Summer 2027

Software Development Intern

Summer 2027

Posted on 9/2/2026

McKesson

McKesson

10,001+ employees

Pharmaceuticals and medical supplies distributor.

Compensation Overview

$17.33 - $28.88/hr

+ Annual bonus + Long-term incentive opportunities

Irving, TX, USA

Hybrid

Hybrid work is based out of the Irving, Texas location.

Bachelor's, Master's

Category
Software Engineering
Required Skills
Python
Data Structures & Algorithms
Java
C#

Get referred to McKesson

See people who can refer or advise you

Requirements
  • Currently enrolled in a Bachelor's or Master's degree program in Computer Science, Software Engineering, or a related technical field.
  • Expected graduation date of Fall 2027, Spring 2028, Fall 2028, or Spring 2029.
  • Solid understanding of fundamental computer science principles, including data structures, algorithms, and object-oriented programming.
  • Proficiency in at least one modern programming language, such as C#, Java, or Python.
  • Familiarity with software development lifecycle concepts.
  • Solid problem-solving and analytical skills.
  • Excellent written and verbal communication skills.
  • Ability to work effectively both independently and as part of a team.
Responsibilities
  • Collaborate with senior developers and product managers to understand project requirements and contribute to technical design discussions.
  • Write, test, and debug clean, efficient, and well-documented code in various programming languages, including C#, Java, and Python.
  • Assist in the development and maintenance of software applications, features, and tools.
  • Participate in code reviews, providing constructive feedback and learning from peers.
  • Troubleshoot and resolve software defects and issues.
  • Contribute to the creation and maintenance of technical documentation.
  • Learn and apply new technologies, development methodologies, and best practices.
  • Engage in team meetings, stand-ups, and other collaborative activities.
Desired Qualifications
  • Prior internship experience or personal projects demonstrating software development aptitude.

McKesson is a global healthcare distributor and services provider. It buys pharmaceuticals and medical products from manufacturers and distributes them to pharmacies, hospitals, and other healthcare facilities, acting as an intermediary in the supply chain. Its core work includes logistics and supply chain management, ensuring medicines and medical supplies reach customers on time and safely. McKesson also offers technology solutions to help healthcare providers manage operations and procurement. Compared with competitors, it leverages a very large-scale network and integrated services—combining distribution, logistics, and technology—across providers, pharmacies, and manufacturers. The company aims to support the healthcare system by keeping essential medical supplies available and helping healthcare facilities run more efficiently, ultimately improving patient care.

Company Size

10,001+

Company Stage

IPO

Headquarters

Irving, Texas

Founded

1833

Get referred to McKesson

See people who can refer or advise you

Simplify Jobs

Simplify's Take

What believers are saying

  • FY2026 revenue reached $403 billion, up 12%, despite a weak pharmacy market.
  • Medical-Surgical separation advanced January 1, 2026, sharpening focus and accountability.
  • Specialty distribution and technology lifted Q4 gross profit 14% to $3.9 billion.

What critics are saying

  • August 25, 2026, ShinyHunters breached cloud accounts, causing intermittent service degradation.
  • McKesson says oncology and medical-surgical data was exfiltrated; customer class actions hit by winter 2026.
  • Third-party SaaS and Okta reliance create an existential single-point failure across delivery and billing.

What makes McKesson unique

  • McKesson moves one-third of North American prescriptions, giving unmatched distribution density.
  • Oncology and Multispecialty grew 35% in Q4 FY2026, driven by PRISM and Core Ventures.
  • Fiscal 2027 targets 13.5%-17.5% oncology operating-profit growth, signaling specialty-care scale.

Help us improve and share your feedback! Did you find this helpful?

Benefits

Performance Bonus

401(k) Company Match

Growth & Insights and Company News

Headcount

6 month growth

0%

1 year growth

0%

2 year growth

0%
Jason Nickerson
Sep 1st, 2026
Supply chain vulnerability isn't just about code.

Supply chain vulnerability isn't just about code. Jason Nickerson has spent years talking about the risks of centralized infrastructure in the hosting world, but the same consolidation that makes cloud computing efficient is creating massive single points of failure in its healthcare system. McKesson, a titan that effectively keeps the lights on for hospitals and pharmacies across the United States, is currently dealing with a massive breach and subsequent service degradation. According to a recent report, hackers are claiming to have walked away with millions of patient records while the company struggles to maintain its normal distribution of medicines and devices. This isn't just a matter of leaked names and dates; it is an operational bottleneck that stops the flow of physical goods to people who actually need them. The cost of consolidation. In the hosting business, if a major control panel or infrastructure provider has an outage, Jason Nickerson see it as a business catastrophe. When it happens to a medical distributor, it becomes a public health crisis. The business implication here is clear: its push toward hyper-efficiency through massive, centralized distributors has created a landscape where one successful breach can paralyze an entire sector. For McKesson, the challenge isn't just the PR nightmare of stolen data - it's the reality that their systems are so intertwined with their logistics that the breach has physically slowed down their ability to deliver products. Jason Nickerson is seeing a trend where attackers no longer just want to encrypt your files for a quick payday. They are targeting the friction points of the economy. If you can disrupt the distribution of medicine, you aren't just holding data hostage; you're holding the supply chain hostage. This puts a level of pressure on a company that a standard database leak simply can't match. It's a calculated move to force a settlement by making the operational pain unbearable. I've seen enough server migrations to know that recovery is never as fast as the initial press release suggests. If they are already admitting to service degradation, the IT teams in those distribution centers are likely having a very long month. The long view. Security is no longer a department you fund just to check a box for your insurance provider. In a world where your digital integrity dictates your physical output, failing to secure the perimeter is the same as locking the front door but leaving the loading dock wide open. Jason Nickerson need to stop treating data breaches as isolated IT incidents and start viewing them as the fundamental business risks they have become.

NOSMH LLC
Aug 31st, 2026
McKesson cyberattack hits oncology data as pharma giant warns of service problems.

McKesson cyberattack hits oncology data as pharma giant warns of service problems. McKesson, the Texas pharmaceutical giant that delivers about one-third of all prescriptions in North America, is investigating a cyberattack that already put customer data in crooks' hands. The company posted a public notice and filed with the Securities and Exchange Commission on Friday evening. It said it is in the early stages of looking into a cybersecurity incident involving an unnamed third-party application. Hackers got into that application and started pulling data out. If you fill a prescription, sit in a cancer clinic, or run a small medical practice, this is not some distant IT story. This is the plumbing of American healthcare taking a hit. What McKesson is telling customers. Chief technology officer Francisco Fraga used the usual corporate fog. "At this time, customers may experience intermittent service degradation that we believe may be related to this incident," he said. "We are aware of these issues and continue to monitor the situation closely." That means some systems are acting up, and they think the breach is why. On Saturday, McKesson said the attackers took data associated with customers in the oncology and surgical business units. Fraga said the company will provide credit monitoring and identity protection to customers whose data was stolen. McKesson also said it has "reasonable assurance" the hackers are no longer inside its systems. "Customers can continue to connect to and use our systems and services as intended," Fraga said. The company is not proactively disconnecting systems, the step outfits usually take when ransomware is spreading and they need to contain the mess. He told customers to contact McKesson if they hit technical problems. The company said it is still investigating and did not answer questions about the incident when reached for comment. ShinyHunters claims the job. The ShinyHunters cybercriminal group took credit for the attack on Friday night and threatened leaks on their blog. This crew has spent more than two years attacking and extorting some of the largest companies in the world. Earlier this year, the FBI warned that hackers linked to ShinyHunters were demanding substantial ransom payments from companies after stealing data through compromises involving Salesforce environments. The same group caused chaos across the U.S. in May with an attack on a widely used educational software suite. In April, they stole the information of more than four million people after attacking the world's largest medical device company. Other victims named in that reporting include Carnival Cruises, Ticketmaster, AT&T, McGraw Hill, ADT, and gaming company Rockstar. A company that moves a third of North America's prescriptions. McKesson reported $106 billion in revenue last quarter. About one-third of all prescriptions in North America are delivered by the company. It distributes pharmaceuticals, produces drugs for oncology patients, and manufactures medical-surgical supplies and laboratory equipment. This is also not a one-off in healthcare. McKesson is the latest large healthcare company attacked this year after medical device giants Boston Scientific and Medtronic both reported cybersecurity incidents. Another large medical device firm, Stryker, was hit earlier this year too. The pattern is ugly and simple. Healthcare has to stay online because people need medicine and surgery. Attackers know that. Vendors and third-party apps sit on the same network as the stuff that actually matters. When that link fails, patients and small clinics eat the risk while the giant talks about "service degradation." What you should do if this touches you. You do not need a security team to take a few practical steps. The hole was a third-party application. The stolen records sit in oncology and surgical customer data. Credit monitoring is the standard offer, and it is not the same as locking things down yourself. * If you are a pharmacy, hospital, or clinic that uses McKesson, watch for odd outages and call them if a service misbehaves. * If your information may have been in the oncology or surgical units, enroll in the identity protection they offer, then freeze your credit with the bureaus anyway. * Read your explanation of benefits and pharmacy records for charges or refills you did not authorize. * Treat "reasonable assurance" the attackers are gone as an update, not a finish line. Investigations move. So do leak sites. * Ask your providers which vendors hold your data. The weak door is often a tool nobody on the floor has ever heard of. Big healthcare companies will keep filing SEC notices and offering monitoring. Regular people still have to watch their own accounts. That is the system NOSMH has right now, and it is not working for the folks who actually get the chemo and the stitches.

Intelpro
Aug 31st, 2026
Hackers claim millions of patient records stolen during data breach at healthcare giant McKesson.

Hackers claim millions of patient records stolen during data breach at healthcare giant McKesson. The company, which distributes medicines and medical devices to hospitals and healthcare practices across the U.S., said it was hacked and expects int A prolific hacking group has taken credit for last week's cyberattack against U.S. pharmaceutical distribution giant McKesson, leading to the latest spill of highly sensitive health data by an American healthcare company in recent months. McKesson confirmed Friday in a statement on its website that hackers broke into several of its cloud-hosted accounts earlier in the week and exfiltrated data, and that the company expected "intermittent service degradation" related to the incident. In a separate notice to customers, the company's chief technology officer, Francisco Fraga, said the stolen data relates to its oncology & multispecialty and medical-surgical units. The Texas-based company is one of the largest American distributors of pharmaceuticals, medicines, medical supplies, and technology to hospitals and healthcare providers across the United States, and as such handles a large amount of patient data. The ShinyHunters hacking group - one of the most active data-extortion crews of the past two years - told TechCrunch that it hacked the company's cloud environment by tricking several employees into granting the hackers access to McKesson's network by using phishing and social engineering tricks, which the group is known for. The hackers said they stole a range of personal information, such as names, addresses, and Social Security numbers, as well as protected health information, including diagnoses, medications, allergies, and patient notes. The hackers say they took millions of rows of patient data from the company's cloud-hosted Snowflake and Salesforce environments, but that they are unsure of how many individuals are ultimately affected. The stolen data also included McKesson employees' information, such as home addresses. ShinyHunters shared screenshots and a sample of the stolen data with TechCrunch, and IntelPro verified a small subset of it against public records. Bleeping Computer, which first reported the link to the ShinyHunters hacking group, said the hackers demanded a $55 million ransom from the company in exchange for not publicly releasing the stolen files. In a statement, McKesson spokesperson Kristina Chang said the company "continues to operate in all lines of business," and reiterated its public statement, and noted that McKesson believes it has no ongoing unauthorized activity in its systems. The company would not answer TechCrunch's questions about the incident, such as what the hackers demanded or how many individuals had data affected by the incident. McKesson is the latest healthcare company or medical device maker to be targeted in a string of cyberattacks in recent months, as hackers aim to steal large amounts of sensitive medical and health data that they can use to extort the companies into paying a ransom to keep it from being published. Last week, medical device maker Boston Scientific was hit by a cyberattack that knocked much of the company's network offline. The cyberattack had a similar effect to an incident earlier this year at another medical device maker Stryker, in which hackers abused a company's internal tools to remotely wipe thousands of employee devices. Abbott Laboratories and Medtronic have also experienced cyberattacks, while electronic patient records provider CareCloud and health tech company TriZetto had breaches affecting over 3 million patients each. The ShinyHunters hackers have also taken credit for sizable data breaches at Amazon-owned One Medical and dental insurance company DentaQuest following cyberattacks on their systems. _Lorenzo Franceschi-Bicchierai contributed reporting._ _Updated with comment from a McKesson spokesperson._

TechAmerica
Aug 31st, 2026
McKesson data breach exposes patient information after cloud attack.

McKesson data breach exposes patient information after cloud attack. McKesson confirms a cloud security breach after hackers claim to have stolen millions of patient records, including sensitive health data. Aug 31, 2026 - 14:49 McKesson, one of the largest pharmaceutical distributors in the United States, has confirmed a cyberattack after hackers claimed to have stolen millions of patient records from the company's cloud environment. Discover more Discovering Emerging Tech Newsletters Implementing Enterprise AI And Machine Learning Tools Subscribing To Digital Newspaper Outlets McKesson said attackers accessed several cloud-hosted accounts and removed data from its systems. The company warned customers that some services could experience intermittent disruptions related to the incident. Hackers claim theft of sensitive healthcare data. The ShinyHunters hacking group claimed responsibility for the attack, saying it gained access through phishing and social engineering techniques targeting employees. The group said it obtained data from McKesson's cloud-hosted environments, including systems connected to Snowflake and Salesforce. The attackers claimed that the stolen information includes names, addresses, Social Security numbers, and protected health information such as diagnoses, medications, allergies, and patient notes. They said the breach involved millions of rows of data but could not confirm how many individuals were affected. McKesson said the affected information relates to its oncology, multispecialty, and medical-surgical business units. The company also said employee information, including home addresses, was among the potentially exposed data. Registering An LLC Online Healthcare sector faces continued cybersecurity pressure. BleepingComputer reported that the attackers demanded a $55 million ransom in exchange for not publishing the stolen files. McKesson has not confirmed the ransom demand. The incident follows a series of cyberattacks targeting healthcare companies and medical technology providers, in which criminals have focused on sensitive medical information for extortion. ShinyHunters has previously claimed responsibility for major healthcare-related breaches, including incidents involving Amazon-owned One Medical and dental insurance provider DentaQuest. Other healthcare organisations have also reported significant cyber incidents in recent months, increasing concerns about the protection of patient data across the medical industry.

Malwarebytes
Aug 31st, 2026
McKesson confirms cyber incident after ShinyHunters claims patient-data theft.

McKesson confirms cyber incident after ShinyHunters claims patient-data theft. Healthcare and pharmaceutical-distribution giant McKesson has disclosed a cybersecurity incident involving unauthorized access to third-party applications and the theft of data. McKesson Corporation is an American healthcare company that distributes pharmaceuticals and provides medical supplies, health information technology, and care management tools. McKesson says it discovered the cybersecurity incident on August 25, 2026, and that its investigation is still in early stages. "Based on our investigation thus far, including assessments by leading cybersecurity industry experts supporting our response, we've confirmed that the unauthorized access to certain third-party applications and the exfiltration of certain data was associated with a subset of customers within our Oncology & Multispecialty and Medical-Surgical business units." For now, McKesson provides no information about the amount or nature of the stolen data. The attack has been claimed by ransomware/extortion group Shiny Hunters. On their leak site the group claims to have stolen hundreds of millions of records containing very sensitive information spanning from Personally Identifiable Information (PII) to Protected Health Information (PHI). The ShinyHunters extortion group told BleepingComputer that it was behind the attack, claiming it gained access after conducting voice phishing (or vishing) attacks - a form of social engineering - against multiple McKesson employees. Subsequently, the group said it used compromised Okta single-sign-on accounts to access Salesforce and Snowflake environments. It further claimed to have removed approximately 1 TB of data between August 21 and 25. The group also said the data includes roughly 284 million records, which does not necessarily mean they belong to 284 million unique patients. A combination of identity information and healthcare-related details could make affected people targets for convincing scams. Criminals could impersonate a pharmacy, insurer, medical provider, debt collector, or patient-support service and use personal details to make the approach appear legitimate. Healthcare data is especially useful in social-engineering attacks because it can be used to create a sense of urgency: Criminals could scare a target by sending a supposed prescription problem, unpaid claim, delivery issue, appointment change, or request to "verify" insurance details. At this stage, however, McKesson has not confirmed that any particular category of patient data was accessed. What to do if you're affected. While waiting for more information about the nature of the breach and how you might be affected, there are a few things you can do: * Check the company's advice. Every breach is different, so check with the company to find out what's happened and follow any specific advice it offers. * Change your password. You can make a stolen password useless to thieves by changing it. Choose a strong password that you don't use for anything else. Better yet, let a password manager choose one for you. * Enable two-factor authentication (2FA). If you can, use a FIDO2-compliant hardware key, laptop, or phone as your second factor. Some forms of 2FA can be phished just as easily as a password, but 2FA that relies on a FIDO2 device can't be phished. * Watch out for impersonators. Cybercriminals may contact you posing as the breached company. Check its official website to see if it's contacting victims, and verify the identity of anyone who contacts you using a different communication channel. * Take your time. Phishing attacks often impersonate people or brands you know and use themes that require urgent attention, such as missed deliveries, account suspensions, and security alerts. * Consider not storing your card details. It's definitely more convenient to let sites remember your card details, but it increases the risk if a company suffers a breach. * Set up identity monitoring. This can alert you if your personal information is found being traded illegally online and help you recover afterward. Let's face it, an incognito window can only do so much. Breaches, dark web trading, credit fraud. Malwarebytes Identity Theft Protection monitors for all of it, alerts you fast, and comes with identity theft insurance. Malware Intelligence Researcher Was a Microsoft MVP in consumer security for 12 years running. Can speak four languages. Smells of rich mahogany and leather-bound books.