← All roles
Director

Director of Information Security Operations

First Mid · Financial Services · 501-1,000 employees

Mattoon, IL · Onsite · full_time

CLI Career Level

Senior Director-equivalent

Low confidence

Opportunity Score

73/100

Above average

Low confidence

Executive Fit

Sign in

Add your background to score this role against you

Career Level and Opportunity Score describe the role itself. Executive Fit is the only figure that depends on your profile.

First seen Aug 23, 2026 · Last verified 2 hours ago · Sourced from LinkedIn — Director of Security (US)

CLI Take

Broader than the title suggests

This role reads Senior Director-equivalent despite being advertised as “Director of Information Security Operations” — the stated scope is wider than the employer's title implies. CLI's analysis reads this as steady-state ownership rather than a build mandate, and it carries GLBA accountability. The reporting line, total compensation and team size are not disclosed and remain the main open questions before pursuing it.

Why this role scores the way it does

73/100 — above average opportunity quality. CLI reads this as a Senior Director-equivalent mandate. Strongest signal: CLI's analysis reads this as steady-state ownership rather than a build mandate. 6 of 10 dimensions are not disclosed, which lowers confidence rather than the score.

Career level read

Senior Director-equivalent — The employer lists this as “Director of Information Security Operations”. CLI reads it as Senior Director-equivalent because the role shows 501-1,000 employee organization.

Low confidence

What makes it attractive

  • CLI's analysis reads this as steady-state ownership rather than a build mandate.
  • Title and described scope are broadly consistent.

What to probe before applying

  • No material concerns identified in the posting.

Scoring components · Above average

Compensation versus comparable rolesNot disclosed · excluded from the score

Compensation is not disclosed and there is no comparable set to place it against.

Reporting levelNot disclosed · excluded from the score

Reporting line: not disclosed.

Functional and geographic scopeNot disclosed · excluded from the score

Scope: no enterprise, global or multi-unit remit is described.

Quality of the mandate70 · weight 12%

CLI's analysis reads this as steady-state ownership rather than a build mandate.

Executive and board exposureNot disclosed · excluded from the score

Executive and board exposure: not disclosed.

Role authority versus title70 · weight 10%

Title and described scope are broadly consistent.

Company scale and trajectory67 · weight 10%

Employer profile: 501-1,000 employee organization, publicly traded, revenue 250m 1b.

Team ownershipNot disclosed · excluded from the score

Team size: not disclosed.

Budget ownershipNot disclosed · excluded from the score

Budget ownership: not disclosed.

Risk signals100 · weight 5%

No adverse signals identified in the posting.

Dimensions the employer does not disclose are excluded and the remaining weights are rebalanced, so missing information lowers confidence rather than the score.

Sign in to see how this role scores against your background, and add your career goal to evaluate career value.

Compensation

No compensation disclosed and insufficient comparable data to estimate.

Sample size not yet sufficient for a market comparison

See the full benchmark bands by level and region

The mandate

Lead and advance the organization’s enterprise information security program, focusing on strengthening the SOC, enhancing threat detection, and managing cyber risks across the bank and its subsidiaries. The role acts as the first line of defense, overseeing security technologies, incident response, and internal auditing activities.

Leads the internal Security Operations Center (SOC) and manages third-party security providers. Remit covers enterprise security strategy, incident response, threat hunting, and internal systems auditing for First Mid Bank & Trust.

Domains and regulation

  • Cyber Defense
  • Incident Response
  • Threat Intelligence
  • Infrastructure Security
  • GRC
  • Third-Party Risk
  • Enterprise Security
  • GLBA

Requirements

Must have

  • 8+ years Information Security experience or related IT experience
  • Bachelor’s degree in computer science or related field work experience/continuous education
  • Proven security competencies around all sectors of Cyber Security
  • Strong technical skills including OSI Model, network concepts, operating systems, and endpoints

Preferred / bonus

  • Preferred: Previous Information Security or IT Leadership Experience within Financial Services
  • Preferred: Advanced Security Certifications (CISSP, CEH, CCSP, CASP+) or obtaining within 18 months

Only must-have items are scored as hard constraints in Executive Fit.

Likely challenges

Not stated in the posting: Reporting line not explicitly stated; Salary range not disclosed; Specific team size not disclosed.

About First Mid

First Mid is a regional financial holding company providing commercial and retail banking, wealth management, and insurance services. The company operates across Illinois, Missouri, and Texas, managing approximately $7 billion in total assets. A security leader would oversee the protection of sensitive customer data and compliance across a multi-state network of banking centers and digital platforms.

Industry
Financial Services
Headcount
501-1,000 employees
Headquarters
Mattoon, Illinois
Founded
1865
Ownership
Public company · NASDAQ:FMBH
Funding
Publicly traded
Revenue
$250M – $1B

Full company profile for First Mid →

View original job description
At First Mid, base salary is one component of our Total Rewards program. Exact compensation is determined by factors such as (but not limited to) education, skills, internal equity, and experience. This position offers additional compensation in the form of discretionary short-term incentives (i.e. bonus, incentives, and/or commission). Benefits for this role include comprehensive healthcare, well-being benefits, paid family leave as well as generous paid time off. Total Rewards also include banking perks, tuition reimbursement, an Employee Stock Purchase Plan, and a 401K plan with company match. Incentives and benefits are subject to eligibility requirements. The Director of Information Security Operations is responsible for leading and advancing the organization’s enterprise information security program to protect First Mid Bank & Trust and its subsidiaries from evolving cyber and information security risks. This position requires a highly ethical, analytical, and strategic leader capable of managing multiple priorities in a complex, regulated environment.The role provides leadership and oversight of the internal Security Operations Center (SOC), third-party information security service providers, and plays large roles within information security audit and assessment activities. The Director of Information Security Operations is responsible for strengthening the organization’s security posture, enhancing threat detection and incident response capabilities, supporting regulatory and compliance requirements, and ensuring information security risks are identified, assessed, communicated, and appropriately managed across the enterprise.Responsibilities include, but are not limited to:Lead and Manage the Information Security Team FunctionOwn and Execute the Information Security StrategyOversee Enterprise Security Technologies and SolutionsEstablish and Enhance Security Processes and ControlsManage and triage First Mid Security Issues and IncidentsLead/Manage/Assist First Mid-Information Security/Organizational ProjectsFirst Line of Defense Testing/Threat HuntingStrengthen Enterprise Cyber ResiliencePartner Across the EnterpriseManage and assist with internal pen testing and internal systems auditing.Manage Infosec Policies and KRI’sOn-call rotation responsibilitiesQualificationsEducation/Experience:Previous Information Security or IT Leadership Experience within Financial Services Preferred8+ years Information Security experience or related IT experienceBachelor’s degree in computer science or related field work experience/continuous educationAdvanced Security Certifications – ex. CISSP, CEH, CCSP, CASP+ is a plus and/or obtaining certifications within 18 months of employment.Proven security competencies around all sectors of Cyber SecuritySkills:Interpersonal skills, both written and verbal, that will allow good communication to a diverse range of individuals with various levels of computer skills.Report Writing,Verbal Communication. The ability to Analyze data via its trends and patterns and communicate with stakeholdersProblem solving skillsStrong technical skills.Familiarity with bankingExperience with the OSI Model, network concepts, operating systems and endpoint-based operating system.Adequate knowledge of both internal policies and procedures and the respective state and federal laws and regulations governing departmental functions to ensure performance of individual job duties within the proper control environment.Total Rewards:Competitive health, dental & vision coverage with HSA match401(k) with employer match + Employee Stock Purchase PlanGenerous PTO, paid holidays & parental leaveTuition reimbursement & performance-based bonusesVisit our Total Rewards page to see our full list of benefitsFirst Mid Bancshares, Inc. is an Equal Opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, disability, gender identity, sexual orientation, protected veteran status, or any other applicable federal or state-protected classification.THIS JOB DESCRIPTION DOES NOT CONSTITUTE A CONTRACT FOR EMPLOYMENT

Cyber Leadership Index is not the employer and does not represent candidates for these roles. Verify all details with the employer before acting.