1

Senior Detection Engineer Jobs in Kentucky (NOW HIRING)

Senior Quality Engineer Client: DOD-Aerospace Location: Louisville, Kentucky Duration: 6-month ... Detect and help define counterfeit part controls. * Support and maintain Basis of Estimate (BOE ...

Senior Quality Engineer Client: DOD-Aerospace Location: Louisville, Kentucky Duration: 6-month ... Detect and help define counterfeit part controls. * Support and maintain Basis of Estimate (BOE ...

Senior Commissioning Engineer

Louisville, KY · On-site

$95K - $131K/yr

As a Senior Commissioning Engineer you will provide testing and commissioning oversight of ... Ability to forensically evaluate energy-consuming systems and detect and evaluate deficiencies ...

Senior Commissioning Engineer

Louisville, KY · On-site +1

$95K - $131K/yr

As a Senior Commissioning Engineer you will provide testing and commissioning oversight of ... Ability to forensically evaluate energy-consuming systems and detect and evaluate deficiencies ...

Senior Insider Threat Engineer

Louisville, KY · Remote

$110K - $150K/yr

The Senior Insider Threat Engineer is responsible for the configuration, tuning, and day-to-day ... to detect, investigate, and mitigate insider risks. The position partners with Security Operations ...

Senior Insider Threat Engineer

Louisville, KY · On-site

$110K - $150K/yr

The Senior Insider Threat Engineer is responsible for the configuration, tuning, and day-to-day ... to detect, investigate, and mitigate insider risks. The position partners with Security Operations ...

Senior Insider Threat Engineer

Louisville, KY · On-site +1

$110K - $150K/yr

The Senior Insider Threat Engineer is responsible for the configuration, tuning, and day-to-day ... to detect, investigate, and mitigate insider risks. The position partners with Security Operations ...

Senior Insider Threat Engineer

Louisville, KY · Remote

$110K - $150K/yr

The Senior Insider Threat Engineer is responsible for the configuration, tuning, and day-to-day ... to detect, investigate, and mitigate insider risks. The position partners with Security Operations ...

Senior Insider Threat Engineer

Louisville, KY · On-site +1

$110K - $150K/yr

The Senior Insider Threat Engineer is responsible for the configuration, tuning, and day-to-day ... to detect, investigate, and mitigate insider risks. The position partners with Security Operations ...

Senior Insider Threat Engineer

Louisville, KY · Remote

$110K - $150K/yr

The Senior Insider Threat Engineer is responsible for the configuration, tuning, and day-to-day ... to detect, investigate, and mitigate insider risks. The position partners with Security Operations ...

Senior Insider Threat Engineer

Louisville, KY · On-site +1

$110K - $150K/yr

The Senior Insider Threat Engineer is responsible for the configuration, tuning, and day-to-day ... to detect, investigate, and mitigate insider risks. The position partners with Security Operations ...

next page

Showing results 1-20

Senior Detection Engineer information

What is the difference between Senior Detection Engineer vs Security Analyst?

AspectSenior Detection EngineerSecurity Analyst
Required CredentialsBachelor's in CS, Cybersecurity, or related; certifications like CISSP, GIACBachelor's in CS, Cybersecurity, or related; certifications like CompTIA Security+
Work EnvironmentDevelops detection tools, analyzes security data, creates detection rulesMonitors security alerts, investigates incidents, reports findings
Employer & Industry UsageTech companies, financial institutions, cybersecurity firmsIT departments, government agencies, large enterprises

While both roles focus on security, Senior Detection Engineers primarily develop and refine detection systems, whereas Security Analysts monitor and respond to security incidents. The Senior Detection Engineer role is more technical and development-oriented, while Security Analysts focus on incident response and analysis.

What are the key skills and qualifications needed to thrive as a senior detection engineer, and why are they important?

To excel as a Senior Detection Engineer, you need advanced knowledge of cybersecurity principles, threat detection methodologies, and experience with incident response, often supported by a degree in computer science or related certifications like CISSP or GIAC. Proficiency in SIEM platforms (such as Splunk or Sentinel), scripting languages (like Python), and EDR/XDR tools is typically required. Strong analytical thinking, problem-solving skills, and effective communication help you collaborate with teams and respond to evolving threats. These capabilities are crucial for proactively identifying and mitigating security risks to protect organizational assets.

What is a senior detection engineer?

A Senior Detection Engineer is a cybersecurity professional responsible for designing, implementing, and maintaining systems that detect threats and malicious activities within an organization's network. They create and refine detection rules, analyze security alerts, and work closely with incident response teams to mitigate risks. Senior Detection Engineers also lead efforts to improve detection capabilities by researching new attack techniques and developing advanced monitoring solutions. Their expertise helps organizations proactively defend against evolving cyber threats.

What are some common challenges a senior detection engineer faces when developing and tuning detection rules?

A Senior Detection Engineer often encounters challenges such as balancing detection accuracy with false positive rates, staying ahead of evolving threat landscapes, and ensuring detection rules adapt to new attack techniques. They must also collaborate closely with other security teams to understand operational impacts and validate the effectiveness of their rules in real-world scenarios. Regular communication, continuous learning, and iterative testing are crucial to overcoming these challenges and maintaining a robust security posture.

How much do detection engineers make?

Detection engineers typically earn a median salary ranging from $90,000 to $130,000 annually, depending on experience, location, and certifications. Senior detection engineers with specialized skills in cybersecurity tools and threat detection may earn higher salaries, often exceeding $150,000.
What are the most commonly searched types of Detection Engineer jobs in Kentucky? The most popular types of Detection Engineer jobs in Kentucky are:
What cities in Kentucky are hiring for Senior Detection Engineer jobs? Cities in Kentucky with the most Senior Detection Engineer job openings:
Infographic showing various Senior Detection Engineer job openings in Kentucky as of August 2026, with employment types broken down into 92% Full Time, 2% Part Time, and 6% Contract. Highlights an 87% Physical, 4% Hybrid, and 9% Remote job distribution.

Senior Director Cyber Operations & Threat Intelligence

PPL Corporation

Louisville, KY • Hybrid

Other

Re-posted 6 hours ago


PPL rating

6.8

Company rating: 6.8 out of 10

Based on 46 frontline employees who took The Breakroom Quiz

44th of 53 rated energy and utility


Job description

Company Summary Statement
As one of the largest investor-owned utility companies in the United States, PPL Corporation (NYSE: PPL), is committed to creating long-term, sustainable value for our 3.5 million customers, our shareowners and the communities we serve. Our high-performing regulated utilities - PPL Electric Utilities, Louisville Gas and Electric, Kentucky Utilities and Rhode Island Energy - provide an outstanding experience for our customers, consistently ranking among the best utilities in the nation. PPL's companies are also addressing challenges head-on by investing in new infrastructure and technology that is creating a smarter, more reliable and resilient energy grid. We are committed to doing our part to advance a cleaner energy future and drive innovation that enables us to achieve net-zero carbon emissions by 2050 while maintaining energy reliability and affordability for the customers and communities we serve. PPL is a positive force in the cities and towns where we do business, providing support for programs and organizations that empower the success of future generations by helping to build and maintain strong, diverse communities today.
Overview

NOTE:   This is a hybrid role requiring 3 days onsite at one of our local offices:  Allentown, PA; Providence, RI or Louisville, KY.       #INDPPL     #LI-Hybrid

The Senior Director of Cyber Operations leads PPL’s enterprise cyber defense organization, responsible for Security Operations (SOC), Threat Intelligence, Detection Engineering, Security Engineering, and Security Orchestration, Automation, and Response (SOAR).  This role oversees the day-to-day protection of a critical infrastructure environment and leads the ongoing transformation to a modern, intelligence-driven and automation-first cyber program. The leader will integrate emerging capabilities such as Agentic SOC architectures, Machine-driven Cyber Platforms (MCP), Attack Surface Management (ASM), and risk-based Vulnerability Management, while aligning operations to industry frameworks including NIST Cybersecurity Framework (CSF), NIST AI Risk Management Framework (AI RMF), and NERC CIP.


Responsibilities

Enterprise Cyber Operations Leadership

  • Lead and evolve PPL’s 24x7 SOC operations, including monitoring, detection, and incident response
  • Direct cyber operations across:
    • Security Operations Center (SOC)
    • Threat Intelligence
    • Detection Engineering
    • Security Engineering
    • SOAR / automation platforms
  • Drive operational maturity aligned to NIST CSF domains (Detect, Respond, Recover)
  • Maintain executive-ready visibility into cyber risk, operational performance, and incident posture

Incident Response & Crisis Management

  • Lead enterprise cyber incident response and coordination, including high-impact events
  • Establish and mature playbooks, escalation models, and executive communication protocols
  • Partner with legal, compliance, and business leadership during cyber events
  • Ensure readiness through exercises aligned to NERC CIP and resilience requirements

Threat Intelligence & Detection Engineering

  • Operationalize intelligence-led defense by integrating threat intelligence into detection use cases
  • Lead detection engineering program to improve fidelity, reduce noise, and expand coverage
  • Advance proactive threat hunting capabilities across enterprise and critical systems

Security Engineering & Automation

  • Own design, implementation, and optimization of cyber tooling and platforms
  • Lead transition toward automation-first and Agentic SOC capabilities
  • Deploy and scale:
    • Advanced SIEM and XDR capabilities
    • SOAR platforms and playbook automation
    • MCP / AI-enabled cyber decision support systems
  • Ensure secure adoption and governance of AI in cyber operations aligned to NIST AI RMF

Attack Surface & Vulnerability Management

  • Establish integrated Attack Surface Management (ASM) across enterprise and external footprint
  • Lead risk-based vulnerability management program prioritizing remediation based on threat context and business criticality
  • Integrate asset, exposure, and threat data to drive measurable risk reduction

Critical Infrastructure & Regulatory Alignment

  • Ensure cyber operations align with NERC CIP requirements and broader regulatory obligations
  • Partner with compliance teams to support audits, evidence collection, and continuous improvement
  • Coordinate with OT/IT teams to protect grid operations and critical systems

Team Leadership & Culture

  • Lead a multi-disciplinary team spanning SOC, engineering, and threat intelligence functions
  • Develop talent, succession pipelines, and leadership bench strength
  • Foster a culture of accountability, innovation, and continuous improvement
  • Drive alignment with enterprise cybersecurity strategy and “Guardians of the Grid” mission

Qualifications

Required Education:

  • Bachelor's degree in Computer Science, Information Technology, Cybersecurity, or a related field; Master’s degree preferred but not required

Required Experience:

  • 20+ years of experience in cybersecurity or a related field, with demonstrated experience in a senior leadership role.
  • Proven experience in managing cybersecurity operations and incident response
  • Strong leadership and project management skills
  • Excellent communication and collaboration abilities
  • In-depth knowledge of cybersecurity frameworks and best practices
  • Proficiency in security tools and technologies
  • Experience managing large, diverse teams and leading complex projects
  • Understanding of Agile principles and methods
  • Strong communication and collaboration skills with technical and non-technical stakeholders
  • Ability to adapt to new technologies and methodologies
  • Ability to align IT transformation initiatives with the overall business strategy

Preferred Qualifications:

  • Advanced degree or relevant certifications (e.g., CISSP, CISM, would be a plus)
  • Utilities industry experience
Qualifications:

Required Education:

  • Bachelor's degree in Computer Science, Information Technology, Cybersecurity, or a related field; Master’s degree preferred but not required

Required Experience:

  • 20+ years of experience in cybersecurity or a related field, with demonstrated experience in a senior leadership role.
  • Proven experience in managing cybersecurity operations and incident response
  • Strong leadership and project management skills
  • Excellent communication and collaboration abilities
  • In-depth knowledge of cybersecurity frameworks and best practices
  • Proficiency in security tools and technologies
  • Experience managing large, diverse teams and leading complex projects
  • Understanding of Agile principles and methods
  • Strong communication and collaboration skills with technical and non-technical stakeholders
  • Ability to adapt to new technologies and methodologies
  • Ability to align IT transformation initiatives with the overall business strategy

Preferred Qualifications:

  • Advanced degree or relevant certifications (e.g., CISSP, CISM, would be a plus)
  • Utilities industry experience
Education:UNAVAILABLEEmployment Type: UNAVAILABLE

What PPL employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom