Information Security Operations Manager

Warner Norcross + Judd

Grand Rapids (MI)

On-site

USD 110,000 - 150,000

Full time

3 days ago
Be an early applicant
Application generator

Stand out for this role — generate a tailored resume and cover letter in about a minute.

Get past ATS filters

Benefits offered by this job

Medical insurance
Dental & Vision
Life insurance
401(k) matching
Remote work flexibility
PTO & holidays
Parking
Wellness program
Professional development

Job summary

Warner Norcross + Judd is seeking an Information Security Operations Manager to oversee the firm’s security operations, manage tooling and vendor relationships, and lead patch and vulnerability programs across the technology environment.

The role coordinates incident detection and response, supervises one staff member, and serves as the internal security expert for attorneys, staff, and leadership. You will work with IT leadership to strengthen defenses and promote security awareness.

Qualifications

  • Bachelor's degree in IT, Cybersecurity, CS, or related field.
  • 5–8 years of progressive information security with 1–2 years in a lead/supervisory role.
  • Hands‑on experience with EDR (CrowdStrike preferred), SIEM, and vulnerability scanning tools (Nessus/Tenable).
  • Working knowledge of IPS/IDS technologies and network security principles.
  • Experience managing patch and vulnerability management lifecycle.
  • Familiarity with NIST CSF, MITRE ATT&CK, CIS Controls.
  • Strong written and verbal communication; able to respond to client security questionnaires.
  • Professional security certs preferred: CISSP, CISM, GCIA, GCIH, or Security+.
  • Experience in legal, professional services, or regulated environment; external SOC/MSSP management.

Responsibilities

  • Oversee security operations, including external SOC vendor, alert triage, incident response, and SLAs.
  • Administer and optimize security platforms: EDR, SIEM/log management, IDS/IPS.
  • Lead incident response planning and execution: containment, recovery, post‑incident reviews.
  • Manage vulnerability scanning, patching, risk prioritization, remediation across systems and cloud.
  • Monitor emerging threats and ensure adherence to security standards and hardening practices.
  • Coordinate client and insurance security questionnaires, documentation, interviews, and renewals.
  • Develop and maintain information security policies, inventories, and data/network diagrams.
  • Track security metrics and report posture to IT leadership and Security Committee.
  • Supervise and develop a security team member; promote firmwide security awareness.

Skills

EDR (CrowdStrike)
SIEM
Vulnerability scanning
Patch management
Network security
Security frameworks
Communication
Security leadership

Education

Bachelor's in IT/Cybersecurity/CS

Tools

CrowdStrike
Nessus
SIEM tools

Job description

The Information Security Operations Manager is responsible for overseeing the day-to-day security operations of the firm's technology environment. This includes managing the firm's security tooling and vendor relationships, leading vulnerability and patch management programs, and coordinating incident detection and response activities. The Manager works closely with the Director of Information Technology, the Network Operations Manager, and external security partners to maintain a strong, measurable cybersecurity posture. This role supervises one direct report and serves as an internal subject matter expert on information security matters for attorneys, administrative staff, and firm leadership.

About the Opportunity
Responsibilities:
  • Oversee security operations, including the firm’s external Security Operations Center vendor, alert triage, incident response, and service-level performance.
  • Administer and optimize security platforms, including EDR, SIEM/log management, and intrusion detection and prevention tools.
  • Lead incident response planning and execution, including containment, recovery, post-incident reviews, and playbook testing.
  • Manage vulnerability scanning, patching, risk prioritization, and remediation across systems, networks, and cloud services.
  • Monitor emerging threats and ensure the firm’s technology environment follows recognized security standards and hardening practices.
  • Coordinate client and insurance security questionnaires, documentation, interviews, and cyber liability renewal activities.
  • Develop and maintain information security policies, technology inventories, and network and data‑flow diagrams.
  • Track security metrics and clearly communicate the firm’s cybersecurity posture to IT leadership and the Security Committee.
  • Supervise and develop a security team member and promote firmwide security awareness through training and policy communication

The physical demands of this potion are representative of those that must be met by an employee in order to successfully perform the essential functions of the position. These include being both mobile and stationary throughout the workday, having the ability to transport 25 pounds and being able to operate a computer and other business equipment found in the office.

What Makes You Successful

A successful candidate brings strong analytical, research, and organizational skills to assess complex security information, identify patterns, and prioritize action. This individual remains composed under pressure, takes ownership of issues through resolution, and confidently enforces security policies at all levels of the organization. They communicate effectively with technical and non‑technical audiences, collaborate across IT, legal, and business teams, and remain committed to learning about emerging threats and security technologies.

About You
Experience, Education and Training:
  • Bachelor’s degree in information technology, Cybersecurity, Computer Science, or a related field (or equivalent work experience)
  • 5–8 years of progressive information security experience, with at least 1–2 years in a lead or supervisory role
  • Hands‑on experience with EDR platforms (CrowdStrike preferred), SIEM tools, and vulnerability scanning tools (Nessus/Tenable or equivalent)
  • Working knowledge of IPS/IDS technologies and network security principles
  • Demonstrated experience managing a patch management program and vulnerability management lifecycle
  • Familiarity with security frameworks such as NIST Cybersecurity Framework (CSF), MITRE ATT&CK, or CIS Controls
  • Strong written and verbal communication skills; able to respond to client security questionnaires and present to firm leadership
  • Ability to learn new technologies quickly and effectively
  • Professional security certification preferred: CISSP, CISM, GCIA, GCIH, or CompTIA Security+
  • Experience in a legal, professional services, or other regulated environment preferred
  • Experience managing an external SOC or MSSP relationship preferred
What sets Warner Apart

At Warner Norcross + Judd, we know that talented professionals have choices. That's why we've built a workplace that supports your success both professionally and personally.

Benefits Designed to Support You

We offer a comprehensive benefits package that includes:

  • Medical, dental, and vision insurance
  • Firm‑paid life insurance and disability coverage
  • 401(k) with employer contribution or match, depending on plan design
  • Generous paid time off and leave programs
  • Paid firm holidays
  • Remote work flexibility
  • Wellness programs
  • Employee assistance program
  • Professional development and growth opportunities
  • Firm paid parking
Why People Choose Warner

At Warner, our culture is guided by our motto: "Fun, Pride + Profit...in that Order." We believe people do their best work when they feel connected to their colleagues, supported in their careers, and empowered to maintain balance in their lives.

When you join Warner, you'll find:

  • A collaborative environment where teamwork and mutual respect are valued
  • Meaningful opportunities to grow your skills and advance your career
  • A commitment to diversity, equity, and inclusion that encourages participation and leadership at every level
  • Flexibility that supports both professional achievement and personal well‑being
  • A firm that invests in its communities through charitable giving, volunteerism, and scholarship programs
  • Colleagues who are passionate about delivering exceptional service while enjoying the work they do
About Warner

Warner is a full‑service corporate law firm with 230+ attorneys practicing in nine offices throughout Michigan: Bloomfield Hills, Detroit, Grand Rapids, Holland, Kalamazoo, Lansing, Macomb, Midland and Muskegon. To learn more, visit www.wnj.com, or connect with us on LinkedIn or Facebook.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Chief Information Officer
Chief Information Officer

Warner Norcross + Judd • Grand Rapids (MI)

On-site
USD 200,000 - 250,000
Comprehensive medical, dental, and vision insurance
401(k) with employer contribution
Generous PTO and leave policies
+2
Senior Information Security Operations Lead — Remote
Senior Information Security Operations Lead — Remote

Warner Norcross + Judd • Grand Rapids (MI)

On-site
USD 110,000 - 150,000
Medical insurance
Dental & Vision
Life insurance
+6
Impact Investing Paralegal
Impact Investing Paralegal

Warner Norcross + Judd • Grand Rapids (MI)

On-site
USD 52,000 - 76,000
Medical, dental, vision
Life and disability insurance
401k
+4
Impact Investing Paralegal
Impact Investing Paralegal

Warner Norcross + Judd LLP • Detroit (MI)

On-site
USD 55,000 - 75,000
Medical, dental, and vision insurance
401k with company match
Generous PTO
Impact Investing Paralegal
Impact Investing Paralegal

Warner Norcross + Judd LLP • Grand Rapids (MI)

On-site
USD 52,000 - 70,000
Remote work flexibility
401k plan
Health insurance
+2
Attorney Recruiting + Integration Specialist
Attorney Recruiting + Integration Specialist

Warner Norcross + Judd LLP • Detroit (MI)

On-site
USD 85,000 - 110,000
Medical coverage
401(k) plan
Paid time off & holidays
+2
Attorney Recruiting + Integration Coordinator
Attorney Recruiting + Integration Coordinator

Warner Norcross + Judd • Detroit (MI)

On-site
USD 60,000 - 90,000
Senior Business Development Manager
Senior Business Development Manager

Warner Norcross + Judd • Grand Rapids (MI)

On-site
USD 90,000 - 130,000
Medical Insurance
Dental Insurance
Vision Insurance
+7
Attorney Recruiting + Integration Specialist
Attorney Recruiting + Integration Specialist

Warner Norcross + Judd • Grand Rapids (MI)

On-site
USD 70,000 - 90,000
Medical, dental, and vision insurance
Firm-paid life insurance and incap/dis
401(k) with employer contribution or
+5
Financial Institutions M&A/Securities Attorney (All Offices)
Financial Institutions M&A/Securities Attorney (All Offices)

Warner Norcross + Judd • Grand Rapids (MI)

On-site
USD 120,000 - 190,000