Match score not available

Lead Cyber SIEM Engineer

72% Flex
Remote: 
Full Remote
Salary: 
147 - 245K yearly
Experience: 
Senior (5-10 years)
Work from: 

Offer summary

Qualifications:

Bachelor's degree or equivalent experience, Minimum of 10 years work experience, 3+ years hands-on experience with SIEM solutions, Experience in deploying and maintaining SIEM at scale, Proficiency in scripting languages.

Key responsabilities:

  • Design, implement and support SIEM, SOAR solutions globally
  • Integrate data sources into SIEM from on-premises and cloud devices
  • Develop SIEM content and automate workflows
  • Monitor internal data for performance issues
  • Maintain technical documentation and design documents
McKesson Canada logo
McKesson Canada XLarge https://www.mckesson.ca/
10001 Employees
See more McKesson Canada offers

Job description

Logo Jobgether

Your missions

McKesson is an impact-driven, Fortune 10 company that touches virtually every aspect of healthcare. We are known for delivering insights, products, and services that make quality care more accessible and affordable. Here, we focus on the health, happiness, and well-being of you and those we serve – we care.

What you do at McKesson matters. We foster a culture where you can grow, make an impact, and are empowered to bring new ideas. Together, we thrive as we shape the future of health for patients, our communities, and our people. If you want to be part of tomorrow’s health today, we want to hear from you.

Position Summary: 

McKesson’s Lead Information Security Analyst will be a key member of McKesson’s global cyber detection and response organization responsible for delivering actionable insights within security and risk analytics platforms. This individual will be the subject matter expert for Security Analytics and will be responsible for the architecture, operation and support of SIEM, SOAR and related technologies. 

 

Responsibilities 

  • Design, implement, and support SIEM, SOAR solutions in a highly available, redundant, distributed computing environment for a global organization. 

  • Perform SIEM component configuration and troubleshooting across a variety of platforms both on-premises and in public clouds. 

  • Integrate data sources into SIEM from on-premises and cloud deployed devices and applications. 

  • Develop SIEM content and support other content developers using your expert knowledge. 

  • Monitor internal data sources to identify and resolve potential performance issues 

  • Automate frequently used process and workflows with SOAR related technologies. 

  • Maintain technical documentation and design documents related to system configurations, processes, and operational procedures. 

 

Minimum Requirements: 

  • Requires 10+ years of professional work experience 

  • BS/BA degree or equivalent experience. 

 

Critical Skills 

  • 5+ years of IT experience in a technical position as an engineer, architect or system administrator within a large-scale mission critical enterprise environment. 

  • 3+ years of direct hands-on experience administration or support of SIEM solutions. 

  • Experience deploying, configuring and maintaining a SIEM at scale. 

  • Experience writing complex queries for dashboards, reports and apps. 

  • Experience automating repetitive and error prone operations with scripting languages. 

  • Working knowledge of enterprise architecture, infrastructure components and design 

  • Experience working in an Agile environment using Scrum or Kanban methods. 

  • Team oriented with great communication and interpersonal skills. 

  • Ability to work on all aspects of large-scale projects including planning, prioritizing, executing, delivering, and sustaining. 

 

Preferred/Desired Skills 

  • Experience creating security detections for Splunk Enterprise Security or other correlation 

  • Proficiency with Linux platforms, including shell scripting. Red Hat preferred. 

  • Experience with cloud platforms such as Microsoft Azure and GCP 

  • Experience with additional logging/data broker ETL technologies such Kafka or Cribl 

  • Certified Splunk Power User or Administrator, CISSP certification preferred 

  • Working knowledge of machine learning and UEBA concepts 

We are proud to offer a competitive compensation package at McKesson as part of our Total Rewards. This is determined by several factors, including performance, experience and skills, equity, regular job market evaluations, and geographical markets. In addition to base pay, other compensation, such as an annual bonus or long-term incentive opportunities may be offered. For more information regarding benefits at McKesson, please click here.

Our Base Pay Range for this position

$147,100 - $245,100

McKesson is an Equal Opportunity Employer

 

McKesson provides equal employment opportunities to applicants and employees and is committed to a diverse and inclusive environment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, protected veteran status, disability, age or genetic information. For additional information on McKesson’s full Equal Employment Opportunity policies, visit our Equal Employment Opportunity page.

 

Join us at McKesson!

Required profile

Experience

Level of experience: Senior (5-10 years)
Spoken language(s):
English
Check out the description to know which languages are mandatory.

Soft Skills

  • Teamwork
  • Interpersonal Skills

Go Premium: Access the World's Largest Selection of Remote Jobs!

  • Largest Inventory: Dive into the world's largest remote job inventory. More than half of these opportunities can't be found on standard platforms.
  • Personalized Matches: Our AI-driven algorithms ensure you find job listings perfectly matched to your skills and preferences.
  • Application fast-lane: Discover positions where you rank in the TOP 5% of applicants, and get personally introduced to recruiters with Jobgether.
  • Try out our Premium Benefits with a 7-Day FREE TRIAL.
    No obligations. Cancel anytime.
Upgrade to Premium

Find more Lead Developer jobs