Engineer III - Cyber Incident Response

Posted 7 Hours Ago
Be an Early Applicant
Vilnius, Vilniaus miesto savivaldybė, Vilniaus apskritis, LTU
In-Office
56K-80K Annually
Senior level
Healthtech • Logistics • Pharmaceutical
We are united in our responsibility to create healthier futures
The Role
Lead complex incident investigations across endpoints, networks, and cloud; perform digital forensics; develop response playbooks and detection use cases; mentor junior analysts; escalate and report high-severity incidents; collaborate with threat intelligence, vulnerability and red/purple teams to improve SOC capabilities.
Summary Generated by Built In
Cencora, previously known as AmerisourceBergen, is a leading global pharmaceutical solutions organization centered on improving lives. Ranked #21 on the Global Fortune 500, our team members are united in our responsibility to create healthier futures.
Our Shared Service Center in Lithuania is experiencing rapid growth and we have many diverse and exciting roles in Customer Service, Operations, IT, Finance and HR. Join us and make a positive impact on human and animal health.
Job Details
The Engineer III - Cyber Incident Response, is a senior technical role within the Security Operations Center (SOC) responsible for leading complex incident investigations and supporting the continuous improvement of detection and response capabilities. This role provides advanced technical expertise in identifying, analyzing, containing, and remediating cyber threats. The Engineer III will act as a mentor to junior analysts, serve as an escalation point for critical incidents, and collaborate with global cyber defense teams to ensure timely and effective responses to advanced threats.
Responsibilities:
  • Lead the investigation and resolution of complex security incidents, including advanced persistent threats, ransomware, phishing campaigns, and insider activities.
  • Perform forensic analysis across endpoints, networks, and cloud environments to identify root causes and scope of compromise.
  • Develop and enhance incident response playbooks, runbooks, and detection use cases.
  • Collaborate with threat intelligence, vulnerability management, and countermeasures teams to strengthen defenses.
  • Escalate high-severity incidents to senior leadership and provide clear, actionable reporting.
  • Act as a technical escalation point for Engineer I/II analysts during incident investigations.
  • Contribute to red team and purple team exercises to validate and improve response capabilities.
  • Participate in after-action reviews and lessons-learned sessions to improve SOC processes.
  • Mentor and train junior engineers on incident response best practices and investigative techniques.

Education:
  • Bachelor's degree in Cybersecurity, Computer Science, Information Technology, or equivalent work experience; Master's degree preferred.

Preferred Certifications:
  • GIAC Certified Incident Handler (GCIH)
  • GIAC Certified Intrusion Analyst (GCIA)
  • GIAC Certified Forensic Analyst (GCFA)
  • Certified Ethical Hacker (CEH)
  • Certified Information Systems Security Professional (CISSP)

Work Experience:
  • 7+ years of progressive experience in cybersecurity, with at least 4 years in incident response or SOC operations.
  • Hands-on experience with SIEM, EDR, SOAR, and forensic tools (e.g., Splunk, CrowdStrike, EnCase, Wireshark).
  • Proven ability to investigate advanced threats and coordinate response activities across teams.
  • Demonstrated success in mentoring junior analysts and improving SOC processes.
  • Strong written and verbal communication skills with the ability to document and present technical findings clearly.

Skills and Knowledge:
  • Strong knowledge of incident response methodologies, digital forensics, and adversary tactics.
  • Familiarity with security frameworks such as NIST, MITRE ATT&CK, and ISO 27035.

Salary Ranges: 4657 - 6653 EUR gross monthly
# Li-hybrid
What Cencora offers
We offer a competitive annual bonus, life insurance from Day 1, a best-in-class health insurance package, and up to 6 fully paid benefit days a year. As a Cencora employee, you have the benefit of our referral bonus scheme, our boundless learning opportunities and our global Employee Assistance Program. We have a wonderful office location in Quadrum, equipped with everything you need for a small break at work and fresh snacks at all times. Become part of our purpose-driven, multicultural team now and help us create healthier futures
Full time
Affiliated Companies:
Affiliated Companies: World Courier (Lithuania) UAB

Skills Required

  • Bachelor's degree in Cybersecurity, Computer Science, Information Technology, or equivalent work experience
  • 7+ years of progressive experience in cybersecurity, with at least 4 years in incident response or SOC operations
  • Hands-on experience with SIEM, EDR, SOAR, and forensic tools (Splunk, CrowdStrike, EnCase, Wireshark)
  • Proven ability to investigate advanced threats (APTs, ransomware, phishing, insider threats) and coordinate response activities
  • Experience performing forensic analysis across endpoints, networks, and cloud environments
  • Experience developing and enhancing incident response playbooks, runbooks, and detection use cases
  • Demonstrated success mentoring and training junior analysts and acting as technical escalation point
  • Strong written and verbal communication skills for documenting and presenting technical findings
  • Strong knowledge of incident response methodologies, digital forensics, and adversary tactics; familiarity with NIST, MITRE ATT&CK, ISO 27035
  • Master's degree in a relevant field
  • Preferred certifications: GCIH, GCIA, GCFA, CEH, CISSP

What the Team is Saying

Jason
Silvana
Paul Fritzsch
Denesha Thompson
Cindy Aviles
Denesha Thompson
Tina Martinez

Cencora Compensation & Benefits Highlights

  • Healthcare Strength Healthcare coverage is often described as comprehensive, with medical, dental, vision, mental health resources, and day‑one eligibility emphasized. Wellbeing initiatives and EAP resources further reinforce the strength of the core package.
  • Retirement Support Retirement offerings are seen as solid, featuring a 401(k) plan with company matching alongside HSAs/FSAs and an employee stock purchase program. The 401(k) match and tuition support are frequently cited as meaningful parts of total compensation.
  • Parental & Family Support Family-building and leave supports are highlighted, including paid parental and caregiver leave plus fertility, adoption, and surrogacy assistance. Backup child care and related resources add depth to the family support experience.

Cencora Insights

Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: Conshohocken, PA
51,000 Employees
Year Founded: 2023

What We Do

Cencora is a leading pharmaceutical solutions organization centered on improving the lives of people and animals everywhere. With 46,000+ global team members, we have the opportunity to make a positive impact on healthcare in communities everywhere. Our team members are empowered to activate their careers through a collective of tools and resources designed to support individual career interests and aspirations. We value our listening culture that actions real outcomes and our team members appreciate and recognize one another for contributions that are making a meaningful global impact. No matter what your role is here, the work we do together has meaning. When you join our team, you become a crucial part of a greater purpose. We’re committed to supporting you personally and professionally, so we can achieve more together at the center of health. Protect yourself from job scams: Recruitment scams are on the rise. To protect yourself, we urge you to be vigilant and follow these guidelines > https://careers.cencora.com/us/en/job-scams

Gallery

Gallery
Gallery
Gallery
Gallery
Gallery
Gallery
Gallery
Gallery

Cencora Teams

Team
Early Careers
Team
Information Technology
About our Teams

Cencora Offices

Hybrid Workspace

Employees engage in a combination of remote and on-site work.

Typical time on-site: Flexible
Company Office Image
HQConshohocken, PA
Bolsover, GB
București, RO
Carrollton, TX
Chessington, GB
Dříteň, CZ
Feltham, GB
Gennevilliers, FR
Marseille, FR
Oakville, ON
Company Office Image
Pune, Maharashtra
Villanueva de Gállego, Zaragoza
Vilniaus miesto, LT
Woking, GB
Zaragoza, Zaragoza
Learn more

Similar Jobs

Cencora Logo Cencora

Lead Administrator, Database Administration

Healthtech • Logistics • Pharmaceutical
In-Office
Vilnius, Vilniaus miesto savivaldybė, Vilniaus apskritis, LTU
51000 Employees
66K-94K Annually

Cencora Logo Cencora

Lead Administrator, Systems Management

Healthtech • Logistics • Pharmaceutical
In-Office
Vilnius, Vilniaus miesto savivaldybė, Vilniaus apskritis, LTU
51000 Employees
54K-77K Annually

Cencora Logo Cencora

Transition Manager

Healthtech • Logistics • Pharmaceutical
In-Office
Vilnius, Vilniaus miesto savivaldybė, Vilniaus apskritis, LTU
51000 Employees

Cencora Logo Cencora

Lead Administrator, Systems Management

Healthtech • Logistics • Pharmaceutical
In-Office
Vilnius, Vilniaus miesto savivaldybė, Vilniaus apskritis, LTU
51000 Employees
66K-94K Annually

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account