Cencora Logo

Cencora

Digital Forensic & Incident Response Lead Engineer

Posted 14 Days Ago
Be an Early Applicant
In-Office
Dallas, TX
Senior level
In-Office
Dallas, TX
Senior level
Lead the digital forensics and incident response program, managing cases, conducting investigations, and collaborating with security teams. Provide guidance and training to junior staff.
The summary above was generated by AI
Our team members are at the heart of everything we do. At Cencora, we are united in our responsibility to create healthier futures, and every person here is essential to us being able to deliver on that purpose. If you want to make a difference at the center of health, come join our innovative company and help us improve the lives of people and animals everywhere. Apply today!
Job Details
Summary:
As a highly skilled Digital Forensic & Incident Response Lead Engineer, you will be in a foundational role in the Cencora Global Security Operations Center. You will contribute thought leadership and expertise to the continued growth of our digital forensics incident response program. You will work closely with other team members to perform threat detection and incident response while providing provide expert-level guidance to junior analysts and other teams within the organization.
The ideal candidate will have extensive experience in digital and network forensics, incident response, and cybersecurity operations in large, international organizations. Must be comfortable leading internal investigations and forensic examination including evidence acquisition from cloud, on-premise, and remote systems while ensuring chain of custody is maintained and that applicable rules of evidence are adhered to.
This position offers hybrid work options in Carrollton, TX
Responsibilities:
  • Manage overall case load and assist with forensic analysis and reporting of case workload when required.
  • Manage evidence Intake/Outtake and Evidence Storage.
  • Use advanced network traffic analysis techniques to identify compromised systems, negate denial of service attacks, and pinpoint resource anomalies.
  • Leads cyber incident response engagements as a senior incident response leader.
  • Serves as a backup to the Continuous Security Operations Regional Manager.
  • Support Continuous Security Operations colleagues with complex and comprehensive event and incident analysis.
  • Collaborates with Cyber Engineering, Vulnerability Management, Threat Intelligence, Attack Surface Reduction, Data Protection and Enterprise IT to elevate Cencora's security posture to next level of maturity.
  • Oversee development of staff to ensure digital forensics procedures are conducted in accordance with policy and best practices.
  • Effectively investigative and conduct root cause analysis, identifying indicators of attack or compromise, attack vectors.
  • Deliver verbal and written reports as needed.
  • Participates in on-call rotation (including weekends) to ensure continuous operations.
  • Participates in internal incident response exercises and drills.
  • Conducts knowledge transfer training sessions to Security Operations team upon technology implementation.
  • Develops, reviews, follows, and implements new runbooks and standard operating procedures.

Education & Experience Requirements:
  • BA/BS degree highly desired but flexible with experience
  • Six (6) or more years of combined security work experience across Cyber Security, Digital Forensics, and Incident Response.
  • Strong experience with Axiom, FTK, SIFT, Volatility, and Timeline analysis.
  • Two (2) years of experience in a lead role (highly desired)
  • Strong knowledge of Microsoft Windows, Active Directory, MS-SQL, Azure, etc.
  • Strong knowledge of Linux/Unix, Mac and AWS.
  • Understand networking, packet captures and NetFlow.
  • Hands-on experience and the following tool categories: SIEM, EDR, email security gateway, SOAR, Firewall, Anti-virus, secure web gateway, DNS
  • Practical experience handling sophisticated and high-priority cyber incidents
  • Deep understanding of cyber security industry frameworks (e.g. MITRE ATT&CK, D3FEND, NIST, Cyber Killschain, etc.)
  • Experience in Python, PowerShell, Bash or any other scripting languages.
  • Excellent written communication skills, with a focus on translating technically complex issues into simple, easy-to-understand concepts in English.
  • Must have DFIR related certification such as GCFE, GCFA, GNFA, CFCE, etc.
  • Preferred certifications include MCCE, MCFE, GCFR.

#LI-MD1
What Cencora offers
We provide compensation, benefits, and resources that enable a highly inclusive culture and support our team members' ability to live with purpose every day. In addition to traditional offerings like medical, dental, and vision care, we also provide a comprehensive suite of benefits that focus on the physical, emotional, financial, and social aspects of wellness. This encompasses support for working families, which may include backup dependent care, adoption assistance, infertility coverage, family building support, behavioral health solutions, paid parental leave, and paid caregiver leave. To encourage your personal growth, we also offer a variety of training programs, professional development resources, and opportunities to participate in mentorship programs, employee resource groups, volunteer activities, and much more. For details, visit https://www.virtualfairhub.com/cencora
Full time
Equal Employment Opportunity
Cencora is committed to providing equal employment opportunity without regard to race, color, religion, sex, sexual orientation, gender identity, genetic information, national origin, age, disability, veteran status or membership in any other class protected by federal, state or local law.
The company's continued success depends on the full and effective utilization of qualified individuals. Therefore, harassment is prohibited and all matters related to recruiting, training, compensation, benefits, promotions and transfers comply with equal opportunity principles and are non-discriminatory.
Cencora is committed to providing reasonable accommodations to individuals with disabilities during the employment process which are consistent with legal requirements. If you wish to request an accommodation while seeking employment, please call 888.692.2272 or email [email protected]. We will make accommodation determinations on a request-by-request basis. Messages and emails regarding anything other than accommodations requests will not be returned
Affiliated Companies
Affiliated Companies: AmerisourceBergen Services Corporation

Top Skills

Active Directory
AWS
Axiom
Azure
Bash
Edr
Ftk
Linux/Unix
macOS
Windows
Ms-Sql
Powershell
Python
SIEM
Sift
Volatility

Similar Jobs at Cencora

14 Days Ago
In-Office
Carrollton, TX, USA
Mid level
Mid level
Healthtech • Logistics • Pharmaceutical
Lead the digital forensic and incident response efforts, manage investigations, provide guidance to team members, and collaborate with various security teams.
Top Skills: AWSAxiomAzureBashEdrFtkPowershellPythonSIEMSiftVolatility
Yesterday
In-Office
Carrollton, TX, USA
Internship
Internship
Healthtech • Logistics • Pharmaceutical
As a Finance Intern, you'll support contract management, customer report development, invoice resolution, and contribute to continuous process improvement efforts within the finance department.
Top Skills: ExcelMicrosoft OutlookPowerPoint
2 Days Ago
In-Office
Carrollton, TX, USA
Internship
Internship
Healthtech • Logistics • Pharmaceutical
Interns will assist in transportation metrics, document processes, collaborate with teams, and contribute to process improvements while gaining hands-on experience in supply chain management.
Top Skills: ExcelMicrosoft OutlookPower BIPowerPoint

What you need to know about the Los Angeles Tech Scene

Los Angeles is a global leader in entertainment, so it’s no surprise that many of the biggest players in streaming, digital media and game development call the city home. But the city boasts plenty of non-entertainment innovation as well, with tech companies spanning verticals like AI, fintech, e-commerce and biotech. With major universities like Caltech, UCLA, USC and the nearby UC Irvine, the city has a steady supply of top-flight tech and engineering talent — not counting the graduates flocking to Los Angeles from across the world to enjoy its beaches, culture and year-round temperate climate.

Key Facts About Los Angeles Tech

  • Number of Tech Workers: 375,800; 5.5% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Snap, Netflix, SpaceX, Disney, Google
  • Key Industries: Artificial intelligence, adtech, media, software, game development
  • Funding Landscape: $11.6 billion in venture capital funding in 2024 (Pitchbook)
  • Notable Investors: Strong Ventures, Fifth Wall, Upfront Ventures, Mucker Capital, Kittyhawk Ventures
  • Research Centers and Universities: California Institute of Technology, UCLA, University of Southern California, UC Irvine, Pepperdine, California Institute for Immunology and Immunotherapy, Center for Quantum Science and Engineering

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account