Senior Cyber Security Specialist II - Threat Detection and Response
Walgreens
Deerfield, Illinois
Posted 1 weeks ago
hybrid
Responsibilities
Primary Duties
- Designing, implementing, and tuning detection logic across enterprise and cloud environments
- Leading complex incident response efforts and driving investigations through resolution
- Conducting proactive threat hunting and converting findings into actionable detections
- Developing automation to improve detection, enrichment, triage, and response workflows
- Partnering with security, engineering, infrastructure, and business teams to improve logging, telemetry, and observability
- Identifying gaps in detection coverage, tooling, processes, and response procedures, and driving improvements
- Providing technical guidance, mentoring team members, and contributing to overall team capability through knowledge sharing, documentation, and tabletop exercises
- Communicating technical findings clearly to both technical and non-technical audiences, including leadership when needed
Full Job Description
Senior Security Analyst
This role supports Walgreens' Threat Detection and Response function, with a focus on leading complex security investigations, advancing enterprise detection capabilities, and improving incident response effectiveness across hybrid environments.
As a senior-level individual contributor, you will serve as a technical escalation point for high-impact and complex security incidents, owning investigations end to end from triage through root cause analysis, containment, remediation, and post-incident improvement. This role requires deep hands-on expertise, strong judgment, and the ability to operate independently in ambiguous and time-sensitive situations.
You will help shape detection strategy by building and tuning detection logic, proactively hunting for threats, and using automation to improve response speed, consistency, and scalability. This work spans hybrid infrastructure, cloud environments, applications, identity systems, endpoints, and enterprise platforms, using log analysis, behavioral signals, threat intelligence, and attacker TTPs to identify and mitigate risk.
Key responsibilities include:
Success in this role requires the ability to take ownership, make sound decisions under pressure, and independently drive outcomes across complex security scenarios. The ideal candidate is hands-on, technically strong, comfortable navigating ambiguity, and able to influence improvements that strengthen Walgreens' overall security posture.
Location Requirement: This is a hybrid role based in Deerfield, IL, with 4 days onsite and 1 day remote.
Work Authorization: Work visa sponsorship is not available for this role.
This role supports Walgreens' Threat Detection and Response function, with a focus on leading complex security investigations, advancing enterprise detection capabilities, and improving incident response effectiveness across hybrid environments.
As a senior-level individual contributor, you will serve as a technical escalation point for high-impact and complex security incidents, owning investigations end to end from triage through root cause analysis, containment, remediation, and post-incident improvement. This role requires deep hands-on expertise, strong judgment, and the ability to operate independently in ambiguous and time-sensitive situations.
You will help shape detection strategy by building and tuning detection logic, proactively hunting for threats, and using automation to improve response speed, consistency, and scalability. This work spans hybrid infrastructure, cloud environments, applications, identity systems, endpoints, and enterprise platforms, using log analysis, behavioral signals, threat intelligence, and attacker TTPs to identify and mitigate risk.
Key responsibilities include:
- Designing, implementing, and tuning detection logic across enterprise and cloud environments
- Leading complex incident response efforts and driving investigations through resolution
- Conducting proactive threat hunting and converting findings into actionable detections
- Developing automation to improve detection, enrichment, triage, and response workflows
- Partnering with security, engineering, infrastructure, and business teams to improve logging, telemetry, and observability
- Identifying gaps in detection coverage, tooling, processes, and response procedures, and driving improvements
- Providing technical guidance, mentoring team members, and contributing to overall team capability through knowledge sharing, documentation, and tabletop exercises
- Communicating technical findings clearly to both technical and non-technical audiences, including leadership when needed
Success in this role requires the ability to take ownership, make sound decisions under pressure, and independently drive outcomes across complex security scenarios. The ideal candidate is hands-on, technically strong, comfortable navigating ambiguity, and able to influence improvements that strengthen Walgreens' overall security posture.
Location Requirement: This is a hybrid role based in Deerfield, IL, with 4 days onsite and 1 day remote.
Work Authorization: Work visa sponsorship is not available for this role.





