> Markdown version of [/jobs/ext/2027446-senior-cyber-security-engineer-i](https://www.wearedevelopers.com/jobs/ext/2027446-senior-cyber-security-engineer-i). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Senior Cyber Security Engineer I - **Company:** Walgreens - **Location:** Deerfield, IL, United States - **Experience:** Expert - **Salary:** $98,600.0 - $157,500.0 - **Contract:** Permanent contract - **Skills:** Software System Penetration Testing, Cyber Security, Continuous Integration, Data Security, Intrusion Detection and Prevention, Virtual Private Networks (VPN), Network Security, Packet Analyzer, Web Applications, Scripting, Mitre Att&ck, Git Flow, Information Technology, Splunk, Vulnerability Analysis - **Published:** August 11, 2026 - **Apply:** https://www.juju.com/job/00000000gmjaey ## About the Role + Bachelor's degree and at least 2 years of experience in IT Security OR a High School Diploma/GED and at least 4 years of experience in IT Security + At least 1 year of experience working with security protocols and standards, vulnerability assessment tools, packet analyzers, scripting languages and security management suites, penetration testing tools and countermeasures and mitigation techniques applied to web applications. + Experience with security engineering, identity engineering security applications engineering and/or security infrastructure engineering + Experience establishing & maintaining relationships with individuals at all levels of the organization, in the business community & with vendors. + Willing to travel up to 10% of the time for business purposes (within state and out of state) Preferred Qualifications + Bachelor's degree in computer science, Information Technology, Engineering or Mathematics + Professional certifications such as GCIA, GCIH, GCDA, GREM, or equivalent. + Build and operationalize detection content mapped to MITRE ATT&CK tactics, techniques, and procedures (TTPs) to ensure coverage against current and emerging threats. + Continuously evaluate detection fidelity; reduce false positive rates through iterative tuning, exclusions, and risk-based scoring strategies. + Experience with detection-as-code pipelines, including Git-based workflows, CI/CD for rule deployment, and Sigma rule conversion. + Develop, maintain, and optimize Splunk SOAR playbooks to automate alert triage, enrichment, containment, and case management workflows. + Hands-on incident response experience, including forensic triage, memory analysis, or malware behavioral analysis. + Familiarity with data science or ML-based anomaly detection approaches applied to security use cases. We will consider employment of qualified applicants with arrest and conviction records. ## Description We are seeking an experienced Senior Cyber Security Engineer to join the Walgreens Cyber Threat Detection & Response team. In this role, you will own the development and continuous improvement of our detection stack. You will build and maintain detection content, automate response workflows, and mature the team's ability to accurately detect and respond to threats at speed. The ideal candidate brings hands-on experience in detection engineering and security operations, a deep understanding of attacker tactics and techniques, and a passion for building high-fidelity detection logic that scales. This role is critical to the maturity of our security program and offers significant scope to help shape the direction of our detection and response capabilities., + Responsible for the advanced configuration of data security processes and procedures to ensure that data threats and vulnerabilities within the assigned base of complex systems, applications and platforms are minimized. + Designs, builds, operates and automates complex security solutions and processes to protect the integrity of the organization's network, systems, applications and data. + May undertake necessary actions to eliminate identified. Threats. Under guidance, develops solutions to data access, modification, disclosure, destruction or other risks for whatever source, internal or external. + Periodically conducts audits and tests to identify coding and documentation anomalies, and data security vulnerabilities and develops reports summarizing findings. + Conducts security process administration including remediating vulnerabilities, evaluate and approve firewall requests and VPN access, and coordinate password changes. + Recommends and implements solutions. + Eradicates signs of intrusion. Participates in identifying and implementing additional security controls. + Maintains senior level knowledge of security principles, practices and procedures, and encryption as they relate to the role, and monitors innovations in these areas. + Continually evaluates and upgrades security features. + Responds to incidents to identify root causes. + Anticipates and prevents problems and roadblocks before they occur. + Performs network security audits and testing and evaluates system security configurations to ensure efficacy and compliance with policies and procedures. ## Related Videos - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Git for Code Reviews](https://www.wearedevelopers.com/videos/429-git-for-code-reviews) - [Our journey with Spring Boot in a microservice architecture](https://www.wearedevelopers.com/videos/511-our-journey-with-spring-boot-in-a-microservice-architecture) - [JavaScript? No. Java Scripts! - Scripting with Java](https://www.wearedevelopers.com/videos/2094-javascript-no-java-scripts-scripting-with-java) - [You can’t hack what you can’t see](https://www.wearedevelopers.com/videos/41-you-can-t-hack-what-you-can-t-see) - [Why Git Still Matters](https://www.wearedevelopers.com/videos/100288-why-git-still-matters) ## Related Articles - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [System change: restart as developer?](https://www.wearedevelopers.com/magazine/39-system-change-restart-as-developer) - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [Is Software Engineering Over-Saturated?](https://www.wearedevelopers.com/magazine/418-is-software-engineering-over-saturated)