Security analyst
Коротко
Monitors security alerts in real-time, triages and analyzes low-to-medium risk incidents, and escalates potential security issues within the Security Incident · Needs: 24/7 operational requirements; Bachelor's degree
Описание от работодателя
Introduction to the job As a Security analyst in the Security Incident Response Team (SIRT) you play a crucial role in safeguarding the organization’s security posture. Your primary focus will be real-time security monitoring of alerts (Cyber, IT, OT, DLP, Physical), triaging and analyzing low-to-medium risk security alerts, and escalating potential security incidents following established procedures.
Additionally, you will contribute to the continuous improvement of monitoring processes and technologies by providing feedback on false positives and helping enhance and detection capabilities.
Role and responsibilities The Security Incident Response Team (SIRT) operates within the Security Operations Center (SOC) to minimize the impact of security threats by detecting and responding to incidents in real time. By effectively monitoring alerts and improving security controls, you help ASML operate securely in an evolving security threat landscape.
In this role, you will be responsible for:
Monitoring and incident respons e
Security monitoring – Continuously monitor security alerting systems for signs of malicious activity or anomalies, adhering to SOC’s 24/7 operational requirements
Incident triage and analysis – Conduct end-to-end triage and investigation of security alerts, classify their severity, and determine if further escalation is required
False positive reduction – Identify false positives and propose tuning measures to improve detection
accuracy
Documentation – Maintain detailed records of investigations, findings, and actions taken in the
incident tracking system
Process and technology improvement
Feedback on detection capabilities – Provide input to enhance security monitoring and detection rules
Automation – Provide input and support with defining SOAR automation use cases
Compliance & best practices – identify compliance and policy violations and provide inputs on improving ASML security posture
Education and experience Bachelor’s degree in computer science, information technology, cybersecurity, or equivalent experience
Prior internship or hands-on experience in a security/IT role
Experience with SIEM, EDR, or DLP tools is a plus.
Working toward CompTIA Security+, GIAC, CEH, or similar certifications is desirable
Skills Analytical thinking – Ability to interpret security data, detect patterns, and assess risks
Attention to detail – Strong observational skills to identify potential threats.
Communication – Clear written and verbal communication for reporting findings and collaborating with teammates
Willingness to learn – Adaptability to new technologies, threats, and security practices
Other information This role requires working in a fast-paced environment and may involve on-call or shift work to support 24/7 security operations
The position is primarily office-based (3 days a week), with potential for remote work (2 days a week) depending on company policies
This position requires access to controlled technology, as defined in the United States Export Administration Regulations (15 C.F.R. § 730, et seq.). Qualified candidates must be legally authorized to access such controlled technology prior to beginning work. Business demands may require ASML to proceed with candidates who are immediately eligible to access controlled technology.
Inclusion and diversity ASML is an Equal Opportunity Employer that values and respects the importance of a diverse and inclusive workforce. It is the policy of the company to recruit, hire, train and promote persons in all job titles without regard to race, color, religion, sex, age, national origin, veteran status, disability, sexual orientation, or gender identity. We recognize that inclusion and diversity is a driving force in the success of our company.
Need to know more about applying for a job at ASML? Read our frequently asked questions .