Talent.com
MTA - Cybersecurity Event Analyst

MTA - Cybersecurity Event Analyst

MCKESSONIrving, TX, United States
job_description.job_card.variable_days_ago
serp_jobs.job_preview.job_type
  • serp_jobs.job_card.full_time
job_description.job_card.job_description

McKesson is an impact-driven, Fortune 10 company that touches virtually every aspect of healthcare. We are known for delivering insights, products, and services that make quality care more accessible and affordable. Here, we focus on the health, happiness, and well-being of you and those we serve - we care.

What you do at McKesson matters. We foster a culture where you can grow, make an impact, and are empowered to bring new ideas. Together, we thrive as we shape the future of health for patients, our communities, and our people. If you want to be part of tomorrow’s health today, we want to hear from you.

McKesson’s Cybersecurity Event Analyst will be a member or our Cyber Investigations & Response Team (CIRT) responsible for monitoring, detecting, triaging, and responding to security events and incidents in a 24 x 7 global environment. Your mission is to timely detect and respond to security event and possible security incidents from enterprise networks. To execute this mission, you will use data analysis, threat intelligence, and cutting-edge security technologies.

Responsibilities :

  • Primary responsibilities include developing and mentoring the SOC L1 / L2 Information Security Analysts, ensuring processes are followed, updating and creating new processes as needed, setting and tracking metrics, and driving new detections / use cases from the SOC Analyst perspective.
  • Serves as an escalation point of contact for L1 and L2 Security Operations Center (SOC) analysts.
  • Work collaboratively with multiple teams as well as subject matter experts to include threat hunters, counter-threat Intelligence analysts, incident responders and forensic investigators.
  • Stay current with and remain knowledgeable about new threats. Analyze threat actor tactics, techniques and procedures (TTPs) from security events across a large heterogeneous network of security devices and end-user systems.
  • Utilize security models and frameworks for documenting and tracking purposes, (e.g. MITRE ATT&CK framework, Cyber Kill Chain (CKC) framework).
  • Leverage automation and orchestration solutions to automate repetitive tasks.
  • Assist with incident response as events are escalated, including triage, remediation and documentation.
  • Collaborates with the owners of cyber defense tools to tune systems for optimum performance and to maximize detection and prevention effectiveness. and minimize false positives.
  • Work alongside other security team members to search for and identify security issues generated from the network, including third-party relationships.
  • Investigate and document events to aid incident responders, managers and other SOC team members on security issues and the emergence of new threats.

Minimum Qualifications

  • Bachelor’s degree in Computer Science, Information Security, Information Technology, Computer Engineering, Information Systems, or a related technical field, or equivalent practical experience.
  • Qualifications :

  • 7+ years of relevant cyber security experience in Threat Hunting, IT Security, Incident Response or network security with strong knowledge working in a Security Operations Center, Incident Response team, or Threat Hunting team.
  • Experience working in a 24x7 operational environment, with geographic disparity preferred.
  • Experience driving measurable improvement in monitoring and response capabilities at scale.
  • Experience working with SIEM systems, Endpoint Detection and Response (EDR) solutions, threat intelligence platforms, security automation and orchestration solutions, intrusion detection and prevention systems (IDS / IPS), Data Loss Prevention and other network and security monitoring tools.
  • Strong analytical and investigation skills.
  • Excellent written and oral communication skills with the ability to effectively communicate with information technology professionals as well as senior management and auditors, assessors, and consultants.
  • High level of personal integrity, and the ability to professionally handle confidential matters and exude the appropriate level of judgment and maturity.
  • Preferred Technical and Professional Expertise :

  • One or more of the Cyber Security related certifications such as Security+, CySA+, CASP+, Pentest+, CEH, GSEC, GCIH, GCIA, CISSP, etc.
  • Bachelor’s degree in a technical field such as Computer Science, Information Security, Information Technology, Computer Engineering, or Information Systems. or equivalent degree is preferred.
  • Working knowledge / experience with network systems, security principles, applications and risk and compliance initiatives such as Health Information Portability and Accountability Ace (HIPAA), HITRUST, Sarbanes-Oxley Act (SOX) and the General Data Protection Regulation (GDPR).
  • Experience and knowledge of packet flow, TCP / UDP traffic, firewall technologies, IDS technologies, proxy technologies, and antivirus, spam and spyware solutions.
  • Experience with one or more scripting languages (e.g., Python, JavaScript, Perl).
  • We are proud to offer a competitive compensation package at McKesson as part of our Total Rewards. This is determined by several factors, including performance, experience and skills, equity, regular job market evaluations, and geographical markets. The pay range shown below is aligned with McKesson's pay philosophy, and pay will always be compliant with any applicable regulations. In addition to base pay, other compensation, such as an annual bonus or long-term incentive opportunities may be offered. For more information regarding benefits at McKesson, please click here.

    Our Base Pay Range for this position

    97,700 - $162,800

    McKesson is an Equal Opportunity Employer

    McKesson provides equal employment opportunities to applicants and employees and is committed to a diverse and inclusive environment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, protected veteran status, disability, age or genetic information. For additional information on McKesson’s full Equal Employment Opportunity policies, visit our Equal Employment Opportunity page.

    Join us at McKesson!

    serp_jobs.job_alerts.create_a_job

    Cybersecurity Analyst • Irving, TX, United States

    Job_description.internal_linking.related_jobs
    • serp_jobs.job_card.promoted
    Lead Cybersecurity Analyst

    Lead Cybersecurity Analyst

    VirtualVocationsGrand Prairie, Texas, United States
    serp_jobs.job_card.full_time
    A company is looking for a Lead Cybersecurity Analyst - GRC.Key Responsibilities Lead and support third-party risk assessments and maintain the Information Security Risk Register Maintain cybers...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_days
    • serp_jobs.job_card.promoted
    Cybersecurity Incident Response Manager

    Cybersecurity Incident Response Manager

    VirtualVocationsFort Worth, Texas, United States
    serp_jobs.job_card.full_time
    A company is looking for a Manager, Detection and Response.Key Responsibilities Lead day-to-day operations of the Security Operations Center (SOC) and enhance detection capabilities Serve as inc...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_hours
    • serp_jobs.job_card.promoted
    Epic Application Analyst

    Epic Application Analyst

    VirtualVocationsFort Worth, Texas, United States
    serp_jobs.job_card.full_time
    A company is looking for an Epic Optimization Application Analyst.Key Responsibilities Provide intermediate system-level support for clinical and financial applications, including installation, c...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30
    • serp_jobs.job_card.promoted
    • serp_jobs.job_card.new
    Cybersecurity UX Lead

    Cybersecurity UX Lead

    VirtualVocationsFort Worth, Texas, United States
    serp_jobs.job_card.full_time
    A company is looking for a Cyber Security UX Lead to drive strategy and design for user experiences in security systems.Key Responsibilities Spearhead UX strategy and implementation for cybersecu...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_hours
    • serp_jobs.job_card.promoted
    Senior SOC Analyst

    Senior SOC Analyst

    VirtualVocationsCarrollton, Texas, United States
    serp_jobs.job_card.full_time
    Key Responsibilities Oversee the monitoring of security alerts and events from various security tools Lead investigations of security incidents and develop remediation strategies Collaborate wi...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30
    • serp_jobs.job_card.promoted
    Cybersecurity Specialist

    Cybersecurity Specialist

    VirtualVocationsCarrollton, Texas, United States
    serp_jobs.job_card.full_time
    A company is looking for a Cybersecurity Specialist to manage the Authorization to Operate (ATO) process for Department of Defense and government agency clients. Key Responsibilities Lead and supp...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30
    • serp_jobs.job_card.promoted
    Information Security Analyst

    Information Security Analyst

    VirtualVocationsDallas, Texas, United States
    serp_jobs.job_card.full_time
    A company is looking for an Information Security Analyst to join their Security Operations and Engineering team in a remote contract position. Key Responsibilities : Safeguard data and infrastructu...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30
    • serp_jobs.job_card.promoted
    Senior Manager Cyber Risk Assessment

    Senior Manager Cyber Risk Assessment

    VirtualVocationsCarrollton, Texas, United States
    serp_jobs.job_card.full_time
    A company is looking for a Senior Manager Third Party Cyber Risk Assessment.Key Responsibilities : Lead operations for cybersecurity Third-Party Risk Assessment and collaborate on defining the TPR...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_days
    • serp_jobs.job_card.promoted
    Cyber Warfare Technician

    Cyber Warfare Technician

    U.S. NavyHaslet, TX, United States
    serp_jobs.job_card.full_time +1
    To be eligible to enlist in the U.Navy, candidates must be between the ages of 18-34.As a Cryptologic Technician, you are one of the worlds greatest problem-solvers. Were looking for people with sha...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30
    • serp_jobs.job_card.promoted
    Security Risk Compliance Analyst

    Security Risk Compliance Analyst

    VirtualVocationsDallas, Texas, United States
    serp_jobs.job_card.full_time
    A company is looking for a Security Risk and Compliance Analyst.Key Responsibilities Identify and analyze security risks while assisting in remediation efforts Manage the risk register, security...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_days
    • serp_jobs.job_card.promoted
    Threat Analyst

    Threat Analyst

    VirtualVocationsGrand Prairie, Texas, United States
    serp_jobs.job_card.full_time
    A company is looking for a Threat Analyst to provide intrusion and incident monitoring in a remote setting.Key Responsibilities Monitor and detect security incidents using various tools and data ...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30
    • serp_jobs.job_card.promoted
    Application Security Analyst

    Application Security Analyst

    VirtualVocationsCarrollton, Texas, United States
    serp_jobs.job_card.full_time
    A company is looking for an Application Security Analyst to provide security guidance to application development teams.Key Responsibilities Provide application security guidance and educate devel...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_days
    • serp_jobs.job_card.promoted
    Security Operations Center Analyst

    Security Operations Center Analyst

    VirtualVocationsDallas, Texas, United States
    serp_jobs.job_card.full_time
    A company is looking for a Security Operations Center Analyst.Key Responsibilities Monitor and analyze network traffic and intrusion detection alerts Investigate intrusion attempts and analyze p...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30
    • serp_jobs.job_card.promoted
    Senior Cybersecurity Specialist

    Senior Cybersecurity Specialist

    VirtualVocationsFort Worth, Texas, United States
    serp_jobs.job_card.full_time
    A company is looking for a Senior Cybersecurity Specialist.Key Responsibilities Lead and execute cybersecurity initiatives and team activities Establish, enforce, and maintain security policies ...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_days
    • serp_jobs.job_card.promoted
    Cybersecurity Architect

    Cybersecurity Architect

    VirtualVocationsCarrollton, Texas, United States
    serp_jobs.job_card.full_time
    A company is looking for a Cybersecurity Architect.Key Responsibilities Design and implement cybersecurity strategies to protect organizational assets Conduct risk assessments and vulnerability ...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30
    • serp_jobs.job_card.promoted
    NOSC Analyst Lead

    NOSC Analyst Lead

    VirtualVocationsFort Worth, Texas, United States
    serp_jobs.job_card.full_time
    A company is looking for a NOSC Analyst Lead (Overnight) to provide technical support and oversight for FCC systems.Key Responsibilities Provide technical support for hardware, software, and netw...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_days
    • serp_jobs.job_card.promoted
    Cybersecurity Program Manager

    Cybersecurity Program Manager

    VirtualVocationsCarrollton, Texas, United States
    serp_jobs.job_card.full_time
    A company is looking for a Program Manager - Cybersecurity / GRC.Key Responsibilities Develop, implement, maintain, and mature a strategic, risk-based roadmap in collaboration with IT and busines...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_30
    • serp_jobs.job_card.promoted
    SAP Application Security Analyst

    SAP Application Security Analyst

    VirtualVocationsCarrollton, Texas, United States
    serp_jobs.job_card.full_time
    A company is looking for an SAP Application Security Analyst to support a high-impact federal project.Key Responsibilities Manage user access requests, role assignments, and troubleshoot security...serp_jobs.internal_linking.show_moreserp_jobs.last_updated.last_updated_variable_hours