1

Vulnerability Management Analyst Jobs in Michigan

... vulnerability management, and related security functions * Working knowledge of Azure Log Analytics, Kusto Query Language (KQL), PowerShell, Bash, and REST APIs. * Working knowledge of identity and ...

... Vulnerability Management, DLP, Endpoint Security) 5+ years of experience in supporting large IT ... Preferred Skills CISSP or Security+ Certifications SIEM Administration, Analysis, and Reporting ...

... Vulnerability Management, DLP, Endpoint Security) 5+ years of experience in supporting large IT ... Preferred Skills CISSP or Security+ Certifications SIEM Administration, Analysis, and Reporting ...

Be Seen First

Senior Security & Compliance Analyst

Northville, MI · On-site

$94K - $121K/yr

Support security operations, vulnerability management, and incident response activities as required ... Strong analytical and problem-solving skills. * Strong organizational skills with the ability to ...

... vulnerability management, incident response, identity and access management, and threat detection activities. • Analyze security events, operational data, and cyber risks to identify trends ...

Showing results 21-40

Vulnerability Management Analyst information

See Michigan salary details

$61.5K

$109.1K

$153.2K

How much do vulnerability management analyst jobs pay per year?

As of Sep 4, 2026, the average yearly pay for vulnerability management analyst in Michigan is $109,107.00, according to ZipRecruiter salary data. Most workers in this role earn between $72,888.00 and $144,020.00 per year, depending on experience, location, and employer.

What is a vulnerability management analyst?

A Vulnerability Management Analyst is responsible for identifying, assessing, and mitigating security vulnerabilities within an organization's IT infrastructure. They use scanning tools, analyze threat data, and collaborate with teams to prioritize and remediate risks. Their role is crucial in maintaining cybersecurity by ensuring systems are patched and configured securely. Additionally, they may develop reports and provide recommendations to improve security posture. This position requires knowledge of security frameworks, risk assessment, and vulnerability management tools.

What are the typical daily responsibilities of a vulnerability management analyst?

On a typical day, a Vulnerability Management Analyst reviews system scans, analyzes reports for potential vulnerabilities, and works with IT or security teams to prioritize remediation efforts. They may also track the status of vulnerabilities, ensure timely patch application, and help develop or update security policies. Collaboration with various departments is common to coordinate testing, remediation, and communicate risk summary findings. This role requires keeping up with emerging threats and sometimes participating in security audits or compliance reviews, making it both dynamic and integral to the organization's overall cybersecurity posture.

What are the key skills and qualifications needed to thrive as a vulnerability management analyst?

A Vulnerability Management Analyst requires a strong background in cybersecurity principles, risk assessment, and IT networking, often supported by a relevant degree or certifications like CompTIA Security+, CISSP, or CEH. Experience with vulnerability scanning tools (such as Nessus, Qualys, or Rapid7) and familiarity with ticketing systems or SIEM platforms is essential. Strong analytical skills, attention to detail, effective communication, and the ability to work collaboratively help individuals succeed in this role. These capabilities are vital to proactively identify, assess, and mitigate security vulnerabilities, ensuring the organization's digital assets remain secure and compliant.

What are the most commonly searched types of Vulnerability Management Analyst jobs in Michigan?

The most popular types of Vulnerability Management Analyst jobs in Michigan are:

What are popular job titles related to Vulnerability Management Analyst jobs in Michigan?

For Vulnerability Management Analyst jobs in Michigan, the most frequently searched job titles are:

What job categories do people searching Vulnerability Management Analyst jobs in Michigan look for?

The top searched job categories for Vulnerability Management Analyst jobs in Michigan are:

Infographic showing various Vulnerability Management Analyst job openings in Michigan as of August 2026, with employment types broken down into 68% Full Time, and 32% Contract. Highlights an 83% In-person, 6% Hybrid, and 11% Remote job distribution, with an average salary of $109,107 per year, or $52.5 per hour.

Cloud Security Engineer

OneStream Software

Birmingham, MI • On-site

Other

Medical, Dental, Vision, Life, Retirement, PTO

Posted 19 days ago


Key responsibilities

  • Design, implement, and improve security controls and configuration baselines across Microsoft Azure and Microsoft 365.

  • Configure, administer, and optimize cloud security solutions such as Microsoft Defender, Microsoft Sentinel, and related technologies.

  • Conduct security assessments of cloud resources, identify vulnerabilities, and perform vulnerability management activities.


Job description

Description

Cloud Security Engineer

Location: Remote, USA
Employment Type: Full-Time
Benefits Offered: Vision, Medical, Life, Dental, 401K
Gross annual base salary: USD 86,000 - 112,000
Additional variable compensation and benefits may apply. Total compensation is based on experience, skills, and location using objective, job-related criteria.

Summary

We are seeking a Cloud Security Engineer to join our Information Security team and play a key role in protecting and continuously improving the security posture of OneStream's cloud environment, including Microsoft Azure and Microsoft 365. This position is responsible for helping safeguard OneStream's cloud services, corporate information, and customer data by identifying and mitigating risk through proactive security monitoring, threat detection, vulnerability management, secure configuration, and cloud security governance. This role works closely with cross-functional teams to help ensure cloud technologies and services are deployed and operated securely in alignment with business and security objectives.

Primary Duties and Responsibilities

  • Design, implement, and continuously improve security controls and configuration baselines across Microsoft Azure and Microsoft 365, aligned with industry standards and frameworks.
  • Configure, administer, and optimize cloud security solutions, including Microsoft Defender for Cloud, Microsoft Defender for Endpoint, Microsoft Defender for Cloud Apps (CASB), and related technologies.
  • Conduct security assessments of cloud resources, applications, Azure Kubernetes Service (AKS), and containerized workloads to identify vulnerabilities, misconfigurations, excessive permissions, and other security risks.
  • Perform vulnerability management activities, including prioritizing findings, coordinating remediation efforts, and validating corrective actions.
  • Configure and enhance cloud security monitoring, threat detection, investigation, response, and automation capabilities using Microsoft Sentinel (SIEM), Kusto Query Language (KQL), and related technologies.
  • Collaborate with Cloud, Compliance, and other internal teams to ensure cloud services are designed, deployed, and maintained in accordance with security best practices, organizational standards, and industry hardening standards such as CIS Benchmarks and DISA STIGs.
  • Respond to customer security inquiries, assessments, and questionnaires by gathering, validating, and communicating information regarding security controls, cloud technologies, and security practices.
  • Develop and maintain technical documentation, procedures, dashboards, alerts, and reporting to improve security visibility and operational effectiveness.
  • Support internal and external audits by gathering evidence, validating control adherence, and demonstrating compliance with organizational, customer, and regulatory requirements.
  • Support incident response activities by investigating suspicious, anomalous, or unauthorized activity within cloud environments and participating in security investigations.

Required Education and Experience

  • BS/BA in Cybersecurity, Computer Science, Engineering, or technology-related field (or equivalent work experience).
  • 3+ years of experience securing cloud-based infrastructure, services and technologies.
  • Experience identifying, analyzing, and mitigating security risks within cloud environments.
  • Experience applying cloud security principles to secure cloud platforms, including Microsoft Azure, through secure configuration, least-privilege access, data protection, threat detection and response, and security hardening aligned with industry standards.
  • Experience deploying, administering, and using security technologies such as Microsoft Defender, SIEM, CASB, vulnerability management, and related security functions
  • Working knowledge of Azure Log Analytics, Kusto Query Language (KQL), PowerShell, Bash, and REST APIs.
  • Working knowledge of identity and access management concepts, including Microsoft Entra ID, role-based access control (RBAC), authentication, authorization, and least-privilege access.
  • Working knowledge of Windows and Linux operating systems.
  • Familiarity with incident response, incident management, and change management processes.

Preferred Education and Experience

  • Experience working for a Cloud Service Provider (CSP), Managed Service Provider (MSP), Software-as-a-Service (SaaS) provider, or similarly regulated cloud environment.
  • 5+ years of experience with Microsoft Azure, including securing cloud-native technologies, Azure Kubernetes Service (AKS), and containerized workloads.
  • Understanding of security controls and compliance frameworks such as NIST 800-53, FedRAMP, SOC 1, SOC 2, ISO 27001, or similar standards.
  • Understanding of identity and access management (IAM) concepts, technologies, and protocols including Microsoft Entra ID, Okta, SAML, OAuth, and OpenID Connect (OIDC).
  • Experience with Infrastructure as Code (IaC) technologies and deployment practices, such as ARM, Bicep, Terraform, and Azure DevOps pipelines.
  • Working knowledge of network security principles, networking protocols (e.g., TCP/IP, DNS, TLS), and firewall technologies.
  • Familiarity with Agile, Scrum, and DevSecOps methodologies.
  • Relevant cybersecurity certifications (e.g., AZ-500, AZ-104, SC-200, SC-300, SC-100, Security+, Cloud+, or equivalent).

Knowledge, Skills, and Abilities

  • Strong analytical and problem-solving skills.
  • Excellent written, verbal, and presentation communication skills.
  • Ability to effectively communicate technical information to diverse audiences, including technical and non-technical stakeholders.
  • Demonstrated initiative, accountability, and attention to detail.
  • Effective prioritization and organizational skills in a fast-paced environment.
  • Adaptability to changing technologies, priorities, and business needs.
  • Commitment to continuous learning and professional development.

Who We Are

OneStream is how today's Finance teams can go beyond just reporting on the past and Take Finance Further by steering the business to the future. It's the only enterprise finance platform that unifies financial and operational data, embeds AI for better decisions and productivity, and empowers the CFO to become a critical driver of business strategy and execution. Our vision is to be the operating system for modern finance, digitizing core financial functions and empowering the CFO to become a critical driver of business strategy. To learn more visit www.onestream.com.

Why Join The OneStream Team

  • Transparency around corporate structure, salary, and benefits
  • Core value of customer success
  • Variety of project work (not industry-specific)
  • Strong culture and camaraderie
  • Multiple training opportunities

Benefits at OneStream
OneStream employees are passionate, hardworking individuals who go above and beyond to keep our customers happy and follow through on our mission statement. They consistently deliver the best and in turn, we make every effort to keep them cared for and happy. A sample of the benefits we provide are:

  • Excellent Medical Plan
  • Dental & Vision Insurance
  • Life Insurance
  • Short & Long Term Disability
  • Vacation Time
  • Paid Holidays
  • Professional Development
  • Retirement Plan

All candidates must be legally authorized to work for any company in the country where this position is located without sponsorship.

OneStream is an Equal Opportunity Employer.

#LI-CB1
#LI-Remote


Equal Opportunity Employer/Protected Veterans/Individuals with Disabilities
This employer is required to notify all applicants of their rights pursuant to federal employment laws. For further information, please review the Know Your Rights notice from the Department of Labor.