Cybersecurity Detection Engineer

3 weeks ago


Irving, Texas, United States MCKESSON Full time

MCKESSON is a leading healthcare company that touches virtually every aspect of the industry. We are known for delivering insights, products, and services that make quality care more accessible and affordable. Here, we focus on the health, happiness, and well-being of our employees and those we serve – we care.

The role of Lead Threat Detection Engineer at MCKESSON involves advancing our detection capabilities and tools as part of our global cyber threat intelligence, incident response, analytics, and engineering team. This team is responsible for building detection content, enabling integration, automation, enrichment, and performance of alerts. This position enables speed, quality, and coverage of threats for security operations and reduces risk to MCKESSON business operations.

This role requires a mature understanding of detection practices, including the ability to transition from manual detection to an automated and standardized Detection-as-Code practice and infrastructure. The ideal candidate will develop use-cases based on intelligence, red team results, and incident data, as well as create IOC workflows and feedback loops for the Threat Intel Platform (TIP).

Key Responsibilities:
  • Develop and implement detection rules to identify threats across our stack.
  • Collaborate with cross-functional teams to onboard logs and identify gaps in logs or alert results.
  • Develop a deep understanding of data models, macros, indexes, sources, and field alias and the technology foundation our detection stack is built.
  • Understand data schema/API standards, automation, and messaging systems.

Requirements:

  • Prioritize detection use-case and scope and create logical rules.
  • Ability to prioritize decisions to either write a rule and/or tune a tool/policy.
  • Practical experience with threat Actor tracking, tactics, tools, and techniques and working closely with Intel, SOC, and Red Teams (Purple Teams).
  • Ability to measure detection coverage across common frameworks (e.g. NIST CSF, MITRE, KC) and simplify rules and configurations to optimize alerts.

Compensation Package: $139,000 - $231,600 per annum.



  • Irving, Texas, United States Citigroup Inc Full time

    Role OverviewThe Cloud Security Engineer will play a pivotal role in designing, implementing, and maintaining sophisticated security measures that protect the firm's assets in the cloud. This individual will leverage expertise in cloud security and threat analysis to drive the development of innovative defense strategies and provide technical leadership to...


  • Irving, Texas, United States Microsoft Corporation Full time

    Job TitleWe are looking for a talented Cybersecurity AI Specialist to join our team at Microsoft Corporation. In this role, you will work closely with our security organization to design and implement AI-driven adversary emulation services.Key Responsibilities:Design and implement AI-driven solutions to enhance cybersecurity defenses.Collaborate with...


  • Irving, Texas, United States MCKESSON Full time

    About MCKESSON:MCKESSON is a leading healthcare company that touches virtually every aspect of the industry. We are known for delivering insights, products, and services that make quality care more accessible and affordable. Here, we focus on the health, happiness, and well-being of our employees and those we serve – we care.The role of Lead Threat...


  • Irving, Texas, United States Saxon Global Full time

    Job Title: SIEM Cybersecurity ConsultantJob Summary:Saxon Global is seeking a seasoned SIEM Cybersecurity Consultant to provide expert-level guidance and support in SIEM design, architecture, administration, and security tool optimization. The ideal candidate will possess advanced knowledge of cybersecurity software tools, including Crowdstrike, Splunk, Palo...


  • Irving, Texas, United States Atos North America Full time

    We are seeking an experienced Information Security Manager to join our team as a Security Operations Lead.About the RoleIn this role, you will be responsible for overseeing the detection and response to security incidents, ensuring that our clients' networks and systems remain secure.Main ResponsibilitiesRepresent the SOC findings in customer calls -...


  • Irving, Texas, United States Citigroup Inc Full time

    Job RequirementsTo be successful in this role, you will need to have a proven track record of experience in cloud engineering, ideally within a cybersecurity context, and particularly in GCP or AWS or Azure. You will also need to be proficient in programming/scripting languages such as Python, golang, node.js, and have experience with automation and...

  • Cybersecurity Expert

    3 weeks ago


    Irving, Texas, United States Genesis10 Full time

    Job SummaryWe are seeking a skilled Cybersecurity Engineer to join our team at Genesis10. This is a contract-to-hire, full-time opportunity in the financial services industry located in Irving, TX.The ideal candidate will play a crucial role in implementing security tools and managing day-to-day security operations to protect our organization's assets.


  • Irving, Texas, United States Abbott Laboratories Full time

    Abbott Laboratories is a global leader in the healthcare industry, providing innovative solutions to improve people's lives. As a Cybersecurity Product Development Specialist, you will play a critical role in ensuring the security and integrity of our medical devices and software applications.About AbbottWe are committed to delivering breakthrough science to...


  • Irving, Texas, United States Infylogy Corporation Full time

    Job Responsibilities:As a Cybersecurity and Network Operations Manager at Infylogy Corporation, you will be responsible for implementing and maintaining robust security measures to protect our network infrastructure. You will work closely with our network operations team to design, configure, and troubleshoot networks, as well as ensure compliance with...


  • Irving, Texas, United States Genesis10 Full time

    About the RoleThis Senior Cybersecurity Engineer position involves configuring, monitoring, and maintaining firewalls to ensure network security and prevent unauthorized access. The successful candidate will also be responsible for deploying and managing Endpoint Detection and Response (EDR) solutions to detect, investigate, and respond to potential threats...


  • Irving, Texas, United States GM Financial Full time

    The RoleWe are seeking an experienced Senior Principal Cybersecurity Architecture professional to join our growing team. The ideal candidate will have 12+ years experience in the security of diverse technologies and processing environments and 5-7 years experience as a Lead Security Architect or similar leadership role. This role requires a leader who can...


  • Irving, Texas, United States Microsoft Corporation Full time

    About the RoleWe are seeking a highly skilled Artificial Intelligence Engineer (Security) to join our team at Microsoft Corporation. As an AI engineer, you will be responsible for bringing deep AI research into production services to automate complex attacker scenarios.Responsibilities:Design, implement, and support AI-driven adversary emulation...


  • Irving, Texas, United States The Dignify Solutions LLC Full time

    The Dignify Solutions LLC is seeking a CISO- Network Security Engineer SME to join our team. In this role, you will be responsible for reviewing connectivity requests supporting the Annual Verification phase, validating ownership and registration details. This includes tracking and documenting reconciliation processes, monitoring remediation statistics, and...

  • Cybersecurity Analyst

    3 weeks ago


    Irving, Texas, United States Citigroup Inc Full time

    Company OverviewCitigroup Inc. is a global financial institution that drives innovation and security in the financial sector. We are committed to ensuring the safety and integrity of our clients' assets and information.Job DescriptionWe are seeking a highly motivated and skilled Cybersecurity Analyst to join our team. As a key member of our technology...


  • Irving, Texas, United States MCKESSON Full time

    Company Overview:MCKESSON is a leading healthcare company that prioritizes quality care and accessibility. Our focus is on delivering insights, products, and services that make a positive impact on the lives of our customers and employees.We strive to create a culture where growth, innovation, and collaboration thrive. If you're passionate about shaping the...

  • IAM Engineer

    4 weeks ago


    Irving, Texas, United States McKesson Full time

    Job DescriptionWe are seeking a highly skilled Cybersecurity Professional to lead our Identity and Access Management team. As a key member of our IT organization, you will be responsible for designing, implementing, and maintaining a secure and scalable IAM system.Responsibilities:Technical Leadership: Provide technical guidance and oversight to the IAM...


  • Irving, Texas, United States Abacus Full time

    We are seeking an experienced Cybersecurity Engineer to join our team at Abacus. In this role, you will be responsible for collaborating with diverse IT and business stakeholders to design and maintain production-quality log management/SIEM reports, facilitating data analysis and visualization. You should possess experience with tools like Google Chronical,...


  • Irving, Texas, United States Citigroup Inc Full time

    About the RoleWe are seeking an experienced Cloud Security Engineer to join our dynamic Threat Informed Defense Engineering Team. This pivotal role will involve designing, implementing, and maintaining sophisticated security measures to protect our firm's assets in the cloud.As a Cloud Security Engineer, you will leverage your expertise in cloud security and...


  • Irving, Texas, United States Abacus Full time

    About Abacus: Abacus is a forward-thinking organization dedicated to providing cutting-edge security solutions. We are seeking a skilled Log Management Engineer to join our team.As a Log Management Engineer, you will be responsible for securing cloud-native workloads and monitoring cloud infrastructure using SIEM tools. You will also develop and maintain...


  • Irving, Texas, United States Citigroup Inc Full time

    About Citigroup Inc.With a presence in more than 160 countries and jurisdictions, Citigroup Inc. is a leading global bank, serving approximately 200 million customer accounts. Our commitment to diversity fosters an environment where individuals from all walks of life can thrive. We value respect, promote merit-based growth, and ensure opportunities for...