Talent.com
Lead Threat Detection Engineer
Lead Threat Detection EngineerMcKesson • Irving, TX, United States
Lead Threat Detection Engineer

Lead Threat Detection Engineer

McKesson • Irving, TX, United States
job_description.job_card.variable_days_ago
serp_jobs.job_preview.job_type
  • serp_jobs.job_card.full_time
job_description.job_card.job_description

McKesson is an impact-driven, Fortune 10 company that touches virtually every aspect of healthcare. We are known for delivering insights, products, and services that make quality care more accessible and affordable. Here, we focus on the health, happiness, and well-being of you and those we serve - we care.

What you do at McKesson matters. We foster a culture where you can grow, make an impact, and are empowered to bring new ideas. Together, we thrive as we shape the future of health for patients, our communities, and our people. If you want to be part of tomorrow's health today, we want to hear from you.

McKesson's Lead Threat Detection Engineer will be a member of our global cyber threat intelligence, incident response, analytics, and engineering team responsible for advancing our detection capabilities and tools. This team is responsible for building detection content, enabling integration, automation, enrichment, and performance of alerts. This role enables speed, quality, and coverage of threats for security operations and reduces risk to McKesson business operations.

Position Description / Responsibilities

  • Mature from a manual detection practice to a modern, automated, and standardized Detection-as-Code practice and infrastructure.
  • Develop use-cases based on intelligence, red team results, and incident data
  • Develop IOC workflows and a feedback loop for the Threat Intel Platform (TIP)
  • Write detection and correlation rules to identify threats across our stack
  • Assist in onboarding logs and identifying gaps in logs or alert results
  • Develop a deep understanding of data models, macros, indexes, sources, and field alias and the technology foundation our detection stack is built
  • Understand data schema / API standards, automation, and messaging systems
  • Bring a metrics-driven mindset to our rules, signals (IOCs), and alerts

Critical Requirements

  • Prioritize detection use-case and scope and create a logical rule
  • Ability to prioritize decisions to either write a rule and / or tune a tool / policy
  • Practical experience with threat Actor tracking, tactics, tools, and techniques and working closely with Intel, SOC, and Red Teams (Purple Teams)
  • Ability to measure detection coverage across common frameworks (e.g. NIST CSF, MITRE, KC) and simplify rules and configurations to optimize alerts
  • Ability to automate tasks via scripting, automating inputs and outputs of APIs, and programming skills such as python to enable detection engineering tasks
  • Exceptional interpersonal, organizational, and communication skills and ability to internalize and exemplify Mckesson core values.
  • Splunk SPL knowledge and SIEM experience or additional SIEM background
  • Following Qualifications would be advantageous :

  • 10+ years of professional experience in two or more domains, including : detection engineering, data engineering, incident response, threat hunting, threat intelligence.
  • Bachelor's degree in computer science, Information Security, Security Engineering, Statistics, or Data Science
  • Chronicle Experience, Splunk Certifications (1,2), Automation certifications (Security with Python SEC573), Sigma Rules
  • We are proud to offer a competitive compensation package at McKesson as part of our Total Rewards. This is determined by several factors, including performance, experience and skills, equity, regular job market evaluations, and geographical markets. The pay range shown below is aligned with McKesson's pay philosophy, and pay will always be compliant with any applicable regulations. In addition to base pay, other compensation, such as an annual bonus or long-term incentive opportunities may be offered. For more information regarding benefits at McKesson, please click here.

    Our Base Pay Range for this position

    $139,000 - $231,600

    McKesson is an Equal Opportunity Employer

    McKesson provides equal employment opportunities to applicants and employees and is committed to a diverse and inclusive environment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, protected veteran status, disability, age or genetic information. For additional information on McKesson's full Equal Employment Opportunity policies, visit our Equal Employment Opportunity page.

    Join us at McKesson!

    serp_jobs.job_alerts.create_a_job

    Detection Engineer • Irving, TX, United States

    Job_description.internal_linking.related_jobs
    Senior Security Engineer

    Senior Security Engineer

    Hilltop Holdings • Irving, TX, United States
    serp_jobs.job_card.full_time
    Hilltop Holdings is seeking a Senior Security Engineer with deep expertise in Identity and Access Management (IAM) to lead the design, implementation, and maintenance of secure IAM solutions.This r...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
    Hiring Event - Cyber Intelligence, Security Systems

    Hiring Event - Cyber Intelligence, Security Systems

    L3Harris Technologies • Grapevine, Texas, US
    serp_jobs.job_card.permanent
    L3Harris is dedicated to recruiting and developing high-performing talent who are passionate about what they do.Scroll down for a complete overview of what this job will require Are you the right c...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_variable_hours • serp_jobs.job_card.promoted • serp_jobs.job_card.new
    Work From Home Product Tester – $25-$45 / hr – No Experience Needed

    Work From Home Product Tester – $25-$45 / hr – No Experience Needed

    OCPA • Maypearl, Texas, us
    serp_jobs.filters.remote
    serp_jobs.job_card.part_time +1
    Product Testers are wanted to work from home nationwide in the US to fulfill upcoming contracts with national and international companies. We guarantee 15-25 hours per week with an hourly pay of bet...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_30 • serp_jobs.job_card.promoted
    Security Engineer

    Security Engineer

    Bilt • Grapevine, TX, United States
    serp_jobs.job_card.full_time
    BILT - Global Brand Support Center, Grapevine, Texas 76051.BILT Incorporated is a fast-growing software-as-a-service company revolutionizing instructions and training for consumers and professional...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_30 • serp_jobs.job_card.promoted
    Security Engineer

    Security Engineer

    Secur-Serv • Dallas-Fort Worth, TX, US
    serp_jobs.job_card.full_time
    serp_jobs.filters_job_card.quick_apply
    Secur-Serv is a leading managed services provider of IT, print, and hardware services, with a security focus at the core of every service. Secur-Serv provides nationwide, on-site service to business...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_30
    Senior Director - Catastrophe Management Analytics

    Senior Director - Catastrophe Management Analytics

    Aon • Farmers Branch, TX, United States
    serp_jobs.job_card.full_time +1
    Aon is looking for a Senior Director - Catastrophe Modeling - Boston, NYC, Bloomington, Atlanta, Dallas or Chicago.Senior Director of Catastrophe Risk Management. As part of the Catastrophe Manageme...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_30 • serp_jobs.job_card.promoted
    CRC II (Hybrid) - Dallas / Euless, TX

    CRC II (Hybrid) - Dallas / Euless, TX

    Syneos Health / inVentiv Health Commercial LLC • Euless, TX, United States
    serp_jobs.job_card.full_time
    CRC II (Hybrid) - Dallas / Euless, TX.Illingworth Research Group provides a range of patient focused clinical services to the pharmaceutical, healthcare, biotechnology and medical device industries.T...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
    Level II - Certified Surgical Technologist

    Level II - Certified Surgical Technologist

    Baylor Scott & White Health • Waxahachie, TX, United States
    serp_jobs.job_card.full_time
    Baylor Scott & White Health is seeking a Certified Surgical Technologist Level II for a job in Waxahachie, Texas.Job Description & Requirements. Certified Surgical Technologist.Location : Baylor, Sc...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
    Manhattan Active Architect - 46686

    Manhattan Active Architect - 46686

    Cognizant • Waxahachie, Texas, United States
    serp_jobs.job_card.full_time
    About the RoleWe are seeking an experienced Manhattan Active Warehouse Management Systems (MAWM) Architect to drive end-to-end design, configuration, and implementation of MAWM solutions.This role ...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
    Apps Development Lead for Risk Monitoring Tech- C13 - IRVING

    Apps Development Lead for Risk Monitoring Tech- C13 - IRVING

    Citi • Irving, Texas, United States
    serp_jobs.job_card.full_time
    We are looking for a Vice President in enterprise application development area with experience building robust, high-performance, large-scale applications. This position is for a Full stack Java dev...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_30 • serp_jobs.job_card.promoted
    Security Analyst - 100% onsite

    Security Analyst - 100% onsite

    Calance • Arlington, TX, US
    serp_jobs.job_card.temporary
    The right candidate will address daily tasks and routine processes for IT security.This position will be responsible for. IT security incidents and applying the necessary technical troubleshooting s...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_variable_hours • serp_jobs.job_card.promoted • serp_jobs.job_card.new
    Security Engineer I

    Security Engineer I

    Kubota • Grapevine, TX, United States
    serp_jobs.job_card.full_time
    Applicants must live within the Dallas / Ft.Applicants must be authorized to work for any employer in the U.We are unable to sponsor or take over sponsorship of an employment Visa at this time.BASIC ...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
    Engineer

    Engineer

    Stedi • Arlington, Texas, United States
    serp_jobs.filters.remote
    serp_jobs.job_card.full_time
    We're building a new healthcare clearinghouse.In the healthcare sector, the Health Insurance Portability and Accountability Act of 1996 (HIPAA) requires that all insurance payers exchange transacti...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_30 • serp_jobs.job_card.promoted
    Side Hustle Project Lead

    Side Hustle Project Lead

    Finance Buzz • Midlothian, Texas, US
    serp_jobs.job_card.full_time +1
    We’re offering a role for someone who wants to lead their own side-income project in their spare time.You’ll explore various proven side hustles, select the ones that fit your lifestyle, and run th...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_30 • serp_jobs.job_card.promoted
    Sr Security Engineer, Detection Engineering

    Sr Security Engineer, Detection Engineering

    Lennar • Irving, TX, United States
    serp_jobs.job_card.full_time
    Sr Security Engineer, Detection Engineering.Lennar is one of the nation's leading homebuilders, dedicated to making an impact and creating an extraordinary experience for their Homeowners, Communit...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
    Lead Security Engineer - Purple Team (Dallas Ft Worth Metro)

    Lead Security Engineer - Purple Team (Dallas Ft Worth Metro)

    Gartner • Irving, TX, United States
    serp_jobs.job_card.full_time
    Hiring near our Irving, TX Center of Excellence with a flexible environment.Join a world-class team of skilled engineers who build creative digital solutions to support our colleagues and clients.W...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_30 • serp_jobs.job_card.promoted
    Lead Analytics Engineer

    Lead Analytics Engineer

    Vizient, Inc. • Irving, TX, United States
    serp_jobs.job_card.full_time
    When you're the best, we're the best.We instill an environment where employees feel engaged, satisfied and able to contribute their unique skills and talents. We provide extensive opportunities for ...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
    Cyber Security Engineer

    Cyber Security Engineer

    Skill • Southlake, TX, United States
    serp_jobs.job_card.temporary
    Aquent is partnering with a leading, innovative company in the financial services sector dedicated to securing digital experiences for millions. We are seeking a highly skilled and passionate indivi...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted