Security Spec Lead

American Electric Power

Columbus (OH)

On-site

USD 116,000 - 151,000

Full time

2 days ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

American Electric Power is seeking a Detection Engineer to join our Cybersecurity Intelligence and Defense team in Columbus, OH. You will design, develop, tune, and maintain threat detection across enterprise environments, working with Threat Intelligence Analysts, Threat Hunters, Incident Responders, and SOC personnel to identify and improve detection of malicious activity.

The role focuses on translating threat intel into detections, creating content, reducing false positives, and aligning

Qualifications

  • Bachelor's degree OR Associates degree with 2 years relevant experience in system administration/help desk/security (cyber or physical) or NERC CIP compliance.
  • OR High School Diploma/GED with 4 years relevant experience in IT system administration/help desk/security (cyber or physical).
  • Graduation from an approved Cyber Security Program; non-degree qualifications may apply.

Responsibilities

  • Design, develop, test, and deploy security detections across SIEM, EDR, NDR, cloud, and other security platforms.
  • Translate threat intelligence and threat hunting findings into actionable detection content.
  • Create and maintain detection rules, correlation searches, behavioral analytics, and alerting mechanisms.
  • Tune existing detections to improve fidelity and reduce alert fatigue.
  • Map detections to the MITRE ATT&CK framework and identify coverage gaps.
  • Collaborate with Threat Hunting and Incident Response teams to improve detection effectiveness.
  • Develop use cases and detection strategies for emerging threats and adversary behaviors.
  • Analyze security telemetry from endpoints, networks, cloud environments, and identity providers.
  • Measure and report on detection performance, effectiveness, and coverage.
  • Support purple team exercises, tabletop exercises, and adversary emulation activities.
  • Maintain documentation, detection standards, and engineering processes.
  • Automate detection engineering workflows where appropriate.

Skills

Threat detection
Incident response
SOC leadership
Threat intelligence
Threat hunting
Malware analysis
Security clearance

Education

Bachelor's degree or Associates with 2 years IT security experience
Cyber security program certification

Job description

Job Posting End Date

09-05-2026

Please note the job posting will close on the day before the posting end date.

Job Summary

We are seeking a highly motivated Detection Engineer to join our Cybersecurity Intelligence and Defense team. The Detection Engineer will be responsible for designing, developing, tuning, and maintaining threat detection capabilities across enterprise environments. This role works closely with Threat Intelligence Analysts, Threat Hunters, Incident Responders, and Security Operations Center (SOC) personnel to identify emerging threats and improve the organization's ability to detect malicious activity.

Job Description

The ideal candidate possesses a strong understanding of adversary tactics, techniques, and procedures (TTPs), security monitoring technologies, and data analysis. This individual will play a critical role in advancing detection coverage, reducing false positives, and improving overall cyber resilience.

What you’ll do:
Essential Job Functions & Tasks
  • Design, develop, test, and deploy security detections across SIEM, EDR, NDR, cloud, and other security platforms.
  • Translate threat intelligence and threat hunting findings into actionable detection content.
  • Create and maintain detection rules, correlation searches, behavioral analytics, and alerting mechanisms.
  • Tune existing detections to improve fidelity and reduce alert fatigue.
  • Map detections to the MITRE ATT&CK framework and identify coverage gaps.
  • Collaborate with Threat Hunting and Incident Response teams to improve detection effectiveness.
  • Develop use cases and detection strategies for emerging threats and adversary behaviors.
  • Analyze security telemetry from endpoints, networks, cloud environments, and identity providers.
  • Measure and report on detection performance, effectiveness, and coverage.
  • Support purple team exercises, tabletop exercises, and adversary emulation activities.
  • Maintain documentation, detection standards, and engineering processes.
  • Automate detection engineering workflows where appropriate.
Nice to have:

Licenses and Certifications: CSFA, GCCC, GCDA, GCED, GCFA, GCFE, GCIA, GCIH, GCIP, GCTI, GDAT, GICSP, GMON, GOSI, GREM, GRID, GSOM, GXPN, OSCP, OSEE, Treadstone Certified Threat Intelligence Analyst/Certified Threat Counterintelligence Analyst, CERT Incident Response Process Professional, CREST Certified Host Intrusion Analyst, CREST Certified Incident manager, CREST Certified malware Reverse Engineer, CREST Certified Network Intrusion Analyst, CREST Certified Threat Intelligence Manager

Experience:

Demonstrable experience in one or more of the following disciplines:

  • Detection Engineer
  • Incident Response Analyst
  • CIRC/SOC Lead
  • Threat Intelligence or Counterintelligence Analyst
  • Cyber Threat Hunt Analyst
  • Malware Reverse Engineer
  • Clearance: Current government security clearance or ability to obtain a security clearance at a minimum of the Secret level.
What We're Looking For:
Education requirements are listed below:
  • Bachelor's degree OR Associates degree with 2 years relevant experience in system administration/help desk/security (cyber or physical) or NERC CIP compliance; OR High School Diploma/GED with 4 years relevant experience in IT system administration/help desk/security (cyber or physical); OR graduation from an approved Cyber Security Program; alternatively, may have non-degree qualifications (such as hands-on demonstrated ability in a technical interview/assessment).
Work Experience requirement listed below:
  • 7 or more years of Information Technology related experience; OR 5 or more years of security related experience, which may include military/government work experience in addition to any experience identified above; OR NERC-CIP compliance in addition to any experience identified above.

At AEP, we’re more than just an energy company — we’re a team of dedicated professionals committed to delivering safe, reliable, and innovative energy solutions. Guided by our mission to put the customer first, we strive to exceed expectations by listening, responding, and continuously improving the way we serve our communities. If you're passionate about making a meaningful impact and being part of a forward-thinking organization, this is the company for you!

Compensation Data
Compensation Grade:

SP20-009

Compensation Range:

$116,255.00 - $151,132.50

The Physical Demand Level for this job is: S – Sedentary Work: Exerting up to 10 pounds of force occasionally (Occasionally: activity or condition exists up to 1/3 of the time) and/or a negligible amount of force frequently. (Frequently: activity or condition exists from 1/3 to 2/3 of the time) to lift, carry, push, pull or otherwise move objects, including the human body. Sedentary work involves sitting most of the time but may involve walking or standing for brief periods of time. Jobs are sedentary if walking and standing are required only occasionally, and all other sedentary criteria are met.

It is hereby reaffirmed that it is the policy of American Electric Power (AEP) to provide Equal Employment Opportunity in all respects of the employer-employee relationship including recruiting, hiring, upgrading and promotion, conditions and privileges of employment, company sponsored training programs, educational assistance, social and recreational programs, compensation, benefits, transfers, discipline, layoffs and termination of employment to all employees and applicants without discrimination because of race, color, religion, sex (including pregnancy, gender identity, and sexual orientation), national origin, age, veteran or military status, disability, genetic information, or any other basis prohibited by applicable law. When required by law, we might record certain information or applicants for employment may be invited to voluntarily disclose protected characteristics.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Security Spec Lead
Security Spec Lead

AEP Service Corporation • Columbus (OH)

On-site
USD 116,000 - 151,000
Security Spec Lead
Security Spec Lead

American Electric Power Co. • Kentucky

On-site
USD 116,000 - 151,000
Security Operations IR/OT
Security Operations IR/OT

American Electric Power • Columbus (OH)

On-site
USD 99,000 - 129,000
Security Spec Lead
Security Spec Lead

American Electric Power Co. • Columbus (OH)

On-site
USD 116,000 - 151,000
All Hazard Intel Analyst Sr
All Hazard Intel Analyst Sr

American Electric Power • Columbus (OH)

On-site
USD 99,000 - 129,000
Security Operations IR/OT
Security Operations IR/OT

AEP Service Corporation • Austin (TX)

On-site
USD 99,000 - 129,000
Benefits package
Security Spec Sr
Security Spec Sr

American Electric Power • Columbus (OH)

On-site
USD 88,000 - 110,000
Security Specialist (Senior to Staff) – Data Loss Prevention (DLP)
Security Specialist (Senior to Staff) – Data Loss Prevention (DLP)

American Electric Power • Columbus (OH)

On-site
USD 99,000 - 129,000
Security Specialist (Senior to Staff Level)
Security Specialist (Senior to Staff Level)

AEP Service Corporation • Columbus (OH)

On-site
USD 88,000 - 178,000
Security Specialist (Senior to Staff) – Data Loss Prevention (DLP)
Security Specialist (Senior to Staff) – Data Loss Prevention (DLP)

AEP • Northern (KY)

Hybrid
USD 99,000 - 129,000