Digital Forensic & Incident Response Lead Engineer (hybrid)

Posted 3 Days Ago
Be an Early Applicant
Austin, TX
Senior level
Healthtech • Logistics • Pharmaceutical
We are united in our responsibility to create healthier futures
The Role
As the Digital Forensic & Incident Response Lead Engineer, you'll manage forensic analysis, lead incident response, and collaborate to enhance cyber security posture.
Summary Generated by Built In

Our team members are at the heart of everything we do. At Cencora, we are united in our responsibility to create healthier futures, and every person here is essential to us being able to deliver on that purpose. If you want to make a difference at the center of health, come join our innovative company and help us improve the lives of people and animals everywhere. Apply today!
Job Details
As a highly skilled Digital Forensic & Incident Response Lead Engineer, you will be in a foundational role in the Cencora Global Security Operations Center. You will contribute thought leadership and expertise to the continued growth of our digital forensics incident response program. You will work closely with other team members to perform threat detection and incident response while providing provide expert-level guidance to junior analysts and other teams within the organization.
The ideal candidate will have extensive experience in digital and network forensics, incident response, and cybersecurity operations in large, international organizations. Must be comfortable leading internal investigations and forensic examination including evidence acquisition from cloud, on-premise, and remote systems while ensuring chain of custody is maintained and that applicable rules of evidence are adhered to.
This position offers hybrid work options in Carrollton, TX
PRIMARY DUTIES AND RESPONSIBILITIES:

  • Manage overall case load and assist with forensic analysis and reporting of case workload when required.
  • Manage evidence Intake/Outtake and Evidence Storage.
  • Use advanced network traffic analysis techniques to identify compromised systems, negate denial of service attacks, and pinpoint resource anomalies.
  • Leads cyber incident response engagements as a senior incident response leader.
  • Serves as a backup to the Continuous Security Operations Regional Manager.
  • Support Continuous Security Operations colleagues with complex and comprehensive event and incident analysis.
  • Collaborates with Cyber Engineering, Vulnerability Management, Threat Intelligence, Attack Surface Reduction, Data Protection and Enterprise IT to elevate Cencora's security posture to next level of maturity.
  • Oversee development of staff to ensure digital forensics procedures are conducted in accordance with policy and best practices.
  • Effectively investigative and conduct root cause analysis, identifying indicators of attack or compromise, attack vectors.
  • Deliver verbal and written reports as needed.
  • Participates in on-call rotation (including weekends) to ensure continuous operations.
  • Participates in internal incident response exercises and drills.
  • Conducts knowledge transfer training sessions to Security Operations team upon technology implementation.
  • Develops, reviews, follows, and implements new runbooks and standard operating procedures.


  • BA/BS degree highly desired but flexible with experience
  • Six (6) or more years of combined security work experience across Cyber Security, Digital Forensics, and Incident Response.
  • Strong experience with Axiom, FTK, SIFT, Volatility, and Timeline analysis.
  • Two (2) years of experience in a lead role (highly desired)
  • Strong knowledge of Microsoft Windows, Active Directory, MS-SQL, Azure, etc.
  • Strong knowledge of Linux/Unix, Mac and AWS.
  • Understand networking, packet captures and NetFlow.
  • Hands-on experience and the following tool categories: SIEM, EDR, email security gateway, SOAR, Firewall, Anti-virus, secure web gateway, DNS
  • Practical experience handling sophisticated and high-priority cyber incidents
  • Deep understanding of cyber security industry frameworks (e.g. MITRE ATT&CK, D3FEND, NIST, Cyber Killschain, etc.)
  • Experience in Python, PowerShell, Bash or any other scripting languages.
  • Excellent written communication skills, with a focus on translating technically complex issues into simple, easy-to-understand concepts in English.
  • Must have DFIR related certification such as GCFE, GCFA, GNFA, CFCE, etc.
  • Preferred certifications include MCCE, MCFE, GCFR.


#LI-MD1
What Cencora offers
We provide compensation, benefits, and resources that enable a highly inclusive culture and support our team members' ability to live with purpose every day. In addition to traditional offerings like medical, dental, and vision care, we also provide a comprehensive suite of benefits that focus on the physical, emotional, financial, and social aspects of wellness. This encompasses support for working families, which may include backup dependent care, adoption assistance, infertility coverage, family building support, behavioral health solutions, paid parental leave, and paid caregiver leave. To encourage your personal growth, we also offer a variety of training programs, professional development resources, and opportunities to participate in mentorship programs, employee resource groups, volunteer activities, and much more. For details, visit https://www.virtualfairhub.com/cencora
Full time
Equal Employment Opportunity
Cencora is committed to providing equal employment opportunity without regard to race, color, religion, sex, sexual orientation, gender identity, genetic information, national origin, age, disability, veteran status or membership in any other class protected by federal, state or local law.
The company's continued success depends on the full and effective utilization of qualified individuals. Therefore, harassment is prohibited and all matters related to recruiting, training, compensation, benefits, promotions and transfers comply with equal opportunity principles and are non-discriminatory.
Cencora is committed to providing reasonable accommodations to individuals with disabilities during the employment process which are consistent with legal requirements. If you wish to request an accommodation while seeking employment, please call 888.692.2272 or email [email protected]. We will make accommodation determinations on a request-by-request basis. Messages and emails regarding anything other than accommodations requests will not be returned
Affiliated Companies
Affiliated Companies: AmerisourceBergen Services Corporation

Top Skills

Anti-Virus
AWS
Axiom
Azure
Bash
Edr
Firewall
Ftk
Linux
macOS
Powershell
Python
SIEM
Sift
Unix
Volatility

What the Team is Saying

Jason
Silvana
Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: Conshohocken, PA
46,000 Employees
Hybrid Workplace
Year Founded: 1871

What We Do

Cencora is a leading pharmaceutical solutions organization centered on improving the lives of people and animals everywhere. With 46,000+ global team members, we have the opportunity to make a positive impact on healthcare in communities everywhere.



Our team members are empowered to activate their careers through a collective of tools and resources designed to support individual career interests and aspirations. We value our listening culture that actions real outcomes and our team members appreciate and recognize one another for contributions that are making a meaningful global impact.



No matter what your role is here, the work we do together has meaning. When you join our team, you become a crucial part of a greater purpose. We’re committed to supporting you personally and professionally, so we can achieve more together at the center of health.

Gallery

Gallery
Gallery
Gallery
Gallery
Gallery
Gallery
Gallery
Gallery

Cencora Teams

Team
Early Careers
Team
Information Technology
About our Teams

Cencora Offices

Hybrid Workspace

Employees engage in a combination of remote and on-site work.

Typical time on-site: Flexible
Company Office Image
HQConshohocken, PA
București, RO
Carrollton, TX
Dříteň, CZ
Gennevilliers, FR
Marseille, FR
Oakville, ON
Pune, Maharashtra
Villanueva de Gállego, Zaragoza
Vilniaus miesto, LT
Woking, GB
Zaragoza, Zaragoza
Learn more

Similar Jobs

Cencora Logo Cencora

Manager, Master Data Management (remote)

Healthtech • Logistics • Pharmaceutical
Remote
Austin, TX, USA
46000 Employees
121K-186K Annually

Cencora Logo Cencora

Applications Developer III (remote)

Healthtech • Logistics • Pharmaceutical
Remote
Carrollton, TX, USA
46000 Employees

Cencora Logo Cencora

EndPoint Support Technician II

Healthtech • Logistics • Pharmaceutical
Grand Prairie, TX, USA
46000 Employees

Cencora Logo Cencora

EndPoint Support Technician II

Healthtech • Logistics • Pharmaceutical
Carrollton, TX, USA
46000 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account