1

Director Vulnerability Management Jobs in Michigan

Direct the strategic selection, implementation, and continuous auditing of preventative, detective ... Define the scope, strategy, and budgeting for continuous vulnerability management frameworks ...

Direct the security operations center (SOC), overseeing threat detection, threat hunting, incident response, digital forensics, and vulnerability management. * Maintains relationships with local ...

Exempt REPORTS TO: Director, IT SUMMARY The Systems Administrator is responsible for securing ... Practical knowledge of patch management, vulnerability remediation, endpoint configuration ...

Exempt REPORTS TO: Director, IT SUMMARY The Systems Administrator is responsible for securing ... Practical knowledge of patch management, vulnerability remediation, endpoint configuration ...

System Administrator

Portage, MI · On-site

$90 - $120/hr

Exempt REPORTS TO: Director, IT SUMMARY The Systems Administrator is responsible for securing ... Practical knowledge of patch management, vulnerability remediation, endpoint configuration ...

New

Network Manager

Zeeland, MI · On-site

$90 - $120/hr

In conjunction with the Director of Educational Technology, the Network Manager will learn the ... vulnerability management, and incident response procedures. * Knowledge of K-12 student data ...

In conjunction with the Director of Educational Technology, the Network Manager will learn the ... vulnerability management, and incident response procedures. * Knowledge of K-12 student data ...

In conjunction with the Director of Educational Technology, the Network Manager will learn the ... vulnerability management, and incident response procedures. * Knowledge of K-12 student data ...

Showing results 21-40

Director Vulnerability Management information

What does a director vulnerability management do?

A Director of Vulnerability Management oversees an organization's efforts to identify, assess, and remediate security vulnerabilities in its systems and networks. This role involves leading a team of security professionals, developing vulnerability management strategies, ensuring compliance with industry standards, and collaborating with IT and business units to mitigate risks. The director also communicates security risks to executive leadership and helps prioritize remediation efforts based on potential business impact.

What are the key skills and qualifications needed to thrive as a director vulnerability management?

To thrive as a Director of Vulnerability Management, you need a strong background in cybersecurity, risk assessment, and vulnerability management frameworks, typically supported by a bachelor's degree in information security or related fields and relevant certifications like CISSP or CISM. Familiarity with vulnerability scanning tools (e.g., Qualys, Nessus), SIEM platforms, and patch management systems is essential. Exceptional leadership, communication, and strategic thinking skills help coordinate cross-functional teams and drive remediation efforts. These skills and qualities are crucial for proactively identifying risks, ensuring regulatory compliance, and safeguarding organizational assets from cyber threats.

What are some common challenges faced by a director vulnerability management, and how can they be addressed?

A Director of Vulnerability Management often encounters challenges such as prioritizing remediation efforts among numerous vulnerabilities, coordinating across multiple teams, and keeping up with rapidly evolving threat landscapes. Addressing these challenges requires strong communication skills to align IT, security, and business stakeholders, as well as implementing effective vulnerability assessment tools and processes. Building a culture of continuous improvement and staying updated with the latest cybersecurity trends can also help in proactively managing and mitigating risks.

What is the difference between Director Vulnerability Management vs Security Manager?

AspectDirector Vulnerability ManagementSecurity Manager
Primary FocusOverseeing vulnerability assessment and remediation strategiesManaging overall security policies and team operations
CertificationsCertifications like CISSP, CISA, GIACCertifications like CISSP, CISM, CompTIA Security+
Work EnvironmentSecurity teams, vulnerability scanning tools, incident responseSecurity teams, policy development, risk management
Industry UsageCommon in large enterprises with dedicated vulnerability teamsWidespread across organizations managing overall security

The main difference is that the Director Vulnerability Management focuses specifically on identifying and addressing security vulnerabilities, while the Security Manager oversees broader security policies and team management. Both roles require similar certifications and work in security-focused environments, but their scope and responsibilities differ.

Is vulnerability management a good career?

Vulnerability management is a valuable career in cybersecurity, focusing on identifying and mitigating security weaknesses in systems. It often requires knowledge of security tools, risk assessment, and certifications like CISSP or CompTIA Security+; the role offers growth opportunities and high demand due to increasing cyber threats.

What are the most commonly searched types of Vulnerability Management jobs in Michigan?

The most popular types of Vulnerability Management jobs in Michigan are:

What are popular job titles related to Director Vulnerability Management jobs in Michigan?

For Director Vulnerability Management jobs in Michigan, the most frequently searched job titles are:

What job categories do people searching Director Vulnerability Management jobs in Michigan look for?

The top searched job categories for Director Vulnerability Management jobs in Michigan are:

What cities in Michigan are hiring for Director Vulnerability Management jobs?

Cities in Michigan with the most Director Vulnerability Management job openings:

Infographic showing various Director Vulnerability Management job openings in Michigan as of August 2026, with employment types broken down into 50% Full Time, and 50% Contract. Highlights an 50% In-person, and 50% Remote job distribution.

Govt. Director of IT Security

Sault Ste. Marie Tribe of Chippewa Indians

Sault Sainte Marie, MI • On-site

$120 - $180/hr

Other

Re-posted 6 days ago


Key responsibilities

  • Develop, implement, and maintain security policies and procedures to protect systems, data, and personnel.

  • Oversee security operations, including monitoring, threat detection, incident response, and managing vulnerability assessments.

  • Coordinate security training programs and ensure compliance with relevant laws, regulations, and industry standards.


Sault Ste. Marie Tribe Of Chippewa Indians rating

7.8

Company rating: 7.8 out of 10

Based on 13 frontline employees who took The Breakroom Quiz

454th of 855 rated public administrative organizations


Job description

POSITION SUMMARY:

The Director of IT Security is responsible for the resources, processes, systems, policies, procedures, and cyber strategy to protect the entire tribe, including all government, gaming, health, and enterprise divisions. This position works closely with managers and executives across the tribe to promote strong security practices and to understand potential cybersecurity vulnerabilities. The Director of IT Security is responsible for maintaining current knowledge of evolving cyber threats, new security tools, and best practices.

ESSENTIAL FUNCTIONS: (includes, but is not limited to, the following)
  • Develop, implement, and maintain comprehensive security policies and procedures to safeguard the organization’s systems, data, and people.
  • Identify, assess, and manage security risks; own the vulnerability management program including prioritization and remediation reporting.
  • Design and oversee the security architecture across on-premises and cloud environments, ensuring it aligns with business goals and industry best practices.
  • Oversee security operations and continuous monitoring across network, endpoint, and cloud systems; ensure timely detection, triage, and response to threats.
  • Establish and lead incident response plans, including testing and training; coordinate and respond to all security incidents, ensuring timely resolution and minimizing impact.
  • Define, support, and coordinate security training programs to educate employees about security policies, procedures, and best practices, and foster a culture of security awareness across the organization.
  • Manage security audits and assessments to identify vulnerabilities and weaknesses in the organization’s IT infrastructure and take corrective actions to address findings.
  • Ensure compliance with relevant laws, regulations, and industry standards (including HIPAA, PCI-DSS, MICS, CJIS, and tribal data sovereignty requirements).
  • Oversee third-party risk management, including vendor security assessments, contract security clauses, and ongoing supplier risk reviews.
  • Present security posture, risk metrics, threat landscape summaries, and program performance to the CIO, executive leadership, and Board of Directors.
  • Develop and manage the IT Security budget, collaborating with the CIO and Executive Technology Steering Committee on needs and priorities, and allocate available resources effectively to address security priorities.
  • Lead, mentor, and guide a team of IT security professionals, motivating them to deliver on the organization’s security objectives.
ADDITIONAL RESPONSIBILITIES: (includes, but is not limited to, the following)
  • Research and evaluate emerging security technologies and tools; recommend solutions to enhance the organization's security posture.
  • Define and test business continuity and disaster recovery plans for security-relevant systems; lead annual tabletop exercises.
  • Develop and maintain policies governing employee use of generative AI tools and security review of AI-powered products.
  • Partner with IT, DevOps, and engineering teams to embed security requirements into system development, cloud architecture, and deployment pipelines.
CONTACTS:

Immediate peers, peers in other departments, immediate supervisor/manager, managers in other departments, Executives, Board of Directors, customers, and outside vendors/service providers.

PHYSICAL REQUIREMENTS:

Position medium with lifting of 50 pounds maximum and frequent lifting and carrying up to 25 pounds. Physical factors include constant sitting, near and midrange vision, typing; frequent walking, use of hearing, color vision, and driving; and occasional carrying/lifting, pushing/pulling, climbing, stooping, kneeling, crawling, reaching, manual handling, use of smell, far vision/depth perception, field of vision, and bending. Working conditions include occasional exposure to weather, heat, cold, wet/humidity, noise, vibration, and air quality. Potential hazards include constant computer use and occasional exposure to moving mechanical parts, electric shock, high exposed places, chemicals, client contact, and medical equipment use.

Education:

Education: Bachelor’s Degree in Computer Science, Information Technology, or Cybersecurity field required. Five years demonstrated ability in relevant experience may be considered in lieu of degree.

Experience:

Experience: Five years of experience overseeing information technology or cybersecurity team for a medium-to-large organization required, in addition to above stated education requirements.

Certification/License:

Certification/License: Must have a valid driver’s license and be insurable by the Sault Tribe Insurance Department. Must comply with annual driver’s license review and insurability standards with the Sault Tribe Insurance Department. Must undergo a criminal background investigation done under the rules of the National Indian Gaming Commission. Must comply with the Sault Tribe’s Drug-Free Workplace Policy which may include random drug tests.

Knowledge, Skills, and Abilities:

Knowledge, Skills, and Abilities: In-depth knowledge of cybersecurity frameworks (e.g., NIST Cybersecurity Framework, NIST 800 series, CIS Controls) and best industry practices. Expertise in cybersecurity tools and technologies, including firewalls, intrusion detection/prevention systems (IDS/IPS), endpoint detection and response (EDR), data encryption, data backup/restoration solutions, patch management, and security information and event management (SIEM) solutions. Thorough understanding of risk assessment methodologies, threat modeling, cybersecurity tabletop exercises, and vulnerability management principles. Strong knowledge of IT security policies, procedures, and compliance regulations relevant to the organization (including HIPAA, PCI-DSS, GDPR, MICS, CJIS, and tribal data sovereignty concerns). Solid understanding of Identity and Access Management (IAM) principles, access controls, Zero Trust architecture, and modern user authentication methods. Solid understanding of data and voice networking, wireless and Wi-Fi, internet connectivity, desktops and peripheral devices, Microsoft tools/servers/operating systems, email, and cloud technologies and services. Proven ability to design, implement, and maintain a comprehensive cybersecurity architecture across on-premises and cloud environments. Ability to create and maintain an Incident Response Plan and lead and manage security incident response activities, including investigation, containment, eradication, and recovery. Excellent written and verbal communication skills to present complex security information, risk posture, and program metrics to both technical and non-technical audiences, including executive leadership and the Board. Strong leadership skills to motivate, mentor, and guide a team of IT security professionals. Skilled in developing and managing the IT security budget effectively. Strong analytical and problem-solving skills to identify, assess, and mitigate cybersecurity risks. Deep understanding of IT infrastructure, networks, and operating systems. Ability to develop and implement a long-term cybersecurity strategy aligned with the organization's overall goals. Proven negotiation skills to secure resources and advocate for cybersecurity initiatives. Knowledge of third-party risk management principles, including vendor security assessments and supplier risk evaluation. Commitment to staying current on emerging cybersecurity threats, technologies, and regulatory changes. Native American preferred.

This job description outlines the general scope and level of responsibilities associated with the position. It is not intended to be an employment contract, nor does it represent a comprehensive list of all duties, responsibilities, or requirements. The Sault Ste. Marie Tribe of Chippewa Indians reserves the right to modify, add, reassign, or combine job duties or positions, in whole or in part, at any time.

#J-18808-Ljbffr

What Sault Ste. Marie Tribe Of Chippewa Indians employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom