Information Security Director jobs in Michigan

Information Security Director establishes and administers the overall strategies and procedures for the information security function. Develops and implements information security and disaster recovery programs in accordance with organizational information security standards. Being an Information Security Director evaluates information risk on a regular time schedule and promotes information security awareness within the organization. Requires a bachelor's degree or its equivalent. Additionally, Information Security Director typically reports to top management. The Information Security Director manages a departmental sub-function within a broader departmental function. Creates functional strategies and specific objectives for the sub-function and develops budgets/policies/procedures to support the functional infrastructure. Deep knowledge of the managed sub-function and solid knowledge of the overall departmental function. To be an Information Security Director typically requires 5+ years of managerial experience. (Copyright 2024 Salary.com)

H
Senior Director of Information Security
  • Hillsdale College
  • Hillsdale, MI FULL_TIME
  • Overview

    Work Location

    To perform this job successfully, an individual must be able to work on-site at the Hillsdale College campus in Michigan

    At Hillsdale College, our digital landscape is rapidly expanding, and so are the challenges that accompany safeguarding the College’s information assets. We are seeking an experienced visionary Senior Director of Information Security to lead the College’s strategic charge against modern cybersecurity threats.

    As the architect of our next generation of digital defense, you will be at the heart of strategizing and implementing innovative solutions to safeguard the integrity, confidentiality, and availability of the College's information systems. You will be integral to protecting the infrastructure and data that power our on-premises and cloud data centers, collaborating closely with the brilliant minds crafting our state-of-the-art online learning platform -- a beacon of knowledge for millions of lifelong learners worldwide, offered entirely free of charge.

    Your expertise will play a critical role in furthering the College's mission of making education accessible to all who wish to learn. With a solid background of at least 10 years in information security leadership, your experience in designing and executing comprehensive security programs in complex environments will be essential to the development and implementation of procedures to shield Hillsdale College's information systems from threats. Your ability to concisely present information security principles to diverse audiences and employ empathy, patience, and tenacity to rally support across the College for new initiatives will be key to our collective success.

     

    Responsibilities

    Essential Job Functions

    • Risk Assessment and Management
      • Identify, evaluate, and prioritize cybersecurity risks for College-managed information systems, as well as those provided and managed by outside vendors, following NIST CSF and relevant ISO27001 framework components.
      • Ensure a rigorous vendor due diligence and management process to properly manage risks associated with third-party vendors and partners providing technology, data analysis, financial service, and other critical services to the College.
    • Policy Development and Implementation
      • Design and implement reasonable information security policies and procedures to mitigate risks and protect the College’s ability to fulfill its mission to teach all who wish to learn, which today relies on digital technologies to reach the millions of people who learn from and support the College.
    • Awareness and Education
      • Develop a comprehensive strategy to ensure best-in-class cybersecurity awareness and knowledge training across the College.
      •  Together with our ITS instructional team, develop a curriculum to transform complex information security concepts into understandable and actionable knowledge for a non-technical audience.
    • Collaborative Leadership
      • Work closely with executive leadership and external service providers to ensure that our cybersecurity strategy is cohesive, reasonable, and effective, ensuring that all processes align with the strategic objectives of the College.
    • Reporting & Measurement
      • Develop and manage reliable metrics and KPIs to effectively monitor the cybersecurity posture of the College and demonstrate the effectiveness of our processes. 
      • Develop an effective communication plan to ensure that information relevant to decision making is conveyed to the right people at the right time to continuously improve the College’s security posture.
    • Continuing Education
      • Complete at least 60 hours per calendar year of continuing education that is directly related to your responsibilities and duties in this role.

    Qualifications

    Expert-level

    •  Strategic Cybersecurity Leadership
      • Proven experience developing and executing comprehensive security programs in complex enterprise environments.
      • Demonstrated ability to select, negotiate, and organize managed service providers to assist the College’s IT staff.
    • Risk Management Frameworks
      • IT security and risk management frameworks (NIST, ISO27001, FAIR), analysis, and reporting suitable for college/campus environments.
      • GDPR, HIPAA HITECH, PCI, and similar regulatory requirements.
    •  Incident Response Management
      •  Skilled in developing comprehensive incident response and management strategy and plans.
      • Coordinating and training teams to respond to cybersecurity incidents effectively.
    • Technology and Systems
      • Experience designing security controls for both on-prem and cloud data centers, as well as Microsoft Active Directory, Microsoft Azure, and VMWare environments.
      • Advanced knowledge in managing security architectures, both on-premises and cloud-based environments, including proficiency with next-gen firewalls and SIEM platforms.
      • Experience with modern secure software design and programming principles to ensure appropriate security practices are incorporated into the software development lifecycle.
      • Knowledge of common vulnerabilities (such as OWASP Top Ten) and applicable mitigation tactics.
      • Vulnerability and penetration testing methodologies and the ability to work with internal and external testers to assess system vulnerabilities using both automated tools (e.g., Qualys, Metasploit, Nessus, etc.) and manual “red team” testing.
    • Communication Skills
      • Excellent communication abilities with proficiency in articulating complex security topics to diverse audiences.

    Proficient-level

      • Vendor Management
        • Must have a solid understanding of vendor management principles and practices.
      • Project Management
        • Effective in leading cybersecurity projects, including planning, execution, and stakeholder management.
      • Team Development
        •  Experienced in mentoring and developing information security professionals.
    • Technology and Systems
      • Microsoft Purview, Box Governance, Google Vault and similar tools used in eDiscovery and litigation management
      • Cybersecurity tools and technologies (e.g., Splunk, LogRhythm, etc.) for monitoring, detection, analysis, and response.
      • Endpoint security tools, such as Microsoft Defender
      • Design and implementation of ZTA and ZTNA models within a hybrid enterprise environment
      • Comprehensive knowledge of Windows, Linux, and Mac OS security.
      • Python, PowerShell, Azure Cloud Shell, and SQL experience for automation and data analysis

    Education and Experience

    • A minimum of 7 to 10 years of experience in a senior-level information security or IT leadership role, with extensive management experience.
    • Preferably a Bachelor’s degree in Computer Science, Information Technology, Cybersecurity, or a related field. A Master’s degree or an MBA with a technology focus is a plus. 
    • Experience in higher education is a plus.

    Certifications and Training

    • Desireable:
      • CISSP, CISM, CRISC, CEH
      • ITIL 4 training and certifications
        • Information Security Management practitioner training

    Other Requirements

  • Proven track record of successfully coaching/mentoring people under your charge
  • Willingness to occasionally work outside of normal business hours to respond to emergencies
  • Willingness to periodically travel for off-site strategic planning meetings, remote campus visits, and College events
  • Confidentiality and privacy protection are critical to success in this role. The ability to know when and how to maintain confidentiality is essential.
  • Ideal candidates will have a habit of daily reading that includes popular infosec blogs, online cybersecurity periodicals, technology news articles, and infosec books 
  • Friendly and customer-service oriented with a solution-focused attitude
  • Must have principles consistent with the mission and purpose of Hillsdale College
  •  

    Personal Characteristics

    The Information Technology Services department interacts with College staff and students. A clean and neat appearance and a pleasant relationship that is supportive of the College mission is essential.  This relationship needs to be supportive and professional while maintaining confidentiality as needed.

    Code of Commitment

    Be a good representative of Hillsdale College to promote the liberal arts, the College’s original Articles of Association and operating principles stated in the Staff Code of Commitment. The Mission Statement should be considered in all aspects of the position. The teaching of Christian faith shall remain a conspicuous aim of the College.    

  • 2 Months Ago

R
vCIO / Account Manager
  • RedRock Information Security LLC
  • Grand Rapids, MI FULL_TIME
  • Job description As a vCIO and Account Manager, you will act as a strategic partner and advisor to our clients, helping them align their technology with their business objectives. You will play a cruci...
  • 12 Days Ago

R
Information Technology Security Manager
  • Rise Technical
  • Detroit, MI FULL_TIME
  • IT Security Manager Detroit - Michigan (Hybrid)Salary - $100,000 - $150,000 Health Insurance 401k PTO Bonus Are you an IT Security Manager looking to work for a rapidly growing organization who will s...
  • 2 Days Ago

P
Information Security Analyst
  • Peraton
  • Waterford, MI FULL_TIME
  • Job DetailsAbout PeratonPeraton is a next-generation national security company that drives missions of consequence spanning the globe and extending to the farthest reaches of the galaxy. As the world'...
  • 3 Days Ago

T
Information Systems Security Manager
  • Trident Maritime Systems
  • Kingsford, MI FULL_TIME
  • Job DetailsOverview: Job Title: Information Systems Security ManagerLocation: Kingsford, MI Type: FTE, 100% onsiteTrident Maritime Systems is seeking an Information Security Systems Manager to join ou...
  • 6 Days Ago

G
INFORMATION SECURITY ENGINEER 2
  • Generis Tek Inc
  • New Buffalo, MI FULL_TIME
  • We have a Permanent for Information Security Engineer 2 for our client New Buffalo, MI. Please let me know if you or any of your friends would be interested in this position.Position Title: Informatio...
  • 9 Days Ago

E
Sports Information Director
  • Evergreen State College
  • Olympia, WA
  • Position Purpose This position is responsible for managing sports information for Evergreen’s intercollegiate athletics ...
  • 6/11/2024 12:00:00 AM

I
Associate Client Information Director
  • IQVIA, Inc.
  • Parsippany, NJ
  • Internal Job Description Overview IQVIA™ (www.IQVIA™.com) is the world's leading company providing information, technolo...
  • 6/11/2024 12:00:00 AM

T
Security Analyst
  • The Phoenix Group
  • Boston, MA
  • Responsibilities: Contribute to the ongoing development and improvement of the firm’s governance, risk management, and c...
  • 6/10/2024 12:00:00 AM

T
Information Security Engineer
  • Trulieve
  • Job Title: Information Security Engineer Department: Information Security Location: Remote Reports to: Information Secur...
  • 6/10/2024 12:00:00 AM

S
Director of Cyber Security
  • Smith Arnold Partners
  • Very unique Cybersecurity leadership opportunity. Chance to evaluate and financial focused organizations cybersecurity p...
  • 6/9/2024 12:00:00 AM

A
Technical Security Project Manager - (B4)
  • Applied Materials, Inc.
  • Santa Clara, CA
  • Title: Technical Security Project Manager Location: Santa Clara, California Reports to Director - Global Security Techni...
  • 6/8/2024 12:00:00 AM

C
GRC Analyst
  • Cypress HCM
  • Boston, MA
  • Governance, Risk, and Compliance Analyst Location: Boston, MA Hybrid: 1 day onsite Employees: 500 Team Size: 10-15 Indus...
  • 6/7/2024 12:00:00 AM

N
Athletic Director
  • Nebraska Christian College of Hope International University
  • Fullerton, CA
  • Athletic Director Hope International University Position Information Position Summary: The Athletic Director (AD) is the...
  • 6/7/2024 12:00:00 AM

Michigan consists of two peninsulas that lie between 82°30' to about 90°30' west longitude, and are separated by the Straits of Mackinac. The 45th parallel north runs through the state—marked by highway signs and the Polar-Equator Trail—along a line including Mission Point Light near Traverse City, the towns of Gaylord and Alpena in the Lower Peninsula and Menominee in the Upper Peninsula. With the exception of two small areas that are drained by the Mississippi River by way of the Wisconsin River in the Upper Peninsula and by way of the Kankakee-Illinois River in the Lower Peninsula, Michigan...
Source: Wikipedia (as of 04/11/2019). Read more from Wikipedia
Income Estimation for Information Security Director jobs
$190,269 to $245,991

Information Security Director in Dayton, OH
Information system security officers establish and enforce security policies to protect an organization’s computer infrastructure, networks and data.
February 04, 2020
Information Security Director in Norfolk, VA
You should be comfortable communicating security directives to all employees including but not limited to Team Members, Leadership and Executives when required.
December 16, 2019
Information Security Director in Riverside, CA
A security architect could help build a more resilient network.
December 24, 2019