Threat Hunting Engineer Lead

CencoraCarrollton, TX

About The Position

The Threat Hunting Engineer Lead is a technical leader in the Cencora Security Operations Center who applies their knowledge of adversarial tactics and techniques and their experience with security controls, infrastructure, and networking to proactively investigate potential cyber threats. They will use their findings to improve detection, response, and security controls.

Requirements

  • Bachelor’s degree in Cybersecurity, Computer Science, Information Systems, or equivalent work experience
  • 7+ years of progressive experience in cybersecurity, with at least 4 years dedicated to incident response, forensics, threat hunting, threat detection, or related role.
  • Expertise with common threat detection and logging platforms for SIEM, EDR, SOAR, etc.
  • Strong understanding of network protocols, operating system internals (Windows, Linux, MacOS), cloud security, and defensive security technologies.
  • Familiarity with intelligence frameworks such as MITRE ATT&CK.
  • Hands-on experience with at least one scripting or programming language for tooling and automation (e.g., Python, Go, Powershell).
  • Strong written and verbal communication skills, with the ability to articulate complex technical findings to a non-technical audience.

Nice To Haves

  • GIAC GCFA — Certified Forensic Analyst
  • GIAC GCFR — Cloud Forensics Responder
  • GIAC GNFA — Network Forensic Analyst
  • GIAC GCIA — Certified Intrusion Analyst
  • GIAC GCDA — Certified Detection Analyst
  • GIAC GDAT — Defending Advanced Threats
  • Master’s degree in cyber security, computer science, information technology, information systems, or a related field, or equivalent experience preferred.
  • Certified in Cybersecurity (CC) or equivalent certification preferred.
  • Certified Threat Intelligence Analyst (CTIA) or equivalent certification preferred.
  • Certified Ethical Hacker (CEH) or equivalent certification preferred.

Responsibilities

  • Conduct threat hunting to identify, classify, prioritize, and report on cyber threats following industry best practices.
  • Conduct research on emerging security threats; Provide correlation and trending of cyber incident activity.
  • Craft methodologies for monitoring , detection, and analytics for SIEM, EDR, SOAR, and other platforms.
  • Provide security gap analysis and effectiveness assessments of security platform technologies.
  • Formulates methodologies to monitor for as well as respond to security related events.
  • Identification of and correlation with other data sources to enhance security event detection, monitoring and response capabilities.
  • Collaborates across multiple teams on the response to information security incidents, investigation, countermeasures, and recovery.
  • Analysis of security incidents for further enhancement of alerting schema.
  • Provides security briefings to advise on critical issues that may affect the enterprise.

Benefits

  • medical
  • dental
  • vision care
  • backup dependent care
  • adoption assistance
  • infertility coverage
  • family building support
  • behavioral health solutions
  • paid parental leave
  • paid caregiver leave
  • training programs
  • professional development resources
  • mentorship programs
  • employee resource groups
  • volunteer activities
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service