1

Operational Risk Manager Jobs in Kalamazoo, MI (NOW HIRING)

Support organizational risk management and compliance activities through ongoing monitoring ... Operation of computerized software programs, databases, and basic office equipment. Comfortable ...

next page

Showing results 1-20

Operational Risk Manager information

See Kalamazoo, MI salary details

$44.3K

$113.9K

$223.6K

How much do operational risk manager jobs pay per year?

As of Jun 22, 2026, the average yearly pay for operational risk manager in Kalamazoo, MI is $113,874.00, according to ZipRecruiter salary data. Most workers in this role earn between $69,300.00 and $150,000.00 per year, depending on experience, location, and employer.

What Does an Operational Risk Manager Do?

An operational risk manager works to identify and limit the risk associated with a company’s operations. As an operational risk manager, your responsibilities involve assessing business operations, identifying issues, and creating reports on your findings. You then help develop policies and implement changes to lessen operational risks. Other duties include continually monitoring the business to find potential new threats and ensuring company compliance with laws and regulations.

What are the 4 pillars of operational risk management?

The four pillars of operational risk management are risk identification, risk assessment, risk mitigation, and risk monitoring. An Operational Risk Manager uses these pillars to develop strategies that minimize potential losses from internal processes, people, systems, or external events, often utilizing tools like risk dashboards and frameworks such as Basel II. Mastery of these pillars helps ensure organizational resilience and compliance.

What does an operational risk manager do?

An operational risk manager identifies, assesses, and mitigates risks that could disrupt a company's operations, such as process failures, fraud, or system outages. They develop risk management frameworks, monitor key risk indicators, and ensure compliance with regulations to protect the organization’s assets and reputation.

Do risk managers make good money?

Operational Risk Managers typically earn competitive salaries that vary by industry, experience, and location. According to industry data, the median annual salary ranges from $80,000 to over $130,000, with additional compensation such as bonuses and benefits. Certifications like FRM or ORM can enhance earning potential in this field.

What are some common challenges faced by Operational Risk Managers in maintaining effective risk controls across different departments?

Operational Risk Managers often encounter challenges in ensuring consistent risk controls due to varying processes, priorities, and risk appetites across departments. Communication gaps and resistance to change can make it difficult to implement standardized procedures. Successfully overcoming these challenges involves building strong cross-functional relationships, conducting regular training, and fostering a risk-aware culture to ensure alignment on risk management practices throughout the organization.

What are the key skills and qualifications needed to thrive as an Operational Risk Manager, and why are they important?

To thrive as an Operational Risk Manager, you need a solid understanding of risk assessment, regulatory compliance, and internal controls, typically supported by a degree in finance, business, or a related field. Familiarity with risk management frameworks, GRC (governance, risk, and compliance) systems, and certifications such as FRM or ORM are highly valued. Strong analytical thinking, attention to detail, and effective communication skills set top performers apart in this role. These competencies are crucial for identifying, mitigating, and communicating operational risks, ensuring organizational stability and regulatory adherence.

What is the difference between Operational Risk Manager vs Risk Analyst?

AspectOperational Risk ManagerRisk Analyst
CertificationsCFA, FRM, or similarCFA, FRM, or similar
Work EnvironmentFinancial institutions, banks, insurance companiesFinancial firms, consulting, corporate risk teams
ResponsibilitiesIdentify, assess, and mitigate operational risks; develop risk frameworksAnalyze risk data, support risk assessments, prepare reports

The Operational Risk Manager focuses on managing and mitigating operational risks within organizations, often holding certifications like CFA or FRM. In contrast, Risk Analysts primarily analyze risk data and support risk management processes. Both roles are vital in financial sectors and share similar credentials, but the Operational Risk Manager has a broader responsibility for risk mitigation strategies.

What are the 5 steps of orm?

In operational risk management (ORM), the five key steps are: identifying risks, assessing their likelihood and impact, implementing controls to mitigate risks, monitoring the effectiveness of these controls, and reviewing and improving the risk management process regularly. These steps help operational risk managers proactively manage potential threats to an organization’s operations.
What are the most commonly searched types of Operational Risk jobs in Kalamazoo, MI? The most popular types of Operational Risk jobs in Kalamazoo, MI are:
What job categories do people searching Operational Risk Manager jobs in Kalamazoo, MI look for? The top searched job categories for Operational Risk Manager jobs in Kalamazoo, MI are:
What cities near Kalamazoo, MI are hiring for Operational Risk Manager jobs? Cities near Kalamazoo, MI with the most Operational Risk Manager job openings:
Operational Technology Security Engineer

Operational Technology Security Engineer

Goldbelt, Inc.

Battle Creek, MI

Full-time

Medical, Dental, Vision, Retirement, PTO

Posted 9 days ago


Job description

Overview

Please note that this position is contingent upon the successful award of a contract currently under bid.

Global in service but local in approach, Nisga'a Tek is committed to high-quality service to those who defend us. Nisga'a Tek ensures mission assurance and execution for customers and warfighters. Providing intelligence, IT, cyber security, training, logistics, administrative, acquisition, and background investigation services. 

Summary:

The Operational Technology Security Engineer performs a variety of routine project tasks applied to specialized information assurance problems with operational technology (OT) systems.


Responsibilities

Essential Job Functions:

  • Tasks involve integration of OT processes or methodologies with information systems to resolve total system problems, or technology problems as they relate to Cybersecurity requirements.
  • Analyzes information security requirements.
  • Applies analytical and systematic approaches in the resolution of problems of workflow, organization, and planning.
  • Provides security engineering support for planning, design, development, testing, demonstration, and integration of OT systems.

Qualifications

Necessary Skills and Knowledge:

  • Strong understanding of OT systems including SCADA, ICS, DCS, PLCs, HMIs, RTUs, and field devices
  • Knowledge of secure OT network architectures, including segmentation, firewalls, IDS/IPS, and network monitoring solutions
  • Understanding of secure remote access technologies and best practices for OT maintenance and monitoring
  • Proficiency with OT relevant cybersecurity frameworks such as NIST CSF, ISA/IEC 62443, and NERC CIP
  • Familiarity with DoD cybersecurity requirements including STIGs, TCG configuration guides, IAVMs, and Task Orders
  • Ability to develop, maintain, and validate cybersecurity artifacts and documentation
  • Understanding of compliance requirements for OT environments and industry specific regulatory obligations
  • Proficiency in conducting vulnerability assessments across networks, databases, applications, and OT/IT systems
  • Knowledge of vulnerability scanning and asset visibility tools (ACAS, Nessus, Qualys, Forescout, EyeInspect)
  • Updates and tracks POA&M entries by documenting findings, logging remediation actions, and keeping milestone dates current to ensure issues move toward closure.
  • Ability to recommend risk-based mitigation strategies tailored to OT constraints
  • Familiarity with secure configuration baselines, hardening procedures, and compliance enforcement
  • Ability to develop and implement OT specific incident response plans
  • Knowledge of forensic techniques and tools appropriate for OT systems
  • Understanding of patch management workflows and enterprise change management processes
  • Ability to build automated workflows for vulnerability remediation, compliance checks, or reporting
  • Proficiency with analytical tools such as Microsoft Excel, Access, Power BI, and Power Platform
  • Ability to generate clear, accurate, and audit ready cybersecurity reports for technical and leadership audiences
  • Understanding of vendor and supply chain security practices for OT equipment and services
  • Ability to translate technical findings into actionable recommendations for engineers, operators, and leadership
  • Strong research, analytical, and problem-solving abilities
  • Excellent written and verbal communication skills, including briefing senior leaders
  • Proven ability to work independently and collaboratively with minimal oversight
  • Commitment to staying current on emerging OT threats, vulnerabilities, and best practices

Minimum Qualifications:

  • Certification Requirements:
    • Required Training Certifications In:
      • ICS300 or relevant Operational Technology “OT” or Industrial Control System “ICS” Cybersecurity Certifications
      • Forescout
    • DLA Computing Environment: DLA approved CE (M Account Access)
    • Current Requirement: DOD 8570 - IAT 2
    • Future Requirement: DOD 8140
    • Primary Cyber Work Role:
      • Work Element: Cybersecurity (CS)
      • Work Role: 722 - Information Systems Security Manager
      • Proficiency Level: Intermediate
  • Seven (7) years of relevant OT Cybersecurity experience
  • Experience with OT communication protocols such as Modbus/TCP, EtherNet/IP, IEC 61850, ICCP, DNP3, BACnet, and similar industrial protocols
  • Experience producing analytics and trend reports using data from scanners, configuration tools, and monitoring platforms
  • Experience bridging IT and OT cybersecurity requirements to ensure aligned policies and protections
  • Experience deploying and tuning security monitoring solutions for OT environments, including anomaly detection and threat intelligence integration
  • Experience performing OT specific risk assessments, identifying threats, vulnerabilities, and operational impacts
  • Experience managing software and firmware updates for OT devices while minimizing operational disruption
  • Experience preparing environments for DoD cybersecurity inspections
  • Required to possess a DOD SECRET Clearance and be eligible for an IT-II Non-Critical Sensitive security clearance or Tier 3 (T3) upon assignment.

Preferred Qualifications:

  • Bachelor’s degree

Pay and Benefits
At Goldbelt, we value and reward our team's dedication and hard work. We provide a competitive base salary commensurate with your qualifications and experience. As an employee, you'll enjoy a comprehensive benefits package, including medical, dental, and vision insurance, a 401(k) plan with company matching, tax-deferred savings options, supplementary benefits, paid time off, and professional development opportunities.

Qualifications:

Necessary Skills and Knowledge:

  • Strong understanding of OT systems including SCADA, ICS, DCS, PLCs, HMIs, RTUs, and field devices
  • Knowledge of secure OT network architectures, including segmentation, firewalls, IDS/IPS, and network monitoring solutions
  • Understanding of secure remote access technologies and best practices for OT maintenance and monitoring
  • Proficiency with OT relevant cybersecurity frameworks such as NIST CSF, ISA/IEC 62443, and NERC CIP
  • Familiarity with DoD cybersecurity requirements including STIGs, TCG configuration guides, IAVMs, and Task Orders
  • Ability to develop, maintain, and validate cybersecurity artifacts and documentation
  • Understanding of compliance requirements for OT environments and industry specific regulatory obligations
  • Proficiency in conducting vulnerability assessments across networks, databases, applications, and OT/IT systems
  • Knowledge of vulnerability scanning and asset visibility tools (ACAS, Nessus, Qualys, Forescout, EyeInspect)
  • Updates and tracks POA&M entries by documenting findings, logging remediation actions, and keeping milestone dates current to ensure issues move toward closure.
  • Ability to recommend risk-based mitigation strategies tailored to OT constraints
  • Familiarity with secure configuration baselines, hardening procedures, and compliance enforcement
  • Ability to develop and implement OT specific incident response plans
  • Knowledge of forensic techniques and tools appropriate for OT systems
  • Understanding of patch management workflows and enterprise change management processes
  • Ability to build automated workflows for vulnerability remediation, compliance checks, or reporting
  • Proficiency with analytical tools such as Microsoft Excel, Access, Power BI, and Power Platform
  • Ability to generate clear, accurate, and audit ready cybersecurity reports for technical and leadership audiences
  • Understanding of vendor and supply chain security practices for OT equipment and services
  • Ability to translate technical findings into actionable recommendations for engineers, operators, and leadership
  • Strong research, analytical, and problem-solving abilities
  • Excellent written and verbal communication skills, including briefing senior leaders
  • Proven ability to work independently and collaboratively with minimal oversight
  • Commitment to staying current on emerging OT threats, vulnerabilities, and best practices

Minimum Qualifications:

  • Certification Requirements:
    • Required Training Certifications In:
      • ICS300 or relevant Operational Technology “OT” or Industrial Control System “ICS” Cybersecurity Certifications
      • Forescout
    • DLA Computing Environment: DLA approved CE (M Account Access)
    • Current Requirement: DOD 8570 - IAT 2
    • Future Requirement: DOD 8140
    • Primary Cyber Work Role:
      • Work Element: Cybersecurity (CS)
      • Work Role: 722 - Information Systems Security Manager
      • Proficiency Level: Intermediate
  • Seven (7) years of relevant OT Cybersecurity experience
  • Experience with OT communication protocols such as Modbus/TCP, EtherNet/IP, IEC 61850, ICCP, DNP3, BACnet, and similar industrial protocols
  • Experience producing analytics and trend reports using data from scanners, configuration tools, and monitoring platforms
  • Experience bridging IT and OT cybersecurity requirements to ensure aligned policies and protections
  • Experience deploying and tuning security monitoring solutions for OT environments, including anomaly detection and threat intelligence integration
  • Experience performing OT specific risk assessments, identifying threats, vulnerabilities, and operational impacts
  • Experience managing software and firmware updates for OT devices while minimizing operational disruption
  • Experience preparing environments for DoD cybersecurity inspections
  • Required to possess a DOD SECRET Clearance and be eligible for an IT-II Non-Critical Sensitive security clearance or Tier 3 (T3) upon assignment.

Preferred Qualifications:

  • Bachelor’s degree

Pay and Benefits
At Goldbelt, we value and reward our team's dedication and hard work. We provide a competitive base salary commensurate with your qualifications and experience. As an employee, you'll enjoy a comprehensive benefits package, including medical, dental, and vision insurance, a 401(k) plan with company matching, tax-deferred savings options, supplementary benefits, paid time off, and professional development opportunities.

Education:UNAVAILABLEEmployment Type: FULL_TIME