Description
The Information Security Operations Manager is responsible for overseeing the day-to-day security operations of the firm's technology environment. This includes managing the firm's security tooling and vendor relationships, leading vulnerability and patch management programs, and coordinating incident detection and response activities. The Manager works closely with the Director of Information Technology, the Network Operations Manager, and external security partners to maintain a strong, measurable cybersecurity posture. This role supervises one direct report and serves as an internal subject matter expert on information security matters for attorneys, administrative staff, and firm leadership.
About the Opportunity
Responsibilities:
- Oversee security operations, including the firm’s external Security Operations Center vendor, alert triage, incident response, and service-level performance.
- Administer and optimize security platforms, including EDR, SIEM/log management, and intrusion detection and prevention tools.
- Lead incident response planning and execution, including containment, recovery, post-incident reviews, and playbook testing.
- Manage vulnerability scanning, patching, risk prioritization, and remediation across systems, networks, and cloud services.
- Monitor emerging threats and ensure the firm’s technology environment follows recognized security standards and hardening practices.
- Coordinate client and insurance security questionnaires, documentation, interviews, and cyber liability renewal activities.
- Develop and maintain information security policies, technology inventories, and network and data-flow diagrams.
- Track security metrics and clearly communicate the firm’s cybersecurity posture to IT leadership and the Security Committee.
- Supervise and develop a security team member and promote firmwide security awareness through training and policy communication
The physical demands of this potion are representative of those that must be met by an employee in order to successfully perform the essential functions of the position. These include being both mobile and stationary throughout the workday, having the ability to transport 25 pounds and being able to operate a computer and other business equipment found in the office.
What Makes You Successful
A successful candidate brings strong analytical, research, and organizational skills to assess complex security information, identify patterns, and prioritize action. This individual remains composed under pressure, takes ownership of issues through resolution, and confidently enforces security policies at all levels of the organization. They communicate effectively with technical and non-technical audiences, collaborate across IT, legal, and business teams, and remain committed to learning about emerging threats and security technologies.
About You
Experience, Education and Training:
Bachelor’s degree in information technology, Cybersecurity, Computer Science, or a related field (or equivalent work experience)
5–8 years of progressive information security experience, with at least 1–2 years in a lead or supervisory role
Hands-on experience with EDR platforms (CrowdStrike preferred), SIEM tools, and vulnerability scanning tools (Nessus/Tenable or equivalent)
Working knowledge of IPS/IDS technologies and network security principles
Demonstrated experience managing a patch management program and vulnerability management lifecycle
Familiarity with security frameworks such as NIST Cybersecurity Framework (CSF), MITRE ATT&CK, or CIS Controls
Strong written and verbal communication skills; able to respond to client security questionnaires and present to firm leadership
Ability to learn new technologies quickly and effectively
Professional security certification preferred: CISSP, CISM, GCIA, GCIH, or CompTIA Security+
Experience in a legal, professional services, or other regulated environment preferred
Experience managing an external SOC or MSSP relationship preferred
What sets Warner Apart
At Warner Norcross + Judd, we know that talented professionals have choices. That's why we've built a workplace that supports your success both professionally and personally.
Benefits Designed to Support You
We offer a comprehensive benefits package that includes:
- Medical, dental, and vision insurance
- Firm-paid life insurance and disability coverage
- 401(k) with employer contribution or match, depending on plan design
- Generous paid time off and leave programs
- Paid firm holidays
- Remote work flexibility
- Wellness programs
- Employee assistance program
- Professional development and growth opportunities
- Firm paid parking
Why People Choose Warner
At Warner, our culture is guided by our motto: "Fun, Pride + Profit...in that Order." We believe people do their best work when they feel connected to their colleagues, supported in their careers, and empowered to maintain balance in their lives.
When you join Warner, you'll find:
- A collaborative environment where teamwork and mutual respect are valued
- Meaningful opportunities to grow your skills and advance your career
- A commitment to diversity, equity, and inclusion that encourages participation and leadership at every level
- Flexibility that supports both professional achievement and personal well-being
- A firm that invests in its communities through charitable giving, volunteerism, and scholarship programs
- Colleagues who are passionate about delivering exceptional service while enjoying the work they do
About Warner
Warner is a full-service corporate law firm with 230+ attorneys practicing in nine offices throughout Michigan: Bloomfield Hills, Detroit, Grand Rapids, Holland, Kalamazoo, Lansing, Macomb, Midland and Muskegon. To learn more, visit www.wnj.com, or connect with us on LinkedIn or Facebook.