Job Summary The Director, Security Operations leads the day-to-day execution and delivery of enterprise security operations capabilities, including threat detection, incident response, threat hunting ...
Job Summary The Director, Security Operations leads the day-to-day execution and delivery of enterprise security operations capabilities, including threat detection, incident response, threat hunting ...
Oracle's Global Physical Security (GPS) Operations Team secures the corporation's data center and ... May direct day-to-day functional work, training, and adherence to approved procedures for ...
Oracle's Global Physical Security (GPS) Operations Team secures the corporation's data center and ... May direct day-to-day functional work, training, and adherence to approved procedures for ...
Lead Security Operations Center (SOC) Analyst
Ann Arbor, MI · On-site
$65K - $72K/yr
The Security Operations Center (SOC) serves as the division's centralized hub for integrating security technologies and operational information to enhance situational awareness, support incident ...
Lead Security Operations Center (SOC) Analyst
Ann Arbor, MI · On-site
$65K - $72K/yr
The Security Operations Center (SOC) serves as the division's centralized hub for integrating security technologies and operational information to enhance situational awareness, support incident ...
The qualified candidate will report directly to the Director, Data Center Security Operations. Periodic regional travel will be required. This is an individual contributor (IC) role, and the position ...
The qualified candidate will report directly to the Director, Data Center Security Operations. Periodic regional travel will be required. This is an individual contributor (IC) role, and the position ...
The qualified candidate will report directly to the Director, Data Center Security Operations. Periodic regional travel will be required. This is an individual contributor (IC) role, and the position ...
The qualified candidate will report directly to the Director, Data Center Security Operations. Periodic regional travel will be required. This is an individual contributor (IC) role, and the position ...
The qualified candidate will report directly to the Director, Data Center Security Operations. Periodic regional travel will be required. This is an individual contributor (IC) role, and the position ...
The qualified candidate will report directly to the Director, Data Center Security Operations. Periodic regional travel will be required. This is an individual contributor (IC) role, and the position ...
The qualified candidate will report directly to the Director, Data Center Security Operations. Periodic regional travel will be required. This is an individual contributor (IC) role, and the position ...
The qualified candidate will report directly to the Director, Data Center Security Operations. Periodic regional travel will be required. This is an individual contributor (IC) role, and the position ...
Oracle's Global Physical Security (GPS) Operations Team secures the corporation's data center and ... May direct day-to-day functional work, training, and adherence to approved procedures for ...
Oracle's Global Physical Security (GPS) Operations Team secures the corporation's data center and ... May direct day-to-day functional work, training, and adherence to approved procedures for ...
Oracle's Global Physical Security (GPS) Operations Team secures the corporation's data center and ... May direct day-to-day functional work, training, and adherence to approved procedures for ...
Oracle's Global Physical Security (GPS) Operations Team secures the corporation's data center and ... May direct day-to-day functional work, training, and adherence to approved procedures for ...
Oracle's Global Physical Security (GPS) Operations Team secures the corporation's data center and ... May direct day-to-day functional work, training, and adherence to approved procedures for ...
Oracle's Global Physical Security (GPS) Operations Team secures the corporation's data center and ... May direct day-to-day functional work, training, and adherence to approved procedures for ...
ComResource is looking for a Security Operations Center (SOC) Tier 1 Analyst (Second Shift). Responsibilities: * Monitor security incidents for endpoints, network, and cloud domains generated by the ...
Quick apply
ComResource is looking for a Security Operations Center (SOC) Tier 1 Analyst (Second Shift). Responsibilities: * Monitor security incidents for endpoints, network, and cloud domains generated by the ...
Global Security Operations Center Specialist *20 hours a week scheduled coverage with the following ... Use resources provided to make decisions without direct supervision. * Work in a team environment ...
Global Security Operations Center Specialist *20 hours a week scheduled coverage with the following ... Use resources provided to make decisions without direct supervision. * Work in a team environment ...
Global Security Operations Center Specialist *20 hours a week scheduled coverage with the following ... Use resources provided to make decisions without direct supervision. * Work in a team environment ...
Global Security Operations Center Specialist *20 hours a week scheduled coverage with the following ... Use resources provided to make decisions without direct supervision. * Work in a team environment ...
The Security Operations Center (SOC) SSA will be a member of Jackson's Information Security Team. They will be responsible for analyzing and presenting findings for fraud and Account Takeover ...
The Security Operations Center (SOC) SSA will be a member of Jackson's Information Security Team. They will be responsible for analyzing and presenting findings for fraud and Account Takeover ...
The Security Operations Center (SOC) SSA will be a member of Jackson's Information Security Team. They will be responsible for analyzing and presenting findings for fraud and Account Takeover ...
The Security Operations Center (SOC) SSA will be a member of Jackson's Information Security Team. They will be responsible for analyzing and presenting findings for fraud and Account Takeover ...
Part-Time Strategic Support Associate, Security Operations Center
Lansing, MI · On-site
$17.25 - $22.25/hr
The Security Operations Center (SOC) SSA will be a member of Jackson's Information Security Team. They will be responsible for analyzing and presenting findings for fraud and Account Takeover ...
Part-Time Strategic Support Associate, Security Operations Center
Lansing, MI · On-site
$17.25 - $22.25/hr
The Security Operations Center (SOC) SSA will be a member of Jackson's Information Security Team. They will be responsible for analyzing and presenting findings for fraud and Account Takeover ...
Part-Time Strategic Support Associate, Security Operations Center
Lansing, MI · On-site
$17.25 - $22.25/hr
The Security Operations Center (SOC) SSA will be a member of Jackson's Information Security Team. They will be responsible for analyzing and presenting findings for fraud and Account Takeover ...
Part-Time Strategic Support Associate, Security Operations Center
Lansing, MI · On-site
$17.25 - $22.25/hr
The Security Operations Center (SOC) SSA will be a member of Jackson's Information Security Team. They will be responsible for analyzing and presenting findings for fraud and Account Takeover ...
Regional SOC (Security Operations Center) Incident Response Engineer
Saline, MI · On-site
$96K - $124K/yr
The Regional Security Operations Center (SOC)/Incident response Engineer is responsible for implementing and maintaining security controls and systems in the Americas region. This position also works ...
Regional SOC (Security Operations Center) Incident Response Engineer
Saline, MI · On-site
$96K - $124K/yr
The Regional Security Operations Center (SOC)/Incident response Engineer is responsible for implementing and maintaining security controls and systems in the Americas region. This position also works ...
The Director, Security Engineering & Architecture leads thedaytodayexecution and delivery of ... Partner with IT, IAM operations, and application teams to embed identity controls into platforms ...
The Director, Security Engineering & Architecture leads thedaytodayexecution and delivery of ... Partner with IT, IAM operations, and application teams to embed identity controls into platforms ...
Tier 1 SOC Analyst
Farmington Hills, MI · On-site
Job Summary - Tier 1 SOC Analyst - Serve as the initial point of triage and investigation in a 24/7 Security Operations Center (SOC) environment. - Proactively monitor security events and alerts ...
Quick apply
Tier 1 SOC Analyst
Farmington Hills, MI · On-site
Job Summary - Tier 1 SOC Analyst - Serve as the initial point of triage and investigation in a 24/7 Security Operations Center (SOC) environment. - Proactively monitor security events and alerts ...
Director Security Operations Center information
What does a director security operations center do?
What are the main challenges faced by a director security operations center in managing complex security incidents?
What are the key skills and qualifications needed to thrive as a director security operations center, and why are they important?
What is the difference between Director Security Operations Center vs Security Operations Manager?
| Aspect | Director Security Operations Center | Security Operations Manager |
|---|---|---|
| Certifications | CISSP, CISM, GIAC certifications | CISSP, Security+ |
| Work Environment | Oversees entire SOC, strategic planning | Manages daily security operations, team supervision |
| Responsibilities | Sets security policies, directs incident response | Monitors security alerts, manages security staff |
The Director Security Operations Center focuses on strategic leadership and policy development for the SOC, while the Security Operations Manager handles daily operations and team management. Both roles require relevant certifications and work within the same industry environment, but differ in scope and level of responsibility.
What are the most commonly searched types of Security Operations Center jobs in Michigan?
The most popular types of Security Operations Center jobs in Michigan are:
What are popular job titles related to Director Security Operations Center jobs in Michigan?
For Director Security Operations Center jobs in Michigan, the most frequently searched job titles are:
What job categories do people searching Director Security Operations Center jobs in Michigan look for?
The top searched job categories for Director Security Operations Center jobs in Michigan are:
What cities in Michigan are hiring for Director Security Operations Center jobs?
Cities in Michigan with the most Director Security Operations Center job openings:

Full-time
Medical, Dental, Vision, Life, Retirement, PTO
Posted 9 days ago
Acrisure rating
7.5
Based on 122 frontline employees who took The Breakroom Quiz
226th of 311 rated insurance
Job description
About Acrisure
A global fintech leader, Acrisure empowers millions of ambitious businesses and individuals with the right solutions to grow boldly forward. By bringing cutting-edge technology and top-tier human support together, we connect clients with customized solutions across insurance, reinsurance, payroll, benefits, cybersecurity, mortgage services - and more.
In the last twelve years, Acrisure has grown in revenue from $38 million to nearly $5 billion, with over 19,000 colleagues in more than 20 countries. Acrisure was built on entrepreneurial spirit. Prioritizing leadership, accountability, and collaboration, we equip our teams to work at the highest levels possible.
Job Summary
The Director, Security Operations leads the day-to-day execution and delivery of enterprise security operations capabilities, including threat detection, incident response, threat hunting, security monitoring, operational security platforms, and cyber defense processes. This role is accountable for managing teams responsible for detecting, investigating, containing, and responding to cybersecurity threats while continuously improving operational effectiveness through automation, process maturity, and technology optimization.
This is an execution-focused leadership role. Success is measured by operational excellence, rapid detection and response, platform reliability, measurable risk reduction, and strong partnership with Technology, Engineering, Legal, Privacy, Human Resources, and business stakeholders. The role does not own enterprise cybersecurity strategy but is responsible for translating strategy into operational outcomes.
Success in this role means building a highly effective security operations program that rapidly detects and responds to threats, continuously reduces operational risk, and enables the business to operate securely at scale. The Director establishes disciplined execution, operational reliability, and strong cross-functional partnerships while creating a culture of accountability, automation, and continuous improvement across the security operations organization.
Responsibilities:
Security Operations Leadership
- Lead security operations teams responsible for security monitoring, alert triage, incident response, threat hunting, and cyber defense activities.
- Establish operational priorities and execution plans aligned with organizational risk reduction objectives.
- Build scalable operating models that enable efficient detection, investigation, and response across a global environment.
- Ensure consistent operational processes, documentation, escalation procedures, and service delivery standards.
- Develop and mentor managers, engineers, and analysts while fostering accountability, ownership, and continuous improvement.
Threat Detection & Response
- Oversee enterprise detection and response capabilities across endpoint, identity, cloud, network, email, and application environments.
- Ensure timely identification, investigation, containment, eradication, and recovery of cybersecurity incidents.
- Act as a senior escalation point for major incidents and provide executive-level situational updates when required.
- Lead operational readiness programs including playbooks, runbooks, tabletop exercises, simulations, and incident reviews.
- Drive improvements to detection coverage and response effectiveness based on emerging threats, incidents, and intelligence.
Threat Hunting & Cyber Defense
- Lead proactive threat hunting initiatives across enterprise environments.
- Ensure threat intelligence is operationalized into detection content, hunting activities, and response procedures.
- Drive maturity around adversary-focused operations utilizing frameworks such as MITRE ATT&CK.
- Partner with Engineering and Infrastructure teams to address security weaknesses identified through operational activities.
Security Platforms & Operational Engineering
- Own operational effectiveness of security technologies including SIEM, SOAR, EDR/XDR, threat intelligence, email security, cloud security, and related security operations tooling.
- Drive automation initiatives that improve analyst efficiency, reduce response times, and minimize repetitive manual work.
- Partner with Security Engineering teams to improve telemetry, integrations, detections, and platform reliability.
- Ensure operational tooling remains scalable and aligned to business growth and acquisition activities.
Incident Management & Cross-Functional Coordination
- Coordinate with Legal, Privacy, Human Resources, Compliance, Internal Audit, and Technology teams during security incidents.
- Establish communication models and escalation paths for major cyber events.
- Lead post-incident reviews to identify root causes, lessons learned, and corrective actions.
- Ensure operational activities support regulatory, contractual, and reporting requirements.
Metrics, Reporting & Continuous Improvement
- Define and maintain meaningful operational metrics and key performance indicators including:
- Mean Time to Detect (MTTD)
- Mean Time to Respond (MTTR)
- Detection Coverage
- Incident Severity Trends
- Alert Fidelity
- Automation Adoption
- Threat Hunting Effectiveness
- Provide regular operational reporting to cybersecurity leadership and executive stakeholders.
- Drive disciplined continuous improvement efforts focused on increasing resilience and reducing organizational risk.
Minimum Qualifications
- Bachelor's degree in Cybersecurity, Information Technology, Computer Science, or related field.
- 10+ years of progressive cybersecurity experience.
- 5+ years leading Security Operations, Incident Response, Threat Hunting, SOC, or Cyber Defense teams.
- Experience managing enterprise security operations in complex, hybrid cloud environments.
- Deep understanding of incident response methodologies, threat detection, cyber defense operations, and security monitoring practices.
- Experience with one or more enterprise security platforms including Microsoft Defender, Sentinel, SentinelOne, Google SecOps, Splunk, CrowdStrike, Palo Alto, or comparable technologies.
- Strong leadership, communication, and stakeholder management skills.
- Experience managing operational metrics, budgets, vendors, and service providers.
Preferred Qualifications
- CISSP, GIAC, GCIH, GCFA, GCIA, CISM, or equivalent certifications.
- Experience supporting cybersecurity operations for highly acquisitive or global organizations.
- Experience with Microsoft Security E5 capabilities, Microsoft Defender XDR, Microsoft Sentinel, Purview, and Azure security technologies.
- Experience implementing security automation and orchestration programs.
- Familiarity with regulatory frameworks including NIST CSF, NIST 800-61, ISO 27001, NYDFS, SOX, and industry security best practices.
- Experience leading ransomware, insider risk, cloud compromise, and business email compromise investigations.
Candidates should be comfortable with an on-site presence to support collaboration, team leadership, and cross-functional partnership.
Why Join Us:
At Acrisure, we're building more than a business, we're building a community where people can grow, thrive, and make an impact. Our benefits are designed to support every dimension of your life, from your health and finances to your family and future.
Making a lasting impact on the communities it serves, Acrisure has pledged more than $22 million through its partnerships with Corewell Health Helen DeVos Children's Hospital in Grand Rapids, Michigan, UPMC Children's Hospital in Pittsburgh, Pennsylvania and Blythedale Children's Hospital in Valhalla, New York.
Employee Benefits
We also offer our employees a comprehensive suite of benefits and perks, including:
Physical Wellness: Comprehensive medical insurance, dental insurance, and vision insurance; life and disability insurance; fertility benefits; wellness resources; and paid sick time.
Mental Wellness: Generous paid time off and holidays; Employee Assistance Program (EAP); and a complimentary Calm app subscription.
Financial Wellness: Immediate vesting in a 401(k) plan; Health Savings Account (HSA) and Flexible Spending Account (FSA) options; commuter benefits; and employee discount programs.
Family Care: Paid maternity leave and paid paternity leave (including for adoptive parents); legal plan options; and pet insurance coverage.
... and so much more!
This list is not exhaustive of all available benefits. Eligibility and waiting periods may apply to certain offerings. Benefits may vary based on subsidiary entity and geographic location.
Acrisure is an Equal Opportunity Employer. We consider qualified applicants without regard to race, color, religion, sex, national origin, disability, or protected veteran status. Applicants may request reasonable accommodation by contacting leaves@acrisure.com.
Final candidates will be required to complete post-offer verification processes related to the role and in accordance with applicable laws.
California Residents: Learn more about our privacy practices for applicants by visiting the Acrisure California Applicant Privacy Policy.
Recruitment Fraud: Please visit here to learn more about our Recruitment Fraud Notice.
Welcome, your new opportunity awaits you.
About Acrisure
Sourced by ZipRecruiter
Industry
Insurance services
Company size
5,001 - 10,000 Employees
Headquarters location
Grand Rapids, MI, US