Job Posting End Date
09-07-2026
Please note the job posting will close on the day before the posting end date.
Job Summary
The Insider Protection Analyst is an individual contributor responsible for detecting, investigating, and responding to risks originating from within the organization, helping to protect AEP's people, data, and critical infrastructure from intentional and unintentional insider activity.
This role operates within AEP's Cybersecurity Intelligence & Defense organization and serves as a highly technical frontline defender in safeguarding the enterprise against insider risk. Responsibilities include building and maintaining security analytics, user activity monitoring, and analysis utilizing data from a variety of Cybersecurity and IT tools. This position triages alerts, conducts focused monitoring, and translates risk signals into actionable findings that reduce organizational risk. This position also drives programs and policies to protect AEP from internal risk.
Job Description
The Insider Protection Analyst partners closely with internal business partners to provide support for user investigations, documents findings through case management systems, and escalates high-profile or sensitive matters for further investigation and response. This position also writes comprehensive reports and is able to translate highly technical findings into common business language for various stakeholders.
What You'll Do
Essential Job Functions & Tasks
Implement, and maintain analytical detections related to insider threat activity.
Triage, respond to and investigate alerts related to insider threat activity.
Develop and maintain policies, procedures, and documentation related to the insider threat program.
Assist with projects and programs related to the reduction of insider risk
Conduct or support internal investigations, inquiries, data loss prevention and digital forensics efforts, including the documentation and referral of findings to appropriate stakeholders.
Produce concise, insightful, and comprehensive investigative and analytic reports for both technical and executive audiences.
Required Qualifications and Skills
Ability to obtain and maintain a U.S. government security clearance.
Demonstrable technical ability to analyze disparate data sources related to insider risk monitoring and response
Demonstrable technical ability to build analytics detections pertinent to insider risk activity
Excellent written and verbal communication skills, with strong analytical and critical-thinking ability.
Ability to investigate handle sensitive and confidential information.
Preferred Qualifications
Bachelor's degree in cybersecurity, information security, computer science, or related field
Experience in cybersecurity, insider threat, security operations, digital forensics, data loss prevention, investigations, fraud detection, or intelligence analysis
Prior Investigations experience
Experience conducting digital forensics in support of insider threat inquiries and investigations.
Experience monitoring and investigating anomalous user activity and policy violations
Experience identifying insider risk indicators through analytics, UEBA platforms, and anomaly detection methodologies.
Understanding of security monitoring tools, SIEM platforms, and endpoint detection solutions
Experience with Counterintelligence or an understanding of foreign intelligence entities, or international threat organizations and associated Tactics Techniques and Procedures used to carry out objectives.
Ability to create and curate queries to detect and analyze data for potential insider activity
Experience working in cross-functional environments involving HR, Legal, Compliance, Privacy, and Security teams
Knowledge of cyber investigations and incident response processes
Experience with case management and evidence handling
Experience with data classification, information protection, data loss prevention (DLP), and sensitive data monitoring technologies.
Familiarity with electric utility operations, industrial control systems (ICS/SCADA), or critical infrastructure protection frameworks (e.g., NERC CIP).
Working knowledge of Python (and other programming languages)
Ability to Use AI in threat detection and analysis
Knowledge of application on defense mechanisms for AI use
Preferred Certifications and Courses
CERT Insider Threat Program Manager (ITPM) or Global Counter-Insider Threat Professional (GCITP)
GIAC Certified Forensic Analyst (GCFA) or GIAC Certified Forensic Examiner (GCFE)
GIAC Certified Intrusion Analyst (GCIA)
Computer Hacking Forensic Investigator (CHFI)
What We're Looking For:
Security Spec Sr (SG7)
Education requirements are listed below:
Work Experience requirement listed below:
Security Spec Prin (SG8)
Education requirements are listed below:
Work Experience requirement listed below:
Security Spec Lead (SG9)
Education requirements are listed below:
Work Experience requirement listed below:
Security Spec Staff (SG10)
Education requirements are listed below:
Work Experience requirement listed below:
Base Salary from $87,633.00 - $177,503.00 /year. In addition to a competitive compensation, AEP offers a unique comprehensive benefits package that aims to support and enhance the overall well-being of our employees.
At AEP, we’re more than just an energy company — we’re a team of dedicated professionals committed to delivering safe, reliable, and innovative energy solutions. Guided by our mission to put the customer first, we strive to exceed expectations by listening, responding, and continuously improving the way we serve our communities. If you're passionate about making a meaningful impact and being part of a forward-thinking organization, this is the company for you!
Compensation Data
Compensation Grade:
SP20-007
Compensation Range:
$87,633.00 - $177,503.00
The Physical Demand Level for this job is: S – Sedentary Work: Exerting up to 10 pounds of force occasionally (Occasionally: activity or condition exists up to 1/3 of the time) and/or a negligible amount of force frequently. (Frequently: activity or condition exists from 1/3 to 2/3 of the time) to lift, carry, push, pull or otherwise move objects, including the human body. Sedentary work involves sitting most of the time but may involve walking or standing for brief periods of time. Jobs are sedentary if walking and standing are required only occasionally, and all other sedentary criteria are met.
Hear about it first! Get job alerts by email. Log in to your Candidate Home Account today! If you don't have an account, you can create one.
It is hereby reaffirmed that it is the policy of American Electric Power (AEP) to provide Equal Employment Opportunity in all respects of the employer-employee relationship including recruiting, hiring, upgrading and promotion, conditions and privileges of employment, company sponsored training programs, educational assistance, social and recreational programs, compensation, benefits, transfers, discipline, layoffs and termination of employment to all employees and applicants without discrimination because of race, color, religion, sex (including pregnancy, gender identity, and sexual orientation), national origin, age, veteran or military status, disability, genetic information, or any other basis prohibited by applicable law. When required by law, we might record certain information or applicants for employment may be invited to voluntarily disclose protected characteristics.