Post Job Free
Sign in

Security Spec Lead - Digital Forensics Analyst

Company:
American Electric Power
Location:
Columbus, OH, 43215
Posted:
September 07, 2026
Apply

Description:

Digital Forensic Analyst

The Digital Forensic Analyst investigates and examines digital assets. The position is aligned with AEP's Cybersecurity Intelligence & Defense organization and Insider Threat team. It is a highly technical role and supports digital investigations utilizing endpoint images, security analytics, and user activity monitoring across a broad range of cybersecurity and IT tools. The analyst also supports programs and policies that reduce internal risk. The analyst partners with Cyber Incident Responders, HR, Legal, Ethics, Physical Security, and other stakeholders to support data acquisition and analysis. The analyst will document findings, manage cases from initiation to resolution, and communicate technical conclusions in clear business language.

Essential Job Functions & Tasks

Conduct end-to-end investigations of internal and external matters.

Prepare findings reports for HR, Legal, Ethics, Physical Security, and other stakeholders

Develop and maintain Digital Forensics policies and procedures documentation

Support risk-reduction projects, including post-incident lessons learned

Serve as a technical SME for Insider Threat, DLP, and cyber investigations

Produce clear investigative and analytic reports for technical and executive audiences

Maintain tools and technologies pertaining to Digital Forensics collection and analysis

Required Qualifications and Skills

Ability to obtain and maintain a U.S. government security clearance

In-depth understanding of Windows, Linux/Unix, MacOS, Android and iOS operating systems and interconnected network devices

Understanding of mobile device forensics and evidence collection techniques

Experience with malware reverse engineering and analysis

Understanding of anomalous user activity monitoring and policy violation investigations

Ability to use internal and external log sources, forensic tools, and established investigative methods to determine incident source and scope

Work independently while maintaining strict confidentiality throughout investigations which sometimes involve high pressure situations or rapidly changing priorities

Communicate clearly, verbally and in writing, with strong analytical and critical-thinking skills

Handle sensitive and confidential material appropriately

Understanding of forensic capture and analysis methodologies and evidence chain of custody procedures

Preferred Qualifications

Bachelor's degree or equivalent experience in cybersecurity, digital forensics, computer science, or related field

Experience with standard forensic methods and leading collection and analysis tools

Deep experience conducting technical investigations or root cause analysis in complex environments

Experience identifying insider risk indicators through analytics tools

Understanding and experience with digital forensics in a cloud environment

Understanding of threat actor tactics, techniques, and procedures

Familiarity with electric utility operations, ICS/SCADA, or critical infrastructure protection frameworks such as NERC CIP

Working knowledge of programming languages and Splunk query development

Ability to apply AI to threat detection and analysis

Understanding and experience with security monitoring tools, SIEM platforms, and endpoint detection solutions

Ability to work and lead in cross-functional environments involving HR, Legal, Compliance, Privacy, and Security teams

Knowledge of cyber investigations and incident response processes

Experience with case management and evidence handling procedures

Experience with data classification, information protection, data loss prevention (DLP), and sensitive data monitoring technologies

Preferred Certifications and Courses

SANS Forensics Certifications (Ex. GASF, GCFA, GCFE, GREM, GNFA)

Computer Hacking Forensic Investigator (CHFI)

GIAC Certified Incident Handler (GCIH)

Vendor specific certification for industry leading forensics tools

What We're Looking For:

Bachelor's degree OR Associates degree with 2 years relevant experience in system administration/help desk/security (cyber or physical) OR High School Diploma/GED with 4 years relevant experience in IT system administration/help desk/security (cyber or physical).

7 or more years of Information Technology related experience; OR 5 or more years of security related experience, which may include military/government work experience in addition to any experience identified above.

Compensation Data

Base Salary from $116,255.00 - $151,132.50 /year. In addition to a competitive compensation, AEP offers a unique comprehensive benefits package that aims to support and enhance the overall well-being of our employees.

Compensation Grade: SP20-009

Compensation Range: $116,255.00 - $151,132.50

The Physical Demand Level for this job is: S – Sedentary Work: Exerting up to 10 pounds of force occasionally and/or a negligible amount of force frequently to lift, carry, push, pull or otherwise move objects, including the human body. Sedentary work involves sitting most of the time but may involve walking or standing for brief periods of time.

Apply