Cencora Logo

Cencora

Principal Engineer - Cyber Incident Response

Posted 6 Hours Ago
Be an Early Applicant
Remote
Hiring Remotely in Texas
Expert/Leader
Remote
Hiring Remotely in Texas
Expert/Leader
The Principal Engineer will lead technical investigations on cyber incidents, enhance detection capabilities, mentor teams, and contribute to security strategies through advanced expertise in incident response and forensics.
The summary above was generated by AI
What you will be doing
Position Summary
The Principal Engineer, Cyber Incident Response, will serve as a senior technical expert within the global Cyber Defense team. This role is responsible for leading complex investigations, advancing detection and response capabilities, and providing deep technical expertise during major incidents. The Principal Engineer will collaborate closely with global SOC teams, threat intelligence, vulnerability management, and forensics functions to contain, investigate, and eradicate cyber threats. This position requires advanced technical skills in incident response, threat hunting, malware analysis, and forensic investigations, as well as the ability to influence security architecture and detection engineering across the enterprise.
Primary Duties and Responsibilities
  • Lead technical response and investigation of complex and high-severity security incidents, including advanced persistent threats, ransomware, and insider activity.
  • Provide hands-on expertise in forensic analysis, malware reverse engineering, and threat hunting across endpoints, networks, and cloud environments.
  • Develop and refine incident response playbooks, detection rules, and automation to improve SOC efficiency and response times.
  • Partner with engineering teams to design and implement resilient detection and response capabilities across SIEM, EDR, SOAR, and cloud platforms.
  • Mentor and provide technical guidance to SOC analysts, incident responders, and engineering teams.
  • Collaborate with threat intelligence teams to translate threat actor tactics, techniques, and procedures (TTPs) into actionable detection and response strategies.
  • Serve as a technical escalation point during major incidents and contribute to root cause analysis and lessons learned reporting.
  • Contribute to red/blue/purple team exercises to validate detection and response effectiveness.
  • Provide input on security architecture, tooling enhancements, and emerging technologies to strengthen enterprise cyber defense.

What your background should look like
Education and Qualifications
  • Bachelor's degree in Cybersecurity, Computer Science, Information Systems, or equivalent work experience; Master's degree preferred.
  • Advanced knowledge of incident response methodologies, digital forensics, malware analysis, and adversary simulation.
  • Familiarity with industry frameworks such as NIST, MITRE ATT&CK, and ISO 27035.

Preferred Certifications
  • GIAC Certified Incident Handler (GCIH)
  • GIAC Certified Intrusion Analyst (GCIA)
  • GIAC Reverse Engineering Malware (GREM)
  • GIAC Certified Forensic Analyst (GCFA)
  • Offensive Security Certified Professional (OSCP)
  • Certified Information Systems Security Professional (CISSP) or equivalent senior-level certification a plus

Work Experience
  • 10+ years of progressive experience in cybersecurity, with at least 7 years focused on incident response, threat hunting, or forensic investigations.
  • Demonstrated expertise in analyzing and responding to advanced cyber threats in large enterprise environments.
  • Hands-on experience with SIEM, EDR, SOAR, and forensic tools (e.g., Splunk, CrowdStrike, EnCase, Magnet, Wireshark).
  • Experience with malware reverse engineering, memory forensics, and scripting/automation (Python, PowerShell).
  • Proven ability to serve as a technical authority and mentor within a global SOC or incident response team.
  • Strong communication skills, with the ability to clearly present complex technical findings to both technical and executive stakeholders.

Schedule
Full time

Top Skills

Crowdstrike
Edr
Encase
Magnet
Powershell
Python
SIEM
Soar
Splunk
Wireshark

Similar Jobs at Cencora

21 Days Ago
Remote
Texas, USA
Expert/Leader
Expert/Leader
Healthtech • Logistics • Pharmaceutical
The Principal Engineer in Cyber Incident Response leads technical investigations, manages security incidents, mentors teams, and enhances detection capabilities within the global Cyber Defense team.
Top Skills: CrowdstrikeEdrEncaseMagnetPowershellPythonSIEMSoarSplunkWireshark
6 Hours Ago
Remote
Texas, USA
Senior level
Senior level
Healthtech • Logistics • Pharmaceutical
Lead and manage application development projects, provide technical guidance, mentor junior developers, and ensure adherence to design standards and quality assurance during software lifecycle.
Top Skills: Asp.NetC#Microsoft .Net TechnologiesSQL Server
6 Hours Ago
Remote
Texas, USA
Senior level
Senior level
Healthtech • Logistics • Pharmaceutical
The Engineer III will lead complex digital forensic investigations, ensure proper evidence handling, and support incident response and legal inquiries while mentoring junior analysts.
Top Skills: CellebriteEncaseFtkMagnet AxiomX-Ways

What you need to know about the Boston Tech Scene

Boston is a powerhouse for technology innovation thanks to world-class research universities like MIT and Harvard and a robust pipeline of venture capital investment. Host to the first telephone call and one of the first general-purpose computers ever put into use, Boston is now a hub for biotechnology, robotics and artificial intelligence — though it’s also home to several B2B software giants. So it’s no surprise that the city consistently ranks among the greatest startup ecosystems in the world.

Key Facts About Boston Tech

  • Number of Tech Workers: 269,000; 9.4% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: Thermo Fisher Scientific, Toast, Klaviyo, HubSpot, DraftKings
  • Key Industries: Artificial intelligence, biotechnology, robotics, software, aerospace
  • Funding Landscape: $15.7 billion in venture capital funding in 2024 (Pitchbook)
  • Notable Investors: Summit Partners, Volition Capital, Bain Capital Ventures, MassVentures, Highland Capital Partners
  • Research Centers and Universities: MIT, Harvard University, Boston College, Tufts University, Boston University, Northeastern University, Smithsonian Astrophysical Observatory, National Bureau of Economic Research, Broad Institute, Lowell Center for Space Science & Technology, National Emerging Infectious Diseases Laboratories

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account