1

Information Security Manager Jobs in Michigan (NOW HIRING)

Summary Statement The AVP of Information Security leads the company's cybersecurity strategy and ... Manage the cybersecurity governance program and regularly report risk metrics and status updates to ...

Overview The Manager, IT Security, is a key leadership role within the IT Security organization, reporting directly to the Director, Information Security. This position is responsible for leading a ...

Overview The Manager, IT Security, is a key leadership role within the IT Security organization, reporting directly to the Director, Information Security. This position is responsible for leading a ...

Establish corporate standards, vendor strategies, and lifecycle management for enterprise-wide ... Experience: 5+ years of progressive experience in Information Security * Strategic Expertise:

The role involves managing information security risks, collaborating with project teams on security certifications, and maintaining consistency in information protection programs. Responsibilities ...

Showing results 21-40

Information Security Manager information

See Michigan salary details

$54.5K

$118.6K

$174.3K

How much do information security manager jobs pay per year?

As of Sep 3, 2026, the average yearly pay for information security manager in Michigan is $118,628.00, according to ZipRecruiter salary data. Most workers in this role earn between $96,300.00 and $139,900.00 per year, depending on experience, location, and employer.

What is an information security manager?

The job duties of an information security manager involve overseeing the effort to protect networks, computers, and data from cyber attacks, viruses, and other security breaches. In this career, your responsibilities include creating IT security features that can protect your company’s data. In addition to building systems to protect against hacking, you must also be ready to lead the response when a security breach occurs. As an information security manager, you are responsible for creating and implementing practices and policies that employees can use to protect their employer's networks and data.

What does an information security manager do?

An Information Security Manager is responsible for overseeing an organization's information security program, ensuring that sensitive data is protected from threats such as cyberattacks and unauthorized access. They develop and implement security policies, conduct risk assessments, and manage teams to respond to security incidents. Information Security Managers also ensure compliance with relevant laws and regulations and regularly educate staff on best security practices. Their role is critical in maintaining the confidentiality, integrity, and availability of information assets.

What are some common challenges information security managers face when implementing new security protocols within an organization?

Information Security Managers often encounter resistance to change from staff when introducing new security protocols, as these measures can sometimes disrupt established workflows. Balancing security requirements with business needs is also a frequent challenge, requiring negotiation and effective communication across departments. Additionally, staying ahead of constantly evolving threats and ensuring that all team members are properly trained can be demanding, but overcoming these challenges is crucial for maintaining a robust security posture.

What is the difference between Information Security Manager vs Security Analyst?

AspectInformation Security ManagerSecurity Analyst
CertificationsCISSP, CISM, CISACompTIA Security+, GIAC Security Essentials
Work EnvironmentOversees security policies, manages teams, strategic planningMonitors security systems, analyzes threats, implements security measures
Employer & Industry UsageUsed in organizations with dedicated security teams across industriesCommon in IT departments, security operations centers

The main difference is that the Information Security Manager focuses on strategic security management and team leadership, while the Security Analyst handles day-to-day security monitoring and threat analysis. Both roles require relevant certifications and are vital in maintaining organizational security, but they differ in scope and responsibilities.

What are the most commonly searched types of Information Security jobs in Michigan?

The most popular types of Information Security jobs in Michigan are:

What are popular job titles related to Information Security Manager jobs in Michigan?

For Information Security Manager jobs in Michigan, the most frequently searched job titles are:

What job categories do people searching Information Security Manager jobs in Michigan look for?

The top searched job categories for Information Security Manager jobs in Michigan are:

What cities in Michigan are hiring for Information Security Manager jobs?

Cities in Michigan with the most Information Security Manager job openings:

Infographic showing various Information Security Manager job openings in Michigan as of August 2026, with employment types broken down into 100% Full Time. Highlights an 80% In-person, and 20% Remote job distribution, with an average salary of $118,628 per year, or $57 per hour.

AVP, Information Security

Amerisure Mutual Insurance Company

Farmington Hills, MI • On-site

Full-time

Medical, Retirement, PTO

Posted 7 days ago


Job description

Amerisure creates exceptional value for its partners, policyholders, and employees. As a property and casualty insurance company, Amerisure's promise to our partner agencies and policyholders begins with a comprehensive line of insurance products designed to protect businesses, as well as the health and safety of every employee. With an A.M. Best "A" (Excellent) rating, Amerisure serves mid-sized commercial enterprises focused in construction, manufacturing and healthcare. Ranked as one of the top 100 Property & Casualty companies in the United States, we proudly manage nearly $1 Billion of Direct Written Premium and maintain $1.21 billion in surplus.
Amerisure is currently recruiting for an AVP, Information Security that can do a 3-day hybrid approach onsite in our Farmington Hills office. The ideal candidate will also possess the following skill set.
Summary Statement
The AVP of Information Security leads the company's cybersecurity strategy and operations, including the strategy for managing cyber risks, and the protection of information assets through comprehensive awareness, compliance, security operations, risk management, and incident response initiatives. This role delivers practical, risk-based solutions by continuously validating technical controls via vulnerability assessments, independent evaluations, and penetration testing. Continuously assesses the external threat environment to drive enhancements to Amerisure's security posture, supporting business objectives, and maintaining regulatory compliance.
Essential Tasks/Major Duties
  • Lead and direct staff in area of responsibility with an emphasis on talent management and succession planning in accordance with the company's strategic direction.
  • Serves as advisor to Chief Information Officer (CIO) and executive leadership team on cybersecurity risks, and posture. Provides regular reporting on the status of the cybersecurity program to senior business leaders, the board of directors, and regulators.
  • Designs and oversees the development and implementation of enterprise security policy, standards, guidelines, and procedures to maintain security posture, ensuring ongoing maintenance of security practices and consistency with best practices and regulatory frameworks (NYDFS, MI DIFS, NIST, NAIC).
  • Oversee the identification, assessment, and mitigation of cybersecurity risks across the organization, including third-party risk management.
  • Manage the cybersecurity governance program and regularly report risk metrics and status updates to executive leadership and relevant committees.
  • Conduct enterprise risk assessments and ensure findings are tracked to resolution, with ownership assigned and progress monitored.
  • Creates training programs of security policies, best practices and procedures to ensure that all staff has an understanding of how they contribute to the overarching security of the organization.
  • Collaborates with senior Business and IT leadership to define and evolve information security standards and controls, and mentors Security staff and associated management teams on the security process.
  • Collaborates with the Enterprise Risk Management (ERM) team and Business Continuity Program office to integrate cybersecurity measures into business resilience, including risk management and continuity planning.
  • Oversees a network of security staff and security vendors to safeguard the company's assets, intellectual property and computer systems.
  • Direct the security operations center (SOC), overseeing threat detection, threat hunting, incident response, digital forensics, and vulnerability management.
  • Maintains relationships with local, state and federal law enforcement and other related government agencies.
  • Leads cross-functional cyber incident response program and investigations, including tabletop and other preparedness exercises.
  • Works with outside consultants as appropriate for independent security audits.
  • Champion the adoption of cutting-edge security technologies and proactive defense measures to ensure operational excellence and resilience against evolving cyber threats.

Knowledge, Skills & Abilities
  • Degree in Computer Science or related Field or the equivalent combination of education and/or relevant experience. Master's degree in Cybersecurity, Information Assurance, Business Administration (MBA), or a related discipline, preferred.
  • Minimum of 10 years of IT experience, including at least 5 years in management roles with responsibilities in budgeting and forecasting.
  • Minimum of 8 years of experience in Information Security, with expertise in analysis, design, and integration of security measures into applications, systems, and networks within a heterogeneous architecture.
  • One or more of the following Certifications: CISSP, CCISO, CISM, CRISC, GSEC or other GIAC specialization, CEH, CompTIA Security+, SSCP.
  • Insurance or financial services industry experience preferred, with an understanding of regulatory and compliance nuances specific to the sector.
  • In-depth knowledge of information security standards, processes, policies, frameworks, and metrics, covering network security, application security, data security, and cloud security.
  • Working knowledge of IT, Operating Systems, Network systems, Cloud and Operational Procedures, secure systems development lifecycle (S-SDLC), DevSecOps pipelines, business continuity planning, auditing, and risk management, as well as contract and vendor management.
  • Expert understanding and experience with regulatory requirements impacting the insurance sector, such as NAIC Insurance Data Security Model Law, GLBA, HIPAA, NY DFS Cybersecurity Regulation, and state privacy laws (e.g., MI DIFS) compliance.
  • Current and comprehensive awareness of emerging cyber threats, threat actor tactics, techniques, and procedures (TTPs), and security threat intelligence feeds.
  • Extensive experience in defining and executing audit processes to ensure compliance with information security standards and controls.
  • Exceptional verbal and written communication skills, with the ability to articulate technical security issues and concepts to both technical and non-technical staff, including employees, IT management, governance committee members, and senior leadership.
  • Leads strategic planning, budgeting, and resource management initiatives to develop, promote, and implement an executive vision for information security.
  • Proficient in driving cultural change and influencing all levels of the organization.
  • Demonstrated executive presence with the capability to represent cybersecurity in business forums.
  • Strong analytical skills to identify root causes of security incidents and risks.
  • Exemplary judgment in high-pressure situations, including incident response scenarios.
  • Data-driven decision-making to prioritize security initiatives based on business impact.

#LI-BR1
Just as we are committed to creating exceptional value for our Partners For Success® agencies and policyholders, Amerisure also remains committed to being an employer of choice. We reinforce this commitment by adhering to an Employee Value Proposition that, in part, is provided through a competitive total rewards package. This package includes competitive base pay, performance-based incentive pay, comprehensive health and welfare benefits, a 401(k) savings plan with profit sharing, and generous paid time off programs. We also offer flexible work arrangements to promote work-life balance. Recognized as one of the Best and Brightest® Companies to Work For in the Nation and one of Business Insurance magazine's Best Places to Work in Insurance, we provide a workplace that fosters excellence and professional growth. If you are looking for a collaborative and rewarding career, Amerisure is looking for you.
Amerisure Mutual Insurance Company is an Equal Employment Opportunity employer. Amerisure provides equal employment opportunities to all employees and applicants without regard to race, color, religion, sex (to include sexual orientation and gender identity), national origin, age, disability, genetic information, veteran status, or any other protected characteristic under applicable federal, state, or local laws. Amerisure complies with all applicable laws governing nondiscrimination in employment in all locations where the company operates. This policy applies to all terms and conditions of employment, including recruiting, hiring, placement, promotion, termination, layoff, recall, transfer, leaves of absence, compensation, and training. Amerisure prohibits harassment or discrimination of any kind and is committed to maintaining a workplace free from unlawful harassment or discrimination. Amerisure prohibits retaliation against anyone who reports discrimination, participates in an investigation, or opposes unlawful practices. Any improper interference with an employee's ability to perform their job duties may result in disciplinary action, up to and including termination.