Salary: $140,000.00 - $150,000.00 Annually
Location : Auburn Hills Campus
Job Type: Management Staff Exempt
Remote Employment: Flexible/Hybrid
Job Number:Division: Information Technologies
Opening Date: 09/21/2026
Closing Date: 9/27/2026 11:59 PM Eastern
Shift Days/Hours: Monday - Friday, 8:30 am - 5:00 pm
Summary of Purpose Provides leadership and management for the College's cybersecurity program, protecting institutional information systems, data, and network infrastructure from threats and unauthorized access. Reporting to and partnering with the Director of Technology Infrastructure and Security, this role directs security operations, vulnerability and risk management, incident response, compliance, and security awareness, while supervising and developing cybersecurity staff.
The position balances strategic leadership with hands-on technical depth, translating institutional risk and business needs into effective, sustainable security controls and program improvements. It serves as a senior escalation point and, as assigned, acts on behalf of the Director on security matters.
The role requires a strong commitment to service excellence within a multicultural and diverse environment, with a focus on continuous improvement, confidentiality, and effective communication across departments.
Typical Duties This description is intended to indicate the types of duties and responsibilities requested of the employee assigned this title. It is not intended to be an exhaustive list of all the duties and responsibilities that may be required:
- Develop and lead execution of the College's cybersecurity strategy and roadmap, translating institutional risk tolerance and business priorities into a multi-year security program, in partnership with the Director of Technology Infrastructure & Security.
- Develop, implement, assess and mitigate risk, and maintain security policies, standards, procedures, and controls aligned with recognized frameworks (e.g., NIST Cybersecurity Framework, NIST 800-53, CIS Controls, ISO, etc.).
- Direct security operations, including continuous monitoring, threat detection, alert triage, and escalation across SIEM, endpoint, email, and network security platforms.
- Own and mature the vulnerability management program overseeing scanning, risk-based prioritization, remediation coordination, and reporting.
- Oversee endpoint detection and response and network security operations, including next-generation firewalls ensuring effective configuration, tuning, and coverage.
- Lead the College's incident response program, coordinating detection, containment, eradication, and recovery, and directing post-incident reviews and executive reporting.
- Plan and conduct risk assessments and third-party/vendor risk reviews, tracking findings and remediation to closure and reporting residual risk to leadership.
- Establish processes to assess security risk and implement mitigations for emerging technologies (e.g., AI)
- Ensure compliance with applicable regulations and standards (e.g., FERPA, GLBA, PCI-DSS, HIPAA where applicable), and support internal and external audit activities.
- Establish and manage the College security awareness and training program, including phishing simulations and role-based education for faculty, staff, and students.
- Evaluate, recommend, and manage security technologies and other vendors; provide input to the security budget; and support procurement, contract, and renewal decisions.
- Develop and report security metrics, dashboards, and posture assessments to IT leadership, executive stakeholders, and governance committees.
- Support business continuity and disaster recovery planning and testing as it relates to security controls, data privacy and resilience.
- Partner with Legal, Registrar, and Human Resources to maintain data privacy policies and standards, including data classification, retention, and handling of PII and FERPA-protected data, and lead security's role in incident response for data privacy events.
- Lead investigations into electronic activity at the request of HR or Legal exercising independent judgment in scope and methodology while maintaining defensible documentation and chain of custody
- Collaborate across the College to embed security into projects, systems, new solutions, and processes, and serve as a senior point of escalation for security matters.
- Maintain current knowledge of the evolving threat and cyber landscape, emerging technologies, and industry best practices, and adjust the security program accordingly.
- Supervise, mentor, and develop cybersecurity staff and broader IT, including hiring, goal setting, and professional development.
- Performs other related duties, as assigned.
- Ability to work additional hours, as needed, including during active security incidents.
Knowledge and Skills Required - Demonstrated leadership and supervisory ability, including the capacity to build, develop, and retain a high-performing security team.
- In-depth knowledge of security frameworks and risk management practices, including the NIST Cybersecurity Framework, NIST 800-53, and CIS Controls.
- Strong command of security operations, including SIEM, endpoint detection and response (EDR), vulnerability management, and network security.
- Experience with enterprise vulnerability management platforms, Tenable (Nessus, Tenable.sc, or Tenable.io) preferred.
- Experience with endpoint detection and response solutions, CrowdStrike Falcon preferred.
- Experience with next-generation firewalls, Fortinet (FortiGate/FortiManager) preferred.
- Proven ability to lead incident response, including coordination, decision-making under pressure, and clear communication with technical and executive audiences.
- Working knowledge of regulatory and compliance requirements relevant to higher education (e.g., FERPA, GLBA, PCI-DSS) and experience supporting audits.
- Working knowledge of identity and access management (IAM/PAM), cloud security posture (SaaS/IaaS), data protection and encryption standards, and email security controls.
- Strong project management, planning, and organizational skills, with the ability to manage multiple priorities and initiatives concurrently.
- Excellent verbal and written communication skills, including the ability to translate technical risk into business terms for leadership and stakeholders.
- Sound judgment, integrity, and a strong commitment to confidentiality, ethical conduct, and continuous improvement.
- Relevant industry certifications such as CISSP, CISM, GIAC, or equivalent preferred.
Minimum Education and Experience EDUCATION: Bachelor's degree in Information Systems, Cybersecurity, Computer Science, or related field required; Relevant, position-related experience may substitute for education on a year-for-year basis.
EXPERIENCE: Six (6) years of progressively responsible experience in information security or cybersecurity, including at least two (2) years in a lead, supervisory, or team leadership capacity. Experience with vulnerability management (Tenable), endpoint detection and response (CrowdStrike), and Fortinet firewalls preferred. Experience with identity and access management, cloud security, and data protection technologies preferred. Experience in higher ed preferred. Experience with multi-cultural students and staff preferred.
See below the benefits offered by the College under the benefit types: full-time and part-time
Full-Time Positions for the Following Employee Groups: Classified, Exempt (Non-union), Faculty, Maintenance, Operating Engineers, Public Safety, Teamsters
Benefit Effective Date: First of the month after date of hire
Medical
- Multiple PPO medical plans with prescription coverage to choose from; Plans provided by Blue Cross Blue Shield of Michigan (BCBSM)
- Free preventive services on every plan
- Health Savings Account (HSA) available with the High Deductible medical plans
- BCBSM through the Western Michigan Health Insurance Pool (WMHIP) medical is offered to all employment groups
- There is a $2,000 prorated Medical Opt Out stipend with proof of other applicable medical coverage
Dental
- Blue Cross Blue Shield of Michigan (BCBSM) plan provided by the College, no payroll deductions
Vision
- NVA (National Vision Administrators) plan provided by the College, no payroll deductions
Flexible Spending Accounts (FSAs)
- Health Care, Limited Purpose, Dependent Care, and Adoption FSAs are available
Life Insurance
- TheCollege provides $120,000 of coverage (portion is subject to taxation), no payroll deductions
Disability
- 70% of wages provided for Short-Term and Long-Term Disability
Retirement
- College employees are part of the Michigan Public School Employees Retirement System (MPSERS) provided by the Michigan Office of Retirement Services (ORS)
- The Exempt, Faculty, and Teamsters employee groups can elect the Optional Retirement Plan (ORP) provided by TIAA; opting out of MPSERS
Voluntary Retirement Accounts
- Employees can open and contribute via payroll deduction into 403(b) and/or 457(b) voluntary retirement accounts provided by TIAA
Voluntary Benefits
- Employees can elect voluntary benefits of optional life insurance (for self, spouse, and/or children), cancer protection, pet insurance, legal & ID shield, long term and/or critical care during annual open enrollment in November
Tuition
- OCC tuition waiver program for employees and their dependents
- Employees may take Non-OCC classes using the tuition reimbursement program
Employee Assistance Program (EAP)
- Employees have a free resource to assist with a wide-range of needs, including counseling sessions
Employee Group: Classified Part-Time
Benefit Effective Date: First of the month after date of hire
Part-time Classified employees are offered the opportunity to have medical, dental, vision at the full monthly premium; life insurance is also available at a nominal cost. Participation requires that benefit costs be taken via payroll deduction.
Medical
- Multiple PPO medical plans with prescription coverage to choose from; Plans provided by Blue Cross Blue Shield of Michigan (BCBSM)
- Free preventive services on every plan
- Health Savings Account (HSA) available with the High Deductible medical plans
- BCBSM through the Western Michigan Health Insurance Pool (WMHIP) medical is offered to all employment groups
Dental
- Blue Cross Blue Shield of Michigan (BCBSM) plan that has free in-network preventive services including two annual cleanings
Vision
- NVA (National Vision Administrators) plan that includes annual examinations with participating providers
Life Insurance
- Employees can choose to have a life insurance policy of $10,000 or $20,000
Retirement
- College employees are part of the Michigan Public School Employees Retirement System (MPSERS) provided by the Michigan Office of Retirement Services (ORS)
Voluntary Retirement Accounts
- Employees can open and contribute, via payroll deduction, into 403(b) and/or 457(b) voluntary retirement accounts provided by TIAA
Tuition
- OCC tuition waiver program for employees and their dependents
- Employees may take Non-OCC classes using the tuition reimbursement program
Employee Group: Adjunct Faculty, Part-time Hourly (Non-union), and Casual Instructors*
Retirement
- College employees are part of the Michigan Public School Employees Retirement System (MPSERS) provided by the Michigan Office of Retirement Services (ORS)
Voluntary Retirement Accounts
- Employees can open and contribute, via payroll deduction, into 403(b) and/or 457(b) voluntary retirement accounts provided by TIAA
Tuition
- OCC tuition reimbursement program available for Adjunct Employees
*Edustaff employees are not eligible for OCC benefits.
Contact Information:
01
What is your expected salary? Please note our salary range as listed in the job posting.
02
Do you have a Bachelor's degree in Information Systems, Cybersecurity, Computer Science, or related field ? NOTE: Relevant, position-related experience may substitute for education on a year-for-year basis.
Required Question