Amerisource Bergen

Threat Hunting Engineer Lead

Amerisource Bergen$120K — $145K *
Information Technology
5 - 7 years of experience
Job Overview by Ladders

Qualifications

  • Bachelor's degree in Cybersecurity, Computer Science, or equivalent work experience.
  • 7+ years progressive experience in cybersecurity with 4+ years in threat hunting or incident response.
  • Expertise in threat detection and logging platforms (SIEM, EDR, SOAR).
  • Strong understanding of network protocols and operating systems (Windows, Linux, MacOS).
  • Familiarity with intelligence frameworks such as MITRE ATT&CK.
  • Hands-on experience with scripting or programming languages (e.g., Python, Go).
  • Strong written and verbal communication skills to convey technical concepts.

Responsibilities

  • Conduct threat hunting to identify and report on cyber threats.
  • Research emerging security threats and analyze cyber incident activity.
  • Develop methodologies for monitoring and detecting using SIEM and EDR platforms.
  • Perform security gap analysis on platform technologies and provide effectiveness assessments.
  • Formulate strategies to monitor and respond to security-related events.
  • Collaborate with teams to respond to information security incidents and recovery efforts.
  • Analyze security incidents to enhance alerting schema and provide briefings on critical issues.

Benefits

  • Comprehensive medical, dental, and vision care.
  • Support for working families including backup care and adoption assistance.
  • Behavioral health solutions and paid parental leave.
  • Opportunities for professional development and mentorship.
  • Inclusive culture focusing on physical, emotional, and financial wellness.
Full Job Description
Job Details

The Threat Hunting Engineer Lead is a technical leader in the Cencora Security Operations Center who applies their knowledge of adversarial tactics and techniques and their experience with security controls, infrastructure, and networking to proactively investigate potential cyber threats. They will use their findings to improve detection, response, and security controls.

RESPONSIBILITIES:
  • Conduct threat hunting to identify, classify, prioritize, and report on cyber threats following industry best practices.
  • Conduct research on emerging security threats; Provide correlation and trending of cyber incident activity.
  • Craft methodologies for monitoring , detection, and analytics for SIEM, EDR, SOAR, and other platforms.
  • Provide security gap analysis and effectiveness assessments of security platform technologies.
  • Formulates methodologies to monitor for as well as respond to security related events.
  • Identification of and correlation with other data sources to enhance security event detection, monitoring and response capabilities.
  • Collaborates across multiple teams on the response to information security incidents, investigation, countermeasures, and recovery.
  • Analysis of security incidents for further enhancement of alerting schema.
  • Provides security briefings to advise on critical issues that may affect the enterprise.


EDUCATION & QUALIFICATIONS:
  • Bachelor's degree in Cybersecurity, Computer Science, Information Systems, or equivalent work experience
  • 7+ years of progressive experience in cybersecurity, with at least 4 years dedicated to incident response, forensics, threat hunting, threat detection, or related role.
  • Expertise with common threat detection and logging platforms for SIEM, EDR, SOAR, etc.
  • Strong understanding of network protocols, operating system internals (Windows, Linux, MacOS), cloud security, and defensive security technologies.
  • Familiarity with intelligence frameworks such as MITRE ATT&CK.
  • Hands-on experience with at least one scripting or programming language for tooling and automation (e.g., Python, Go, Powershell).
  • Strong written and verbal communication skills, with the ability to articulate complex technical findings to a non-technical audience.


PREFERRED CERTIFICATIONS:
  • GIAC GCFA - Certified Forensic Analyst
  • GIAC GCFR - Cloud Forensics Responder
  • GIAC GNFA - Network Forensic Analyst
  • GIAC GCIA - Certified Intrusion Analyst
  • GIAC GCDA - Certified Detection Analyst
  • GIAC GDAT - Defending Advanced Threats


Bachelor's degree in cyber security, computer science, information technology, information systems, or a related field, or equivalent experience required.
Master's degree in cyber security, computer science, information technology, information systems, or a related field, or equivalent experience preferred.

6+ years of experience in cyber threat intelligence, cyber security, security operations, incident response, threat analysis, or a related field required.

Certified in Cybersecurity (CC) or equivalent certification preferred.
Certified Threat Intelligence Analyst (CTIA) or equivalent certification preferred.
Certified Ethical Hacker (CEH) or equivalent certification preferred.

What Cencora offers

We provide compensation, benefits, and resources that enable a highly inclusive culture and support our team members' ability to live with purpose every day. In addition to traditional offerings like medical, dental, and vision care, we also provide a comprehensive suite of benefits that focus on the physical, emotional, financial, and social aspects of wellness. This encompasses support for working families, which may include backup dependent care, adoption assistance, infertility coverage, family building support, behavioral health solutions, paid parental leave, and paid caregiver leave. To encourage your personal growth, we also offer a variety of training programs, professional development resources, and opportunities to participate in mentorship programs, employee resource groups, volunteer activities, and much more. For details, visit https://www.virtualfairhub.com/cencora

Full time

About Amerisource Bergen

AmerisourceBergen Corporation is a pharmaceutical distribution company headquartered in Chesterbrook, Pennsylvania. It was founded in 2001 through the merger of AmeriSource Health Corporation and Bergen Brunswig Corporation. The company distributes a wide range of pharmaceutical products, including brand-name and generic drugs, specialty drugs, and over-the-counter medications. AmerisourceBergen serves healthcare providers, including hospitals, pharmacies, and physician practices, as well as pharmaceutical manufacturers. The company is committed to sustainability and has implemented several initiatives to reduce its environmental impact.
Learn more about Amerisource Bergen
Size
21,000 employees
Industry

Similar Jobs

More Jobs at Amerisource Bergen

More Information Technology Jobs

Find similar Threat Hunting Engineer Lead jobs: