Global Information Security Operations Manager
KYOCERA AVX Components Corporation · Greenville-Spartanburg-Anderson, South Carolina Area
Apply & track with Apply EdgePRIMARY FUNCTION:The Global Information Security Operations Manager provides leadership and operational ownership for the organization’s global cybersecurity and information security operations. Reporting to the Global Information Security Director/CISO, this role leads a growing team of approximately eight security professionals and coordinates security operations across a complex, globally distributed enterprise.This leader is accountable for the reliable execution, integration, measurement, and continuous improvement of a mature security technology and service environment. The role will strengthen operational discipline, improve security tooling effectiveness, lead major incident response, develop talent, manage key service providers, and translate security data into clear priorities and measurable risk reduction.The successful candidate will combine strong people leadership with broad technical credibility. This is not primarily a hands-on engineering position or a build-from-scratch security role. It is an opportunity to lead, optimize, and scale an established security operations capability while ensuring the program remains resilient, responsive, and aligned with business objectives.DUTIES & RESPONSIBILITIES:1. Global Security Operations LeadershipLead, coach, and develop a growing global security operations team, establishing clear responsibilities, priorities, decision rights, and accountability.Translate security strategy and risk priorities into executable operational plans, objectives, service expectations, and measurable outcomes.Establish consistent operating rhythms for workload management, escalation, performance review, and continuous improvement.Support workforce planning, hiring, succession planning, skills development, and sustainable on-call or incident coverage.Promote a culture of collaboration, ownership, sound judgment, and disciplined execution.2. Security Operations and Service ManagementOwn the day-to-day performance of global security operations, including monitoring, detection, investigation, containment, recovery support, and operational follow-through.Define and monitor service levels, key performance indicators, key risk indicators, case-management standards, and escalation thresholds.Coordinate work across Information Security, global IT, infrastructure, identity, cloud, applications, manufacturing technology, legal, privacy, business teams, and external partners.Ensure operational issues, recurring control failures, and coverage gaps are assigned, tracked, escalated, and driven to verified closure.Develop and maintain clear operating procedures, playbooks, workflows, and handoff requirements.3. Security Incident Readiness and ResponseServe as incident commander, or designate an appropriate incident commander, for significant cybersecurity events.Coordinate technical response, containment, evidence preservation, business communication, executive escalation, recovery support, and post-incident improvement activities.Maintain and exercise incident response plans, playbooks, communication protocols, decision authorities, and global escalation procedures.Lead tabletop exercises and simulations to validate readiness and identify improvement opportunities.Ensure lessons learned result in documented corrective actions, accountable owners, target dates, and validated closure.4. Security Technology Portfolio OptimizationProvide operational governance for a mature and broad security technology portfolio spanning monitoring, endpoint, identity, network, cloud, data protection, vulnerability management, and automation capabilities.Drive effective integration, telemetry coverage, alert quality, use-case maturity, platform health, adoption, automation, and lifecycle management.Assign and maintain clear platform ownership, support models, health measures, integration roadmaps, and improvement plans.Partner with security engineering, architecture, and IT teams to address visibility, control, reliability, and scalability gaps.Evaluate consolidation, modernization, and investment opportunities based on risk reduction, resilience, operational value, and total cost of ownership.5. SOC and Service Provider OversightLead the operating relationship with internal security operations resources and external managed security, technology, and consulting providers.Define service scope, performance measures, detection priorities, escalation requirements, reporting expectations, and quality standards.Regularly assess alert fidelity, investigation quality, response timeliness, coverage, handoffs, and realized business value.Manage service issues, corrective action plans, contract performance, renewals, and vendor accountability in partnership with relevant stakeholders.Ensure internal and external responsibilities are clearly documented, understood, and periodically validated.6. Threat, Vulnerability, and Exposure OperationsProvide operational governance for threat intelligence, threat hunting, attack-surface monitoring, vulnerability management, penetration testing, and remediation activities.Ensure findings are risk-ranked, assigned to accountable owners, tracked through remediation, and validated before closure.Partner with GRC and business stakeholders to support risk acceptance decisions, exception management, remediation tracking, and governance escalation for significant security exposures.Partner with infrastructure, application, cloud, identity, and business teams to reduce systemic remediation barriers and recurring exposure.Use threat and exposure data to guide detection priorities, operational improvements, and investment decisions.7. Metrics, Risk Communication, and Executive ReportingPartner with Governance, Risk, and Compliance (GRC) teams to ensure operational risks, control performance, remediation activities, exceptions, and security metrics are accurately represented within enterprise risk, compliance, audit, and assurance processes.Develop concise operational and executive reporting on incidents, detection effectiveness, exposure, remediation performance, platform health, service performance, and operational risk.Use data to identify recurring failures, control gaps, capacity constraints, emerging risks, and investment needs.Present material risks, trade-offs, decisions, and recommendations clearly to technical and executive stakeholders.Ensure measures demonstrate outcomes, resilience, and risk reduction rather than activity volume alone.Maintain accurate documentation and evidence needed to support governance, assurance, audit, and customer requirements.8. Budget, Resources, and Continuous ImprovementDevelop and manage the security operations budget, forecasts, and resource plans.Prioritize investments based on business risk, operational need, service health, and measurable value.Identify opportunities to improve efficiency through process standardization, better integration, automation, and responsible tool rationalization.Develop a multi-year operations roadmap that addresses capability maturity, global coverage, team growth, critical skills, and operational resilience.Stay informed on relevant threats, technologies, and industry practices, applying them pragmatically to the organization’s risk profile and business needs.Coordinate with GRC teams to support audit readiness, compliance initiatives, customer assurance requirements, and continuous control improvement efforts.Required Qualifications:Bachelor’s degree in cybersecurity, information security, computer science, engineering, business, or a related discipline, or equivalent relevant experience.Ten or more years of progressive experience in cybersecurity, information security operations, infrastructure security, or related technology functions.Demonstrated experience leading cybersecurity or information security operations teams in a complex, distributed, or global environment.Proven people-management experience, including coaching, prioritization, performance management, workforce planning, and team development.Demonstrated experience leading significant cybersecurity incidents and coordinating technical, business, legal, privacy, communications, and executive stakeholders.Experience operating and optimizing an established security technology environment across multiple security domains.Experience overseeing a SOC, managed security service, technology provider, consulting partner, or comparable third-party security service.Working knowledge of security monitoring, SIEM, endpoint detection and response, identity and privileged access, vulnerability management, cloud security, network security, data protection, security automation, and incident response.Demonstrated ability to establish operational metrics, service measures, executive reporting, and continuous-improvement plans.Experience managing budgets, vendors, contracts, technology investments, and resource priorities.Strong written and verbal communication skills, including the ability to explain technical risk, operational priorities, and decisions to executive and technical audiences.Ability to build effective relationships and operate across cultures, regions, time zones, business functions, and technical teams.
Preferred Qualifications
Professional certification such as CISSP, CISM, GIAC, or a comparable security credential.Experience supporting manufacturing, operational technology, regulated data, or globally distributed business environments.Familiarity with recognized cybersecurity and information security frameworks and standards, including NIST, ISO 27001, and CIS Controls.Experience with security automation and orchestration, detection engineering, risk-based alerting, and security technology rationalization.Experience supporting audit, customer assurance, regulatory, or compliance requirements without losing focus on risk-based operational outcomes.EEO Statement:Kyocera-AVX is an Equal Opportunity Employer, M/F/D/V: All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, national origin, disability, or status as a protected veteran.