1

Automotive Cybersecurity Engineer Jobs in Kentucky

Network Engineer

Georgetown, KY · On-site

$40 - $45/hr

... 100 Automotive client to support large-scale plant operations across North America. This individual will play a critical role in deploying and maintaining LAN infrastructure and cybersecurity ...

New

Serve as the primary IT point of contact for plant leadership, operations, engineering, maintenance ... automotive, process, or discrete manufacturing environments. * Exposure to industrial cybersecurity ...

If you are a full-stack engineer looking to expand your skill set, we'd love to hear from you. Join ... Knowledge of the automotive industry is meritorious. * Knowledge about databases (MS SQL (Azure)

Sr. IT Auditor

Lexington, KY

$79K - $104K/yr

It All Starts with Our People As the leader in automotive preventive maintenance, Valvoline has a ... The Senior IT Auditor role is responsible for identifying and evaluating key IT, Cybersecurity and ...

Sr. IT Auditor

Lexington, KY · On-site

$79K - $104K/yr

It All Starts with Our People As the leader in automotive preventive maintenance, Valvoline has a ... The Senior IT Auditor role is responsible for identifying and evaluating key IT, Cybersecurity and ...

Automotive Cybersecurity Engineer information

See Kentucky salary details

$35.2K

$106.7K

$156.3K

How much do automotive cybersecurity engineer jobs pay per year?

As of Aug 7, 2026, the average yearly pay for automotive cybersecurity engineer in Kentucky is $106,733.00, according to ZipRecruiter salary data. Most workers in this role earn between $88,600.00 and $123,300.00 per year, depending on experience, location, and employer.

What is an automotive cybersecurity engineer?

An Automotive Cybersecurity Engineer is responsible for securing a vehicle’s electronic systems, networks, and software from cyber threats. They assess risks, implement security measures, and ensure compliance with industry standards like ISO/SAE 21434. Their role involves working closely with software developers, hardware engineers, and security analysts to protect vehicles from hacking, data breaches, and other cyber threats. They also conduct vulnerability assessments, penetration testing, and develop secure coding practices. This role is critical in the era of connected and autonomous vehicles.

What are the key skills and qualifications needed to thrive as an automotive cybersecurity engineer?

To thrive as an Automotive Cybersecurity Engineer, you need a solid background in computer science, network security, embedded systems, and automotive communication protocols, often supported by a relevant degree. Familiarity with tools such as CAN bus analyzers, intrusion detection systems, penetration testing frameworks, and certifications like CISSP, CEH, or industry-specific credentials (e.g., AUTOSAR, ISO/SAE 21434) is highly valuable. Strong problem-solving, attention to detail, and clear communication are critical soft skills for collaborating with cross-functional engineering teams. These skills are essential to protect modern vehicles from cybersecurity threats and ensure compliance with industry standards.

What are the typical daily responsibilities of an automotive cybersecurity engineer?

As an Automotive Cybersecurity Engineer, your daily activities often involve conducting threat assessments, performing vulnerability analysis on automotive systems, and collaborating with design teams to integrate security measures into vehicles. You may also be responsible for developing and testing intrusion detection systems, participating in code reviews, and ensuring compliance with industry safety standards. Regularly communicating findings and recommendations to both technical and non-technical stakeholders is a key part of the role. Additionally, you may take part in incident response activities and stay up to date with emerging threats, helping to continuously improve the organization's security posture.

What are the most commonly searched types of Automotive Cybersecurity Engineer jobs in Kentucky? The most popular types of Automotive Cybersecurity Engineer jobs in Kentucky are:
What are popular job titles related to Automotive Cybersecurity Engineer jobs in Kentucky? For Automotive Cybersecurity Engineer jobs in Kentucky, the most frequently searched job titles are:
What job categories do people searching Automotive Cybersecurity Engineer jobs in Kentucky look for? The top searched job categories for Automotive Cybersecurity Engineer jobs in Kentucky are:
What cities in Kentucky are hiring for Automotive Cybersecurity Engineer jobs? Cities in Kentucky with the most Automotive Cybersecurity Engineer job openings:

Sr. Engineer, Cyber Security

Holley Performance

Bowling Green, KY • On-site

Full-time

Medical, Dental, Vision, Life, Retirement, PTO

Re-posted 12 days ago


Job description

Overview:Holley Performance Brands, founded in 1903, is a leading designer, manufacturer, and marketer of high-performance automotive aftermarket products. Our portfolio of iconic brands powers enthusiasts and racers worldwide—from classic muscle and modern performance to off-road and powersports—combining a rich heritage of innovation with a passion for performance.The Senior Cybersecurity Engineer is responsible for defining, implementing, and continuously improving the security posture of Holley’s technology environment. This role ensures that security is embedded into how we design, build, and operate systems across infrastructure, applications, and cloud platforms.This individual acts as both a technical expert and a strategic partner, working across IT, business teams, and external partners to proactively identify risk, implement effective controls, and enable secure growth. A key focus of this role is supporting regulatory and compliance initiatives, while ensuring security practices are practical, scalable, and aligned to business objectives.The primary objective: reduce risk, improve resilience, and ensure security is an enabler—not a blocker—to the business.


Key Responsibilities:Security Architecture & Engineering
  • Design and implement security solutions across network, infrastructure, endpoints, identity, and cloud environments.
  • Define and enforce security standards, patterns, and best practices across IT.
  • Embed security into system design, application development, and integration efforts (“secure by design”).
  • Partner with all IT Teams to ensure new solutions meet security requirements from the outset.
  • Evaluate emerging technologies and recommend improvements to strengthen overall security posture.
Threat Detection, Response & Resilience
  • Lead advanced threat detection and response efforts across the environment.
  • Own and continuously improve incident response processes, including playbooks, escalation paths, and post-incident reviews.
  • Conduct root cause analysis and ensure corrective actions are implemented and sustained.
  • Simulate and test response readiness (e.g., tabletop exercises, incident scenarios).
  • Drive improvements in detection coverage, response time, and overall resilience.
Vulnerability & Risk Management
  • Establish and maintain a risk-based vulnerability management program.
  • Prioritize vulnerabilities based on business impact and threat exposure—not just severity scores.
  • Partner with IT teams to drive timely remediation and reduce risk exposure.
  • Track and report on risk posture, remediation progress, and outstanding gaps.
  • Proactively identify systemic risks and drive long-term fixes.
Identity, Access & Data Protection
  • Partner with the IAM Engineer to strengthen identity and access management practices across the organization.
  • Support implementation of least privilege access, role-based access controls, and privileged access management.
  • Assist in the rollout and governance of identity platforms.
  • Ensure identity-related controls are integrated into broader security architecture and operations.
  • Help drive adoption of IAM best practices across IT and business teams.
Security Operations & Tool Optimization
  • Own and optimize core security tooling (SIEM, EDR, vulnerability scanners, email security, network security tools).
  • Ensure effective logging, monitoring, and alerting across all environments.
  • Drive automation and integration across tools to improve efficiency and response times.
  • Continuously assess tool effectiveness—reduce noise and improve signal.
Managed Services & Vendor Partnership
  • Partner closely with the managed security services provider (MSSP) to ensure effective monitoring, detection, and response.
  • Establish clear accountability, service expectations, and performance metrics with the vendor.
  • Continuously evaluate vendor performance and drive improvements where needed.
  • Ensure seamless coordination between internal IT teams and external partners—no gaps, no duplication, no finger-pointing.
  • Act as the internal owner of the relationship, ensuring services align with Holley’s security priorities and risk posture.
Compliance, Governance & Audit Support
  • Lead and support cybersecurity compliance efforts, including TISAX, SOX, and other applicable frameworks.
  • Translate compliance requirements into practical, enforceable controls.
  • Partner with audit and risk teams to prepare for and complete audits successfully.
  • Maintain documentation of controls, processes, and evidence.
  • Ensure ongoing adherence—not just point-in-time compliance.
Cross-Functional Collaboration & Enablement
  • Act as a trusted advisor across the entirety of IT
  • Ensure security is fully integrated into IT processes, not operating as a siloed function.
  • Enable teams to make secure decisions without slowing down delivery.
  • Serve as the escalation point for complex security challenges.
  • Promote a culture of shared ownership for security across IT.
Continuous Improvement & Security Maturity
  • Drive initiatives to improve overall cybersecurity maturity.
  • Identify gaps in current capabilities and develop plans to address them.
  • Stay current on emerging threats, vulnerabilities, and industry trends.
  • Contribute to building a security-first culture across the organization.


Qualifications:
  • 8–12+ years of experience in cybersecurity, with strong hands-on engineering expertise.
  • Experience working with managed security service providers (MSSPs) or external security vendors.
  • Deep experience across multiple security domains (network, endpoint, cloud, identity, application security).
  • Experience with modern security tools (SIEM, EDR, IAM, vulnerability management platforms).
  • Strong understanding of cloud security (AWS preferred; Azure acceptable).
  • Experience supporting compliance frameworks such as TISAX, SOX, ISO 27001, or NIST.
  • Proven ability to translate risk into actionable technical controls.
  • Strong analytical and incident response capabilities.


Why Holley Is a Great Place to Work

At Holley, we’re more than a performance parts company—we’re a community of enthusiasts, innovators, and problem-solvers. We offer a competitive benefits package and a culture that values both performance and people.


Benefits:

  • Competitive medical, dental, and vision coverage starting day one.
  • 401(k) with company match
  • Paid time off and 9 paid holidays
  • Employee Assistance Program (EAP)
  • Company-paid life and short-term disability insurance
  • Employee discounts on Holley Performance Brands products, events, and partnerships
  • Education Assistance program


Holley is an Equal Opportunity Employer committed to building a diverse and inclusive workforce. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, age, marital status, veteran status, disability, or any other legally protected status.


If you require assistance or accommodation due to a disability during the application process, please contact human resources.