Sign up to access all features of our service.
  • Job search
  • Favorites
  • Create a CV
    New
  • Salaries
  • Subscriptions

Sr. Manager, Security Risk, Assurance and Trust

$154.71k - $221.23k

SiTime

About SiTimeSiTime is the Precision Timing company. Timing is the heartbeat of all electronics, ensuring performance, resilience and scalability. For decades, quartz devices, non-silicon technology, have kept systems in sync, but they struggle in harsher, more demanding environments. MEMS-based Precision Timing delivers greater accuracy, smaller size and resilience. Today, MEMS timing powers over 400 applications, including high-growth ones in AI datacenters, automated driving, industrial and humanoid robots, wearables and IoT.Our semiconductor MEMS programmable solutions offer a rich feature set that enables customers to differentiate their products with higher performance, smaller size, lower power, and better reliability. With more than 4 billion devices shipped, SiTime is changing the timing industry. For more information, visit: .Job SummaryReporting to the CISO, this role builds and leads SiTime’s Security Risk, Assurance and Trust function. It owns customer security audits and trust, third-party and vendor risk management, the enterprise risk register, security policy and governance, compliance certifications, and SOX compliance support the audits, risk, and assurance pillar of the security organization.This is a build role. The successful candidate will design and establish the enterprise risk register, the third-party risk program, the certification program, and the security policy and standards framework.It is also a people-leadership role. The candidate starts hands-on, personally delivering the first cycle of each program, then scales the function through a mix of full-time hires and specialist contractors engaged for assessment cycles, certification readiness, and audit surge capacity.This is an accountable owner role, not an advisory one. The role is the strategic and enforcement arm of the CISO’s office: it sets risk and governance strategy, then partners with IT, Legal, Finance, Design, and Engineering — and cross-functionally with the CISO’s other security functions (Vulnerability Management & Security Operations, Security Engineering, Security Architecture, and Offensive Security), to drive that strategy into implemented, verified controls and coordinated initiatives that improve the company’s overall security posture.It is not necessary to meet all job requirements to be a qualified candidate for the position. Responsibilities:External Assurance — Customer Trust, Certification & SOXOwn customer security assurance end to end. Build the reusable trust package including security whitepaper, certification and audit-report library, standard response templates and the response process.Distinguish formal customer audit findings from ad hoc customer requests for additional security controls or contractual commitments, resourcing and tracking each independently to closure.Drive remediation of gaps identified through customer audits with IT, Engineering, and system owners, tracking every finding to closure and feeding recurring themes back into the security roadmap.Own SiTime’s ISO 27001 certification end to end including scoping, gap assessment, control implementation, readiness, external audit, and ongoing surveillance.Monitor the certification and regulatory landscape relevant to SiTime’s customers, markets, and geographies; recommend and pursue additional certifications or attestations as business need emerges.Serve as the primary point of contact for external auditors and certification bodies, ensuring evidence, timelines, and remediation commitments are consistently met.Support SOX IT General Controls compliance with Internal Audit, Finance, and IT, and serve as the primary security liaison for SOX testing cycles, the annual external audit of internal controls over financial reporting, deficiency tracking, and remediation.Enterprise Risk — Register, Third-Party Risk & AssessmentsBuild and own the enterprise risk register, aggregating signals from vulnerability management, third-party risk, audits, and incidents into a single prioritized view with named owners and remediation timelines, and use it to shape and prioritize the security roadmap company-wide.Design and operate the third-party and vendor risk management program covering onboarding, risk tiering, and ongoing monitoring, including supply-chain partners critical to SiTime’s fabless model. Direct technical security risk assessments of critical enterprise assets and third-party systems Partner with Legal and Procurement to embed security requirements into vendor contracts and the procurement process, and to evaluate security posture as part of vendor selection.Drive remediation of vendor-identified risks to closure within defined SLAs, working directly with vendors and internal system owners.Establish the assessment cadence against NIST CSF and NIST SP 800-53 — running the first cycle directly, then scaling through the team and contractors. Extend coverage to NIST SP 800-171 and NIST SP 800-161 as business need dictates.Facilitate third-party independent assessments and readiness reviews, managing scoping, coordination, and remediation of findings.As the program matures, stand up and chair a cross-functional Risk Committee with Security, IT, Engineering, Legal, and Finance, with a defined recurring cadence to review the register, adjudicate risk-acceptance decisions, and surface material risks for executive visibility.Produce the recurring risk reporting that enables the CISO’s executive and Audit Committee/Board updates on a consistent cadence.Governance & Enforcement — Policy, Standards & Control EffectivenessOwn the security policy and standards framework end to end, creating policy with Engineering and IT and translating it into enforceable technical standards and control baselines.Establish a recurring policy review and refresh cycle aligned to evolving frameworks (NIST, ISO) and business change, including ongoing M&A integration activity.Stand up formal policy exception management with risk-based approval workflows, required compensating controls, and expiration and renewal tracking so exceptions stay visible, and time-boxedEstablish oversight and monitoring of security control implementation and effectiveness company-wide, including security health dashboards that give the CISO and business leaders real-time visibility into program maturity.Define and track KPIs and KRIs for control effectiveness, using results to drive continuous improvement.Qualifications & Requirements: 8+ years in information security, risk, or assurance, including 3+ years building or substantially rebuilding a programBachelor’s degree in Computer Science, Information Security, Engineering, or a related technical field — or equivalent practical experience.At least one of the following certifications: CISSP, CISA, CRISC, or CCSK.People leadership experienceTechnical fluency across cloud platforms (Azure, AWS), infrastructure security (network, endpoint, IAM), and third-party risk frameworksWorking mastery of NIST CSF, NIST SP 800-53, ISO 27001, and SOX ITGC, with hands-on experience managing external audits and certifications end to end.Hands-on experience designing and running a third-party and vendor risk management program, including vendor tiering, ongoing monitoring, and remediation workflows.Experience building and maintaining an enterprise risk register and producing risk reporting for executive and Audit Committee/Board consumption.English proficiency is required, including the ability to effectively communicate, collaborate, and perform job responsibilities in a professional business environment.Preferred:Experience in a semiconductor, hardware, or other fabless/manufacturing environment, or another regulated hardware/OT-adjacent industry.Familiarity with data privacy regimes (GDPR and equivalents) where they intersect customer due diligence and vendor contracting.Desired Characteristics & Attributes:Strong executive presence and stakeholder management: able to translate complex technical security concepts into business-friendly, risk-oriented language and influence decision-making across functions without direct authority.Program management rigor with ablity to run multiple concurrent cross-functional initiatives to completion, not just track them.Compensation Range:At SiTime, we believe great work deserves great rewards. We offer a comprehensive and highly competitive compensation package designed to attract top talent. The annual base salary range for this role is $154,710 – $221,230. The final offer is determined by factors such as location, experience, education, and training. In addition to base salary, this role is eligible for a quarterly bonus tied to the achievement of innovation goals—reflecting our commitment to recognizing meaningful impact. We also offer equity grants, providing a meaningful opportunity to share in the company’s future growth and success.Benefits offered: 401k plan, health and wellness that includes medical, dental, vision, life, parental leave, legal services, and time off plans.SiTime is an Equal Opportunity Employer. We treat each person fairly and we do not tolerate discrimination or harassment against anyone on the basis of any protected characteristics, including race, color, religion, national or ethnic origin, sex, sexual orientation, gender identity or expression, age, disability, pregnancy, political affiliation, protected veteran status, protected genetic information, or marital status or other characteristics protected by law. SiTime participates in the E-Verify program.Learn More about SiTime: Review the Get to Know SiTime section of our career page to explore our culture, values, and what makes us unique. Innovation on Top – Philosophies of Innovation with Rajesh VashistFabrication Knowledge – An Interview with Rajesh VashistSiTime Corporation – YouTube

Vacancy posted 19 hours ago
Similar jobs that could be interesting for youBased on the Sr. Manager, Security Risk, Assurance and Trust in Santa Clara, CA vacancy
  • $154.71k - $221.23k

     ...this role leads SiTime's Vulnerability Management and Security Operations function. It owns...  ...detection and response relationship, risk-based vulnerability operations, incident...  ...CISO's other functions (Security Risk, Assurance and Trust; Security Engineering; Security... 
    Senior
    Full time
    For contractors
    Work at office

    SiTime

    Santa Clara, CA
    2 days ago
  • $142.2k - $213.4k

     ...for you to join us as a Sr. Principal Mission Assurance Engineer based in Sunnyvale...  ...Board (MRB), Program Management Reviews (PMR), Design/Peer...  ...Assess program performance and risks; develop handling plans...  ...talent. You choose to build trusted and valued partner... 
    Senior
    Full time
    Contract work
    Remote work
    Relocation package
    Shift work

    Northrop Grumman

    Sunnyvale, CA
    3 days ago
  • $161.9k - $218.6k

     ...customer value? At AWS, we're seeking a Sr. Product Marketing Manager (PMM) who can shape the future of...  ...- from threat detection and network security to identity and access management....  ...successful startups to Global 500 companies trust our robust suite of products and... 
    Senior
    Local area
    Flexible hours

    Amazon

    Santa Clara, CA
    3 days ago
  • $174.69k

     ...to go. Join EY and help to build a better working world. Assurance, Technology Risk (Manager) (Multiple Positions) (1742359), Ernst & Young U.S. LLP,...  ...long-term value for clients, people and society and build trust in the capital markets. Enabled by data and... 
    Suggested
    Full time
    Work experience placement
    Summer holiday
    Immediate start
    Monday to Friday

    Ernst & Young

    San Jose, CA
    23 days ago
  • $207k - $275k

     ...scale AI with confidence. Trusted by leading AI labs,...  ...a Senior Engineering Manager to lead the Identity and...  ...Products team within Security Products. This team...  ...decisions, tradeoffs, risks, and progress clearly...  ...product requirements and assurance. Experience leading... 
    Senior
    Permanent employment
    Full time
    Temporary work
    Casual work
    Work at office
    Flexible hours

    CoreWeave

    Sunnyvale, CA
    2 days ago
  • $175k - $265k

     .... As our first dedicated Information Security hire, the Senior Manager, Information Security will build a unified...  ...detection and response, vendor risk management, and incident response, and...  ...risk and co-architect hardware roots of trust, unique chip identifiers, and secure... 
    Senior

    d-Matrix

    Santa Clara, CA
    2 days ago
  •  ...you’ll find your purpose here.Job DescriptionThe Project Manager for Information Security Projects. This role would manage a variety of projects in...  ...skills include cross-team collaboration, conflict resolution, risk mitigation, change management and schedule management.... 
    Senior
    Work at office
    Local area
    Worldwide
    Flexible hours

    Intuitive Surgical

    Sunnyvale, CA
    4 days ago
  • $103.5k - $181k

     ...everything possible. The Senior Quality Assurance Specialist is responsible for serving as...  ...facility as needed. This role provides Quality Management System oversight, ensures compliance...  ..., nonconformance, change control, and risk management processes. Travel, Motor... 
    Senior
    Full time

    Danaher Corporation

    Sunnyvale, CA
    19 hours ago
  •  ...Description Job Description Principal Product Manager - AI At the forefront of the latest semiconductor technology & security we're redefining how AI-powered...  ...security i.e. secure boot, attestation, root of trust, TPM/fTPM and/ or cryptography ~ Protocol/Stadard... 
    Senior
    Ongoing contract
    Local area
    Work visa

    CyberCoders

    San Jose, CA
    9 days ago
  • $123.75k - $176.97k

     ...SummaryReporting to the CISO, this role owns SiTime's security architecture: the target-state design and the...  ...and the CISO's other functions (Vulnerability Management and Security Operations; Security Risk, Assurance and Trust; Security Engineering; and Offensive Security)... 
    Senior

    SiTime

    Santa Clara, CA
    2 days ago
  • $157k - $210k

     ...and scale AI with confidence. Trusted by leading AI labs, startups,...  ..., processes, and tools. As a security technical program leader...  ...security and Identity & Access Management (IAM), you will work across cross...  ...and identity-related risks and dependencies Partner closely... 
    Senior
    Permanent employment
    Full time
    Temporary work
    Casual work
    Work at office
    Flexible hours

    CoreWeave

    Sunnyvale, CA
    17 days ago
  • $157k - $210k

     ...scale AI with confidence. Trusted by leading AI labs, startups...  ...executing and delivering security, trust, and assurance across our products,...  ...building leading Governance, Risk and Compliance (GRC) programs...  ...third party risk management (TPRM). As a TPRM Technical... 
    Senior
    Permanent employment
    Full time
    Contract work
    Temporary work
    Casual work
    Work at office
    Flexible hours

    CoreWeave

    Sunnyvale, CA
    18 days ago
  • $173.9k - $235.2k

     ...they can be genuinely helpful. That capability only earns a place in the home if customers trust how it handles what it perceives. We are looking for a Senior Technical Product Manager to own the product vision and roadmap for Ambient Trust. You will define how always-on... 
    Senior
    Local area
    Flexible hours

    Amazon

    Sunnyvale, CA
    2 days ago
  • $308k

     ...reports to the Chief Information Security OfficerNutanix is maturing its...  ...to lead our Governance, Risk, and Compliance (GRC), and Data...  ...Decision RightsStreamline and manage the existing security and risk...  ...security to continually support trusted data flows, responsible AI adoption... 
    Senior
    Work at office
    Relocation package
    3 days per week

    Nutanix

    San Jose, CA
    4 days ago
  • $152.4k - $226.38k

     ..., and shopping simple, personalized, and secure, PayPal empowers consumers and businesses...  ...customers, process exchanges and returns, and manage risk. We enable consumers to engage in cross-...  ...our communities. Job Summary: The Sr. Manager, Sales Specialist - RaaS, is... 
    Senior
    Full time
    Work at office
    Local area
    Immediate start
    Flexible hours

    PayPal

    San Jose, CA
    3 days ago
  •  ...LLC in Santa Clara, CA is seeking a Sr. Principal System Firmware Authentication...  ..., development, and validation of secure system firmware for ARM-based server...  ...cryptographic services, certificate management, device attestation, and trusted platform capabilities while... 
    Senior

    Jobleads-US

    Santa Clara, CA
    2 days ago
  • $124k - $155k

     ...network-derived intelligence to cloud, security, and observability tools. This helps our...  ...complexity, enabling them to better secure and manage their hybrid cloud infrastructure....  ...the GigaSMART team, you will lead quality assurance efforts for advanced security features... 
    Senior
    Local area
    Worldwide

    Gigamon

    Santa Clara, CA
    a month ago
  •  ...Amazon's Trust CX Innovations team is seeking a Senior Technical Product Manager to own the product vision and roadmap for Ambient Trust across perceiving surfaces. You will define how always-on devices respect the physical space and people, translating insights into shipped... 
    Senior

    Jobleads-US

    Sunnyvale, CA
    1 day ago
  • $192k - $278k

    Be the trusted program owner for critical AI Security efforts for Search. Drive clarity and strategic decisions with...  ...on progress, dependencies, and risks to engineering teams and leadership...  ...technical, business, and program management expertise to identify, assess, track... 
    Senior

    Google

    Mountain View, CA
    19 hours ago
  • $272k - $431.25k

     ...AI leadership and cybersecurity and that trust in AI grows through participation, transparency...  ...single point of control. Our AI Safety & Security Engineering team builds and evaluates AI-...  .... We are looking for a Senior Manager to build and lead this team from its very... 
    Senior
    Full time

    NVIDIA

    Santa Clara, CA
    2 days ago
  • $236.32k - $330.84k

     ...Safety, Quality, and Mission Assurance. This includes...  ...Origin facilities. The Sr. Director of Operations Program Management for TeraWave will own the...  ...schedule progress, identifying risks early, and driving timely...  ...a workplace that fosters trust, equality, and teamwork.... 
    Senior
    Permanent employment
    Full time
    Temporary work
    Local area
    Remote work
    Worldwide

    BLUE ORIGIN

    Cupertino, CA
    2 days ago
  •  ...Google LLC in Sunnyvale, CA, seeks a Senior Product Manager for AI Storage within Google Distributed Cloud to guide products from conception...  ...collaborate with engineers, designers, and marketers to shape security software/hardware solutions, drive GTM strategies, and grow the... 
    Senior

    Jobleads-US

    Sunnyvale, CA
    1 day ago
  •  ...seeking an experienced Senior Accountant with a strong background in trust and estate accounting and taxation. The ideal candidate is a...  ...and tax skills, attention to detail, and the ability to manage multiple client engagements while providing exceptional client service... 
    Senior

    Mhtb Accountancy Group Of Silicon V

    San Jose, CA
    a month ago
  •  ...Senior Managing Director, National Security Portfolio About the Company Reputable provider of IT services & business process outsourcing solutions...  ...the company's growth strategy, focusing on cultivating trusted, long-term relationships with key clients, and aligning... 
    Senior

    Confidential

    San Jose, CA
    4 days ago
  • $233.9k - $330.4k

     ...ImpactAs a Principal Engineer leading software security, you will be a primary technical...  ...Application Security Architecture: Design trust boundaries, sandboxing models, and...  ...patterns, cryptographic utilities, and session management frameworks for application engineering... 
    Full time
    Contract work
    Temporary work
    Local area
    Flexible hours

    CISCO Systems

    San Jose, CA
    1 day ago
  • $176.3k - $293.7k

     ...Flexibility: Hybrid or OnsiteStryker is hiring an Senior Quality Assurance Manager - Surgical Support & Post Market in San Jose, CA supporting...  ...data-driven insights to influence business decisions and risk mitigation activities.Monitor, analyze, and communicate product... 
    Senior
    Full time
    For contractors

    Stryker

    San Jose, CA
    1 day ago
  • $145.2k - $184.1k

     ...Analyst Relations team as a key member of the Security Analyst Relations program. If you thrive...  ...for Cisco Security (Identity and Access Management), translating analyst insights into...  ...Cisco Identity Security.Cultivate trusted relationships with core analysts through... 
    Full time
    Temporary work
    Local area
    Remote work
    Flexible hours

    CISCO Systems

    San Jose, CA
    1 day ago
  • $182.2k - $250k

     ...innovation, improved reliability, and secure, resilient services....  ...ll shape the future of cloud-managed networking and large-scale device...  ...innovators and employees are trusted advisors who listen to...  ...automation, proactive network assurance, and context-aware security,... 
    Senior
    Worldwide

    Vistance Networks, Inc.

    Sunnyvale, CA
    3 days ago
  • $183.6k - $297k

     ...You will be part of a culture that values trust, accountability, and shared success where...  ...cross-functional teams—including product management, design, and engineering—to ensure...  ...We’re trailblazers that dream big, take risks, and challenge cybersecurity’s status quo... 
    Senior
    Full time
    Remote work
    Flexible hours

    Palo Alto Networks

    San Jose, CA
    1 day ago
  • $254.5k

     ...this role: The Unified Security and Exposure Management (USEM) team equips the modern...  ...prioritize, and remediate risk across the enterprise attack...  ...for our company. As a Sr. Director of Product Management...  ...operations that enterprises can trust to run at scale, grounded... 
    Senior
    Full time
    Work at office
    Immediate start
    Remote work
    Flexible hours

    ServiceNow

    Santa Clara, CA
    3 days ago

Do you want to receive more vacancies?

Subscribe and receive similar vacancies to Sr. Manager, Security Risk, Assurance and Trust. Be the first to apply!