Skip to main content

Security analyst

ASMLSecurity
Work mode
Hybrid
Internship
Education
Bachelor's

What you need

  • Bachelor’s degree in CS, IT, cybersecurity or equivalent experience
  • Prior internship or hands‑on security/IT experience
  • Experience with SIEM, EDR, or DLP tools
  • Working toward Security+, GIAC, CEH or similar certifications
  • Strong analytical thinking and attention to detail

What you'll do

  • Monitor security alerts for threats per SOC 24/7
  • Triage and investigate security alerts, classify severity, decide escalation
  • Identify false positives and propose tuning to improve detection accuracy
  • Maintain detailed records of investigations in incident tracking system
  • Provide input for detection rules, SOAR automation, and compliance improvements

Introduction to the job

As a Security analyst in the Security Incident Response Team (SIRT) you play a crucial role in safeguarding the organization’s security posture. Your primary focus will be real-time security monitoring of alerts (Cyber, IT, OT, DLP, Physical), triaging and analyzing low-to-medium risk security alerts, and escalating potential security incidents following established procedures. 


Additionally, you will contribute to the continuous improvement of monitoring processes and technologies by providing feedback on false positives and helping enhance and detection capabilities.



Role and responsibilities

The Security Incident Response Team (SIRT) operates within the Security Operations Center (SOC) to minimize the impact of security threats by detecting and responding to incidents in real time. By effectively monitoring alerts and improving security controls, you help ASML operate securely in an evolving security threat landscape.


In this role, you will be responsible for:

Monitoring and incident response

  • Security monitoring – Continuously monitor security alerting systems for signs of malicious activity or anomalies, adhering to SOC’s 24/7 operational requirements
  • Incident triage and analysis – Conduct end-to-end triage and investigation of security alerts, classify their severity, and determine if further escalation is required
  • False positive reduction – Identify false positives and propose tuning measures to improve detection
  • accuracy
  • Documentation – Maintain detailed records of investigations, findings, and actions taken in the
  • incident tracking system

Process and technology improvement

  • Feedback on detection capabilities – Provide input to enhance security monitoring and detection rules
  • Automation – Provide input and support with defining SOAR automation use cases
  • Compliance & best practices – identify compliance and policy violations and provide inputs on improving ASML security posture


Education and experience

  • Bachelor’s degree in computer science, information technology, cybersecurity, or equivalent experience
  • Prior internship or hands-on experience in a security/IT role
  • Experience with SIEM, EDR, or DLP tools is a plus.
  • Working toward CompTIA Security+, GIAC, CEH, or similar certifications is desirable


Skills

  • Analytical thinking – Ability to interpret security data, detect patterns, and assess risks
  • Attention to detail – Strong observational skills to identify potential threats.
  • Communication – Clear written and verbal communication for reporting findings and collaborating with teammates
  • Willingness to learn – Adaptability to new technologies, threats, and security practices


Other information

  • This role requires working in a fast-paced environment and may involve on-call or shift work to support 24/7 security operations
  • The position is primarily office-based (3 days a week), with potential for remote work (2 days a week) depending on company policies

This position requires access to controlled technology, as defined in the United States Export Administration Regulations (15 C.F.R. § 730, et seq.). Qualified candidates must be legally authorized to access such controlled technology prior to beginning work. Business demands may require ASML to proceed with candidates who are immediately eligible to access controlled technology.


Inclusion and diversity

ASML is an Equal Opportunity Employer that values and respects the importance of a diverse and inclusive workforce. It is the policy of the company to recruit, hire, train and promote persons in all job titles without regard to race, color, religion, sex, age, national origin, veteran status, disability, sexual orientation, or gender identity. We recognize that inclusion and diversity is a driving force in the success of our company.


Need to know more about applying for a job at ASML? Read our frequently asked questions.

Optimize your resume for this job

Get a match score and the keywords you're missing

Optimize resume

About ASML

ASML is the world leader in lithography systems for the semiconductor industry, manufacturing complex machines critical to the production of integrated circuits.

Similar Security roles

Security analyst
ASML
Apply