IBM logo

Senior Cybersecurity Lead

IBM

Albany, NYJobSeen todaySeen in employer's feed today

Most applications go out cold — see where you stand first. No sign-up to start.

Watch jobs like this.

At a glance

Compensation
No compensation found
Location
Albany, NY
Work Authorization
Not specified

Olive lists jobs from US employers, including remote roles you can work from the United States.

Requirements

Credentials this posting asks for.

Bachelor's degree

Job overview

Anderon seeks a Senior Cybersecurity Lead to establish and sustain its security program for quantum-chip semiconductor manufacturing. The role leads security strategy, compliance, risk management, remediation, and continuous improvement, partnering with executive leadership, engineering, manufacturing, suppliers, and government stakeholders. The successful candidate bridges technical and executive audiences and supports alignment with NIST SP 800-53 and applicable government, industry, and contractual obligations.

Skills & qualifications

RequiredNice to have

Skills

NIST SP 800-53Security Assessment MethodologiesSecurity Gap AnalysisRemediationInformation Security GovernanceRisk ManagementComplianceControl FrameworksEnterprise Security ProgramsCISSPCISMCRISCISO 27001NIST Cybersecurity FrameworkNIST SP 800-171NIST SP 800-30SEMI E187Semiconductor ManufacturingOperational Technology SecurityTrusted Foundry EnvironmentsSupplier Security AssuranceFederal ContractsGovernment Security RequirementsRisk-Based Security Programs

Qualifications

Bachelor's in Cybersecurity or Related10+ Years Cybersecurity Experience

Full job description

Introduction

A career at Anderon provides the rare opportunity to help define a new industry. We’re a wafer foundry that’s commercializing semiconductor manufacturing for quantum chips. You’ll partner with innovative clients and leading researchers to develop the technology needed to build the coming quantum economy.

*Please note: Anderon uses IBM's recruitment platform for candidate applications and hiring workflows. While this role is with Anderon, all applications will be submitted and processed through IBM's careers system.

Your role and responsibilities

Anderon is seeking a highly experienced Senior Cybersecurity Lead to establish, drive, implement, and maintain the security program supporting Anderon's operational and regulatory requirements. This role will serve as the primary security leader for the Anderon program and will be responsible for leading security strategy, compliance, risk management, gap remediation, and continuous improvement efforts to ensure alignment with the security requirements for Anderon along with associated government, industry, and contractual obligations.

The successful candidate will operate at both the strategic and tactical levels, partnering with executive leadership, engineering, manufacturing, operations, supplier management, and government stakeholders to build and sustain a mature security program supporting semiconductor manufacturing and trusted technology delivery. The candidate must be able to bridge the gap from the technical level to an executive level presentation.

Success Measures

The successful candidate will:

  • Establish and maintain a sustainable cybersecurity program for Anderon.

  • Successfully assess, remediate, and maintain compliance with OTA security requirements.

  • Build a defensible security posture aligned with NIST SP 800-53 and applicable industry standards.

  • Develop executive visibility into cybersecurity risks and remediation efforts.

  • Partner effectively with engineering, manufacturing, supplier, and government stakeholders.

  • Enable secure and resilient semiconductor manufacturing operations.

Key Responsibilities

Security Program Leadership

  • Serve as the senior security authority for the Anderon program.

  • Develop and maintain the overall cybersecurity strategy, roadmap, and compliance posture.

  • Drive security governance, risk management, and compliance activities across the program.

  • Provide regular security status reporting and risk updates to executive leadership and IBM.

  • Establish security policies, standards, procedures, and control frameworks aligned with program requirements.

NIST SP 800-53 Compliance & Remediation

  • Lead comprehensive NIST SP 800-53 security assessments and control reviews.

  • Conduct security gap analyses against NIST SP 800-53 baseline requirements.

  • Develop and execute remediation plans to address identified control deficiencies.

  • Coordinate remediation efforts across technical and business stakeholders.

  • Track compliance progress and manage Plans of Action and Milestones (POA&M).

Risk Management & Security Assessments

  • Lead enterprise and operational risk assessments.

  • Develop threat models and risk registers for critical environments.

  • Identify security threats, vulnerabilities, and control weaknesses.

  • Recommend and implement compensating controls where necessary.

  • Support audits, customer assessments, and government reviews.

Semiconductor Manufacturing Security

  • Lead security assessments of semiconductor fabrication environments, engineering systems, operational technology (OT), manufacturing execution systems (MES), supplier ecosystems, and supporting infrastructure.

  • Ensure alignment with semiconductor industry security requirements and best practices.

  • Partner with fab operations, engineering teams, and suppliers to address security risks impacting manufacturing operations.

Leadership & Stakeholder Engagement

  • Lead cross-functional teams supporting security initiatives.

  • Influence senior leaders and stakeholders across business and technical organizations.

  • Present security risks, recommendations, and remediation strategies to executive audiences.

  • Provide strategic direction while ensuring tactical execution and delivery.

Required technical and professional expertise

  • Bachelor's degree in Cybersecurity, Information Security, Computer Science, Engineering, Information Systems, or a related technical field.

  • 10+ years of progressive cybersecurity experience.

  • Demonstrated expertise with NIST SP 800-53 security controls and assessment methodologies.

  • Proven experience conducting security gap analyses and leading remediation efforts against NIST SP 800-53 requirements.

  • Strong understanding of information security governance, risk management, compliance, and control frameworks.

  • Experience developing and implementing enterprise security programs.

Preferred technical and professional experience

Preferred Qualifications

  • CISSP (Certified Information Systems Security Professional)

  • CISM (Certified Information Security Manager)

  • CRISC (Certified in Risk and Information Systems Control)

Preferred Experience

  • Strong familiarity with:

  • ISO 27001

  • NIST Cybersecurity Framework (CSF)

  • NIST SP 800-171

  • NIST SP 800-30 Risk Assessment Methodology

  • SEMI E187 and related semiconductor security standards

  • Experience supporting:

  • Semiconductor manufacturing environments

  • Operational Technology (OT) security

  • Trusted foundry environments

  • Supplier security assurance programs

  • Experience with:

  • Federal contracts

  • Government security requirements

  • Compliance-driven remediation initiatives

  • Risk-based security program development

IBM is committed to creating a diverse environment and is proud to be an equal-opportunity employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, gender, gender identity or expression, sexual orientation, national origin, caste, genetics, pregnancy, disability, neurodivergence, age, veteran status, or other characteristics. IBM is also committed to compliance with all fair employment practices regarding citizenship and immigration status.

Similar jobs, posted recently

Open roles like this one, listed in the last 30 days.

You've read the whole posting — now see how you match it.