probably, i'm just repeating standard rules of security practice though. If it's only secure because someone doesn't know about it. It's not secure.
I highly doubt TSMC is doing anything less than the state of the art practices with regards to this problem.