1

Cyber Risk Management Jobs in Michigan (NOW HIRING)

GRC, Vulnerability Management Analyst

Grand Rapids, MI · On-site

  • Medical

  • Dental

  • Vision

  • Life

  • Retirement

  • PTO

... Management Program from a risk, compliance, and accountability perspective. This role serves as the ... cyber risk, remediation performance, and program effectiveness. The analyst enables informed risk ...

Showing results 21-40

Cyber Risk Management information

See Michigan salary details

$12

$26

$64

How much do cyber risk management jobs pay per hour?

As of Aug 19, 2026, the average hourly pay for cyber risk management in Michigan is $26.44, according to ZipRecruiter salary data. Most workers in this role earn between $16.97 and $33.75 per hour, depending on experience, location, and employer.

What is cyber risk management?

A Cyber Risk Management job involves identifying, assessing, and mitigating cybersecurity risks that could impact an organization. Professionals in this field develop risk management frameworks, implement security controls, and ensure compliance with industry regulations. They work closely with IT and business teams to minimize cyber threats, such as data breaches and ransomware attacks. Their goal is to protect sensitive information and maintain business continuity.

What are some common challenges faced in a cyber risk management role, and how are they typically addressed?

Professionals in Cyber Risk Management often encounter challenges such as keeping up with rapidly evolving cyber threats, ensuring compliance with complex regulations, and balancing security needs with business objectives. Addressing these issues requires continuous learning, leveraging up-to-date threat intelligence, and collaborating closely with IT, legal, and management teams to develop effective risk mitigation strategies. Many organizations encourage ongoing training and participation in industry events to stay current, while fostering a culture of open communication to quickly identify and address vulnerabilities. Embracing a proactive and adaptable approach ensures that cyber risks are managed effectively while supporting the organization’s goals.

What are the key skills and qualifications needed to thrive in cyber risk management, and why are they important?

To thrive in Cyber Risk Management, you need a strong understanding of information security principles, risk assessment methodologies, and regulatory compliance, often supported by a degree in cybersecurity, information technology, or a related field. Familiarity with tools such as risk management software, vulnerability assessment platforms, and certifications like CISSP, CISM, or CRISC is highly valued. Excellent analytical thinking, communication, and problem-solving skills help professionals effectively advise stakeholders and coordinate incident response efforts. These skills are crucial for identifying, evaluating, and mitigating cyber risks to safeguard organizational assets and ensure business continuity.

How much does a cyber risk management professional make?

Cyber risk management professionals typically earn a median annual salary ranging from $80,000 to $130,000, depending on experience, certifications, and location. Senior roles or those with specialized skills in cybersecurity frameworks and risk assessment tools can earn higher salaries, often exceeding $150,000 annually.

What does a cyber risk management do?

A cyber risk management professional identifies, assesses, and prioritizes cybersecurity threats to an organization. They develop strategies and implement controls to mitigate risks, often using frameworks like NIST or ISO, and may hold certifications such as CISSP or CISM. Their work helps protect sensitive data and ensure business continuity in a constantly evolving threat landscape.

What job categories do people searching Cyber Risk Management jobs in Michigan look for?

The top searched job categories for Cyber Risk Management jobs in Michigan are:

Infographic showing various Cyber Risk Management job openings in Michigan as of August 2026, with employment types broken down into 1% As Needed, 79% Full Time, 14% Part Time, 2% Temporary, 3% Contract, and 1% Nights. Highlights an 84% Physical, 3% Hybrid, and 13% Remote job distribution, with an average salary of $54,997 per year, or $26.4 per hour.

Cyber Manager - ASM Vulnerability Management - Patching

Deloitte

Grand Rapids, MI • On-site

$106K - $144K/yr

Full-time

Re-posted 24 days ago


Deloitte rating

8.2

Company rating: 8.2 out of 10

Based on 92 frontline employees who took The Breakroom Quiz

44th of 150 rated financial services


Job description

Are you an experienced cybersecurity professional looking to help organizations reduce cyber risk and improve resilience? At Deloitte & Touche LLP, you'll work with leading organizations to strengthen security, enable innovation, and reduce threat exposure. Join Deloitte's Cyber Defense & Resilience Continuous Threat Exposure Management (CTEM) team to help clients identify, assess, and reduce their attack surface. In this role, you'll lead remediation efforts, work with cross-functional stakeholders, and deliver solutions aligned to business and security priorities.

Recruiting for this role ends on 12/31/2026.

Work you'll do

As an Engineering Manager II on the Cyber Defense & Resilience Continuous Threat Exposure Management (CTEM) team, you will be responsible for...

  • Managing exposure-based remediation and patching activities aligned to CTEM priorities
  • Leading vulnerability and patch management operations across infrastructure, middleware, and applications
  • Prioritizing remediation activities using threat intelligence, exploitability, attack paths, asset criticality, and exposure data
  • Supporting exception management, incident-driven response activities, and process improvements that reduce cyber risk
  • Developing client deliverables, contributing to proposals and points of view, and mentoring junior practitioners

A successful candidate would possess these skills:

  • Ability to work independently and collaborate as part of a team
  • Effective written and verbal communication skills
  • Meticulous attention to detail and quality of work product
  • Ability to build and sustain professional relationships
  • Ability to lead projects or workstreams
  • Ability to manage and prioritize multiple tasks in a fast-paced and dynamic environment
  • Strong interpersonal skills and professional demeanor
  • Ability to meet deadlines
  • Ability to mentor and provide clear guidance to others

The team

Deloitte's Cyber Specialists help organizations manage cyber risk through stronger security, greater visibility, and embedded privacy practices. The Cyber Defense & Resilience team works with clients to design, implement, and operate programs that help protect critical assets, support digital transformation, and respond to evolving threats. Within this practice, the CTEM team helps clients identify exposures, prioritize remediation, and reduce risk across complex technology environments.

Qualifications

Required:

  • 10+ years of experience in information technology, information security, or both
  • Experience leading vulnerability management, patch management, or continuous threat exposure management remediation programs
  • Experience remediating vulnerabilities across Linux, Windows, middleware, and applications using tools such as BigFix, Microsoft Endpoint Configuration Manager, Red Hat Satellite, Windows Server Update Services, Tenable, Rapid7, or Qualys
  • Experience automating remediation workflows using PowerShell, Bash, Python, JavaScript Object Notation, Ansible, Terraform, or a combination of these
  • Experience using Information Technology Service Management or configuration management database platforms such as ServiceNow to coordinate remediation and report exposure reduction
  • Ability to travel 50%, on average, based on the work you do and the clients and industries/sectors you serve.
  • Must be legally authorized to work in the United States without the need for employer sponsorship, now or at any time in the future.

Preferred:

  • Bachelor's degree in Computer Science, Cybersecurity, Information Systems, Engineering, Information Technology, or a related field
  • Experience in a consulting environment or with a Big 4 firm
  • Experience with ServiceNow workflows, automation, or orchestration
  • Experience with frameworks such as the National Institute of Standards and Technology Cybersecurity Framework, Center for Internet Security, International Organization for Standardization 27001, or Cloud Security Alliance Cloud Controls Matrix
  • Experience supporting proposals, statements of work, or work orders

The wage range for this role takes into account the wide range of factors that are considered in making compensation decisions including but not limited to skill sets; experience and training; licensure and certifications; and other business and organizational needs. The disclosed range estimate has not been adjusted for the applicable geographic differential associated with the location at which the position may be filled. At Deloitte, it is not typical for an individual to be hired at or near the top of the range for their role and compensation decisions are dependent on the facts and circumstances of each case. A reasonable estimate of the current range is $134,500 to $265,100.

You may also be eligible to participate in a discretionary annual incentive program, subject to the rules governing the program, whereby an award, if any, depends on various factors, including, without limitation, individual and organizational performance.

#CyberCDR27

Qualifications:

Are you an experienced cybersecurity professional looking to help organizations reduce cyber risk and improve resilience? At Deloitte & Touche LLP, you'll work with leading organizations to strengthen security, enable innovation, and reduce threat exposure. Join Deloitte's Cyber Defense & Resilience Continuous Threat Exposure Management (CTEM) team to help clients identify, assess, and reduce their attack surface. In this role, you'll lead remediation efforts, work with cross-functional stakeholders, and deliver solutions aligned to business and security priorities.

Recruiting for this role ends on 12/31/2026.

Work you'll do

As an Engineering Manager II on the Cyber Defense & Resilience Continuous Threat Exposure Management (CTEM) team, you will be responsible for...

  • Managing exposure-based remediation and patching activities aligned to CTEM priorities
  • Leading vulnerability and patch management operations across infrastructure, middleware, and applications
  • Prioritizing remediation activities using threat intelligence, exploitability, attack paths, asset criticality, and exposure data
  • Supporting exception management, incident-driven response activities, and process improvements that reduce cyber risk
  • Developing client deliverables, contributing to proposals and points of view, and mentoring junior practitioners

A successful candidate would possess these skills:

  • Ability to work independently and collaborate as part of a team
  • Effective written and verbal communication skills
  • Meticulous attention to detail and quality of work product
  • Ability to build and sustain professional relationships
  • Ability to lead projects or workstreams
  • Ability to manage and prioritize multiple tasks in a fast-paced and dynamic environment
  • Strong interpersonal skills and professional demeanor
  • Ability to meet deadlines
  • Ability to mentor and provide clear guidance to others

The team

Deloitte's Cyber Specialists help organizations manage cyber risk through stronger security, greater visibility, and embedded privacy practices. The Cyber Defense & Resilience team works with clients to design, implement, and operate programs that help protect critical assets, support digital transformation, and respond to evolving threats. Within this practice, the CTEM team helps clients identify exposures, prioritize remediation, and reduce risk across complex technology environments.

Qualifications

Required:

  • 10+ years of experience in information technology, information security, or both
  • Experience leading vulnerability management, patch management, or continuous threat exposure management remediation programs
  • Experience remediating vulnerabilities across Linux, Windows, middleware, and applications using tools such as BigFix, Microsoft Endpoint Configuration Manager, Red Hat Satellite, Windows Server Update Services, Tenable, Rapid7, or Qualys
  • Experience automating remediation workflows using PowerShell, Bash, Python, JavaScript Object Notation, Ansible, Terraform, or a combination of these
  • Experience using Information Technology Service Management or configuration management database platforms such as ServiceNow to coordinate remediation and report exposure reduction
  • Ability to travel 50%, on average, based on the work you do and the clients and industries/sectors you serve.
  • Must be legally authorized to work in the United States without the need for employer sponsorship, now or at any time in the future.

Preferred:

  • Bachelor's degree in Computer Science, Cybersecurity, Information Systems, Engineering, Information Technology, or a related field
  • Experience in a consulting environment or with a Big 4 firm
  • Experience with ServiceNow workflows, automation, or orchestration
  • Experience with frameworks such as the National Institute of Standards and Technology Cybersecurity Framework, Center for Internet Security, International Organization for Standardization 27001, or Cloud Security Alliance Cloud Controls Matrix
  • Experience supporting proposals, statements of work, or work orders

The wage range for this role takes into account the wide range of factors that are considered in making compensation decisions including but not limited to skill sets; experience and training; licensure and certifications; and other business and organizational needs. The disclosed range estimate has not been adjusted for the applicable geographic differential associated with the location at which the position may be filled. At Deloitte, it is not typical for an individual to be hired at or near the top of the range for their role and compensation decisions are dependent on the facts and circumstances of each case. A reasonable estimate of the current range is $134,500 to $265,100.

You may also be eligible to participate in a discretionary annual incentive program, subject to the rules governing the program, whereby an award, if any, depends on various factors, including, without limitation, individual and organizational performance.

#CyberCDR27

Education:Bachelor's DegreeEmployment Type:

What Deloitte employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom