Director, Information Security Operations

MRO Corporation

United States

On-site

USD 162,000 - 219,000

Full time

14 days+
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Job summary

MRO Corporation seeks a Director of Information Security to lead the program, build a high-performing team, and drive measurable outcomes across security operations, vulnerability management, incident response and threat intelligence. This role emphasizes metrics, accountability, and strategic security leadership.

You will define KPIs, partner with IT, compliance, and executives, and implement security controls across cloud and on‑premises to protect data and systems.

Qualifications

  • Proven ability to define, implement, and manage cybersecurity KPIs, dashboards and SLAs.
  • Experience building high-performing security teams with measurable goals.
  • Strong knowledge of CISSP domains and security controls.
  • Track record delivering risk reduction and remediation projects.

Responsibilities

  • Direct and oversee security operations including monitoring, incident response, threat intelligence, and vulnerability management.
  • Define, maintain and improve security KPIs, KRIs, dashboards, and scorecards.
  • Set clear expectations, coach teams, and foster ownership and continuous improvement.
  • Lead operational reviews to track performance, blockers, and commitments.
  • Implement security monitoring tools to detect and respond to threats in real time.
  • Stay current on threats and use intelligence to strengthen defenses and readiness.
  • Oversee vulnerability assessment and remediation, prioritize risks and track SLAs.
  • Investigate incidents, determine root causes, define corrective actions, and verify improvements.
  • Collaborate with IT, compliance, legal, engineering, product, and leadership to align security with business goals.
  • Lead security initiatives across network, servers/storage, endpoints, cloud and related controls.
  • Identify automation and process improvements to reduce risk.

Skills

Security program leadership
KPI dashboards
Team leadership
CISSP domains
Risk reduction
Executive communication
Critical thinking
Metrics to action

Education

Bachelor's degree
10+ years cybersecurity
Microsoft-centric environment
CISSP
CISM
CRISC
CCSP

Job description

As the Director of Information Security, you will lead the execution and operational performance of MRO’s information security program. This role is accountable for building a high-performing security team, defining and tracking meaningful KPIs, and using measurable outcomes to improve security operations, vulnerability management, incident response, threat intelligence, vulnerability management, and operational readiness. You will oversee the development, implementation, and management of information security programs that protect the confidentiality, integrity, and availability of MRO’s data and systems. This role requires a strategic, metrics-driven leader with deep cybersecurity expertise, strong operational discipline, and the ability to drive accountability across teams. If you are passionate about building effective teams, improving performance through data, and continuously strengthening cybersecurity practices.

Responsibilities
  • Security Operations Leadership: Direct and oversee all aspects of security operations, including monitoring, incident response, threat intelligence, vulnerability management, and operational readiness.
  • KPI and Metrics Ownership: Define, maintain, and continuously improve security KPIs, KRIs, dashboards, and scorecards that measure team performance, SLA adherence, remediation progress, incident response effectiveness, backlog health, control effectiveness, and security risk reduction.
  • High-Performance Team Management: Set clear expectations, establish measurable goals, coach team members, improve execution consistency, and create a culture of ownership, urgency, accountability, and continuous improvement.
  • Operating Rhythm and Accountability: Lead recurring operational reviews that evaluate performance against targets, identify blockers, assign ownership, track commitments, and ensure follow-through on prioritized work.
  • Security Monitoring: Implement and manage security monitoring tools and technologies to detect, measure, and respond to security threats in real time.
  • Threat Intelligence: Stay abreast of emerging threats and vulnerabilities. Use threat intelligence to enhance defensive strategies, improve detection capability, and strengthen incident response readiness.
  • Vulnerability Management: Manage the vulnerability assessment and remediation process. Ensure timely identification, prioritization, ownership assignment, SLA tracking, and mitigation of security vulnerabilities.
  • Security Incident Investigation: Conduct thorough investigations of security incidents, determine root causes, define corrective actions, and track completion of improvements to prevent recurrence.
  • Collaboration and Communication: Collaborate effectively with IT, compliance, legal, engineering, product, and executive leadership to align security initiatives with business objectives and communicate progress through clear, outcome-focused reporting.
  • Information Security Program Execution: Lead infrastructure and cybersecurity initiatives, including network security, server and storage security, endpoint security, cloud security, and related operational controls.
  • Continuous Improvement: Identify opportunities for automation, process improvement, workflow optimization, and measurable risk reduction across the information security program.
Qualifications

SKILLS|EXPERIENCE:

  • Experience leading and maturing an information security program with measurable outcomes, clear operating rhythms, and defined performance expectations.
  • Proven ability to define, implement, and manage cybersecurity KPIs, KRIs, dashboards, scorecards, SLAs, and operational performance reporting.
  • Demonstrated experience building, coaching, and leading high-performing teams with strong execution discipline, accountability, and measurable goals.
  • Advanced understanding of the competencies of the 8 Domains of the CISSP.
  • Track record of completing projects related to assessments, risk reduction, control improvement, vulnerability remediation, and security mitigation.
  • Ability to communicate security performance and risk to varied audiences, including end users, technical teams, business leaders, and executives.
  • Strong critical thinking, problem-solving, prioritization, and decision-making skills.
  • Proven planning, organizing, communication, and follow-through skills with the ability to translate metrics into action and sustained performance improvement.

QUALIFICATIONS:

Required:

  • Bachelor's degree in Information Security, Computer Science, Information Technology, or related field.
  • 10+ years of cybersecurity experience, including 5+ years in a leadership role.
  • Experience leading enterprise cybersecurity programs within a Microsoft-centric environment.
  • Strong expertise with building meaningful dashboards and KPI’s to measure operational success.
  • Experience with security operations, incident response, vulnerability management, cloud security, and identity management.
  • Knowledge of cybersecurity frameworks including but not limited to NIST, CIS Controls, and SOCII/HITRUST
  • Proven ability to communicate technical concepts and risks to executive and business leaders.

Preferred:

  • Professional certifications such as CISSP, CISM, CRISC, CCSP
  • Experience with AI platforms and services
  • Experience in highly regulated organizations.

Authenticity is essential to our hiring process. Submissions or interview responses created withAI are easily identified and will remove you from consideration. The same applies to using AI tools during interviews—we want to hear directly from you. We may also use technology to detect AI-generated content. Please share your genuine experiences and perspective as it’s the only way we can truly get to know you.

Total Compensation Base pay is one element of the total compensation package. Eligible employees may also receive an annual cash bonus and have access to a comprehensive benefits offering, including medical, dental, vision, life insurance, and a 401(k) plan.

Salary Range It is not typical for an individual to be hired at or near the top of the range. Individual pay may be influenced by factors such as skills, qualifications, experience, licensure, certifications, geographic location, and internal equity.

Applicant Privacy Notice

Pay Range

USD $162,000.00 - USD $219,000.00 /Yr.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Director, Information Security Operations
Director, Information Security Operations

MRO • United States

On-site
USD 162,000 - 219,000
Information Security Assurance Advisor
Information Security Assurance Advisor

MRO Corporation • United States

On-site
USD 104,000 - 140,000
Information Security Assurance Advisor
Information Security Assurance Advisor

MRO • United States

On-site
USD 104,000 - 140,000
Medical insurance
Dental insurance
Vision insurance
+2
Manager, Information Security (Hybrid)
Manager, Information Security (Hybrid)

AAA Inc. Brand • Town of Florida (NY)

On-site
USD 110,000 - 138,000
Associates Incentive Plan
Dir Security Operations & Engineering
Dir Security Operations & Engineering

Koitecc Solutions • Northern (KY)

Hybrid
USD 138,000 - 200,000
Medical, dental, vision insurance
401(k) with company matching
Paid time off and holidays
Manager, Information Security (Hybrid)
Manager, Information Security (Hybrid)

AAA National • Town of Florida (NY)

On-site
USD 110,000 - 138,000
Associates Incentive Plan
Dir Security Operations & Engineering
Dir Security Operations & Engineering

Empower • United States

Remote
USD 138,000 - 200,000
401(k) with company matching
Paid time off
Tuition reimbursement
Sr. Security Operations Center Manager
Sr. Security Operations Center Manager

Rural Metro Fire Department • Greenwood Village (CO)

On-site
USD 175,000 - 185,000
Medical
Vision
Dental
+6
Director of IT Security Operations
Director of IT Security Operations

The Security Executive Council • United States

On-site
USD 170,000 - 210,000
Medical, dental, and vision coverage
401(k) company match
Generous Paid Time Off
+1
Director, Cybersecurity
Director, Cybersecurity

Asset Living • United States

On-site
USD 150,000 - 190,000