Skip to main content

Security specialist – identity access management governance & risk

ASMLSecurity
Work mode
On-site
Full Time
Experience
3+ yrs
Mid

What you need

  • 3+ yrs IAM, security governance, risk, compliance, or audit experience
  • Deep understanding of identity lifecycle, access governance, PAM, SoD, compliance frameworks
  • Experience with IAM governance programs, control testing, assurance, governance dashboards
  • Strong analytical, critical thinking, and problem-solving skills
  • Excellent stakeholder management, communication, and collaboration abilities

What you'll do

  • Support IAM governance framework implementation, monitoring, and continuous improvement
  • Perform IAM risk assessments, thematic reviews, and risk treatment activities
  • Maintain IAM control traceability, evidence repositories, and compliance records
  • Assess SoD and privileged access governance effectiveness
  • Track control deficiencies, support audit readiness, and management reporting

Introduction to the job

As a Security specialist within the second line Identity Security team, you will support the maturation of Identity & Access Management (IAM) governance across the organization. 


Operating within the second line, you will provide independent oversight, assurance, monitoring to ensure IAM controls, standards, governance processes, and risk management practices are effectively implemented and continuously improved. You will work across multiple IAM capability areas including governance, compliance, access governance, identity data governance, access visibility, resilience, and emerging identity security domains such as non-human identities and AI agents. 


This role is suited for professionals who enjoy understanding how IAM capabilities operate in practice and using that knowledge to identify risks, improve governance effectiveness, and strengthen control frameworks.



Role and responsibilities

As a Security specialist – IAM governance & risk, you will be responsible for the following areas:

Governance, controls & assurance

  • Support the implementation, monitoring, and continuous improvement of IAM governance frameworks, standards, and control objectives
  • Support the maintenance and continuous improvement of the IAM control framework
  • Maintain traceability between IAM controls and applicable regulatory, audit, business, and internal policy requirements
  • Support control testing, evidence collection, assurance activities, and audit readiness efforts
  • Assess governance effectiveness of IAM processes and support continuous improvement initiatives across core IAM capabilities
  • Track control deficiencies, findings, recommendations, and remediation activities
  • Support governance forums, reporting processes, and management reviews

Risk management

  • Perform IAM risk assessments and thematic risk reviews
  • Support risk identification, analysis, treatment, and acceptance activities
  • Maintain traceability between IAM risks, controls, capabilities, and requirements
  • Evaluate risks arising from new technologies, business initiatives, and evolving IAM capabilities
  • Provide risk-based challenge and recommendations to stakeholders
  • Support the development and maintenance of risk reporting and management insights

Compliance & maturity

  • Support IAM maturity assessments and continuous improvement initiatives
  • Monitor and report on IAM control effectiveness and governance performance
  • Maintain governance documentation, evidence repositories, and compliance records
  • Support internal and external audits and regulatory assessments.
  • Track and validate remediation activities resulting from audit findings, risk assessments, and control reviews

Access governance & identity security

  • Support governance activities relating Segregation of Duties (SoD) and Privileged access governance
  • Assess governance and control effectiveness across IAM processes and capabilities
  • Review IAM process outputs and identify governance weaknesses, control gaps, and improvement opportunities
  • Contribute to access risk reporting and governance oversight activities


Education and experience

  • 3+ years of relevant experience in Identity & Access Management (IAM), information security, cybersecurity governance, risk management, compliance, internal or external Audit or related disciplines
  • Demonstrated understanding of Identity Lifecycle Management (joiner-mover-leaver), access governance, authentication and authorization, Privileged Access Management (PAM), access reviews & certifications, Segregation of Duties (SoD), security controls and compliance frameworks, risk management principles
  • Preferred experience with one or more of the following: IAM governance programs, internal controls and audit support, control testing and assurance activities, metrics, reporting, and governance dashboards, regulatory compliance programs


Skills

  • Data analysis and reporting and documentation and traceability management
  • Excellent critical thinking and analytical problem solving skills
  • Strong stakeholder management skills
  • Ability to communicate effectively and influence as well as collaborative attitude
  • Continuous improvement mindset
  • Attention to detail and prioritization skills
  • Ability to work independently


Other information

Identity has become the primary control plane for enterprise security. As the organization continues to mature its IAM capabilities across governance, access governance, visibility, resilience, analytics, non-human identities, and AI identity security, Security Specialists play a critical role in ensuring these capabilities remain effective, measurable, compliant, and aligned with risk management objectives.

This position offers the opportunity to influence how identity security is governed across the enterprise while developing deep expertise in one of the fastest-growing areas of cybersecurity.


Inclusion and diversity

ASML is an Equal Opportunity Employer that values and respects the importance of a diverse and inclusive workforce. It is the policy of the company to recruit, hire, train and promote persons in all job titles without regard to race, color, religion, sex, age, national origin, veteran status, disability, sexual orientation, or gender identity. We recognize that inclusion and diversity is a driving force in the success of our company.


Need to know more about applying for a job at ASML? Read our frequently asked questions.

Optimize your resume for this job

Get a match score and the keywords you're missing

Optimize resume

About ASML

ASML is the world leader in lithography systems for the semiconductor industry, manufacturing complex machines critical to the production of integrated circuits.

Similar Security roles

Security specialist – identity access management governance & risk
ASML
Apply