Talent.com
Lead Threat Detection Engineer
Lead Threat Detection EngineerMcKesson • Irving, TX, United States
Lead Threat Detection Engineer

Lead Threat Detection Engineer

McKesson • Irving, TX, United States
job_description.job_card.variable_days_ago
serp_jobs.job_preview.job_type
  • serp_jobs.job_card.full_time
job_description.job_card.job_description

McKesson is an impact-driven, Fortune 10 company that touches virtually every aspect of healthcare. We are known for delivering insights, products, and services that make quality care more accessible and affordable. Here, we focus on the health, happiness, and well-being of you and those we serve - we care.

What you do at McKesson matters. We foster a culture where you can grow, make an impact, and are empowered to bring new ideas. Together, we thrive as we shape the future of health for patients, our communities, and our people. If you want to be part of tomorrow's health today, we want to hear from you.

McKesson's Lead Threat Detection Engineer will be a member of our global cyber threat intelligence, incident response, analytics, and engineering team responsible for advancing our detection capabilities and tools. This team is responsible for building detection content, enabling integration, automation, enrichment, and performance of alerts. This role enables speed, quality, and coverage of threats for security operations and reduces risk to McKesson business operations.

Position Description / Responsibilities

  • Mature from a manual detection practice to a modern, automated, and standardized Detection-as-Code practice and infrastructure.
  • Develop use-cases based on intelligence, red team results, and incident data
  • Develop IOC workflows and a feedback loop for the Threat Intel Platform (TIP)
  • Write detection and correlation rules to identify threats across our stack
  • Assist in onboarding logs and identifying gaps in logs or alert results
  • Develop a deep understanding of data models, macros, indexes, sources, and field alias and the technology foundation our detection stack is built
  • Understand data schema / API standards, automation, and messaging systems
  • Bring a metrics-driven mindset to our rules, signals (IOCs), and alerts

Critical Requirements

  • Prioritize detection use-case and scope and create a logical rule
  • Ability to prioritize decisions to either write a rule and / or tune a tool / policy
  • Practical experience with threat Actor tracking, tactics, tools, and techniques and working closely with Intel, SOC, and Red Teams (Purple Teams)
  • Ability to measure detection coverage across common frameworks (e.g. NIST CSF, MITRE, KC) and simplify rules and configurations to optimize alerts
  • Ability to automate tasks via scripting, automating inputs and outputs of APIs, and programming skills such as python to enable detection engineering tasks
  • Exceptional interpersonal, organizational, and communication skills and ability to internalize and exemplify Mckesson core values.
  • Splunk SPL knowledge and SIEM experience or additional SIEM background
  • Following Qualifications would be advantageous :

  • 10+ years of professional experience in two or more domains, including : detection engineering, data engineering, incident response, threat hunting, threat intelligence.
  • Bachelor's degree in computer science, Information Security, Security Engineering, Statistics, or Data Science
  • Chronicle Experience, Splunk Certifications (1,2), Automation certifications (Security with Python SEC573), Sigma Rules
  • We are proud to offer a competitive compensation package at McKesson as part of our Total Rewards. This is determined by several factors, including performance, experience and skills, equity, regular job market evaluations, and geographical markets. The pay range shown below is aligned with McKesson's pay philosophy, and pay will always be compliant with any applicable regulations. In addition to base pay, other compensation, such as an annual bonus or long-term incentive opportunities may be offered. For more information regarding benefits at McKesson, please click here.

    Our Base Pay Range for this position

    $139,000 - $231,600

    McKesson is an Equal Opportunity Employer

    McKesson provides equal employment opportunities to applicants and employees and is committed to a diverse and inclusive environment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, protected veteran status, disability, age or genetic information. For additional information on McKesson's full Equal Employment Opportunity policies, visit our Equal Employment Opportunity page.

    Join us at McKesson!

    serp_jobs.job_alerts.create_a_job

    Detection Engineer • Irving, TX, United States

    Job_description.internal_linking.related_jobs
    Senior Security Engineer

    Senior Security Engineer

    Hilltop Holdings • Irving, TX, United States
    serp_jobs.job_card.full_time
    Hilltop Holdings is seeking a Senior Security Engineer with deep expertise in Identity and Access Management (IAM) to lead the design, implementation, and maintenance of secure IAM solutions.This r...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
    ETL Quality Assurance Lead

    ETL Quality Assurance Lead

    System One • Farmers Branch, TX, US
    serp_jobs.job_card.full_time
    Position Title : Quality Assurance Lead - Contractor Reason for open position : Backfill Pittsburgh PA - Two PNC Plaza 620 Liberty Ave Pittsburgh, PA 15222 Cleveland OH - Strongsville Technology Cent...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_30 • serp_jobs.job_card.promoted
    Security Engineer

    Security Engineer

    Bilt • Grapevine, TX, United States
    serp_jobs.job_card.full_time
    BILT - Global Brand Support Center, Grapevine, Texas 76051.BILT Incorporated is a fast-growing software-as-a-service company revolutionizing instructions and training for consumers and professional...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_30 • serp_jobs.job_card.promoted
    Security Engineer

    Security Engineer

    Secur-Serv • Dallas-Fort Worth, TX, US
    serp_jobs.job_card.full_time
    serp_jobs.filters_job_card.quick_apply
    Secur-Serv is a leading managed services provider of IT, print, and hardware services, with a security focus at the core of every service. Secur-Serv provides nationwide, on-site service to business...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_30
    Senior Director - Catastrophe Management Analytics

    Senior Director - Catastrophe Management Analytics

    Aon • Farmers Branch, TX, United States
    serp_jobs.job_card.full_time +1
    Aon is looking for a Senior Director - Catastrophe Modeling - Boston, NYC, Bloomington, Atlanta, Dallas or Chicago.Senior Director of Catastrophe Risk Management. As part of the Catastrophe Manageme...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_30 • serp_jobs.job_card.promoted
    CRC II (Hybrid) - Dallas / Euless, TX

    CRC II (Hybrid) - Dallas / Euless, TX

    Syneos Health / inVentiv Health Commercial LLC • Euless, TX, United States
    serp_jobs.job_card.full_time
    CRC II (Hybrid) - Dallas / Euless, TX.Illingworth Research Group provides a range of patient focused clinical services to the pharmaceutical, healthcare, biotechnology and medical device industries.T...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
    Travel MRI Tech in Waxahachie, TX

    Travel MRI Tech in Waxahachie, TX

    AlliedTravelCareers • Waxahachie, TX, US
    serp_jobs.job_card.full_time +1
    AlliedTravelCareers is working with Infojini Healthcare to find a qualified MRI Tech in Waxahachie, Texas, 75165!.MRI Tech travel Radiology / Imaging needed in Waxahachie, Texas.Self Assessment (Skil...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_30 • serp_jobs.job_card.promoted
    Security Engineer I

    Security Engineer I

    Kubota • Grapevine, TX, United States
    serp_jobs.job_card.full_time
    Applicants must live within the Dallas / Ft.Applicants must be authorized to work for any employer in the U.We are unable to sponsor or take over sponsorship of an employment Visa at this time.BASIC ...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
    Remote Text Quality Evaluator

    Remote Text Quality Evaluator

    Outlier • Waxahachie, TX, United States
    serp_jobs.filters.remote
    serp_jobs.job_card.full_time
    Earn up to $15 / hour + performance bonuses.Outlier, a platform owned and operated by Scale AI, is looking for.If you're passionate about improving models and excited by the future of AI, this is you...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
    Electronic Security Systems Programmer

    Electronic Security Systems Programmer

    Jobot • Waxahachie, TX, US
    serp_jobs.job_card.full_time
    Great compensation, Great Employee Health Benefits, Generous PTO Plan.This Jobot Job is hosted by : Robert Donohue.Are you a fit? Easy Apply now by clicking the "Apply Now" button and sending us you...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_30 • serp_jobs.job_card.promoted
    Sr Security Engineer, Detection Engineering

    Sr Security Engineer, Detection Engineering

    Lennar • Irving, TX, United States
    serp_jobs.job_card.full_time
    Sr Security Engineer, Detection Engineering.Lennar is one of the nation's leading homebuilders, dedicated to making an impact and creating an extraordinary experience for their Homeowners, Communit...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
    Lead Security Engineer - Purple Team (Dallas Ft Worth Metro)

    Lead Security Engineer - Purple Team (Dallas Ft Worth Metro)

    Gartner • Irving, TX, United States
    serp_jobs.job_card.full_time
    Hiring near our Irving, TX Center of Excellence with a flexible environment.Join a world-class team of skilled engineers who build creative digital solutions to support our colleagues and clients.W...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_30 • serp_jobs.job_card.promoted
    Endpoint Security Engineer Lead (CrowdStrike)

    Endpoint Security Engineer Lead (CrowdStrike)

    Leidos • Arlington, Texas, USA
    serp_jobs.job_card.full_time
    Leidos has an immediate need for a lead Endpoint Security Engineer for a customer on a highly visible and strategic Cybersecurity Task Order. The Security Engineer will need to be a self-starter wit...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
    Lead Analytics Engineer

    Lead Analytics Engineer

    Vizient, Inc. • Irving, TX, United States
    serp_jobs.job_card.full_time
    When you're the best, we're the best.We instill an environment where employees feel engaged, satisfied and able to contribute their unique skills and talents. We provide extensive opportunities for ...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
    ML Platform Engineer (Senior)

    ML Platform Engineer (Senior)

    Duetto Research • Arlington, Texas, United States
    serp_jobs.job_card.full_time
    We are an ambitious, well-funded, high-growth global technology company transforming the hotel industry.At Duetto, we are passionate about creating innovative analytical solutions to help hoteliers...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
    Work From Home Product Tester – $25-$45 / hr – No Experience Needed

    Work From Home Product Tester – $25-$45 / hr – No Experience Needed

    OCPA • Venus, Texas, us
    serp_jobs.filters.remote
    serp_jobs.job_card.part_time +1
    Product Testers are wanted to work from home nationwide in the US to fulfill upcoming contracts with national and international companies. We guarantee 15-25 hours per week with an hourly pay of bet...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_30 • serp_jobs.job_card.promoted
    Cyber Security Engineer

    Cyber Security Engineer

    Skill • Southlake, TX, United States
    serp_jobs.job_card.temporary
    Aquent is partnering with a leading, innovative company in the financial services sector dedicated to securing digital experiences for millions. We are seeking a highly skilled and passionate indivi...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
    Remote PK / PD Modeling / Pharmacometrics Lead - AI Trainer ($150-$200 per hour)

    Remote PK / PD Modeling / Pharmacometrics Lead - AI Trainer ($150-$200 per hour)

    Mercor • Grapevine, Texas, US
    serp_jobs.filters.remote
    serp_jobs.job_card.part_time
    This person complements the client’s “Translational / Clinical Pharmacology Decision-Maker” team by grounding dose selection and exposure–response analysis in • •quantitative structure and parameter...serp_jobs.internal_linking.show_more
    serp_jobs.last_updated.last_updated_1_day • serp_jobs.job_card.promoted