Sr. Manager, Security Risk, Assurance and Trust
$154.71k - $221.23kSiTime
About SiTimeSiTime is the Precision Timing company. Timing is the heartbeat of all electronics, ensuring performance, resilience and scalability. For decades, quartz devices, non-silicon technology, have kept systems in sync, but they struggle in harsher, more demanding environments. MEMS-based Precision Timing delivers greater accuracy, smaller size and resilience. Today, MEMS timing powers over 400 applications, including high-growth ones in AI datacenters, automated driving, industrial and humanoid robots, wearables and IoT.Our semiconductor MEMS programmable solutions offer a rich feature set that enables customers to differentiate their products with higher performance, smaller size, lower power, and better reliability. With more than 4 billion devices shipped, SiTime is changing the timing industry. For more information, visit: .Job SummaryReporting to the CISO, this role builds and leads SiTime’s Security Risk, Assurance and Trust function. It owns customer security audits and trust, third-party and vendor risk management, the enterprise risk register, security policy and governance, compliance certifications, and SOX compliance support the audits, risk, and assurance pillar of the security organization.This is a build role. The successful candidate will design and establish the enterprise risk register, the third-party risk program, the certification program, and the security policy and standards framework.It is also a people-leadership role. The candidate starts hands-on, personally delivering the first cycle of each program, then scales the function through a mix of full-time hires and specialist contractors engaged for assessment cycles, certification readiness, and audit surge capacity.This is an accountable owner role, not an advisory one. The role is the strategic and enforcement arm of the CISO’s office: it sets risk and governance strategy, then partners with IT, Legal, Finance, Design, and Engineering — and cross-functionally with the CISO’s other security functions (Vulnerability Management & Security Operations, Security Engineering, Security Architecture, and Offensive Security), to drive that strategy into implemented, verified controls and coordinated initiatives that improve the company’s overall security posture.It is not necessary to meet all job requirements to be a qualified candidate for the position. Responsibilities:External Assurance — Customer Trust, Certification & SOXOwn customer security assurance end to end. Build the reusable trust package including security whitepaper, certification and audit-report library, standard response templates and the response process.Distinguish formal customer audit findings from ad hoc customer requests for additional security controls or contractual commitments, resourcing and tracking each independently to closure.Drive remediation of gaps identified through customer audits with IT, Engineering, and system owners, tracking every finding to closure and feeding recurring themes back into the security roadmap.Own SiTime’s ISO 27001 certification end to end including scoping, gap assessment, control implementation, readiness, external audit, and ongoing surveillance.Monitor the certification and regulatory landscape relevant to SiTime’s customers, markets, and geographies; recommend and pursue additional certifications or attestations as business need emerges.Serve as the primary point of contact for external auditors and certification bodies, ensuring evidence, timelines, and remediation commitments are consistently met.Support SOX IT General Controls compliance with Internal Audit, Finance, and IT, and serve as the primary security liaison for SOX testing cycles, the annual external audit of internal controls over financial reporting, deficiency tracking, and remediation.Enterprise Risk — Register, Third-Party Risk & AssessmentsBuild and own the enterprise risk register, aggregating signals from vulnerability management, third-party risk, audits, and incidents into a single prioritized view with named owners and remediation timelines, and use it to shape and prioritize the security roadmap company-wide.Design and operate the third-party and vendor risk management program covering onboarding, risk tiering, and ongoing monitoring, including supply-chain partners critical to SiTime’s fabless model. Direct technical security risk assessments of critical enterprise assets and third-party systems Partner with Legal and Procurement to embed security requirements into vendor contracts and the procurement process, and to evaluate security posture as part of vendor selection.Drive remediation of vendor-identified risks to closure within defined SLAs, working directly with vendors and internal system owners.Establish the assessment cadence against NIST CSF and NIST SP 800-53 — running the first cycle directly, then scaling through the team and contractors. Extend coverage to NIST SP 800-171 and NIST SP 800-161 as business need dictates.Facilitate third-party independent assessments and readiness reviews, managing scoping, coordination, and remediation of findings.As the program matures, stand up and chair a cross-functional Risk Committee with Security, IT, Engineering, Legal, and Finance, with a defined recurring cadence to review the register, adjudicate risk-acceptance decisions, and surface material risks for executive visibility.Produce the recurring risk reporting that enables the CISO’s executive and Audit Committee/Board updates on a consistent cadence.Governance & Enforcement — Policy, Standards & Control EffectivenessOwn the security policy and standards framework end to end, creating policy with Engineering and IT and translating it into enforceable technical standards and control baselines.Establish a recurring policy review and refresh cycle aligned to evolving frameworks (NIST, ISO) and business change, including ongoing M&A integration activity.Stand up formal policy exception management with risk-based approval workflows, required compensating controls, and expiration and renewal tracking so exceptions stay visible, and time-boxedEstablish oversight and monitoring of security control implementation and effectiveness company-wide, including security health dashboards that give the CISO and business leaders real-time visibility into program maturity.Define and track KPIs and KRIs for control effectiveness, using results to drive continuous improvement.Qualifications & Requirements: 8+ years in information security, risk, or assurance, including 3+ years building or substantially rebuilding a programBachelor’s degree in Computer Science, Information Security, Engineering, or a related technical field — or equivalent practical experience.At least one of the following certifications: CISSP, CISA, CRISC, or CCSK.People leadership experienceTechnical fluency across cloud platforms (Azure, AWS), infrastructure security (network, endpoint, IAM), and third-party risk frameworksWorking mastery of NIST CSF, NIST SP 800-53, ISO 27001, and SOX ITGC, with hands-on experience managing external audits and certifications end to end.Hands-on experience designing and running a third-party and vendor risk management program, including vendor tiering, ongoing monitoring, and remediation workflows.Experience building and maintaining an enterprise risk register and producing risk reporting for executive and Audit Committee/Board consumption.English proficiency is required, including the ability to effectively communicate, collaborate, and perform job responsibilities in a professional business environment.Preferred:Experience in a semiconductor, hardware, or other fabless/manufacturing environment, or another regulated hardware/OT-adjacent industry.Familiarity with data privacy regimes (GDPR and equivalents) where they intersect customer due diligence and vendor contracting.Desired Characteristics & Attributes:Strong executive presence and stakeholder management: able to translate complex technical security concepts into business-friendly, risk-oriented language and influence decision-making across functions without direct authority.Program management rigor with ablity to run multiple concurrent cross-functional initiatives to completion, not just track them.Compensation Range:At SiTime, we believe great work deserves great rewards. We offer a comprehensive and highly competitive compensation package designed to attract top talent. The annual base salary range for this role is $154,710 – $221,230. The final offer is determined by factors such as location, experience, education, and training. In addition to base salary, this role is eligible for a quarterly bonus tied to the achievement of innovation goals—reflecting our commitment to recognizing meaningful impact. We also offer equity grants, providing a meaningful opportunity to share in the company’s future growth and success.Benefits offered: 401k plan, health and wellness that includes medical, dental, vision, life, parental leave, legal services, and time off plans.SiTime is an Equal Opportunity Employer. We treat each person fairly and we do not tolerate discrimination or harassment against anyone on the basis of any protected characteristics, including race, color, religion, national or ethnic origin, sex, sexual orientation, gender identity or expression, age, disability, pregnancy, political affiliation, protected veteran status, protected genetic information, or marital status or other characteristics protected by law. SiTime participates in the E-Verify program.Learn More about SiTime: Review the Get to Know SiTime section of our career page to explore our culture, values, and what makes us unique. Innovation on Top – Philosophies of Innovation with Rajesh VashistFabrication Knowledge – An Interview with Rajesh VashistSiTime Corporation – YouTube
$154.71k - $221.23k
...this role leads SiTime's Vulnerability Management and Security Operations function. It owns... ...detection and response relationship, risk-based vulnerability operations, incident... ...CISO's other functions (Security Risk, Assurance and Trust; Security Engineering; Security...SeniorFull timeFor contractorsWork at office$142.2k - $213.4k
...for you to join us as a Sr. Principal Mission Assurance Engineer based in Sunnyvale... ...Board (MRB), Program Management Reviews (PMR), Design/Peer... ...Assess program performance and risks; develop handling plans... ...talent. You choose to build trusted and valued partner...SeniorFull timeContract workRemote workRelocation packageShift work$161.9k - $218.6k
...customer value? At AWS, we're seeking a Sr. Product Marketing Manager (PMM) who can shape the future of... ...- from threat detection and network security to identity and access management.... ...successful startups to Global 500 companies trust our robust suite of products and...SeniorLocal areaFlexible hours$174.69k
...to go. Join EY and help to build a better working world. Assurance, Technology Risk (Manager) (Multiple Positions) (1742359), Ernst & Young U.S. LLP,... ...long-term value for clients, people and society and build trust in the capital markets. Enabled by data and...SuggestedFull timeWork experience placementSummer holidayImmediate startMonday to Friday$207k - $275k
...scale AI with confidence. Trusted by leading AI labs,... ...a Senior Engineering Manager to lead the Identity and... ...Products team within Security Products. This team... ...decisions, tradeoffs, risks, and progress clearly... ...product requirements and assurance. Experience leading...SeniorPermanent employmentFull timeTemporary workCasual workWork at officeFlexible hours$175k - $265k
.... As our first dedicated Information Security hire, the Senior Manager, Information Security will build a unified... ...detection and response, vendor risk management, and incident response, and... ...risk and co-architect hardware roots of trust, unique chip identifiers, and secure...Senior- ...you’ll find your purpose here.Job DescriptionThe Project Manager for Information Security Projects. This role would manage a variety of projects in... ...skills include cross-team collaboration, conflict resolution, risk mitigation, change management and schedule management....SeniorWork at officeLocal areaWorldwideFlexible hours
$103.5k - $181k
...everything possible. The Senior Quality Assurance Specialist is responsible for serving as... ...facility as needed. This role provides Quality Management System oversight, ensures compliance... ..., nonconformance, change control, and risk management processes. Travel, Motor...SeniorFull time- ...Description Job Description Principal Product Manager - AI At the forefront of the latest semiconductor technology & security we're redefining how AI-powered... ...security i.e. secure boot, attestation, root of trust, TPM/fTPM and/ or cryptography ~ Protocol/Stadard...SeniorOngoing contractLocal areaWork visa
$123.75k - $176.97k
...SummaryReporting to the CISO, this role owns SiTime's security architecture: the target-state design and the... ...and the CISO's other functions (Vulnerability Management and Security Operations; Security Risk, Assurance and Trust; Security Engineering; and Offensive Security)...Senior$157k - $210k
...and scale AI with confidence. Trusted by leading AI labs, startups,... ..., processes, and tools. As a security technical program leader... ...security and Identity & Access Management (IAM), you will work across cross... ...and identity-related risks and dependencies Partner closely...SeniorPermanent employmentFull timeTemporary workCasual workWork at officeFlexible hours$157k - $210k
...scale AI with confidence. Trusted by leading AI labs, startups... ...executing and delivering security, trust, and assurance across our products,... ...building leading Governance, Risk and Compliance (GRC) programs... ...third party risk management (TPRM). As a TPRM Technical...SeniorPermanent employmentFull timeContract workTemporary workCasual workWork at officeFlexible hours$173.9k - $235.2k
...they can be genuinely helpful. That capability only earns a place in the home if customers trust how it handles what it perceives. We are looking for a Senior Technical Product Manager to own the product vision and roadmap for Ambient Trust. You will define how always-on...SeniorLocal areaFlexible hours$308k
...reports to the Chief Information Security OfficerNutanix is maturing its... ...to lead our Governance, Risk, and Compliance (GRC), and Data... ...Decision RightsStreamline and manage the existing security and risk... ...security to continually support trusted data flows, responsible AI adoption...SeniorWork at officeRelocation package3 days per week$152.4k - $226.38k
..., and shopping simple, personalized, and secure, PayPal empowers consumers and businesses... ...customers, process exchanges and returns, and manage risk. We enable consumers to engage in cross-... ...our communities. Job Summary: The Sr. Manager, Sales Specialist - RaaS, is...SeniorFull timeWork at officeLocal areaImmediate startFlexible hours- ...LLC in Santa Clara, CA is seeking a Sr. Principal System Firmware Authentication... ..., development, and validation of secure system firmware for ARM-based server... ...cryptographic services, certificate management, device attestation, and trusted platform capabilities while...Senior
$124k - $155k
...network-derived intelligence to cloud, security, and observability tools. This helps our... ...complexity, enabling them to better secure and manage their hybrid cloud infrastructure.... ...the GigaSMART team, you will lead quality assurance efforts for advanced security features...SeniorLocal areaWorldwide- ...Amazon's Trust CX Innovations team is seeking a Senior Technical Product Manager to own the product vision and roadmap for Ambient Trust across perceiving surfaces. You will define how always-on devices respect the physical space and people, translating insights into shipped...Senior
$192k - $278k
Be the trusted program owner for critical AI Security efforts for Search. Drive clarity and strategic decisions with... ...on progress, dependencies, and risks to engineering teams and leadership... ...technical, business, and program management expertise to identify, assess, track...Senior$272k - $431.25k
...AI leadership and cybersecurity and that trust in AI grows through participation, transparency... ...single point of control. Our AI Safety & Security Engineering team builds and evaluates AI-... .... We are looking for a Senior Manager to build and lead this team from its very...SeniorFull time$236.32k - $330.84k
...Safety, Quality, and Mission Assurance. This includes... ...Origin facilities. The Sr. Director of Operations Program Management for TeraWave will own the... ...schedule progress, identifying risks early, and driving timely... ...a workplace that fosters trust, equality, and teamwork....SeniorPermanent employmentFull timeTemporary workLocal areaRemote workWorldwide- ...Google LLC in Sunnyvale, CA, seeks a Senior Product Manager for AI Storage within Google Distributed Cloud to guide products from conception... ...collaborate with engineers, designers, and marketers to shape security software/hardware solutions, drive GTM strategies, and grow the...Senior
- ...seeking an experienced Senior Accountant with a strong background in trust and estate accounting and taxation. The ideal candidate is a... ...and tax skills, attention to detail, and the ability to manage multiple client engagements while providing exceptional client service...Senior
- ...Senior Managing Director, National Security Portfolio About the Company Reputable provider of IT services & business process outsourcing solutions... ...the company's growth strategy, focusing on cultivating trusted, long-term relationships with key clients, and aligning...Senior
$233.9k - $330.4k
...ImpactAs a Principal Engineer leading software security, you will be a primary technical... ...Application Security Architecture: Design trust boundaries, sandboxing models, and... ...patterns, cryptographic utilities, and session management frameworks for application engineering...Full timeContract workTemporary workLocal areaFlexible hours$176.3k - $293.7k
...Flexibility: Hybrid or OnsiteStryker is hiring an Senior Quality Assurance Manager - Surgical Support & Post Market in San Jose, CA supporting... ...data-driven insights to influence business decisions and risk mitigation activities.Monitor, analyze, and communicate product...SeniorFull timeFor contractors$145.2k - $184.1k
...Analyst Relations team as a key member of the Security Analyst Relations program. If you thrive... ...for Cisco Security (Identity and Access Management), translating analyst insights into... ...Cisco Identity Security.Cultivate trusted relationships with core analysts through...Full timeTemporary workLocal areaRemote workFlexible hours$182.2k - $250k
...innovation, improved reliability, and secure, resilient services.... ...ll shape the future of cloud-managed networking and large-scale device... ...innovators and employees are trusted advisors who listen to... ...automation, proactive network assurance, and context-aware security,...SeniorWorldwide$183.6k - $297k
...You will be part of a culture that values trust, accountability, and shared success where... ...cross-functional teams—including product management, design, and engineering—to ensure... ...We’re trailblazers that dream big, take risks, and challenge cybersecurity’s status quo...SeniorFull timeRemote workFlexible hours$254.5k
...this role: The Unified Security and Exposure Management (USEM) team equips the modern... ...prioritize, and remediate risk across the enterprise attack... ...for our company. As a Sr. Director of Product Management... ...operations that enterprises can trust to run at scale, grounded...SeniorFull timeWork at officeImmediate startRemote workFlexible hours
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Sr. Manager, Security Risk, Assurance and Trust. Be the first to apply!
- security operations manager Santa Clara, CA
- corporate security manager Santa Clara, CA
- director information security Santa Clara, CA
- security manager Santa Clara, CA
- security systems manager Santa Clara, CA
- surveillance manager Santa Clara, CA
- senior computer engineer Santa Clara, CA
- senior manager customer operations Santa Clara, CA
- senior development engineer Santa Clara, CA
- senior software engineer ruby on rails Santa Clara, CA




