1

Operational Risk Manager Jobs in Detroit, MI (NOW HIRING)

Coordinate and track comprehensive due diligence across financial, legal, regulatory, operational ... Governance, Risk & Compliance * Manage the deal execution, providing centralized governance and ...

Coordinate and track comprehensive due diligence across financial, legal, regulatory, operational ... Governance, Risk & Compliance * Manage the deal execution, providing centralized governance and ...

Retail Stores - Risk Associate

Troy, MI · On-site

$14.25 - $17/hr

THE DEPARTMENT Our Enterprise Risk Management department is responsible for minimizing loss while respecting people, brand and operations. THE OPPORTUNITY With a special focus on merchandise security ...

next page

Showing results 1-20

Operational Risk Manager information

See Detroit, MI salary details

$46.5K

$119.5K

$234.6K

How much do operational risk manager jobs pay per year?

As of Jun 22, 2026, the average yearly pay for operational risk manager in Detroit, MI is $119,494.00, according to ZipRecruiter salary data. Most workers in this role earn between $72,800.00 and $157,400.00 per year, depending on experience, location, and employer.

What Does an Operational Risk Manager Do?

An operational risk manager works to identify and limit the risk associated with a company’s operations. As an operational risk manager, your responsibilities involve assessing business operations, identifying issues, and creating reports on your findings. You then help develop policies and implement changes to lessen operational risks. Other duties include continually monitoring the business to find potential new threats and ensuring company compliance with laws and regulations.

What are the 4 pillars of operational risk management?

The four pillars of operational risk management are risk identification, risk assessment, risk mitigation, and risk monitoring. An Operational Risk Manager uses these pillars to develop strategies that minimize potential losses from internal processes, people, systems, or external events, often utilizing tools like risk dashboards and frameworks such as Basel II. Mastery of these pillars helps ensure organizational resilience and compliance.

What does an operational risk manager do?

An operational risk manager identifies, assesses, and mitigates risks that could disrupt a company's operations, such as process failures, fraud, or system outages. They develop risk management frameworks, monitor key risk indicators, and ensure compliance with regulations to protect the organization’s assets and reputation.

Do risk managers make good money?

Operational Risk Managers typically earn competitive salaries that vary by industry, experience, and location. According to industry data, the median annual salary ranges from $80,000 to over $130,000, with additional compensation such as bonuses and benefits. Certifications like FRM or ORM can enhance earning potential in this field.

What are some common challenges faced by Operational Risk Managers in maintaining effective risk controls across different departments?

Operational Risk Managers often encounter challenges in ensuring consistent risk controls due to varying processes, priorities, and risk appetites across departments. Communication gaps and resistance to change can make it difficult to implement standardized procedures. Successfully overcoming these challenges involves building strong cross-functional relationships, conducting regular training, and fostering a risk-aware culture to ensure alignment on risk management practices throughout the organization.

What are the key skills and qualifications needed to thrive as an Operational Risk Manager, and why are they important?

To thrive as an Operational Risk Manager, you need a solid understanding of risk assessment, regulatory compliance, and internal controls, typically supported by a degree in finance, business, or a related field. Familiarity with risk management frameworks, GRC (governance, risk, and compliance) systems, and certifications such as FRM or ORM are highly valued. Strong analytical thinking, attention to detail, and effective communication skills set top performers apart in this role. These competencies are crucial for identifying, mitigating, and communicating operational risks, ensuring organizational stability and regulatory adherence.

What is the difference between Operational Risk Manager vs Risk Analyst?

AspectOperational Risk ManagerRisk Analyst
CertificationsCFA, FRM, or similarCFA, FRM, or similar
Work EnvironmentFinancial institutions, banks, insurance companiesFinancial firms, consulting, corporate risk teams
ResponsibilitiesIdentify, assess, and mitigate operational risks; develop risk frameworksAnalyze risk data, support risk assessments, prepare reports

The Operational Risk Manager focuses on managing and mitigating operational risks within organizations, often holding certifications like CFA or FRM. In contrast, Risk Analysts primarily analyze risk data and support risk management processes. Both roles are vital in financial sectors and share similar credentials, but the Operational Risk Manager has a broader responsibility for risk mitigation strategies.

What are the 5 steps of orm?

In operational risk management (ORM), the five key steps are: identifying risks, assessing their likelihood and impact, implementing controls to mitigate risks, monitoring the effectiveness of these controls, and reviewing and improving the risk management process regularly. These steps help operational risk managers proactively manage potential threats to an organization’s operations.
What are the most commonly searched types of Operational Risk jobs in Detroit, MI? The most popular types of Operational Risk jobs in Detroit, MI are:
What are popular job titles related to Operational Risk Manager jobs in Detroit, MI? For Operational Risk Manager jobs in Detroit, MI, the most frequently searched job titles are:
What job categories do people searching Operational Risk Manager jobs in Detroit, MI look for? The top searched job categories for Operational Risk Manager jobs in Detroit, MI are:
What cities near Detroit, MI are hiring for Operational Risk Manager jobs? Cities near Detroit, MI with the most Operational Risk Manager job openings:
Infographic showing various Operational Risk Manager job openings in Detroit, MI as of June 2026, with employment types broken down into 83% Full Time, 15% Part Time, and 2% Contract. Highlights an 92% Physical, 2% Hybrid, and 6% Remote job distribution, with an average salary of $119,494 per year, or $57.4 per hour.
Power and Utilities OT Operational Technology-Manager

Power and Utilities OT Operational Technology-Manager

Deloitte

Detroit, MI

Other

Posted 16 days ago


Deloitte rating

8.1

Company rating: 8.1 out of 10

Based on 86 frontline employees who took The Breakroom Quiz

58th of 138 rated financial services


Job description

Power and Utilities OT (Operational Technology) - Manager

Position Summary

Are you interested in working in a dynamic environment that offers opportunities for professional growth and new responsibilities?  If so, Deloitte & Touche LLP could be the place for you. Traditional security programs have often been unsuccessful in unifying the need to both secure and support technology innovation required by the business. Join Deloitte's Cyber team and become a member of the largest group of cybersecurity professionals worldwide.

Recruiting for this role ends on 12/21/2026

Work you'll do

Responsibilities:

  • Identify and evaluate complex business and technology risks
  • Develop remediation methods to mitigate risks
  • Demonstrate problem solving, critical thinking and logical structuring skills
  • Assist in the selection and tailoring of approaches, methods and tools to support service offering or industry projects
  • Actively participate in decision making with engagement management and seek to understand the broader impact of current decisions
  • Facilitate use of technology-based tools or methodologies to review, design and/or implement products and services
  • Identify opportunities to improve engagement profitability and manage engagement economics
  • Demonstrate ability to with identify and address client needs: building solid relationships with clients; developing an awareness of Firm services; communicating with the client in an organized and knowledgeable manner; delivering clear requests for information; demonstrating flexibility in prioritizing and completing tasks; and communicating potential conflicts to the manager
  • Demonstrate a general knowledge of market trends, competitor activities, Deloitte Advisory products and service lines

Required Skills:

  • 7+ years of demonstrate advanced understanding and experience governing and implementing power and utility regulations and standards including:
    • North American Electric Reliability Corporation (NERC) Critical Infrastructure Protection (CIP)
    • NERC Operations and Planning (O&P)
    • Federal Energy Regulatory Commission
    • Transportation Security Administration (TSA) Cybersecurity
    • IEC 62443 standard - Securing Industrial Automation and Control Systems (IACS)
    • Nuclear Energy Institute (NEI) - NEI 08-09, 10 CFR 73.54
  • 7+ years of demonstrate advanced understanding and cyber risk management in at least two of the following areas:
    • SCADA with experience in securing ICS (Industrial Control Systems) security
    • Internet of Things (IOT) architecture and security
    • OT (Operational Technology) security
    • NERC CIP-015 - Internal Network Security Monitoring (INMS)
    • Embedded systems security
    • OT network segmentation (zones/conduits), jump hosts, secure remote access
    • Passive OT discovery/asset inventory, OT IDS, SIEM integration/use cases
    • Incident response in OT (containment with availability/safety constraints)
    • Vendor/OEM risk management, SBOM/patch constraints, compensating controls
    • Security experience in the field environment within the Power, Utilities & Renewables, Oil & Gas, or Industrial Products & Construction industry sectors
  • 7+ years of demonstrate advanced understanding of business processes and cyber risk management in an OT / SCADA environment in two or more areas such as:
    • Cyber security
    • Secure Supply Chain
    • Security Analytics
    • Security Operations Centers
    • Vulnerability and Threat Management
    • Data Security
    • Secure Dev Ops
    • Business continuity management
    • Familiarity with industry standards and regulatory requirements around cyber risk management (e.g., ISO 27001, IEC 62443, NIST CSF)
  • Limited sponsorship opportunities may be available

Additional Requirements:

  • Ability to travel up to 50%, on average, based on the work you do and the clients and industries/sectors you serve
  • Locations include: Houston, Dallas, Cleveland, Detroit, St. Louis, Pittsburgh, Boston, Charlotte, Atlanta, Miami, Memphis, Denver, Phoenix, Salt Lake City, Los Angeles, San Diego, San Franciso, Seattle.  Must be within a reasonable commute and willing to work part-time in the Deloitte and/or client offices.

Preferred:

  • Minimum of 4 years working in an OT environment (e.g. OT security, ICS security, IOT security, SCADA, etc.)
  • Minimum 4 years designing security for infrastructure, network and application architectures
  • Experience in the Power Utilities & Renewables, Oil & Gas, or Industrial Products & Construction sector
  • Demonstrated experience working with cloud platforms (AWS, Azure)
  • 5+ years implementing security solutions
  • BA/BS in cyber security, information security, engineering, computer science, information technology, information management, information sciences, business administration, or related field preferred
  • CISSP, CISM, or CISA certification a plus
  • Excellent verbal and written communication
Information for applicants with a need for accommodation: https://www2.deloitte.com/us/en/pages/careers/articles/join-deloitte-assistance-for-disabled-applicants.html

The wage range for this role takes into account the wide range of factors that are considered in making compensation decisions including but not limited to skill sets; experience and training; licensure and certifications; and other business and organizational needs. The disclosed range estimate has not been adjusted for the applicable geographic differential associated with the location at which the position may be filled. At Deloitte, it is not typical for an individual to be hired at or near the top of the range for their role and compensation decisions are dependent on the facts and circumstances of each case. A reasonable estimate of the current range is $134,500 to $265,100.

You may also be eligible to participate in a discretionary annual incentive program, subject to the rules governing the program, whereby an award, if any, depends on various factors, including, without limitation, individual and organizational performance.

#CyberES26


Qualifications:

Power and Utilities OT (Operational Technology) - Manager

Position Summary

Are you interested in working in a dynamic environment that offers opportunities for professional growth and new responsibilities?  If so, Deloitte & Touche LLP could be the place for you. Traditional security programs have often been unsuccessful in unifying the need to both secure and support technology innovation required by the business. Join Deloitte's Cyber team and become a member of the largest group of cybersecurity professionals worldwide.

Recruiting for this role ends on 12/21/2026

Work you'll do

Responsibilities:

  • Identify and evaluate complex business and technology risks
  • Develop remediation methods to mitigate risks
  • Demonstrate problem solving, critical thinking and logical structuring skills
  • Assist in the selection and tailoring of approaches, methods and tools to support service offering or industry projects
  • Actively participate in decision making with engagement management and seek to understand the broader impact of current decisions
  • Facilitate use of technology-based tools or methodologies to review, design and/or implement products and services
  • Identify opportunities to improve engagement profitability and manage engagement economics
  • Demonstrate ability to with identify and address client needs: building solid relationships with clients; developing an awareness of Firm services; communicating with the client in an organized and knowledgeable manner; delivering clear requests for information; demonstrating flexibility in prioritizing and completing tasks; and communicating potential conflicts to the manager
  • Demonstrate a general knowledge of market trends, competitor activities, Deloitte Advisory products and service lines

Required Skills:

  • 7+ years of demonstrate advanced understanding and experience governing and implementing power and utility regulations and standards including:
    • North American Electric Reliability Corporation (NERC) Critical Infrastructure Protection (CIP)
    • NERC Operations and Planning (O&P)
    • Federal Energy Regulatory Commission
    • Transportation Security Administration (TSA) Cybersecurity
    • IEC 62443 standard - Securing Industrial Automation and Control Systems (IACS)
    • Nuclear Energy Institute (NEI) - NEI 08-09, 10 CFR 73.54
  • 7+ years of demonstrate advanced understanding and cyber risk management in at least two of the following areas:
    • SCADA with experience in securing ICS (Industrial Control Systems) security
    • Internet of Things (IOT) architecture and security
    • OT (Operational Technology) security
    • NERC CIP-015 - Internal Network Security Monitoring (INMS)
    • Embedded systems security
    • OT network segmentation (zones/conduits), jump hosts, secure remote access
    • Passive OT discovery/asset inventory, OT IDS, SIEM integration/use cases
    • Incident response in OT (containment with availability/safety constraints)
    • Vendor/OEM risk management, SBOM/patch constraints, compensating controls
    • Security experience in the field environment within the Power, Utilities & Renewables, Oil & Gas, or Industrial Products & Construction industry sectors
  • 7+ years of demonstrate advanced understanding of business processes and cyber risk management in an OT / SCADA environment in two or more areas such as:
    • Cyber security
    • Secure Supply Chain
    • Security Analytics
    • Security Operations Centers
    • Vulnerability and Threat Management
    • Data Security
    • Secure Dev Ops
    • Business continuity management
    • Familiarity with industry standards and regulatory requirements around cyber risk management (e.g., ISO 27001, IEC 62443, NIST CSF)
  • Limited sponsorship opportunities may be available

Additional Requirements:

  • Ability to travel up to 50%, on average, based on the work you do and the clients and industries/sectors you serve
  • Locations include: Houston, Dallas, Cleveland, Detroit, St. Louis, Pittsburgh, Boston, Charlotte, Atlanta, Miami, Memphis, Denver, Phoenix, Salt Lake City, Los Angeles, San Diego, San Franciso, Seattle.  Must be within a reasonable commute and willing to work part-time in the Deloitte and/or client offices.

Preferred:

  • Minimum of 4 years working in an OT environment (e.g. OT security, ICS security, IOT security, SCADA, etc.)
  • Minimum 4 years designing security for infrastructure, network and application architectures
  • Experience in the Power Utilities & Renewables, Oil & Gas, or Industrial Products & Construction sector
  • Demonstrated experience working with cloud platforms (AWS, Azure)
  • 5+ years implementing security solutions
  • BA/BS in cyber security, information security, engineering, computer science, information technology, information management, information sciences, business administration, or related field preferred
  • CISSP, CISM, or CISA certification a plus
  • Excellent verbal and written communication
Information for applicants with a need for accommodation: https://www2.deloitte.com/us/en/pages/careers/articles/join-deloitte-assistance-for-disabled-applicants.html

The wage range for this role takes into account the wide range of factors that are considered in making compensation decisions including but not limited to skill sets; experience and training; licensure and certifications; and other business and organizational needs. The disclosed range estimate has not been adjusted for the applicable geographic differential associated with the location at which the position may be filled. At Deloitte, it is not typical for an individual to be hired at or near the top of the range for their role and compensation decisions are dependent on the facts and circumstances of each case. A reasonable estimate of the current range is $134,500 to $265,100.

You may also be eligible to participate in a discretionary annual incentive program, subject to the rules governing the program, whereby an award, if any, depends on various factors, including, without limitation, individual and organizational performance.

#CyberES26


Education:Bachelor's DegreeEmployment Type:

What Deloitte employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom