Talent.com
Onto Innovation
Senior Manager, Information SecurityOnto Innovation • Wilmington,MA (Jonspin)
Senior Manager, Information Security

Senior Manager, Information Security

Onto Innovation • Wilmington,MA (Jonspin)
30+ days ago
Salary
$120,000.00 yearly
Job type
  • Full-time
Job description

Onto Innovation is a leader in process control, combining global scale with an expanded portfolio of leading-edge technologies that include: 3D metrology spanning the chip from nanometer-scale transistors to micron-level die-interconnects; macro defect inspection of wafers and packages; metal interconnect composition; factory analytics; and lithography for advanced semiconductor packaging. Our breadth of offerings across the entire semiconductor value chain helps our customers solve their most difficult yield, device performance, quality, and reliability issues. Onto Innovation strives to optimize customers’ critical path of progress by making them smarter, faster and more efficient.

Job Summary & Responsibilities

The Senior Manager of Information Technology is responsible for IT governance, risk, compliance, and operational readiness across Onto Innovation’s global environment. Reporting to the Senior Director of IT and Security, this role leads regulatory compliance initiatives, cybersecurity posture management, incident response readiness, business continuity and disaster recovery programs, vulnerability management, vendor and partner risk management, and contributes to Onto’s multi-year IT and security strategy.

Key Responsibilities

Compliance & Governance

  • Lead IT compliance programs aligned to ISO/IEC 27001, CMMC Level 2, SEMI E187, and SOX IT controls.
  • Translate regulatory requirements into actionable policies, standards, procedures, and audit evidence.
  • Drive audit readiness, internal assessments, remediation activities, and continuous compliance improvement.
  • Partner with Legal, HR, Compliance, Finance, Facilities, Operations, Service, and Engineering teams on enterprise risk initiatives.

Cybersecurity Posture & Vulnerability Management

  • Own and mature cybersecurity posture management practices across infrastructure, endpoints, and cloud services.
  • Oversee vulnerability management programs, including risk-based prioritization, remediation tracking, and executive reporting.
  • Partner with Infrastructure, Security Operations, and Engineering teams to reduce attack surface and improve resilience.
  • Drive our IT Security program forward with a defense in depth and continuous improvement mindset.
  • Continuously assess and validate security controls effectiveness and drive improvements based on threat intelligence and risk trends.

Incident Response & Readiness

  • Own incident response planning and execution for IT and cybersecurity incidents.
  • Design and lead tabletop exercises, purple team drills, and post-incident reviews.
  • Maintain incident response playbooks, escalation paths, and executive communications.
  • Drive continuous improvement through lessons learned and after-action reviews.

Business Continuity & Disaster Recovery

  • Own and mature Business Continuity Planning (BCP) and Disaster Recovery Planning (DRP).
  • Define and validate RTO/RPO objectives across hybrid on-prem and cloud environments.
  • Lead and coordinate DR testing, recovery exercises, and continuous improvement efforts.

Vendor, Partner & Supply-Chain Risk Management

  • Lead vendor, partner, and supply-chain IT and cybersecurity risk management programs.
  • Define security requirements for vendors, contract manufacturers, and extended factory partners.
  • Oversee onboarding assessments, remediation tracking, and ongoing risk reviews.
  • Support vendor audits, security reviews, and contractual security obligations in partnership with Procurement and Legal.

Strategic Planning & Continuous Improvement

  • Contribute to the development and execution of Onto’s 3-year IT and Security strategic roadmap.
  • Apply a continuous improvement mindset to compliance, security posture, incident readiness, and resilience programs.
  • Identify capability gaps, emerging risks, and investment priorities across people, process, and technology.
  • Support annual planning, budgeting, and executive reporting tied to multi-year strategy.

Agile, Global IT Leadership

  • Operate within an Agile, globally distributed IT organization.
  • Develop metrics, dashboards, and executive reporting for compliance, cybersecurity posture, and operational readiness.
  • Influence cross-functional teams through collaboration, leadership, and subject-matter expertise.

Qualifications

  • 10+ years of progressive experience in IT leadership, cybersecurity, or enterprise risk management.
  • Demonstrated leadership of ISO 27001, CMMC Level 2, and SOX IT control programs.
  • Experience contributing to multi-year (3+ year) IT or security strategic planning and roadmaps.
  • Hands-on experience with cybersecurity posture management and vulnerability management programs.
  • Strong understanding of incident response, BCP/DRP, and operational resilience in hybrid IT environments.
  • Experience managing vendors, partners, and supply-chain IT/security risk.
  • Strong executive communication, stakeholder management, and continuous improvement mindset.

Preferred Qualifications

  • Experience with SEMI E187/E188 or manufacturing-focused frameworks.
  • Familiarity with NIST CSF, NIST 800-53, or NIST 800-171.
  • Experience supporting global operations across North America, Europe, and APAC.
  • Background in semiconductor, advanced manufacturing, or IP-sensitive industries.
  • Experience translating strategy into measurable OKRs, KPIs, and risk metrics.

Leadership Competencies

  • Continuous improvement and risk-based decision-making mindset.
  • Executive presence and calm decision-making under pressure.
  • Ability to balance long-term strategy with near-term execution.
  • Strong collaboration across technical, business, and partner organizations.
  • High integrity, accountability, and operational discipline.

Why Join Onto Innovation?

At Onto Innovation, we believe your work should matter—and so should your well-being. That’s why we offer competitive salaries and a comprehensive benefits package designed to support you and your family. From health, dental, and vision coverage to life and disability insurance, PTO, and a 401(k) with employer match, we’ve got you covered. You’ll also enjoy access to our Employee Stock Purchase Program (ESPP), wellness initiatives, and cutting-edge tools—all within a collaborative, inclusive culture where your contributions are valued and recognized.

Compensation & Growth

• Base Salary Range:

$120,000.00 - $180,000.00, offered in good faith and based on experience, location, and qualifications.
  • Additional Rewards: Annual bonus opportunities and potential long-term incentives tied to both company and individual success.

Empowering Every Voice to Shape the Future:

Benefits

undefined
Create a job alert for this search

Senior Manager, Information Security • Wilmington,MA (Jonspin)

Similar jobs

Information Technology Manager/Information Security Officer - Career Centers

Action for Boston Community DevelopmentBoston, Massachusetts, US
$81,154.00 yearly
Full-time
Quick Apply

Information Technology Manager & Information Security Officer.MassHire Career Center systems.This position serves as the primary ITS leader for Career Center programs, ensuring that infrastructure,... Show more

Customs and Border Protection Officer (CBPO) - Experienced New Hire Sign-On and Retention Incentives

U.S. Customs and Border ProtectionSeabrook, NH, US
Full-time

Customs and Border Protection Officer (CBPO).Customs and Border Protection (CBP) offers those interested in a career in law enforcement an exceptional opportunity to work with an elite team of high... Show more

 • Promoted

Internal IT Audit: Cloud Risk Specialization

Wilmington TrustBoston, MA, United States
Full-time

Hybrid Role in Internal Audit IT.This role is hybrid, four days per week onsite, based out of Buffalo, NY; Bridgeport, CT; or Wilmington, DE.Will consider Boston, MA or NYC applicants as well.Candi... Show more

 • Promoted

Information Security Analyst

TradeJobsWorkForce02475 Arlington Heights, MA, US
Full-time

Monitor their organization’s networks for security breaches and investigate a violation when one occurs Install and use software, such as firewalls and data encryption programs, to protect sensitiv... Show more

 • Promoted

HR Lead - 08190

Hannaford SupermarketsEast Hampstead, NH, US
Full-time

USA-NH-East Hampstead-305 Sandown Road.Store 08190 Management (2741239).Hannaford Supermarkets started out as a fresh produce vendor in Portland, Maine way back in 1883, and is still connected to t... Show more

 • Promoted • New!

Communications and Change Management Specialist

MKS Instruments, Inc.Andover, MA, United States
Permanent

Communications And Change Management Specialist.This position is hybrid, with periodic on-site presence required based on business needs.As a Communications and Change Management Specialist at MKS,... Show more

 • Promoted

Management and Program Analyst (Senior Operations Advisor)

Treasury DepartmentAndover, MA, United States
Full-time

This is the job title provided above.The following are the duties of this position at the full working level.If this vacancy includes more than one grade and you are selected at a lower grade level... Show more

 • Promoted

Management and Program Analyst (Project Manager)

US Government JobsAndover, MA, United States
Full-time

A description of the business units can be found at: https://www.Position(s) are to be filled in following area(s):.TS - Non Service Center - Accounts Management Headquarters, Identity Protection. Show more

 • Promoted

Global Trade Compliance Specialist

Axcelis TechnologiesBeverly, MA, United States
Full-time

Global Trade Compliance Specialist.Want to discover just how far your intellectual curiosity can take you? You're in the right place.For more than four decades, Axcelis Technologies has been at the... Show more

 • Promoted

Timberland: Associate Manager, Digital Marketplaces

VF CorporationStratham, NH, United States
Full-time

Associate Manager Digital Marketplaces (Timberland Americas).We are seeking a results-driven Digital Marketplace Specialist to manage and optimize our presence across online marketplaces and third-... Show more

 • Promoted

Remote Senior Director, Public Sector Security Architecture

LumenBoston, MA, United States
Remote
Full-time

A leading technology firm is seeking a Senior Director of Security Architecture to lead cybersecurity for its Public Sector portfolio.This role will develop strategies and oversee compliance with f... Show more

 • Promoted

Vice President for Research & Innovation

ConfidentialDurham, NH, United States
Full-time

Vice President for Research & Innovation.Prestigious public research university.The Company is in search of an inaugural Vice President for Research and Innovation to lead its mission of catalyzing... Show more

 • Promoted

Checkout Team Associate

Wal-MartSeabrook, NH, United States
Full-time

Front End Checkout associates run our registers.They smile, greet and thank customers, ring up items, process payments, and keep a positive attitude.Always ready to help with customer questions and... Show more

 • Promoted

Cyber Security Operations Center (CSOC) Analyst – Tier 3

AthenahealthBoston, MA, United States
Full-time

Boomband is working directly with Athenahealth to connect them with people who are a strong fit for this role.Senior Incident Responder (Incident Response, Forensics, InfoSec).This is a highly tech... Show more

 • Promoted

Senior Associate, National Security-Cyber Security Governance

Alvarez & MarsalBoston, MA, United States
Full-time

Alvarez & Marsal (A&M) is a global consulting firm with over 10,000 entrepreneurial, action and results-oriented professionals in over 40 countries.We take a hands-on approach to solving our client... Show more

 • Promoted

Senior KYC Onboarding Lead - Institutional Clients

G MASSAndover, MA, United States
Full-time

Our client's Networks group offers best-in-class technology and industry-leading practices to help firms manage risk, meet regulatory requirements, and streamline compliance.Their solutions provide... Show more

 • Promoted

Information Technology Professional

US NavySalem, MA, US
Full-time

Information Technology Professional (IT/CTN/IS).Information Systems Technicians, Cryptologic Technician Networks, and Intelligence Specialists keep the Fleet connected, informed, and secure by oper... Show more

 • Promoted

Compliance Specialist II

Frontgrade TechnologiesExeter, NH, United States
Full-time

Frontgrade is seeking a Compliance Specialist to support the coordination and execution of international shipments in compliance with applicable laws and regulations and company policy.The speciali... Show more

 • Promoted

Management and Program Analyst (Senior Operations Advisor)

Internal Revenue ServiceAndover, MA, United States
Full-time

This is the job title provided above.The following are the duties of this position at the full working level.If this vacancy includes more than one grade and you are selected at a lower grade level... Show more

 • Promoted

Information Technology & Security Sr. Manager

Energetiq Technology IncWilmington, Massachusetts, United States, 01887
$150,000.00 yearly
Full-time

Energetiq is the high technology, ultra-bright light source division of Hamamatsu Corp.Japanese optical components and systems company.At Energetiq we are growing our market presence by introducing... Show more