Security Specialist (Senior to Staff) – Data Loss Prevention (DLP)

AEP

Northern (KY)

Hybrid

USD 99,000 - 129,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

American Electric Power is seeking a DLP Analyst to strengthen the Insider Threat Program. This role combines real-time security monitoring, investigative work, and proactive threat hunting to prevent data loss incidents.

The position involves monitoring alerts, reviewing PII and confidential data, coordinating investigations, documenting findings, and driving improvements to the DLP program while staying current on threat TTPs.

Qualifications

  • Ability to obtain and maintain a U.S. government security clearance.
  • Excellent written and verbal communication skills.
  • Experience with enterprise DLP tools and data protection controls.
  • Preferred: experience in investigations, insider threat, and security operations.

Responsibilities

  • Monitor and triage security alerts across DLP platforms.
  • Review daily alerts for data loss of PII, business-critical data, and confidential information across sources.
  • Coordinate all DLP investigation activities, collaborating with internal stakeholders.
  • Document findings thoroughly and maintain detailed case records.
  • Design and tune data exfiltration detection use cases, improving alert accuracy and reducing false positives.
  • Drive continuous improvement initiatives for the DLP program and monitoring across the enterprise.
  • Stay current on threat actor tactics, techniques, and procedures (TTPs).
  • Track program metrics and align improvements to strategic roadmap goals.
  • Participate in internal security improvement meetings and industry working groups.
  • Leverage team resources effectively and communicate workload priorities to leadership.

Skills

U.S. government security clearance
Analytical thinking
Investigation skills
DLP tools and data protection
Communication skills

Education

Bachelor's degree in cybersecurity or related field

Tools

SIEM
Endpoint detection
Data loss prevention tools
Case management systems

Job description

Job Posting End Date 09-14-2026 Please note the job posting will close on the day before the posting end date.

Job Summary

Responsible for moderate-scale security assignments with limited direction from senior team members. Develops and maintains necessary documentation of security systems, projects, and/or processes to ensure unified understanding of system details. Performs and analyzes security controls assessments (internal and third party) through application security testing, penetration testing or other means to ensure controls effectiveness. Identifies and documents potential mitigations/remediations and creates reports of findings with identified risk response. Participates in the review, evaluation, and recommendation of emerging security technologies. More involved in advanced level implementation, support, and/or usage of technical solutions. Assists with problem solving, decision-making, and functional area knowledge.

Job Description

Play a key role in strengthening the Insider Threat Program Team as a Data Loss Prevention (DLP) Analyst. This role combines real-time security monitoring, investigative work, and proactive threat hunting to prevent data loss incidents.

What You'll Do:

Essential Job Functions and Tasks

  • Monitor and triage security alerts across multiple DLP platforms, determining which events require deeper investigation
  • Review daily alerts for data loss of personally identifiable information (PII), business-critical data, and confidential information across various sources such as email, cloud, and endpoint systems
  • Coordinate all DLP investigation activities, collaborating with internal stakeholders
  • Document findings thoroughly and maintain detailed case records
  • Design and tune data exfiltration detection use cases, improving alert accuracy and reducing false positives while ensuring effective protection of sensitive data.
  • Drive continuous improvement initiatives for the DLP program and monitoring across the enterprise
  • Stay current on threat actor tactics, techniques, and procedures (TTPs)
  • Track program metrics and align improvements to strategic roadmap goals
  • Participate in internal security improvement meetings and industry working groups
  • Leverage team resources effectively and communicate workload priorities to leadership
Required Qualifications and Skills

Ability to obtain and maintain a U.S. government security clearance. Excellent written and verbal communication skills, with strong analytical and critical-thinking ability. Ability to investigate and handle sensitive and confidential information. Expertise and knowledge of enterprise DLP tools and data protection controls across email, endpoint, cloud, and web environments. Demonstrable ability to evaluate, implement, and improve DLP controls across diverse technology environments and business processes.

Preferred Qualifications
  • Bachelor's degree in cybersecurity, information security, computer science, or related field
  • Experience in cybersecurity, insider threat, security operations, digital forensics, data loss prevention, investigations, fraud detection, or intelligence analysis
  • Prior Investigations experience
  • Experience monitoring and investigating anomalous user activity and policy violations
  • Experience identifying data loss indicators through analytics and anomaly detection methodologies.
  • Understanding of security monitoring tools, SIEM platforms, and endpoint detection solutions
  • Ability to create and curate queries to detect and analyze data for potential data exfiltration activity
  • Experience working in cross-functional environments involving HR, Legal, Compliance, Privacy, and Security teams
  • Experience with case management and evidence handling
  • Experience with data classification, information protection, data loss prevention (DLP), and sensitive data monitoring technologies.
  • Familiarity with electric utility operations, industrial control systems (ICS/SCADA), or critical infrastructure protection frameworks (e.g., NERC CIP).
  • Ability to Use AI in threat detection and analysis
  • Knowledge of application on defense mechanisms for AI use
Preferred Certifications and Courses
  • Microsoft Certified (SC-900, SC-400, SC-200)
  • Amazon Certified (Cloud Practitioner, Associate Architect)
  • CompTIA (Security+, Network+, CYSA+)
  • ISC2 (Certified in Cyber Security)
  • CERT Insider Threat Program Manager (ITPM)
  • GIAC (GCFE, GCFA, Others)
Security Spec Sr (SG7)

Education requirements are listed below: Bachelor's degree OR Associates degree with 2 years relevant experience in system administration/help desk/security (cyber or physical) OR High School Diploma/GED with 3 years relevant experience in IT system administration/help desk/security (cyber or physical); OR graduation from an approved Cybersecurity Program; alternatively may have non-degree qualifications (such as hands-on demonstrated ability in a technical interview/assessment).

Work Experience requirement listed below: 2 or more years of Information Technology related experience; OR 1 or more years of security related experience, which may include military/government work experience in addition to any experience identified above.

Security Spec Prin (SG8)

Education requirements are listed below: Bachelor's degree OR Associates degree with 2 years relevant experience in system administration/help desk/security (cyber or physical) OR High School Diploma/GED with 4 years relevant experience in IT system administration/help desk/security (cyber or physical); OR graduation from an approved Cybersecurity Program; alternatively may have non-degree qualifications (such as hands-on demonstrated ability in a technical interview/assessment).

Work Experience requirement listed below: 4 or more years of Information Technology related experience; OR 2 or more years of security related experience, which may include military/government work experience in addition to any experience identified above.

Security Spec Lead (SG9)

Education requirements are listed below: Bachelor's degree OR Associates degree with 2 years relevant experience in system administration/help desk/security (cyber or physical) OR High School Diploma/GED with 4 years relevant experience in IT system administration/help desk/security (cyber or physical).

Work Experience requirement listed below: 7 or more years of Information Technology related experience; OR 5 or more years of security related experience, which may include military/government work experience in addition to any experience identified above.

Security Spec Staff (SG10)

Education requirements are listed below: Bachelor's degree OR Associates degree with 2 years relevant experience in system administration/help desk/security (cyber or physical) OR High School Diploma/GED with 4 years relevant experience in IT system administration/help desk/security (cyber or physical).

Work Experience requirement listed below: 10 or more years of Information Technology related experience; OR 5 or more years of security related experience, which may include military/government work experience in addition to any experience identified above.

Base Salary from $87,633.00 - $177,503.00 /year.

In addition to a competitive compensation, AEP offers a unique comprehensive benefits package that aims to support and enhance the overall well-being of our employees.

At AEP, we’re more than just an energy company - we’re a team of dedicated professionals committed to delivering safe, reliable, and innovative energy solutions. Guided by our mission to put the customer first, we strive to exceed expectations by listening, responding, and continuously improving the way we serve our communities. If you're passionate about making a meaningful impact and being part of a forward-thinking organization, this is the company for you!

Compensation Data Compensation Grade: SP20-008 Compensation Range: $98,993.00 - $128,688.00

The Physical Demand Level for this job is: S – Sedentary Work: Exerting up to 10 pounds of force occasionally (Occasionally: activity or condition exists up to 1/3 of the time) and/or a negligible amount of force frequently. (Frequently: activity or condition exists from 1/3 to 2/3 of the time) to lift, carry, push, pull or otherwise move objects, including the human body. Sedentary work involves sitting most of the time but may involve walking or standing for brief periods of time. Jobs are sedentary if walking and standing are required only occasionally, and all other sedentary criteria are met.

It is hereby reaffirmed that it is the policy of American Electric Power (AEP) to provide Equal Employment Opportunity in all respects of the employer-employee relationship including recruiting, hiring, upgrading and promotion, conditions and privileges of employment, company sponsored training programs, educational assistance, social and recreational programs, compensation, benefits, transfers, discipline, layoffs and termination of employment to all employees and applicants without discrimination because of race, color, religion, sex (including pregnancy, gender identity, and sexual orientation), national origin, age, veteran or military status, disability, genetic information, or any other basis prohibited by applicable law.

When required by law, we might record certain information or applicants for employment may be invited to voluntarily disclose protected characteristics.

At American Electric Power, we provide more than electricity to our millions of customers - we energize possibilities. We're redefining the future of energy by reducing our carbon footprint, empowering the communities we serve and building an engaged, talented workforce. All while delivering the reliable service our customers expect. It’s an exciting time in the energy industry. Are you ready to be part of it? We’re looking for team members to help create the grid of the future. Learn more about our commitment to creating a supportive, inclusive work culture that values different experiences.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Security Specialist (Senior to Staff Level)
Security Specialist (Senior to Staff Level)

AEP • Columbus (OH)

On-site
USD 88,000 - 178,000
Security Spec Lead - Digital Forensics Analyst
Security Spec Lead - Digital Forensics Analyst

American Electric Power Co. • Northern (KY)

Hybrid
USD 116,000 - 151,000
Cybersecurity Mgr - Advanced Threat Mitigation Team
Cybersecurity Mgr - Advanced Threat Mitigation Team

American Electric Power Co. • Northern (KY)

Hybrid
USD 137,000 - 178,000
Competitive benefits package
Security Specialist (Senior to Staff Level)
Security Specialist (Senior to Staff Level)

American Electric Power • North Carolina

On-site
USD 88,000 - 178,000
Security Specialist (Senior to Staff) – Data Loss Prevention (DLP)
Security Specialist (Senior to Staff) – Data Loss Prevention (DLP)

American Electric Power • Columbus (OH)

On-site
USD 99,000 - 129,000
Engineer (Transmission Line)
Engineer (Transmission Line)

AEP Service Corporation • United States

On-site
USD 75,000 - 110,000
Engineer (Transmission Line)
Engineer (Transmission Line)

American Electric Power • Tulsa (OK), Northern (KY)

Hybrid
USD 75,000 - 110,000
Director, Technology (Threat Exposure & Assurance Management)
Director, Technology (Threat Exposure & Assurance Management)

AEP Service Corporation • United States

On-site
USD 189,000 - 245,000
Security Spec Sr
Security Spec Sr

American Electric Power Co. • Columbus (OH)

On-site
USD 88,000 - 110,000
Security Spec Lead
Security Spec Lead

American Electric Power Co. • Kentucky

On-site
USD 116,000 - 151,000