← All rolesDirector
Director of Security Operations
Aldridge · Software · 51-200 employees
Houston, TX · Onsite · full_time
CLI Career Level
Senior Director-equivalent
Moderate confidence
Opportunity Score
68/100
Solid
Moderate confidence
Executive Fit
Sign in
Add your background to score this role against you
Career Level and Opportunity Score describe the role itself. Executive Fit is the only figure that depends on your profile.
First seen Sep 3, 2026 · Last verified 2 hours ago · Sourced from LinkedIn — Director of Security (US)
CLI Take
Broader than the title suggests
This role reads Senior Director-equivalent despite being advertised as “Director of Security Operations” — the stated scope is wider than the employer's title implies. CLI's analysis of the posting describes a strategic build or transformation mandate, and it reports to VP of Service Delivery and carries board-level exposure. Employer profile: 51-200 employee organization, pe backed ownership, private equity, revenue 10m 50m. Total compensation and team size are not disclosed and remain the main open questions before pursuing it.
Why this role scores the way it does
68/100 — solid opportunity quality. CLI reads this as a Senior Director-equivalent mandate. Strongest signal: CLI's analysis of the posting describes a strategic build or transformation mandate. Main drag on the score: Employer profile: 51-200 employee organization, pe backed ownership, private equity, revenue 10m 50m. 4 of 10 dimensions are not disclosed, which lowers confidence rather than the score.
Career level read
Senior Director-equivalent — The employer lists this as “Director of Security Operations”. CLI reads it as Senior Director-equivalent because the role shows board-level exposure expected, reports to a VP.
Moderate confidence
What makes it attractive
- CLI's analysis of the posting describes a strategic build or transformation mandate.
- Board-level exposure is expected in the role.
- Title and described scope are broadly consistent.
What to probe before applying
- Employer profile: 51-200 employee organization, pe backed ownership, private equity, revenue 10m 50m.
- The reporting line sits below the executive team — the role reports to a VP.
Scoring components · Solid
Compensation versus comparable rolesNot disclosed · excluded from the score
Compensation is not disclosed and there is no comparable set to place it against.
Reporting level29 · weight 12%
The reporting line sits below the executive team — the role reports to a VP.
Functional and geographic scopeNot disclosed · excluded from the score
Scope: no enterprise, global or multi-unit remit is described.
Quality of the mandate100 · weight 12%
CLI's analysis of the posting describes a strategic build or transformation mandate.
Executive and board exposure100 · weight 10%
Board-level exposure is expected in the role.
Role authority versus title70 · weight 10%
Title and described scope are broadly consistent.
Company scale and trajectory25 · weight 10%
Employer profile: 51-200 employee organization, pe backed ownership, private equity, revenue 10m 50m.
Team ownershipNot disclosed · excluded from the score
Team size: not disclosed.
Budget ownershipNot disclosed · excluded from the score
Budget ownership: not disclosed.
Risk signals100 · weight 5%
No adverse signals identified in the posting.
Dimensions the employer does not disclose are excluded and the remaining weights are rebalanced, so missing information lowers confidence rather than the score.
Sign in to see how this role scores against your background, and add your career goal to evaluate career value.
Compensation
No compensation disclosed and insufficient comparable data to estimate.
Sample size not yet sufficient for a market comparison
See the full benchmark bands by level and region
The mandate
The Director will lead the security strategy and consulting practice for this MSP, serving as the senior vCISO voice for mid-market clients. They are responsible for defining security offerings, providing oversight to the SOC via a Team Lead, and managing the company's internal security program and compliance posture.
Reports to the VP of Service Delivery; manages a Security Team Lead who oversees Security Analysts. Remit covers 60% strategy/consulting (client advisory, product partnership) and 40% SOC oversight and internal security.
Scope
- Reports to VP of Service Delivery
- Board-level exposure expected
Domains and regulation
- Enterprise Security
- Cyber Defense
- Incident Response
- GRC
- Compliance
- Third-Party Risk
- HIPAA
- CMMC
- SOC 2
Requirements
Must have
- Experience serving as a vCISO or senior security advisor to clients and boards
- Proven ability to lead risk assessments and build multi-year security roadmaps
- Experience guiding clients through compliance programs such as HIPAA, CMMC, SOC 2, CIS Controls, and NIST CSF
- Technical authority in evaluating and validating security tooling and platforms (MDR, ITDR, SIEM)
- Experience in hiring, performance management, and career development for security teams
- Ability to translate technical risk into business terms for presales and executive-level communication
Preferred / bonus
- Nothing listed as optional.
Only must-have items are scored as hard constraints in Executive Fit.
Likely challenges
- Developing security from a 'bundled utility' into a distinct articulable consulting practice
- Managing a co-managed security model involving third-party MDR, ITDR, and SOC/SIEM partners
- Translating technical risk into business terms for small to mid-market client owners and boards
- Balancing 60% strategy/consulting with 40% SOC leadership oversight
Not stated in the posting: Compensation range not disclosed; Minimum years of experience required not specified; Specific education or certification requirements (e.g., CISSP) not listed; Workplace type (remote/hybrid/onsite) for this specific role not explicitly defined.
About Aldridge
Aldridge is a managed service provider (MSP) and managed security service provider (MSSP) that delivers IT outsourcing, strategic consulting, and cybersecurity services. The company primarily serves small to medium-sized businesses in the healthcare, legal, and financial services sectors. For a security leader, the environment involves managing multi-tenant security operations and compliance for a diverse client base across multiple regional hubs.
- Industry
- Software
- Headcount
- 51-200 employees
- Headquarters
- Houston, TX
- Founded
- 1984
- Ownership
- Private equity backed
- Funding
- Private equity backed
- Revenue
- $10M – $50M
- Investors
- New Capital Partners
Full company profile for Aldridge →
View original job description
Who We AreAldridge is a leading Managed Service Provider (MSP) offering scalable IT and cybersecurity solutions to fast-growing, small to mid-market businesses in the US. Founded in 1984, this private equity-backed company is a technology management consulting, and outsourcing firm that provides best-fit solutions through a tailored approach and local relationships. With offices in Houston, Dallas, Fort Worth, San Antonio, central Louisiana and Seattle, the company’s unwavering dedication, superior technical expertise, and keen understanding of business processes have transformed it into a trusted partner for its clients. With a strong reputation for delivering high-quality services, Aldridge is committed to helping its clients optimize their technology infrastructure and achieve their business goals.Director of Security OperationsAldridge is a forward-thinking organization committed to delivering innovative technology solutions and exceptional service to our clients. We are seeking a Director of Security Operations to own our security strategy and consulting practice and to provide leadership oversight of our Security Operations Center. As the Director of Security Operations at Aldridge, you will serve as the senior security voice with our clients and prospects, shape how we advise them on risk and compliance, partner with our Director of Product to bring the right security capabilities to market, and hold our Security Operations Center and our managed detection and response partners to a high standard on behalf of our clients.Position OverviewThe Director of Security Operations owns Aldridge’s security strategy and consulting practice and carries leadership accountability for the Security Operations Center. Reporting to the VP of Service Delivery, this role spends roughly 60% of its time on strategy and consulting — client security advisory, security solution direction, presales support, and Aldridge’s own security program — and roughly 40% providing direction and oversight to the SOC through the Security Team Lead, who reports to this role. This is a leadership position rather than a working-manager position: the Director sets standards, targets, and priorities and is accountable for outcomes, but does not carry a day-to-day operational queue.Aldridge currently operates a co-managed security model: third-party MDR, ITDR, and SOC/SIEM partners provide 24x7 eyes-on-glass and first-pass triage, and the Aldridge SOC owns validation, investigation, response, remediation, and tuning. The Security Team Lead owns the day-to-day execution of that model. The Director owns everything above it — how we advise clients on risk and compliance, the security capabilities we should be delivering and the standards they must meet, how security performance is measured and reported, and how the security team is staffed and developed. Security tooling and services are brought to market in partnership with the Director of Product: this role identifies the need, evaluates fit, and validates efficacy, while the Director of Product owns vendor management, pricing, packaging, and the cost to support each offering. The Director of Security Operations is also the executive escalation point for major security incidents and the senior security voice with clients, prospects, and Aldridge leadership.Team And Reporting StructureThe Director of Security Operations reports to the VP of Service Delivery and has the Security Team Lead as a direct report, with the Security Analysts reporting through that lead. The Director owns hiring, performance management, career development, and the staffing plan for the security function. Outside of the direct team, the Director partners with the Director of Product on security solutions and tooling, with pod, NOC, and account teams to drive remediation and security initiatives across the client base, and with Sales and Marketing to grow the security practice.Key ResponsibilitiesSecurity Strategy and Client Advisory — Own Aldridge’s security strategy and consulting practice — define the advisory offering, methodology, and deliverables that make security a distinct, articulable practice rather than a bundled utility.Client Security Leadership — Serve as the senior security advisor to clients in a vCISO capacity — lead risk assessments, build and maintain multi-year security roadmaps, and present posture, risk, and recommendations to owners, executives, and boards.Compliance Advisory — Guide clients through compliance programs such as HIPAA, CMMC, SOC 2, CIS Controls, and NIST CSF, including gap assessments, remediation planning, and readiness for audit or attestation.Account Partnership — Partner with Technical Account Managers, Technology Directors, and Client Success Managers to embed security strategy into account planning, technology roadmaps, and recurring business reviews.Security Solution Direction — Define what security capabilities Aldridge should deliver and to what standard — translate client need, threat landscape, and compliance pressure into a clear point of view on the offering, and bring that direction to the Director of Product, who owns how it is packaged and taken to market.Tool and Platform Evaluation — Serve as the technical authority on security tooling — identify gaps in the current stack, evaluate and validate candidate platforms for efficacy, integration, and delivery fit, and recommend the best-fit solution; the Director of Product owns final vendor selection, contracting, and commercial terms from there.Delivery Standards and Partner Performance — Own the operational quality of the security platforms and partners in production — define the delivery model and effort required to support each offering, provide those inputs to the Director of Product, and hold MDR, ITDR, and SOC/SIEM partners accountable for the service quality our clients experience.Presales Support — Partner with Sales as the security subject-matter expert — join prospect and client conversations, scope engagements, and translate technical risk into business terms that support the buying decision.Revenue Contribution — Support security revenue and attach-rate goals across new and existing clients, including identifying uplift and expansion opportunities within the current base.Market Presence — Contribute to thought leadership and client education — content, webinars, briefings, and security awareness material that establish Aldridge as a credible security partner.SOC Oversight — Provide leadership oversight of the Security Operations Center through the Security Team Lead — accountable for detection and response performance, alert quality, and incident outcomes without operating the queue day to day.Standards and Targets — Set SOC standards and targets — response-time targets, escalation criteria, playbook and documentation standards, and quality expectations — and hold both the internal team and the MDR, ITDR, and SOC/SIEM partners accountable to them.Major Incident Escalation — Serve as the executive escalation point for major and high-severity security incidents — approving containment decisions with material client impact, owning executive-level client communication, and signing off on post-incident reviews and follow-up actions.Team Leadership — Own hiring, performance management, career development, and the staffing plan for the security team, and build the career path that carries analysts through to senior and lead roles.Aldridge Internal Security — Own Aldridge’s internal security program — risk register, policies and standards, access governance, security awareness, and our own compliance attestations and cyber insurance requirements.Leadership Reporting — Report client and internal security posture, risk, program progress, and practice performance to Aldridge leadership on a defined cadence.
Cyber Leadership Index is not the employer and does not represent candidates for these roles. Verify all details with the employer before acting.