1

Security Intelligence Analyst Jobs in Michigan (NOW HIRING)

Conduct investigations using SIEM, EDR, NDR, SOAR, cloud security platforms, and threat intelligence sources * Develop and improve detection logic, correlation rules, analytics, and alerting content ...

Conduct investigations using SIEM, EDR, NDR, SOAR, cloud security platforms, and threat intelligence sources * Develop and improve detection logic, correlation rules, analytics, and alerting content ...

... security platforms. You will apply threat intelligence, operational context, and analytical techniques to identify meaningful threats while reducing false positives and improving detection quality.

Serve as the go-to analyst across high-impact domains, facilitating rapid adaptation as priorities ... Using situational awareness, threat intelligence, and building a security culture across the ...

Serve as the go-to analyst across high-impact domains, facilitating rapid adaptation as priorities ... Using situational awareness, threat intelligence, and building a security culture across the ...

Showing results 41-60

Security Intelligence Analyst information

See Michigan salary details

$9.6K

$75.8K

$135.1K

How much do security intelligence analyst jobs pay per year?

As of Sep 3, 2026, the average yearly pay for security intelligence analyst in Michigan is $75,838.00, according to ZipRecruiter salary data. Most workers in this role earn between $41,000.00 and $85,900.00 per year, depending on experience, location, and employer.

What does a security intelligence analyst do?

A security intelligence analyst assesses the threat various actors pose to an organization, an industry, or general public safety. Some security intelligence analysts focus on physical threats to infrastructure or human safety, while others concentrate specifically on cybersecurity. Regardless of the type of security analysis you do, your responsibilities and duties include a mix of reading reports, making risk assessments, working to detect the source of attacks, and testing current defenses against threats. Your analysis leads to a report to your superiors identifying current threats and advising them on how to improve security measures and response to attacks.

What does a security intelligence analyst do?

A Security Intelligence Analyst is responsible for collecting, analyzing, and interpreting data to identify and assess potential security threats to an organization. They monitor various intelligence sources, such as cyber threat feeds, news reports, and internal security tools, to detect patterns and emerging risks. Their work helps organizations anticipate attacks, respond to incidents, and strengthen their overall security posture. Analysts often collaborate with other security professionals to develop strategies for preventing and mitigating threats.

What are the key skills and qualifications needed to thrive as a security intelligence analyst, and why are they important?

To thrive as a Security Intelligence Analyst, you need strong analytical skills, knowledge of threat assessment, and a background in criminal justice, cybersecurity, or a related field. Familiarity with intelligence-gathering tools, data analysis platforms, and certifications such as CISSP or CompTIA Security+ is often required. Critical thinking, attention to detail, and effective communication are vital soft skills for interpreting intelligence and presenting findings. These abilities are essential for identifying and mitigating security threats, informing decision-makers, and protecting organizational assets.

How does a security intelligence analyst typically collaborate with other departments within an organization?

Security Intelligence Analysts frequently work closely with IT, legal, risk management, and executive leadership teams to assess and respond to potential threats. They share intelligence findings, provide recommendations, and help develop proactive security measures. Effective communication and teamwork are essential, as analysts often need to translate complex technical information into actionable insights for non-technical stakeholders. Regular cross-departmental meetings and incident response drills are common in this collaborative environment.

What is the difference between Security Intelligence Analyst vs Cybersecurity Analyst?

AspectSecurity Intelligence AnalystCybersecurity Analyst
Required CredentialsSecurity certifications (e.g., CISSP, GIAC)Security certifications (e.g., CompTIA Security+, CISSP)
Work EnvironmentGovernment agencies, intelligence firms, security operations centersPrivate companies, IT departments, security firms
Industry UsageFocus on threat intelligence, national security, and strategic analysisFocus on protecting organizational networks and systems
Common Search/ComparisonOften compared for their roles in threat detection and analysisRelated but more technical and network-focused

The main difference is that Security Intelligence Analysts primarily focus on gathering and analyzing threat intelligence to inform security strategies, often working in government or intelligence sectors. Cybersecurity Analysts concentrate on protecting organizational networks and systems from cyber threats through technical measures. Both roles require similar certifications but serve different operational focuses within the security field.

What cities in Michigan are hiring for Security Intelligence Analyst jobs?

Cities in Michigan with the most Security Intelligence Analyst job openings:

What are popular job titles related to Security Intelligence Analyst jobs in MI?

For Security Intelligence Analyst jobs in MI, the most frequently searched job titles are:

Infographic showing various Security Intelligence Analyst job openings in Michigan as of August 2026, with employment types broken down into 83% Full Time, 13% Part Time, 3% Contract, and 1% Nights. Highlights an 91% Physical, 2% Hybrid, and 7% Remote job distribution, with an average salary of $75,838 per year, or $36.5 per hour.

Sr Information Security Analyst

Perrigo Company plc

Allegan, MI • On-site

Full-time

Posted 22 days ago


Perrigo rating

8.5

Company rating: 8.5 out of 10

Based on 57 frontline employees who took The Breakroom Quiz

19th of 86 rated pharmaceutical


Job description

At Perrigo, we are driven by our mission to Makes Lives Better Through Trusted Health and Wellness Solutions, Accessible to All. We are proud to be a Top 10 player in the European Consumer Self-Care market and the largest U.S. store brand provider of over the counter and infant formula. Dedicated to providing The Best Self-Care for Everyone, we are the people behind the brands you trust. We are Opill®, Compeed®, Solpadeine®, NiQuitin®, and many more. We Are Perrigo. We are committed to enhancing the wellbeing of our colleagues and consumers alike. We pride ourselves on fostering an inclusive, collaborative culture where each person can experience a sense of belonging.
Join us on our One Perrigo journey as we evolve to win in self-care.
Description Overview
The Senior Information Security Analyst is a senior individual contributor within the Cyber Defense team responsible for leading security investigations, incident response, threat detection and hunting, and the continuous improvement of enterprise security operations. The role works across endpoint, identity, email, cloud, and data security technologies to identify, contain, and remediate threats.
The successful candidate will be an experienced, hands-on security professional who can independently lead complex investigations, improve detections and response processes, mentor other analysts, and take ownership of key Cyber Defense capabilities. Experience with data loss prevention (DLP) and data security is strongly preferred.
Scope of the Role
Security Operations & Incident Response
• Lead investigation, containment, remediation, and post-incident review of cybersecurity incidents across endpoint, identity, email, cloud, and network environments
• Investigate suspicious activity using SIEM, EDR/XDR, identity, email security, and other enterprise security telemetry
• Develop incident timelines, determine scope and root cause, document findings, and communicate risk and recommended actions to technical and leadership stakeholders
• Perform proactive threat hunting and identify opportunities to improve detection and response coverage
• Serve as an escalation point and mentor for other security analysts during complex investigations
Detection, SIEM & Automation
• Develop, tune, and improve security detections and correlation logic based on threats, incidents, and observed control gaps
• Use enterprise SIEM platforms to investigate threats, hunt across security telemetry, and improve monitoring coverage
• Support security orchestration and automation use cases, including playbooks for investigation, enrichment, containment, and notification
• Identify repetitive SOC processes that can be automated or streamlined
Endpoint, Identity & Cloud Threat Detection
• Investigate endpoint threats using CrowdStrike Falcon or comparable enterprise EDR/XDR platforms
• Investigate identity-based attacks involving Active Directory, Microsoft Entra ID, authentication, privileged accounts, OAuth applications, and session/token abuse
• Analyze Microsoft 365 and cloud security events and work with engineering and infrastructure teams on containment and remediation
• Use threat intelligence and indicators of compromise to scope incidents and proactively hunt for related activity
Data Security & DLP
• Support and improve enterprise DLP and data security monitoring across endpoint, email, cloud, and collaboration platforms
• Investigate potential data-loss, sensitive-data exposure, and policy-violation events and coordinate appropriate response
• Assist with tuning DLP policies and workflows to improve detection quality while reducing unnecessary business impact
• Partner with security, privacy, legal, and business stakeholders as appropriate during sensitive-data investigations
Cyber Defense Program Improvement
• Identify gaps discovered through incidents, threat hunting, and operational analysis and recommend practical improvements
• Develop and maintain investigation procedures, response playbooks, and operational documentation
• Collaborate with Security Engineering, IAM, Network, Cloud, and other technology teams to strengthen preventive and detective controls
• Take ownership of assigned Cyber Defense technologies or operational capabilities and drive their continued maturity
Experience Required
• Bachelor's degree in Cybersecurity, Information Technology, or a related field, or equivalent professional experience
• 7+ years of relevant cybersecurity experience, including significant hands-on security operations, incident response, threat detection, or threat hunting experience
• Demonstrated ability to independently investigate and lead complex cybersecurity incidents
• Hands-on experience with enterprise SIEM and EDR/XDR technologies
• Strong understanding of endpoint, identity, network, email, and cloud attack techniques
• Working knowledge of Active Directory and Microsoft Entra ID security concepts
• Strong analytical, troubleshooting, documentation, and communication skills
Desired Technical Experience
• CrowdStrike Falcon, including EDR and/or Identity Protection
• Splunk Enterprise Security, CrowdStrike Next-Gen SIEM, Microsoft Sentinel, or comparable enterprise SIEM platforms
• Cortex XSOAR or comparable SOAR/security automation platforms
• Microsoft 365 and Entra ID security investigations
• Enterprise DLP/data security technologies such as Proofpoint, Microsoft Purview, or comparable platforms
• Email security and account-takeover investigation
• PowerShell, Python, SPL, KQL, or other scripting/query languages used for security investigation and automation
• Threat intelligence, vulnerability/exposure management, and hybrid enterprise environments
Benefits
We believe our people are our greatest asset. Alongside competitive compensation, we offer benefits tailored to supporting you and your family, as well as career development opportunities to ensure you feel valued and supported, both professionally and personally.
Find out more about Total Rewards at Perrigo.
Hybrid Working Approach
We love our offices and the setting they provide for in-person collaboration and celebration. But we also appreciate the opportunity to work remotely can energise you too, so we promote flexibility with the ability to work two days a week from home in many roles.
We are proud to be included in the Forbes list of "America's Best Employers by State 2024". Find out more here
Applicants please note: To apply to this position please click the APPLY button at the bottom of the application. (The SAVE button will only save your profile information but not submit an application for this open position.) All application materials, including resumes and CVs, must be submitted in English. Thank you.
We are an equal opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, status as a protected veteran, or other characteristics protected by law. #weareperrigo

What Perrigo employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom