1

Information Security Engineer Jobs in Michigan (NOW HIRING)

Information Security Engineer #1057679 Who we are looking for: You will be responsible for implementing and monitoring technical security controls to ensure compliance with our requirements and ...

Auto-Owners Insurance, a top-rated insurance carrier, is seeking a motivated individual to join our IT Division as an IT Security Engineer. This position is part of the IT Security department and is ...

next page

Showing results 1-20

Information Security Engineer information

See Michigan salary details

$59.3K

$110.5K

$166.9K

How much do information security engineer jobs pay per year?

As of Jul 20, 2026, the average yearly pay for information security engineer in Michigan is $110,547.00, according to ZipRecruiter salary data. Most workers in this role earn between $91,500.00 and $126,400.00 per year, depending on experience, location, and employer.

What are the key skills and qualifications needed to thrive as an Information Security Engineer, and why are they important?

To thrive as an Information Security Engineer, you need a solid understanding of network security, risk assessment, cryptography, and incident response, usually backed by a degree in computer science or a related field. Familiarity with security tools such as SIEM platforms, firewalls, intrusion detection systems, and certifications like CISSP or CEH are typically required. Strong problem-solving abilities, attention to detail, and effective communication skills help you collaborate with teams and manage threats proactively. These skills and qualifications are vital to protecting organizational assets, ensuring compliance, and minimizing security risks in an ever-evolving threat landscape.

What are Information Security Engineers?

Information Security Engineers are professionals responsible for protecting an organization’s computer systems, networks, and data from security threats and cyberattacks. They design, implement, and maintain security protocols, monitor systems for vulnerabilities, and respond to security incidents. Their work often involves conducting risk assessments, developing security policies, and ensuring compliance with industry standards and regulations. Information Security Engineers play a critical role in maintaining the confidentiality, integrity, and availability of information assets.

What are some common challenges Information Security Engineers face when collaborating with other departments?

Information Security Engineers often work closely with teams like IT, software development, and compliance. A common challenge is balancing security protocols with business needs, as other departments may prioritize speed or user experience over stringent security measures. Effective communication and the ability to explain technical risks in business terms are crucial for gaining buy-in and implementing robust security solutions. Additionally, keeping up with evolving threats while ensuring that all teams follow security best practices can be demanding but is key to organizational safety.

What Does an Information Security Engineer Do?

An information security engineer works closely with information security specialists to analyze an organization’s computer and network system and identify and fix any potential issues related to fraud, cyber attacks, leaked data, or other security breaches. Your security engineering duties include performing routine maintenance and upgrades on security systems and programs, fixing issues brought to you by information security specialists, and researching solutions to improve current systems. You carry out your responsibilities in the information technology department of an organization, but you may also report to other departments to update management on the organization’s security status.

What engineers make $500,000?

Senior-level information security engineers with extensive experience, advanced certifications (such as CISSP or CISM), and expertise in areas like threat management or security architecture can earn salaries approaching or exceeding $500,000 annually, especially in high-demand industries or senior leadership roles. Compensation often includes bonuses, stock options, or other incentives. Such roles typically require strong technical skills, leadership ability, and a track record of managing complex security programs.

Can you make $500,000 a year in cyber security?

Information Security Engineers with extensive experience, advanced certifications, and specialized skills in areas like penetration testing or security architecture can potentially earn salaries approaching or exceeding $500,000 annually, especially in high-cost-of-living regions or senior leadership roles. However, such compensation levels are uncommon and typically require many years of expertise, leadership responsibilities, or executive positions within large organizations. Most cybersecurity professionals earn significantly less, with salaries varying based on location, experience, and industry.

What is the difference between Information Security Engineer vs Network Security Engineer?

AspectInformation Security EngineerNetwork Security Engineer
CertificationsCompTIA Security+, CISSP, CEHCCNA Security, CISSP, CompTIA Security+
Work EnvironmentDesigns security systems, analyzes threats, implements security protocolsConfigures and manages network security devices, monitors network traffic
Employer & Industry UsageTech companies, finance, government agenciesTelecom, enterprise IT, cybersecurity firms

While both roles focus on protecting digital assets, the Information Security Engineer develops comprehensive security strategies and policies, whereas the Network Security Engineer primarily manages network defenses and infrastructure. Understanding these distinctions helps organizations assign the right security responsibilities and professionals.

Can I make $200,000 a year in cyber security?

Information Security Engineers with extensive experience, advanced certifications, and specialized skills such as penetration testing or security architecture can potentially earn $200,000 or more annually. Salaries vary based on location, industry, and company size, with senior roles and those in high-demand areas typically commanding higher compensation.

What does an information security engineer do?

An information security engineer designs, implements, and manages security measures to protect an organization’s computer systems and networks from cyber threats. They analyze vulnerabilities, develop security protocols, and use tools like firewalls and intrusion detection systems to safeguard data. Certification such as CISSP or CEH and knowledge of security frameworks are often important in this role.
What are popular job titles related to Information Security Engineer jobs in Michigan? For Information Security Engineer jobs in Michigan, the most frequently searched job titles are:
What job categories do people searching Information Security Engineer jobs in Michigan look for? The top searched job categories for Information Security Engineer jobs in Michigan are:
Infographic showing various Information Security Engineer job openings in Michigan as of July 2026, with employment types broken down into 100% Full Time. Highlights an 100% In-person job distribution, with an average salary of $110,547 per year, or $53.1 per hour.
Information Security Engineer

$80K/yr

Full-time

Medical, Dental, Vision, Life, Retirement, PTO

Posted 10 days ago


Job description

JOB TITLE: Information Security Engineer
Supervisor: Chief Information Officer
Status: Exempt
Salary: Starting at $80,988
Location: Fulton, MI
Posting Closes: 07/24/2026 at 9am
Excellent Benefit Package for Eligible Team Members
  • Employees contribute minimal cost sharing towards medical, dental, and vision insurance
  • Employer Paid premiums on short term disability, life insurance and accidental death and dismemberment
  • Flexible Spending Account for Medical Reimbursement
  • 100% Employer paid Short Term and Long Term Disability, Life Insurance, and Accidental Death and Dismemberment Insurance
  • Dependent Care FSA
  • 401K Plan with eligible match
  • MERS Plan for Law Enforcement
  • A generous paid time off program where all employees begin earning accrued paid time off immediately upon hire
  • Generous Tuition Reimbursement Program with Educational Release Time
  • Thirteen Paid Holidays
  • Employee wellness and fitness programs
  • Opportunities to participate in NHBP Sponsored activities
  • Public Student Loan Forgiveness eligible employer
POSITION SUMMARY
This position is responsible for supporting the information security processes and security management incident response policy and to help create policies that protect the Tribe in data confidentiality, integrity, and availability. This position will maintain the technical mechanisms that enable these controls. This person is responsible for cyber security as it relates to monitoring, investigation, and reporting of security related events.
The Information Security Engineer leads the Information Security team and will report to the Chief Information Officer. The primary responsibilities are to support the Information Security process and Security Management Incident Response policy and to implement process to protect the Nottawaseppi Huron Band of the Potawatomi's (NHBP) data, maintain confidentiality, integrity, and availability, as well as maintain the technical mechanisms that enable these controls. This position is responsible for Cyber Security as it relates to monitoring, investigating and reporting of security related events. The Information Security Engineer builds and maintains IT security solutions for the Tribe.
ESSENTIAL FUNCTIONS
The Nottawaseppi Huron Band of the Potawatomi reserves the right to change, amend, add, delete and otherwise assign any and all duties, responsibilities, and positions titles as it deems necessary to meet the needs of the government.
  1. Review security implications of new applications and advise appropriately.
  2. Monitor and manage network security logs.
  3. Respond to technology security related external audits and compliance regulations.
  4. Balance technology security practice with institutional business practice in a way that causes the least amount of end user interruption.
  5. Validate and maintain Security Incident Management and Response policy to address potential threats.
  6. Investigate and respond to security incidents, conduct investigations and mount incident responses according to the Security Incident Management and Response policy.
  7. Provide management and guidance to security incident response team for handling information security incidents.
  8. Coordinate efforts among multiple business units in relation to security incident response efforts.
  9. Provide timely and relevant updates and investigation findings to IT management in response to security incidents and to help improve security posture.
  10. Work with the technical team to recover data after a security breach.
  11. Perform vulnerability testing, risk analyses and security assessments using industry standard security analysis tools, criteria, and penetration testing.
  12. Responsible for ensuring successful security and technical compliance of industry compliance standards including, but not limited to, HIPAA and HITECH standards.
  13. Ensuring Nottawaseppi Huron Band of the Potawatomi meet or exceed security standards on internal or external audits.
  14. Mitigate security vulnerabilities by implementing applicable solutions and tools.
  15. Responsible for monitoring and ensuring end-users are adhering to IT policies, standards, amp; best practices.
  16. Recognizing and addressing security vulnerabilities in workstations, internal and external servers, network devices, and applications.
  17. Ensure all servers and other IT related equipment are hardened to compliance and/or industry standards.
  18. Install, configure and manage firewalls, intrusion detection systems, VPNs, and other security devices.
  19. Collaborate with colleagues on authentication, authorization and encryption solutions.
  20. Evaluate new technologies and processes that enhance security capabilities.
  21. Develop, implement and maintain security plans and policies.
  22. Work with entire Information Technology team to develop, implement, and maintain Information Technology Disaster Recovery plan.
  23. Research emerging technologies and maintain awareness of current security risks in support of security enhancement and development efforts.
  24. Build, deploy, and track security measurements for computer systems and networks.
  25. Perform other duties as assigned.
The above statements are intended to describe the general nature and level of work being performed by individuals assigned to this position. They are not intended to be an exhaustive list of all duties, responsibilities, and skills required of personnel so classified.
MINIMUM QUAILIFICATIONS
An applicant’s education, training and experience must be sufficient to demonstrate that the applicant possesses the ability to successfully perform each of the essential functions. The requirements listed below are generally representative of the education, experience, and skills and/or ability required to enable one to successfully perform the essential functions associated with this position:
  1. Must satisfactorily pass onsite proficiency test.
  2. A Bachelor’s degree in related field from accredited institution, or equivalent work experience.
  3. Five or more years' experience working in an Information Technology related position.
  4. Experience collecting, reviewing, and acting on system and security logs.
  5. Experience with enterprise computer networks and vulnerabilities.
  6. Experience with operating systems across all platforms, including mobile devices.
  7. Direct experience with anti-virus software, intrusion detection, firewalls and content filtering.
  8. Knowledge of risk assessment tools, technologies and methods.
  9. Knowledge of disaster recovery, computer forensic tools, technologies and methods.
  10. Experience with vulnerability management, identity and access management, application security, and encryption technologies.
  11. Knowledge of industry best practices regarding cybersecurity penetration testing.
  12. Knowledge of security intrusion/breech hardening concepts.
  13. Experience designing secure networks, systems and application architectures.
  14. Experience with Incident handling procedures.
  15. Ability to work independently and communicate with all levels of management and end users in written and verbal form.
  16. Excellent analytical skills, organizational skills, communication skills, ingenuity and the ability to work as part of a team.
  17. Must be available 24x7 to address technology concerns as they arise.
  18. Must possess a valid driver’s license and be GSA certifiable. Must be able to travel, if required.
  19. Must be able to pass a background check and drug screening.
  20. Ability to understand, gain knowledge, and appreciate the difference with Native American culture and customs.
  21. Confidentiality is required.
PREFERRED QUALIFICATIONS
  1. Five or more years' experience within incident response.
  2. Professional experience in a system administration role supporting multiple platforms and applications.
  3. Current security related certification, such as CEH, CIPP, or CCFP.
  4. Demonstrated experience with hardening techniques, CVEs, network protocols, chain of custody, and incident response report writing.
  5. Strong understanding of endpoint security solutions to include File Integrity Monitoring and Data Loss Prevention
  6. Knowledge of mobile security, including experience with Mobile Device Management and implementing security controls.
  7. Experience working with security vendors, including submitting feature requests, evaluating products and analyzing security functionality of a diverse set of products.
  8. Experience with Advanced Persistent Threats (APT), phishing and social engineering, network access controllers (NAC), gateway anti-malware and enhanced authentication.
  9. Experience with network and host security monitoring, detection and response tools and capabilities including IDSes, malware sandboxes, log correlation engines, flow collectors, memory forensics, etc.
  10. Experience planning, researching and developing security policies, standards and procedures.
  11. Demonstrated experience with a wide range of network security tools, including attack toolsets.
SECURITY SENSITIVE
This position may contain information that is security sensitive and thereby subject to additional provisions. All information will be protected under IHS/HIPAA, CJIS, and other rules and regulations as required by the NHBP IT security policies.
INDIAN PREFERENCE
Tribal preference will be applied in accordance with the NHBP Indian Preference in Employment Code which requires that preference in employment be afforded to NHBP members, spouse/parents of NHBP members and Native Americans who meet the minimum qualifications and can successfully perform the essential functions for the position.