Senior Manager, Information Security
d-MatrixJob Title
Senior Manager, Information Security
Role Summary
Lead the establishment of a unified information security function covering corporate IT, cloud, and product development. This role reports to the VP of IT and Infrastructure Services, owns the security roadmap and budget, and partners with Silicon and Software Engineering, IT, SRE, and Facilities to protect chip design IP, EDA workflows, the software supply chain, internal AI agents, and corporate/cloud/lab infrastructure.
Experience Level
Senior - requires 7+ years in information security and at least 3 years leading security programs or teams.
Responsibilities
Operate as the company's first dedicated security leader to build and run security programs that enable fast, secure development and product delivery.
- Build and execute a unified security roadmap and manage security vendors and budget across corporate IT, cloud, and product development.
- Partner with IT and SRE to mature identity governance, endpoint detection and response, SIEM, vendor risk management, and incident response; lead readiness for SOC 2 Type II and ISO/IEC 27001.
- Protect chip design IP (RTL, GDSII), EDA workflows, and software source with least-privilege access, network segmentation, exfiltration controls, and encrypted transfer to foundry/OSAT partners.
- Assess foundry, component-sourcing, and logistics risk; co-architect hardware roots of trust, unique chip identifiers, and secure boot.
- Establish software supply chain practices including SBOMs, signed builds, and provenance tracking for compilers, runtimes, and model artifacts.
- Secure cloud, colocation, on-prem, API, and customer-facing inference environments using Zero Trust, phishing-resistant MFA, and DevSecOps practices.
- Define governance and controls for internal AI agents, defend against malicious agentic traffic, and track emerging AI regulations.
- Partner with Facilities on lab and physical security and promote a security-first culture that minimizes workarounds.
Requirements
Key qualifications and skills required to perform this role.
- 7+ years of experience in information security.
- 3+ years of experience leading security programs or teams.
- Technical proficiency with corporate IT controls (RBAC, MDM, SIEM), endpoint detection and response, and identity governance.
- Experience securing cloud environments (including Kubernetes) and CI/CD/DevSecOps pipelines.
- Experience protecting IP-intensive engineering environments (semiconductor, hardware, defense, or similar).
- Practical understanding of how LLMs and autonomous AI agents operate and how they interact with APIs and sensitive data.
- Pragmatic, startup mindset: implement rigorous security that does not impede hardware development or product shipping.
Nice-to-have:
- Direct experience with semiconductor or hardware supply chain security, secure IP transfer, or hardware roots of trust.
- Experience securing hybrid, colocation, or on-prem lab infrastructure alongside cloud environments.
- Experience managing compliance audits through SOC 2 Type II or ISO 27001 certification.
Education Requirements
Bachelor's degree or equivalent practical experience. Preferred industry credentials include CISSP, CISM, or specialized AI/cloud security certifications.
About the Company
Company: d-Matrix
Headquarters: Santa Clara, California, United States
d-Matrix is a Santa Clara–based startup developing highly programmable in-memory computing architectures and accompanying software to accelerate generative AI and other AI workloads, focusing on hardware-software co-design for cloud and edge applications.
