Cyber Security Manager - Defence, 17214
This position requires access to or use of information which is subject to export restrictions, including the International Traffic in Arms Regulations (ITAR). All applicants for this position must be "U.S. Persons" within the meaning of the ITAR. "U.S. Persons" include U.S. Citizens, U.S. Lawful Permanent Residents (i.e. 'Green Card Holders'), Political Asylees, Refugees or other protected individuals as defined by 8 U.S.C. 1324b(a)(3)’.
We Are
Synopsys is the leader in engineering solutions from silicon to systems, enabling customers to rapidly innovate AI-powered products. We deliver industry-leading silicon design, IP, simulation and analysis solutions, and design services. We partner closely with our customers across a wide range of industries to maximize their R&D capability and productivity, powering innovation today that ignites the ingenuity of tomorrow.
You Are
You have spent years building and running cybersecurity programs where the stakes are real, where a missed vulnerability or a slow response actually costs the business, and you have learned that good security is not about saying no, it is about finding the right way forward. You think in systems and tradeoffs. You know the difference between a control that looks good on paper and one that actually reduces risk without breaking the workflow people depend on.
Leading a team is not new to you. You have mentored engineers through their first incident response, coached analysts on how to prioritize a backlog of 500 vulnerabilities, and had the hard conversation when someone is not meeting the bar. You do not manage from a dashboard, you dig in when something does not add up, and you make sure your team has what they need to do the work well.
You are comfortable sitting in a room with legal, compliance, and engineering stakeholders, translating a CMMC requirement into an actual implementation plan that makes sense for the business. You have run incident response calls at 2am and written the root cause analysis the next week. At Synopsys, you will lead a distributed team protecting the infrastructure, applications, and data that power government-focused semiconductor and engineering solutions.
What You'll Be Doing
- Lead and develop a distributed team of cybersecurity professionals responsible for security operations, engineering, vulnerability management, incident response, and compliance support
- Oversee day-to-day security monitoring, detection, investigation, containment, and response activities across enterprise systems and infrastructure supporting Ansys Government Initiatives
- Manage the implementation, configuration, and continuous improvement of cybersecurity technologies including SIEM, endpoint protection, cloud security tools, and vulnerability scanners
- Lead vulnerability management and remediation programs, establishing risk-based prioritization and tracking corrective actions through closure
- Coordinate incident response efforts during active cybersecurity events, conduct post-incident reviews, and publish root cause analysis documentation
- Support CMMC Level 2 compliance and other regulatory requirements by maintaining security controls, documentation, system security plans, and audit readiness
- Partner with Enterprise Technology, Engineering, Legal, Compliance, and business stakeholders to integrate security requirements into infrastructure, cloud, application, and endpoint solutions
The Impact You Will Have
- Reduce organizational cyber risk by building and running programs that catch vulnerabilities before they become incidents
- Enable business objectives by implementing security controls that protect without blocking the work engineers and teams depend on
- Strengthen incident response capability so that when something happens, the team knows exactly what to do and executes with confidence
- Build a team culture where people grow, take ownership, and deliver work that actually moves the security posture forward, even when working remotely across locations
- Improve compliance readiness and audit outcomes by maintaining controls and documentation that meet CMMC, NIST SP 800-171, and contractual requirements for government programs
- Drive measurable risk reduction through metrics, dashboards, and reporting that show what is working and where gaps remain
- Protect the infrastructure and data assets that support government-focused semiconductor development and engineering solutions across Synopsys portfolios
What You'll Need
- Bachelor's degree in Information Security, Computer Science, Information Technology, Engineering, or related discipline
- 8+ years of hands-on experience in cybersecurity, information security, or related technology disciplines
- 3+ years leading teams, programs, or operational functions in a cybersecurity or IT security context
- Demonstrated experience implementing and maintaining security controls to support a CMMC Level 2 certified environment
- Strong working knowledge of cybersecurity principles, technologies, and frameworks including NIST Cybersecurity Framework, NIST SP 800-171, or NIST SP 800-53
- Professional certifications such as CISSP, CISM, GIAC, Security+, CASP+, or CCSP are a strong plus
- Experience with cloud security technologies, SIEM platforms, endpoint protection, and modern enterprise security tooling is a plus
- Willingness to work from one of Synopsys' U.S. office locations: Exton, PA (preferred), Hillsboro, OR, Austin, TX, Plano, TX, Morrisville, NC, or Sunnyvale, CA
Who You Are
- You can explain a complex security tradeoff to a VP in two sentences without losing the nuance, and you can also sit with an engineer and debug why a detection rule is firing false positives
- You manage a backlog and a team workload without letting the urgent drown out the important, and you know when to escalate and when to solve it yourself
- You have run incident response calls where the pressure is on and decisions matter, and you stay calm, ask the right questions, and keep the team moving forward
- You lead a distributed team effectively, building connection and accountability without relying on everyone being in the same room
- You push back when a compliance requirement does not make operational sense, and you work with stakeholders to find a path that meets the intent without creating unnecessary friction
- You track metrics that actually tell you something, not vanity numbers, and you use that data to make decisions and communicate progress to leadership
The Team You'll Be Part Of
You will lead a distributed cybersecurity team supporting Ansys Government Initiatives at Synopsys. Your team is responsible for protecting information systems, infrastructure, applications, and data assets that serve government-focused programs and customers. The team operates across locations and collaborates closely with Enterprise Technology, Engineering, Compliance, Legal, and business stakeholders to maintain a secure environment that meets CMMC Level 2 and other regulatory requirements.
Rewards and Benefits
We offer a comprehensive range of health, wellness, and financial benefits to cater to your needs. Our total rewards include both monetary and non-monetary offerings. Your recruiter will provide more details about the salary range and benefits during the hiring process.
#LI-Hybrid