cyber incident activity.

  • Craft methodologies for monitoring , detection, and analytics for SIEM, EDR, SOAR, and other platforms.

  • Provide security gap analysis and effectiveness assessments of security platform technologies.

  • Formulates methodologies to monitor for as well as respond to security related events.

  • Identification of and correlation with other data sources to enhance security event detection, monitoring and response capabilities.

  • Collaborates across multiple teams on the response to information security incidents, investigation, countermeasures, and recovery.

  • Analysis of security incidents for further enhancement of alerting schema.

  • Provides security briefings to advise on critical issues that may affect the enterprise.



Education & Qualifications


  • Bachelor's degree in Cybersecurity, Computer Science, Information Systems, or equivalent work experience

  • 7+ years of progressive experience in cybersecurity, with at least 4 years dedicated to incident response, forensics, threat hunting, threat detection, or related role.

  • Expertise with common threat detection and logging platforms for SIEM, EDR, SOAR, etc.

  • Strong understanding of network protocols, operating system internals (Windows, Linux, MacOS), cloud security, and defensive security technologies.

  • Familiarity with intelligence frameworks such as MITRE ATT&CK.

  • Hands-on experience with at least one scripting or programming language for tooling and automation (e.g., Python, Go, Powershell).

  • Strong written and verbal communication skills, with the ability to articulate complex technical findings to a non-technical audience.



Preferred Certifications


  • GIAC GCFA - Certified Forensic Analyst

  • GIAC GCFR - Cloud Forensics Responder

  • GIAC GNFA - Network Forensic Analyst

  • GIAC GCIA - Certified Intrusion Analyst

  • GIAC GCDA - Certified Detection Analyst

  • GIAC GDAT - Defending Advanced Threats



Preferred Qualifications


  • Bachelor's degree in cyber security, computer science, information technology, information systems, or a related field, or equivalent experience required.

  • Master's degree in cyber security, computer science, information technology, information systems, or a related field, or equivalent experience preferred.

  • 6+ years of experience in cyber threat intelligence, cyber security, security operations, incident response, threat analysis, or a related field required.

  • Certified in Cybersecurity (CC) or equivalent certification preferred.

  • Certified Threat Intelligence Analyst (CTIA) or equivalent certification preferred.

  • Certified Ethical Hacker (CEH) or equivalent certification preferred.



What Cencora offers

We provide compensation, benefits, and resources that enable a highly inclusive culture and support our team members' ability to live with purpose every day. In addition to traditional offerings like medical, dental, and vision care, we also provide a comprehensive suite of benefits that focus on the physical, emotional, financial, and social aspects of wellness. This encompasses support for working families, which may include backup dependent care, adoption assistance, infertility coverage, family building support, behavioral health solutions, paid parental leave, and paid caregiver leave. To encourage your personal growth, we also offer a variety of training programs, professional development resources, and opportunities to participate in mentorship programs, employee resource groups, volunteer activities, and much more. For details, visit https://www.virtualfairhub.com/cencora



Full time



Equal Employment Opportunity

Cencora is committed to providing equal employment opportunity without regard to race, color, religion, sex, sexual orientation, gender identity, genetic information, national origin, age, disability, veteran status or membership in any other class protected by federal, state or local law.


The company's continued success depends on the full and effective utilization of qualified individuals. Therefore, harassment is prohibited and all matters related to recruiting, training, compensatio

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Engineer III, Red Team
Engineer III, Red Team

AmerisourceBergen Corporation (Cencora) • Carrollton (TX)

On-site
USD 120,000 - 180,000
Engineer III, Vulnerability Management
Engineer III, Vulnerability Management

Cencora • Philadelphia

On-site
USD 120,000 - 180,000
Director, Vulnerability Management
Director, Vulnerability Management

Cencora • Conshohocken

On-site
USD 180,000 - 240,000
Medical, dental, and vision benefits
Backup dependent care
Adoption assistance
+6
Director, Vulnerability Management
Director, Vulnerability Management

Cencora • Carrollton (TX)

On-site
USD 180,000 - 240,000
Engineer III, Red Team
Engineer III, Red Team

Cencora • Carrollton (TX)

On-site
USD 150,000 - 210,000
Principal Architect, Security Architecture
Principal Architect, Security Architecture

Cencora • Raleigh (NC)

On-site
USD 111,000 - 221,000
Medical, dental, and vision care
Training programs and mentorship
Employee resource groups and volunteer
Engineer II - Cyber Incident Response
Engineer II - Cyber Incident Response

AmerisourceBergen Corporation (Cencora) • Carrollton (TX)

On-site
USD 90,000 - 130,000
Principal Architect, Security Architecture
Principal Architect, Security Architecture

Cencora • Harrisburg

On-site
USD 111,000 - 221,000
Wellness benefits
Training programs
Mentorship programs
+2
Principal Architect, Security Architecture
Principal Architect, Security Architecture

Cencora • Saint Paul (MN)

On-site
USD 111,000 - 221,000
Comprehensive benefits
Mentorship programs
Principal Architect, Security Architecture
Principal Architect, Security Architecture

Cencora • Town of Texas (WI)

On-site
USD 141,000 - 191,000
Medical coverage
Dental coverage
Vision care
+8