Cybersecurity Mgr - Advanced Threat Mitigation Team
Listed on 2026-09-04
-
IT/Tech
Cybersecurity, Security Management & Operations
Job Posting End Date 09-14-2026 Please note the job posting will close on the day before the posting end date.
Job SummaryThe Cybersecurity Manager - Advanced Threat Mitigation leads AEP’s Advanced Threat Mitigation (ATM) team within the Intelligence & Defence organization. This team is responsible for enterprise cyber threat monitoring, detection engineering, incident response, threat hunting, and advanced cyber defense operations. The manager oversees a team of cybersecurity analysts, incident responders, detection engineers, and threat hunting professionals responsible for identifying, analyzing, containing, and mitigating cyber threats targeting AEP’s information technology (IT), operational technology (OT), cloud, and business environments.
The Advanced Threat Mitigation team serves as AEP’s frontline cyber defense capability, leveraging security monitoring platforms, threat intelligence, advanced analytics, automation, and incident response processes to rapidly detect and respond to malicious activity. The Cybersecurity Manager is responsible for ensuring effective cyber threat detection, incident response coordination, threat hunting operations, and continuous enhancement of AEP’s defensive capabilities against evolving cyber threats.
This role provides strategic leadership for the development of advanced cyber defense capabilities, integrating threat intelligence, detection engineering, response automation, and operational analytics to reduce cyber risk and improve AEP’s security posture. The position works closely with Cybersecurity Operations, Threat Intelligence, Vulnerability Management, Architecture, Digital Technology Services, OT Security, and business partners to safeguard critical systems and support AEP’s mission of delivering safe, reliable energy.
What you’ll do:
Essential Responsibilities (will span multiple areas below)
Lead and develop a team of cybersecurity professionals responsible for threat monitoring, incident response, threat hunting, detection engineering, and cyber defense operations. Provide coaching, mentoring, performance management, and professional development opportunities for team members. Foster a culture of operational excellence, accountability, continuous learning, innovation, and threat-informed defense. Ensure adequate staffing, training, operational readiness, and succession planning to support continuous cyber defense operations.
Establish performance metrics, key risk indicators, and operational objectives that drive measurable improvements in cybersecurity effectiveness. Promote collaboration across cybersecurity functions including intelligence, engineering, architecture, vulnerability management, identity security, and incident response teams.
Direct daily cyber threat monitoring operations, ensuring timely detection, analysis, escalation, and response to cybersecurity events. Oversee the identification and investigation of potential security incidents affecting enterprise, cloud, operational technology, and third-party environments. Ensure effective utilization of SIEM, EDR/XDR, NDR, cloud security, identity monitoring, and threat intelligence platforms to identify malicious activity and emerging threats. Establish operational procedures that promote rapid triage, accurate threat identification, effective prioritization, and timely escalation.
Drive continuous improvement of security monitoring coverage, alert fidelity, detection effectiveness, and operational efficiency. Ensure meaningful operational metrics and reporting are provided to leadership regarding threat activity, investigations, incidents, and response effectiveness.
Lead the strategic direction and maturity of AEP's detection engineering program. Oversee the design, development, testing, deployment, and lifecycle management of security detections across SIEM, EDR/XDR, NDR, cloud, identity, and OT security platforms. Ensure threat intelligence, threat hunting findings, incident investigations, and emerging threat research are translated into…
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).