Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Lead Cybersecurity Threat and Vulnerability Analyst

Duke Energy

Important Application Submission InformationIn order to ensure your application is successfully received before the job posting expires, please submit your application by 11:59 PM on Saturday, September 19, 2026More than a career - a chance to make a difference in people's lives.Build an exciting, rewarding career with us – help us make a difference for millions of people every day. Consider joining the Duke Energy team, where you'll find a friendly work environment, opportunities for growth and development, recognition for your work, and competitive pay and benefits.Job SummaryThe Lead Cybersecurity Threat and Vulnerability Analyst serves as the technical lead for Duke Energy's emerging AI Attack Surface Management capability. This role is responsible for identifying, assessing, prioritizing, and mitigating risks associated with the use, development, deployment, and operation of Artificial Intelligence technologies across the enterprise. This position is expected to dedicate the majority of its focus to Artificial Intelligence security initiatives, including both the secure adoption of AI technologies and the assessment and management of risks associated with AI systems.The position has a dual mission:Security for AI: Secure AI applications, models, agents, data pipelines, and supporting infrastructure through risk assessment, security architecture review, governance integration, continuous validation, and threat-informed defense strategies.AI for Security: Drive the adoption of AI-enabled capabilities that improve cybersecurity outcomes through automation, intelligence augmentation, risk prioritization, attack surface visibility, and remediation acceleration.As a senior technical leader, this individual will partner closely with Cybersecurity, Enterprise Architecture, Cloud Security, Data & Analytics, AI Governance, Technology Delivery, and business stakeholders to establish and mature Duke Energy's AI Attack Surface Management program while enabling the secure adoption of transformative AI technologies.Primary ResponsibilitiesSecurity for AIServe as the cybersecurity subject matter expert for AI technologies deployed across the enterprise.Develop and mature AI Attack Surface Management capabilities, including discovery, inventory, monitoring, assessment, and prioritization of AI-related risks.Evaluate risks associated with AI applications, AI agents, Large Language Models (LLMs), Retrieval Augmented Generation (RAG) implementations, third-party AI platforms, and AI-enabled business processes.Assess security threats including prompt injection, model manipulation, insecure integrations, excessive permissions, data leakage, unauthorized AI use, and AI supply chain risks.Partner with AI Governance, Cyber Architecture, Enterprise Architecture, and Technology teams to establish security requirements, standards, and controls for AI deployments.Support architecture reviews and risk assessments for emerging AI initiatives.Monitor evolving AI threats, vulnerabilities, attack techniques, and industry best practices.Develop executive-level reporting and risk communication related to AI security posture.AI for SecurityIdentify opportunities to leverage Artificial Intelligence and automation to improve cybersecurity operations.Drive adoption of AI-enabled capabilities that improve vulnerability prioritization, attack surface visibility, ownership identification, remediation workflows, and security analytics.Support development and enhancement of advanced security capabilities including risk-context engines, automated analysis pipelines, and intelligent security workflows.Evaluate emerging AI security technologies and identify opportunities to improve cybersecurity effectiveness and operational efficiency.Validate AI-driven recommendations and outputs to ensure alignment with enterprise risk management and cybersecurity requirements.Develop performance metrics demonstrating measurable reductions in manual effort, improved prioritization accuracy, and accelerated remediation outcomes.Attack Surface Management & Risk PrioritizationSupport the evolution of Duke Energy's Attack Surface Management program across Internal, External, and AI Attack Surfaces.Apply threat intelligence, exposure context, business criticality, and exploitability data to improve risk prioritization.Support continuous validation initiatives and exposure management improvements.Provide expertise in vulnerability management, threat intelligence, application security, cloud security, and emerging technology risk as they relate to AI adoption.Assist with development of risk methodologies, metrics, and decision-support capabilities for cybersecurity leadership.Leadership ExpectationsEmployees at this level are expected to:Serve as a recognized subject matter expert in AI security and emerging cyber risk.Lead highly complex cybersecurity initiatives with minimal supervision.Influence strategic cybersecurity decisions across organizational boundaries.Build partnerships across cybersecurity, technology, architecture, data, and business teams.Develop scalable processes, automation opportunities, and innovative approaches to cyber risk reduction.Translate complex technical risks into business-focused recommendations for senior leadership and executives.Mentor other cybersecurity professionals and contribute to capability development across the organization.Basic/Required QualificationsBachelor's degree in Cybersecurity, Computer Science, Engineering, Management Information Strategies (MIS), or Other Related experience.8 years Minimum Required Related Work ExperienceIn lieu of Bachelors degree(s) AND 8 year(s) related work experience listed above, High School/GED AND 12 year(s) related work experienceDesired Qualifications7+ years of cybersecurity experience with expertise in Security Architecture, Application Security, Cloud Security, Attack Surface Management, Threat & Vulnerability Management, or Threat Intelligence.Experience assessing security risks associated with AI technologies and/or leveraging AI-enabled capabilities to improve cybersecurity operations, automation, analytics, or risk prioritization.Experience in one or more of the following areas:AI SecurityVulnerability ManagementThreat IntelligenceAttack Surface ManagementApplication SecurityCloud SecuritySecurity ArchitectureDemonstrated ability to lead complex cybersecurity initiatives involving multiple stakeholders.Strong analytical, communication, and problem-solving skills.Preferred QualificationsExperience securing AI, machine learning, generative AI, agentic AI, or data science environments.Experience evaluating AI governance, AI risk management, or AI security controls.Hands-on experience with AI-enabled cybersecurity tooling, automation platforms, analytics solutions, or security orchestration capabilities.Knowledge of emerging AI threats and adversarial machine learning techniques.Experience with cloud-native security technologies and modern application architectures.Familiarity with NIST AI RMF, NIST Cybersecurity Framework, NERC CIP, PCI DSS, and related industry standards.Professional certifications such as CISSP, CISM, GCIH, GSEC, GRID, or equivalent.Working ConditionsHybrid Mobility Classification – Work will be performed from both remote and onsite locations after the onboarding period. However, hybrid employees should live within a reasonable daily commute to a Duke Energy facility.Office Environment#LI-ZM1#LI-Hybrid Travel RequirementsNot requiredRelocation Assistance Provided (as applicable)NoRepresented/Union PositionNoVisa Sponsored PositionNo. This is not a Visa Sponsored Position. This role requires the ability to work lawfully in the U.S. without employment-based immigration sponsorship, now or in the future.Please note that in order to be considered for this position, you must possess all of the basic/required qualifications.PrivacyDo Not Sell My Personal Information (CA)Terms of UseAccessibilitySummaryLocation: Charlotte, NC; Raleigh, NC; Plainfield, IN; St. Petersburg, FL; Cincinnati, OHType: Full time

Vacancy posted 3 days ago
Similar jobs that could be interesting for youBased on the Lead Cybersecurity Threat and Vulnerability Analyst in Charlotte, NC vacancy
  •  ...currently seeking a Cyber Security Threat Analyst (Onsite Hybrid) to join our...  ..., campaigns, malware, vulnerabilities, fraud trends, and...  ...threat intelligence reports for cybersecurity teams, business stakeholders...  ...We are one of the world's leading AI and digital infrastructure... 
    Suggested
    Work experience placement
    Work at office
    Remote work
    Flexible hours

    NTT DATA

    Charlotte, NC
    17 hours ago
  •  ...major enterprise. If you enjoy finding vulnerabilities before adversaries do, proposing...  ...experience in security engineering or related cybersecurity roles.Deep specialized knowledge in...  ...security practices.Deep knowledge of threat modeling, security testing, and penetration... 
    Suggested
    Permanent employment
    Full time
    Part time
    H1b
    Work visa
    Shift work
    Day shift

    Truist

    Charlotte, NC
    3 days ago
  •  ...seeking a highly experienced and strategic Lead IT Enterprise Architect - Security to...  ...standards, regulatory requirements, and evolving threat landscapes.The ideal candidate is a visionary leader with deep expertise in cybersecurity architecture, enterprise systems, and risk... 
    Suggested
    Temporary work
    Monday to Friday
    Flexible hours

    Honeywell

    Charlotte, NC
    3 days ago
  • $128.4k - $192.6k

     ...seeking a Sr. Security Engineer, Cloud Threat Detection Engineer to design and enhance...  ...and alerts.Train and mentor L1 and L2 SOC analysts on: Cloud attack techniques and...  ...annually).Required Qualifications5+ years of cybersecurity experience with direct involvement in security... 
    Suggested
    Full time
    Temporary work
    Work at office
    3 days per week

    The Hartford Financial Services Group

    Charlotte, NC
    1 day ago
  •  ...ReadyAPI tools to identify vulnerabilities in running APIs• This Senior...  ...may change from time to time.Lead the enterprise vulnerability...  ...exposureReviews relevant security threats, tools, and design options...  ...engineering or related cybersecurity roles.Deep specialized knowledge... 
    Suggested
    Full time
    Part time
    Work at office
    Shift work
    Day shift

    Truist

    Charlotte, NC
    17 hours ago
  • $155.6k - $306.8k

     ...deploy production-grade solutions. You will lead teams, shape technical solutions during...  ...with greater confidence in a changing threat landscape.QualificationsRequired:...  ...Science, Engineering, Information Technology, Cybersecurity, or a related field; alternatively, equivalent... 
    Local area
    Visa sponsorship

    Deloitte

    Charlotte, NC
    3 days ago
  • $134.5k - $265.1k

     ...Cyber team understands the unique challenges and opportunities businesses face in cybersecurity. Join our team to deliver powerful solutions to help our clients navigate the ever-changing threat landscape. Through powerful solutions and managed services that simplify... 
    Local area
    Visa sponsorship

    Deloitte

    Charlotte, NC
    2 days ago
  • Accelerate your career at RXORXO is a leading provider of transportation...  ...North America.The Lead Analyst, Information Security (Forensics...  ...examinations supporting cybersecurity incidents, legal matters, compliance...  ...forensic technologies, threat trends, and investigative techniques... 
    Full time
    Work experience placement

    RXO

    Charlotte, NC
    1 day ago
  • $155.6k - $306.8k

     ...challenges and opportunities businesses face in cybersecurity. Deloitte’s Cyber team helps our clients navigate the ever-changing threat landscape. We simplify complexity, and...  ...Forward Deployed Engineer (FDE) Manager, you will lead delivery of cybersecurity and AI-enabled... 
    Local area
    Visa sponsorship

    Deloitte

    Charlotte, NC
    4 days ago
  •  ...capability, maturing the offering, and growing the practice.The Work:Lead enterprise recovery engagements during active cyber incidents,...  ...experience in infrastructure, enterprise architecture, cybersecurity, or a closely related disciplineMinimum 2 years of experience... 
    Full time
    Live in
    Work at office
    Local area
    Shift work

    Accenture

    Charlotte, NC
    3 days ago
  • $105.4k - $207.8k

     ...clients navigate an evolving threat landscape through...  ...Security Standard (PCI DSS)Leading deployment of log ingestion...  ...security operations center analysts and threat detection...  ..., and staying current on cybersecurity threats, vulnerabilities, and compliance trendsA successful... 
    Local area
    Visa sponsorship

    Deloitte

    Charlotte, NC
    4 days ago
  • $105.4k - $207.8k

     ...member of the largest group of cybersecurity professionals worldwide....  ...classification, architecture reviews, threat modeling, control...  ...as-code, container, API, and vulnerability management, as well as AI-assisted...  ...relationshipsAbility to lead projects or... 
    Local area
    Worldwide
    Visa sponsorship

    Deloitte

    Charlotte, NC
    17 hours ago
  • $82.6k - $162.8k

     ...challenges and opportunities businesses face in cybersecurity. Join our team to deliver powerful...  ...our clients navigate the ever-changing threat landscape. Through powerful solutions...  ...sustain professional relationshipsAbility to lead projects or workstreamsAbility to manage... 
    Local area
    Visa sponsorship

    Deloitte

    Charlotte, NC
    1 day ago
  • $143k - $224k

     ...Cyber Behavioral Defense Lead (Lead Information Security Analyst), as part of the...  ...Team and will examine how threat actors exploit human judgment...  ...Human Risk, influencing cybersecurity, fraud, control, technology...  ...to identify vulnerabilities related to fraud, social... 
    Full time
    Work experience placement

    Wells Fargo

    Charlotte, NC
    1 day ago
  • $134.5k - $265.1k

     ...clients address evolving cybersecurity challenges and...  ...knowledge of Google SecOps, threat detection engineering...  ...be responsible for:Leading the design and...  ...operations center (SOC) analysts and threat detection...  ...cybersecurity threats, vulnerabilities, or compliance trends... 
    Local area
    Visa sponsorship

    Deloitte

    Charlotte, NC
    4 days ago
  • We AreAccenture is a leading solutions and services company that helps the world’s leading...  ...practice delivers program-scale cybersecurity outcomes to critical infrastructure owners...  ...workflowsFamiliarity with MITRE ATT&CK for ICS, threat intelligence frameworks, and adversary... 
    Full time
    Work experience placement
    Live in
    Work at office
    Local area

    Accenture

    Charlotte, NC
    4 days ago
  •  ...develops advanced technical and cybersecurity capabilities across all...  ...development lifecycle, including threat modeling, security testing,...  ...and remediate significant vulnerabilities.3. Integrates and configures...  ...and policy compliance.8. Leads the technical execution of major... 
    Full time
    Part time
    Local area
    Shift work
    Day shift

    Truist

    Charlotte, NC
    4 days ago
  • $102.17k

     ...Senior Cyber Security Analyst, where you will...  ...the intersection of cybersecurity and DevSecOps to protect...  ...controls, identifying vulnerabilities, and ensuring that applications...  ...against evolving threats. You will work...  ...emerging threats. Lead response efforts for... 
    Work experience placement
    H1b

    Trinnex

    Charlotte, NC
    3 days ago
  •  ...Optiv's partner relationships. Qualify lead and partner with internal colleagues...  ...understanding of the current threat landscape, vulnerabilities, and defensive controls. Strong business...  ...CCSP or other relevant professional cybersecurity certifications. Experience speaking... 
    Full time
    Work experience placement
    Local area
    Remote work
    Work from home

    Optiv

    Charlotte, NC
    3 days ago
  • We AreAccenture is a leading solutions and services company that...  ...operational technology and cybersecurity—helping critical infrastructure...  ...NetRise)Perform OT-specific threat hunting, indicator of...  ...cybersecurity experience including vulnerability management, identity and... 
    Full time
    Work experience placement
    Live in
    Work at office
    Local area
    Remote work

    Accenture

    Charlotte, NC
    4 days ago
  •  ...position.Position SummaryWe are seeking a Cybersecurity Systems Engineering Analyst to support and engineer enterprise...  ...SWG, CASB, ZTNA, DNS Security, and threat prevention capabilities.Provide...  ....Experience supporting or leading legacy proxy-to-SASE migrations or... 
    Permanent employment
    Remote work
    Relocation

    Gravity IT Resources

    Charlotte, NC
    3 days ago
  •  ...Description As a Cyber Security Analyst you will be a key part of a...  ...will bring your passion for Cybersecurity to a team of like‑minded professionals...  ...pace with a rapidly changing threat landscape. You will relish...  ...an incident, you will lead that technical analysis, tracking... 
    Work at office
    Local area
    Work from home

    SMBC

    Charlotte, NC
    2 days ago
  • $125k - $150k

     ...the project or the area.2. Lead and participate in the development...  ...version governance, vulnerability triage, and coordinating security...  ...engineering or related cybersecurity roles.3. Advanced knowledge...  ...practices.5. Advanced knowledge of threat modeling, security testing,... 
    Permanent employment
    Full time
    Part time
    H1b
    Work visa
    Shift work
    Day shift

    Truist

    Charlotte, NC
    3 days ago
  •  ...Senior AI Security Architect at director level in Charlotte, NC to lead the design and governance of enterprise AI security...  ...leadership with hands-on expertise in AI, machine learning, and cybersecurity, guiding secure patterns across data ingestion, model development... 
    Full time

    Jobleads-US

    Charlotte, NC
    1 day ago
  • $134.5k - $265.1k

     ...challenges and opportunities businesses face in cybersecurity. Join our team to deliver powerful...  ...our clients navigate the ever-changing threat landscape. Through powerful solutions...  ...decision-point/information-point setup.Lead technical discussions with Enterprise architects... 
    Local area
    Visa sponsorship

    Deloitte

    Charlotte, NC
    17 hours ago
  • $114.1k - $268.18k

     ...development opportunities, a world-class training facility, and leading market tools, we help our people continue to grow both...  ...experience in management roles with demonstrated depth in the IDM or cybersecurity domain.Bachelor's degree from an accredited college lor... 
    H1b
    Local area

    KPMG

    Charlotte, NC
    2 days ago
  •  ...Offensive Security group. The program provides services to assess the vulnerability of the bank's applications to malicious hacking activity....  ...while adapting testing methods to evolving and emerging threats. Key responsibilities include performing research, understanding... 
    Work at office
    Shift work
    Day shift

    Bank of America

    Charlotte, NC
    2 days ago
  •  ...cloud-native architectures, and advanced threat techniques. This role focuses on...  ...activities may change from time to time.Lead the design, implementation, and continuous...  ...experience in security engineering or related cybersecurity roles.Deep specialized knowledge in... 
    Permanent employment
    Full time
    Part time
    H1b
    Work at office
    Work visa
    Shift work
    Day shift

    Truist

    Charlotte, NC
    1 day ago
  •  ...Summary As a Sr. Cyber Security Analyst, you will play a key role in...  ..., and respond to cyber threats. You will work within the Security...  ...across the enterprise. Lead technical investigations to determine...  ...SPECIFICATIONS 5+ years of cybersecurity experience, preferably in a... 
    Work at office
    Local area
    Work from home
    Worldwide

    SMBC Group

    Charlotte, NC
    4 days ago
  • $107k - $214.5k

    We are the leading provider of professional services to the middle market globally, our...  ...clients, RSM US LLP has established the Cybersecurity and data protection risk (CDPR), comprised...  ..., detecting, and responding to security threats that may affect their critical systems... 
    Full time
    Work experience placement
    Internship
    Local area
    Shift work

    RSM International

    Charlotte, NC
    1 day ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Lead Cybersecurity Threat and Vulnerability Analyst. Be the first to apply!