Open role
Security analyst
ASML Netherlands B.V.
About the role
As a Security analyst in the Security Incident Response Team (SIRT) you play a crucial role in safeguarding the organization’s security posture. Your primary focus will be real-time security monitoring of alerts (Cyber, IT, OT, DLP, Physical), triaging and analyzing low-to-medium risk security alerts, and escalating potential security incidents following established procedures.
Additionally, you will contribute to the continuous improvement of monitoring processes and technologies by providing feedback on false positives and helping enhance and detection capabilities.
What you'll do
The Security Incident Response Team (SIRT) operates within the Security Operations Center (SOC) to minimize the impact of security threats by detecting and responding to incidents in real time. By effectively monitoring alerts and improving security controls, you help ASML operate securely in an evolving security threat landscape.
In this role, you will be responsible for:
Monitoring and incident response
Security monitoring – Continuously monitor security alerting systems for signs of malicious activity or anomalies, adhering to SOC’s 24/7 operational requirements
Incident triage and analysis – Conduct end-to-end triage and investigation of security alerts, classify their severity, and determine if further escalation is required
False positive reduction – Identify false positives and propose tuning measures to improve detection
accuracy
Documentation – Maintain detailed records of investigations, findings, and actions taken in the
incident tracking system
Process and technology improvement
Feedback on detection capabilities – Provide input to enhance security monitoring and detection rules
Automation – Provide input and support with defining SOAR automation use cases
Compliance & best practices – identify compliance and policy violations and provide inputs on improving ASML security posture
What you'll bring
Bachelor’s degree in computer science, information technology, cybersecurity, or equivalent experience
Prior internship or hands-on experience in a security/IT role
Experience with SIEM, EDR, or DLP tools is a plus.
Working toward CompTIA Security+, GIAC, CEH, or similar certifications is desirable
Analytical thinking – Ability to interpret security data, detect patterns, and assess risks
Attention to detail – Strong observational skills to identify potential threats.
Communication – Clear written and verbal communication for reporting findings and collaborating with teammates
Willingness to learn – Adaptability to new technologies, threats, and security practices
About the company
ASML is an Equal Opportunity Employer that values and respects the importance of a diverse and inclusive workforce. It is the policy of the company to recruit, hire, train and promote persons in all job titles without regard to race, color, religion, sex, age, national origin, veteran status, disability, sexual orientation, or gender identity. We recognize that inclusion and diversity is a driving force in the success of our company.
Need to know more about applying for a job at ASML? Read our frequently asked questions.