Cencora Logo

Cencora

Engineer III, Red Team

Posted 47 Minutes Ago
Be an Early Applicant
In-Office
Carrollton, TX
Senior level
In-Office
Carrollton, TX
Senior level
Plans and executes covert enterprise red team operations, develops offensive tooling and implants, conducts vulnerability research and social engineering, and emulates advanced threat actors. Collaborates with threat intelligence and incident response teams on Purple Team exercises, validates detection and response controls, and communicates technical findings and prioritized remediation recommendations to executive and technical stakeholders.
The summary above was generated by AI
Our team members are at the heart of everything we do. At Cencora, we are united in our responsibility to create healthier futures, and every person here is essential to us being able to deliver on that purpose. If you want to make a difference at the center of health, come join our innovative company and help us improve the lives of people and animals everywhere. Apply today!
Job Details
JOB SUMMARY
The Engineer III, Red Team, will serve as a senior red team operator within the global Cyber Defense organization. This role is responsible for planning, executing, and reporting realistic cyber attack simulations against the organization's critical assets and security controls. The Engineer III will emulate the tactics, techniques, and procedures of advanced threat actors to rigorously test the effectiveness of detection, prevention, and response capabilities. This position requires deep, hands-on expertise in offensive security, covert operations, and the ability to translate technical findings into actionable defensive improvements.
RESPONSIBILITIES:
  • Plan and execute complex covert Red Team operations from initial compromise to achieving defined high-value objectives, maintaining operational security throughout.
  • Develop, customize, and deploy advanced offensive tooling, exploits, and implants to bypass security controls and maintain persistence within target environments.
  • Conduct vulnerability research, cyber security assessments, and social engineering campaigns as part of Red Team engagement.
  • Collaborate closely with Cyber Threat Intelligence to incorporate real-world adversary TTPs and create intelligence-driven attack scenarios.
  • Produce high-quality, executive-level reports detailing simulation findings, observed defensive gaps, and prioritized, actionable remediation recommendations.
  • Facilitate detailed Purple Team exercises by working directly with Incident Response analysts to share offensive techniques and validate detection and response capabilities in real-time.
  • Present findings and strategic recommendations to technical and executive stakeholders.
  • Stay current with emerging offensive technologies, adversary TTPs, and defensive countermeasures.

EDUCATION & QUALIFICATIONS:
  • Bachelor's degree in Cybersecurity, Computer Science, Information Systems, or equivalent work experience
  • 6+ years of progressive experience in cybersecurity, with at least 4 years dedicated to Red Team operations, advanced penetration testing, or offensive security research.
  • Advanced knowledge and hands-on experience in full lifecycle of Red Team engagement and advanced penetration testing methodologies.
  • Expertise with common red team toolsets (e.g., Cobalt Strike, Nighthawk C2, Metasploit, Evilginx) and custom implant scripting and development.
  • Strong understanding of network protocols, operating system internals (Windows, Linux, MacOS), cloud security, and defensive security technologies.
  • Familiarity with intelligence frameworks such as MITRE ATT&CK for mapping and emulating adversary behavior.
  • Proven ability to bypass advanced security defenses and demonstrate impact on critical business assets.
  • Hands-on experience with at least one scripting or programming language for tooling and automation (e.g., Python, Go, Powershell).
  • Demonstrated success in executing large-scale, enterprise-level Red Team simulations.
  • Strong written and verbal communication skills, with the ability to articulate complex technical vulnerabilities and operational findings to a non-technical audience.

PREFERRED CERTIFICATIONS:
  • Offensive Security Certified Professional (OSCP) or Offensive Security Wireless Professional (OSWP)
  • GIAC Penetration Tester (GPEN), GIAC Web Application Penetration Tester (GWAPT), or GIAC Exploit Researcher and Advanced Penetration Tester (GXPN)

Bachelor's degree in cyber security, computer science, information technology, information systems, or a related field, or equivalent experience required. 4+ years of experience in cyber security, cyber threat intelligence, security operations, incident response, threat analysis, or equivalent required. Certified in Cybersecurity (CS) or equivalent certification preferred. Certified in Cyber Threat Intelligence (CTI) or equivalent certification preferred. Certified in Ethical Hacking (EH) or equivalent certification preferred.
What Cencora offers
We provide compensation, benefits, and resources that enable a highly inclusive culture and support our team members' ability to live with purpose every day. In addition to traditional offerings like medical, dental, and vision care, we also provide a comprehensive suite of benefits that focus on the physical, emotional, financial, and social aspects of wellness. This encompasses support for working families, which may include backup dependent care, adoption assistance, infertility coverage, family building support, behavioral health solutions, paid parental leave, and paid caregiver leave. To encourage your personal growth, we also offer a variety of training programs, professional development resources, and opportunities to participate in mentorship programs, employee resource groups, volunteer activities, and much more. For details, visit https://www.virtualfairhub.com/cencora
Full time
Equal Employment Opportunity
Cencora is committed to providing equal employment opportunity without regard to race, color, religion, sex, sexual orientation, gender identity, genetic information, national origin, age, disability, veteran status or membership in any other class protected by federal, state or local law.
The company's continued success depends on the full and effective utilization of qualified individuals. Therefore, harassment is prohibited and all matters related to recruiting, training, compensation, benefits, promotions and transfers comply with equal opportunity principles and are non-discriminatory.
Cencora is committed to providing reasonable accommodations to individuals with disabilities during the employment process which are consistent with legal requirements. If you wish to request an accommodation while seeking employment, please call 888.692.2272 or email [email protected]. We will make accommodation determinations on a request-by-request basis. Messages and emails regarding anything other than accommodations requests will not be returned
Affiliated Companies
Affiliated Companies: AmerisourceBergen Services Corporation

Similar Jobs at Cencora

46 Minutes Ago
In-Office
Senior level
Senior level
Healthtech • Logistics • Pharmaceutical
Leads proactive threat hunting within a Security Operations Center, investigating adversarial activity and improving detection, response, monitoring, and security controls. Responsibilities include researching emerging threats, developing SIEM, EDR, and SOAR detection methodologies, performing security gap assessments, correlating security data, supporting incident response and recovery, enhancing alerting, and briefing stakeholders on critical risks.
Top Skills: EdrGoLinuxmacOSMitre Att&CkPowershellPythonSIEMSoarWindows
47 Minutes Ago
In-Office
Junior
Junior
Healthtech • Logistics • Pharmaceutical
Supports and enhances CIAM platforms for secure customer authentication, authorization, registration, profile, consent, and identity lifecycle management. Develops API integrations and automation using identity protocols, troubleshoots authentication and access issues, monitors telemetry and security events, and supports platform upgrades, security assessments, compliance, and vulnerability remediation. Collaborates with engineering, product, architecture, and cybersecurity teams to deliver scalable SSO, MFA, federation, passwordless, and customer identity solutions.
Top Skills: Auth0AWSForgerockGCPJavaScriptJwtMfaAzureMicrosoft Entra External IdOauth 2.0Okta Customer IdentityOpenid ConnectPing IdentityPowershellPythonRest ApisSaml 2.0ScimSso
47 Minutes Ago
In-Office
Internship
Internship
Healthtech • Logistics • Pharmaceutical
Information Security Interns will support strategic security projects, policy and procedure implementation, process documentation, and analysis of security tools. They will collaborate with experienced security professionals, participate in developmental workshops, assist with special projects, and help maintain internal security processes. The role requires an interest in cybersecurity, basic knowledge of security technologies, Microsoft operating systems and system administration, strong analytical and communication skills, and on-site availability in Conshohocken, Pennsylvania, or Carrollton, Texas.
Top Skills: FirewallsGrc PlatformsMicrosoft Operating SystemsSIEMSystem Administration

What you need to know about the Chicago Tech Scene

With vibrant neighborhoods, great food and more affordable housing than either coast, Chicago might be the most liveable major tech hub. It is the birthplace of modern commodities and futures trading, a national hub for logistics and commerce, and home to the American Medical Association and the American Bar Association. This diverse blend of industry influences has helped Chicago emerge as a major player in verticals like fintech, biotechnology, legal tech, e-commerce and logistics technology. It’s also a major hiring center for tech companies on both coasts.

Key Facts About Chicago Tech

  • Number of Tech Workers: 245,800; 5.2% of overall workforce (2024 CompTIA survey)
  • Major Tech Employers: McDonald’s, John Deere, Boeing, Morningstar
  • Key Industries: Artificial intelligence, biotechnology, fintech, software, logistics technology
  • Funding Landscape: $2.5 billion in venture capital funding in 2024 (Pitchbook)
  • Notable Investors: Pritzker Group Venture Capital, Arch Venture Partners, MATH Venture Partners, Jump Capital, Hyde Park Venture Partners
  • Research Centers and Universities: Northwestern University, University of Chicago, University of Illinois Urbana-Champaign, Illinois Institute of Technology, Argonne National Laboratory, Fermi National Accelerator Laboratory

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account