CrawlJobs Logo

Product Security Expert

asml.com Logo

ASML

Location Icon

Location:
Netherlands , Veldhoven

Category Icon

Job Type Icon

Contract Type:
Not provided

Salary Icon

Salary:

Not provided

Job Description:

As Product Security Subject Matter Expert, you hold a key position in our RBA (Risk & Business Assurance) Expertise Security sector, ensuring Product security capabilities are defined, implemented and monitored. You will support secure design, development and maintenance of ASML’s products by ensuring Product security capabilities are defined, implemented and monitored. You shall also verify the appropriateness (sufficiency) and performance of the controls in the Product domain across ASML. The Product Security Subject Matter Expert is responsible for monitoring compliance against our security frameworks and customer requirements.

Job Responsibility:

  • Develop product security risk and control framework with product security requirements and controls, monitoring dashboard
  • Partners with development teams to proactively communicate product security requirements, promoting control frameworks to ensure secure goals are met
  • Implement and embed our product security standards and policies throughout our sectors
  • Keep updated on the latest trends, standards, regulations on product security and embed them in ASML policies, standards, control framework
  • Guide and prepare ASML sectors to comply with the regulatory requirements on Product Security
  • Explain product security risks to business leaders, and business positions/risk to technical leaders to achieve appropriate security outcomes
  • Pro-actively enable knowledge management within RBA and ASML sectors

Requirements:

  • 10+ years of experience in designing and implementing internal control framework and solving challenges, preferably in a multinational corporate security environment in two or more of the following areas: product security (preferred) or application security, information security or digital platform security
  • In-depth knowledge or experience in Product Security by design
  • Proven experience with product security risk assessments
  • In-depth knowledge of compliance standards in security domain, such as NIST, CIS, ISO 27000, IEC67443, SEMI
  • BSc/MSc/PhD in Cyber security, Software Engineering, Computer Science, Information Technology or equivalent through certification and or training
  • Either a GICSP, CISM, CISSP, or CISA certificate is considered as a must

Nice to have:

  • Strong technical background and drive security program and project execution across multiple security teams
  • design and engineering, manufacturing, sales and customer support in situations where authority is not a given
  • Open to challenges and can think outside the box, able to bridge between higher level abstraction and detailed design choices
  • Excellent communication and collaboration skills
  • Take ownership and lead initiative to results, take responsibility and act decisively whilst collaborating well with other teams, technical and non-technical peers
  • Strong stakeholder management skills, able to build solid relationships of trust at different levels

Additional Information:

Job Posted:
February 04, 2026

Employment Type:
Fulltime
Work Type:
Hybrid work
Job Link Share:

Looking for more opportunities? Search for other job offers that match your skills and interests.

Briefcase Icon

Similar Jobs for Product Security Expert

Senior Product Manager, Security

We are seeking an experienced Product Manager with a strong background in securi...
Location
Location
Netherlands
Salary
Salary:
Not provided
clickhouse.com Logo
ClickHouse
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor's degree in Computer Science, Engineering, or a related technical field, or equivalent practical experience
  • Minimum of 5 years of experience in product management, with a significant focus on security products or features
  • Proven experience with database security principles and best practices
  • Strong understanding of networking concepts and their implications for security
  • In-depth knowledge of identity and access management (IAM) topics
  • Demonstrated experience in quality assurance processes and methodologies
  • Solid background in program management, including planning, execution, and risk management
  • Prior experience in security engineering is required
  • Excellent communication, interpersonal, and presentation skills
  • Ability to thrive in a fast-paced, collaborative environment
Job Responsibility
Job Responsibility
  • Define and evangelize the product vision, strategy, and roadmap for security-focused features and products
  • Conduct market research, competitive analysis, and customer feedback sessions to identify opportunities and inform product decisions
  • Collaborate closely with engineering, design, sales, and marketing teams to deliver high-quality, secure products
  • Translate complex security requirements into clear, concise product specifications and user stories
  • Prioritize product backlog and manage trade-offs to optimize for business value and customer satisfaction
  • Drive product launch activities, including go-to-market strategy, sales enablement, and user documentation
  • Monitor product performance, gather insights, and iterate on product features based on data and user feedback
  • Act as a subject matter expert for security within the organization, providing guidance and insights to various stakeholders
What we offer
What we offer
  • Flexible work environment - ClickHouse is a globally distributed company and remote-friendly. We currently operate in 20 countries
  • Healthcare - Employer contributions towards your healthcare
  • Equity in the company - Every new team member who joins our company receives stock options
  • Time off - Flexible time off in the US, generous entitlement in other countries
  • A $500 Home office setup if you’re a remote employee
  • Global Gatherings – We believe in the power of in-person connection and offer opportunities to engage with colleagues at company-wide offsites
Read More
Arrow Right

Senior Product Manager, Security

We are seeking an experienced Product Manager with a strong background in securi...
Location
Location
United Kingdom
Salary
Salary:
Not provided
clickhouse.com Logo
ClickHouse
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor's degree in Computer Science, Engineering, or a related technical field, or equivalent practical experience
  • Minimum of 5 years of experience in product management, with a significant focus on security products or features
  • Proven experience with database security principles and best practices
  • Strong understanding of networking concepts and their implications for security
  • In-depth knowledge of identity and access management (IAM) topics
  • Demonstrated experience in quality assurance processes and methodologies
  • Solid background in program management, including planning, execution, and risk management
  • Prior experience in security engineering is required
  • Excellent communication, interpersonal, and presentation skills
  • Ability to thrive in a fast-paced, collaborative environment
Job Responsibility
Job Responsibility
  • Define and evangelize the product vision, strategy, and roadmap for security-focused features and products
  • Conduct market research, competitive analysis, and customer feedback sessions to identify opportunities and inform product decisions
  • Collaborate closely with engineering, design, sales, and marketing teams to deliver high-quality, secure products
  • Translate complex security requirements into clear, concise product specifications and user stories
  • Prioritize product backlog and manage trade-offs to optimize for business value and customer satisfaction
  • Drive product launch activities, including go-to-market strategy, sales enablement, and user documentation
  • Monitor product performance, gather insights, and iterate on product features based on data and user feedback
  • Act as a subject matter expert for security within the organization, providing guidance and insights to various stakeholders
What we offer
What we offer
  • Flexible work environment - ClickHouse is a globally distributed company and remote-friendly. We currently operate in 20 countries
  • Healthcare - Employer contributions towards your healthcare
  • Equity in the company - Every new team member who joins our company receives stock options
  • Time off - Flexible time off in the US, generous entitlement in other countries
  • A $500 Home office setup if you’re a remote employee
  • Global Gatherings – We believe in the power of in-person connection and offer opportunities to engage with colleagues at company-wide offsites
  • Fulltime
Read More
Arrow Right

Product Security Engineer

The Senior Security Engineer/Threat Researcher position will be part of Aruba Th...
Location
Location
United States , Remote
Salary
Salary:
101900.00 - 234500.00 USD / Year
https://www.hpe.com/ Logo
Hewlett Packard Enterprise
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • B.S. or M.S. in software engineering, computer science, cybersecurity, or a related field (or equivalent experience)
  • 7+ years of professional experience in software engineering, vulnerability research, penetration testing, or a related security discipline
  • Programming experience in C and at least one additional language used for secure software development, such as Rust, Go, or Python
  • Hands-on experience with security testing tools and techniques, such as fuzzing, reverse engineering, and exploit development frameworks (e.g., Metasploit, Immunity Debugger, Ghidra, or IDA Pro)
  • Understanding of memory-unsafe vulnerabilities, including buffer overflows, use-after-free, integer overflows, and format string vulnerabilities, as well as mitigation techniques such as ASLR, DEP, and stack canaries
  • Strong knowledge of web application security, including OWASP Top 10 vulnerabilities such as XSS, SQL injection, XXE, CSRF, and insecure deserialization
  • Familiarity with secure coding practices, threat modeling, and static and dynamic application security testing (SAST/DAST) tools
  • Knowledge of modern cryptographic algorithms and security protocols (e.g., TLS, IPsec, OAuth) and their implementation pitfalls
  • Demonstrated ability to analyze, exploit, and remediate security vulnerabilities in complex codebases
  • Strong written and verbal communication skills, with the ability to create detailed technical reports and convey complex concepts to both technical and non-technical stakeholders
Job Responsibility
Job Responsibility
  • Conduct advanced security assessments of HPE Aruba networking products, including manual code reviews and penetration testing, to uncover vulnerabilities such as memory-unsafe errors, insecure deserialization, and authentication/authorization flaws
  • Develop proofs of concept (PoCs) to demonstrate the exploitability of identified vulnerabilities and provide actionable remediation guidance to engineering teams when requested
  • Develop and maintain custom tools to assist in vulnerability discovery, exploit development, and tracking and disclosure of vulnerabilities to the public
  • Assist in managing Aruba’s bug bounty program, collaborating with external researchers and product engineering teams to triage, reproduce, and remediate reported vulnerabilities
  • Assist in writing vulnerability disclosure bulletins and managing the process of releasing those bulletins to the public
  • Serve as a subject-matter expert on secure coding practices, particularly in memory-safe and memory-unsafe programming languages, and evangelize these practices across product engineering teams
  • Conduct original security research on non-Aruba products and technologies, including discovering new vulnerabilities, publishing papers, and presenting at leading security conferences
  • Positively represent Aruba in the global security community by fostering collaboration with security researchers while balancing the goals of researchers with the needs of our customers.
What we offer
What we offer
  • Comprehensive suite of benefits that supports physical, financial, and emotional wellbeing
  • Specific programs catered to helping employees reach career goals
  • Inclusive working environment.
  • Fulltime
Read More
Arrow Right

Product Security Engineer

The Senior Security Engineer/Threat Researcher position will be part of Aruba Th...
Location
Location
Puerto Rico , Aguadilla
Salary
Salary:
Not provided
https://www.hpe.com/ Logo
Hewlett Packard Enterprise
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • B.S. or M.S. in software engineering, computer science, cybersecurity or a related field (or equivalent experience)
  • 6+ years of professional experience in software engineering, vulnerability research, penetration testing, or a related security discipline
  • Programming experience in C and at least one additional language used for secure software development, such as Rust, Go, or Python
  • Hands-on experience with security testing tools and techniques, such as fuzzing, reverse engineering, and exploit development frameworks (e.g., Metasploit, Immunity Debugger, Ghidra, or IDA Pro)
  • Understanding of memory-unsafe vulnerabilities, including buffer overflows, use-after-free, integer overflows, and format string vulnerabilities, as well as mitigation techniques such as ASLR, DEP, and stack canaries
  • Strong knowledge of web application security, including OWASP Top 10 vulnerabilities such as XSS, SQL injection, XXE, CSRF and insecure deserialization
  • Familiarity with secure coding practices, threat modeling, and static and dynamic application security testing (SAST/DAST) tools
  • Knowledge of modern cryptographic algorithms and security protocols (e.g., TLS, IPsec, OAuth) and their implementation pitfalls
  • Demonstrated ability to analyze, exploit, and remediate security vulnerabilities in complex codebases
  • Strong written and verbal communication skills, with the ability to create detailed technical reports and convey complex concepts to both technical and non-technical stakeholders. English advanced
Job Responsibility
Job Responsibility
  • Conduct advanced security assessments of HPE Aruba networking products, including manual code reviews and penetration testing, to uncover vulnerabilities such as memory-unsafe errors, insecure deserialization, and authentication/authorization flaws
  • Develop proofs of concept (PoCs) to demonstrate the exploitability of identified vulnerabilities and provide actionable remediation guidance to engineering teams when requested
  • Develop and maintain custom tools to assist in vulnerability discovery, exploit development, and tracking and disclosure of vulnerabilities to the public
  • Assist in managing Aruba’s bug bounty program, collaborating with external researchers and product engineering teams to triage, reproduce, and remediate reported vulnerabilities
  • Assist in writing vulnerability disclosure bulletins and managing the process of releasing those bulletins to the public
  • Serve as a subject-matter expert on secure coding practices, particularly in memory-safe and memory-unsafe programming languages, and evangelize these practices across product engineering teams
  • Conduct original security research on non-Aruba products and technologies, including discovering new vulnerabilities, publishing papers, and presenting at leading security conferences
  • Positively represent Aruba in the global security community by fostering collaboration with security researchers while balancing the goals of researchers with the needs of our customers
What we offer
What we offer
  • Health & Wellbeing
  • Personal & Professional Development
  • Unconditional Inclusion
  • Fulltime
Read More
Arrow Right

Product Security Test Engineer

As part of our HPE Operations Cybersecurity Lab, the Security Systems/Software E...
Location
Location
Puerto Rico , Aguadilla
Salary
Salary:
Not provided
https://www.hpe.com/ Logo
Hewlett Packard Enterprise
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor's or Master's degree in Computer Science, Information Systems, or equivalent
  • Typically 4-6 years experience
  • Expertise in multiple software systems design tools and languages
  • Experience of relational database management systems and their query languages (e.g. SQL)
  • Strong Experience writing software using any modern language and technology stack, i.e Python, Javascript, and frameworks for building APIs and user interfaces
  • Knowledge of tools like Metasploit, Nmap, Burp Suite, Wireshark, vulnerability scanning tools, network mapping, and packet analysis
  • Experience in overall architecture of software systems for products, solutions and IT systems
  • Expertize working in a DevSecOps environment
  • Knowledge of OWASP Top 10 vulnerabilities, web-based attacks (SQL injection, XSS, CSRF), and web protocols
  • Experience with encryption methods and their applications
Job Responsibility
Job Responsibility
  • Designs security enhancements, updates, and programming changes for portions and subsystems of systems software, including operating systems, compliers, networking, utilities, databases, and Internet-related tools
  • Analyzes design and determines coding, programming, and integration activities required based on security requirements and general objectives and knowledge of overall architecture of product or solution
  • Design, develop, test, and maintain robust, scalable, and high-quality security and software solutions
  • Supports application and systems security strategy, architecture and roadmaps, review application architectures, code and system services from a security perspective
  • Writes and executes complete security testing plans, protocols, and documentation for assigned portion of application
  • identifies and debugs, and creates solutions for issues with code and integration into application architecture
  • Leads a project team of other software systems engineers and internal and outsourced development partners to develop reliable, cost effective and high quality solutions for assigned systems portion or subsystem
  • Collaborates and communicates with management, internal, and outsourced development partners regarding software systems design status, project progress, and issue resolution
  • Represents the software systems engineering team for all phases of larger and more-complex development projects
  • Provides guidance and mentoring to less-
What we offer
What we offer
  • Health & Wellbeing
  • Personal & Professional Development
  • Unconditional Inclusion
  • Fulltime
Read More
Arrow Right

Product Security Engineer- Threat Researcher

The Senior Security Engineer/Threat Researcher position will be part of Aruba Th...
Location
Location
Puerto Rico , Aguadilla
Salary
Salary:
Not provided
https://www.hpe.com/ Logo
Hewlett Packard Enterprise
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • B.S. or M.S. in software engineering, computer science, cybersecurity or a related field (or equivalent experience)
  • 6+ years of professional experience in software engineering, vulnerability research, penetration testing, or a related security discipline
  • Programming experience in C and at least one additional language used for secure software development, such as Rust, Go, or Python
  • Hands-on experience with security testing tools and techniques, such as fuzzing, reverse engineering, and exploit development frameworks (e.g., Metasploit, Immunity Debugger, Ghidra, or IDA Pro)
  • Understanding of memory-unsafe vulnerabilities, including buffer overflows, use-after-free, integer overflows, and format string vulnerabilities, as well as mitigation techniques such as ASLR, DEP, and stack canaries
  • Strong knowledge of web application security, including OWASP Top 10 vulnerabilities such as XSS, SQL injection, XXE, CSRF and insecure deserialization
  • Familiarity with secure coding practices, threat modeling, and static and dynamic application security testing (SAST/DAST) tools
  • Knowledge of modern cryptographic algorithms and security protocols (e.g., TLS, IPsec, OAuth) and their implementation pitfalls
  • Demonstrated ability to analyze, exploit, and remediate security vulnerabilities in complex codebases
  • Strong written and verbal communication skills, with the ability to create detailed technical reports and convey complex concepts to both technical and non-technical stakeholders. English advanced
Job Responsibility
Job Responsibility
  • Conduct advanced security assessments of HPE Aruba networking products, including manual code reviews and penetration testing, to uncover vulnerabilities such as memory-unsafe errors, insecure deserialization, and authentication/authorization flaws
  • Develop proofs of concept (PoCs) to demonstrate the exploitability of identified vulnerabilities and provide actionable remediation guidance to engineering teams when requested
  • Develop and maintain custom tools to assist in vulnerability discovery, exploit development, and tracking and disclosure of vulnerabilities to the public
  • Assist in managing Aruba’s bug bounty program, collaborating with external researchers and product engineering teams to triage, reproduce, and remediate reported vulnerabilities
  • Assist in writing vulnerability disclosure bulletins and managing the process of releasing those bulletins to the public
  • Serve as a subject-matter expert on secure coding practices, particularly in memory-safe and memory-unsafe programming languages, and evangelize these practices across product engineering teams
  • Conduct original security research on non-Aruba products and technologies, including discovering new vulnerabilities, publishing papers, and presenting at leading security conferences
  • Positively represent Aruba in the global security community by fostering collaboration with security researchers while balancing the goals of researchers with the needs of our customers
What we offer
What we offer
  • Health & Wellbeing
  • Personal & Professional Development
  • Unconditional Inclusion
  • Fulltime
Read More
Arrow Right
New

Senior Product Manager

The focus of the Targeted Customer Product Manager role within the Customer, Com...
Location
Location
Ireland , Dublin
Salary
Salary:
Not provided
https://www.microsoft.com/ Logo
Microsoft Corporation
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Excellent cross-group and interpersonal skills, with the ability to articulate business needs for detection improvements
  • Knowledge of major cloud and productivity platforms as well as identity systems and related security concerns
  • Experience with direct customer and partner communication
  • Practical experience with Microsoft Security products, such as Entra, Intune, Purview, Sentinel, Defender family, and the evolving Copilot for Security
  • Familiarity with competing security products
  • Experience with reporting, analytical, and dashboarding capabilities including Microsoft Dynamics 365, Power BI, and Excel, with a strong data driven mindset
  • Understand SOC functions and workflows, such as incident triage and investigation, and translate those insights into successful customer experiences with Microsoft’s Security AI product
Job Responsibility
Job Responsibility
  • Act as the advocate and interface between customers, partners, and the Microsoft Security product and engineering teams for Microsoft’s Security AI product and the Microsoft 365 Defender product suite, Sentinel and Purview to ensure customer and partner issues are properly addressed, drive critical feedback and insights, and gather customer requirements to improve the product, value to customers, and product adoption
  • Support customers, partners, and engagement teams as the Security AI product evolves
  • Serve as a point of contact in Microsoft Security Engineering for assigned customers and partners
  • Work towards becoming a subject matter expert on the Microsoft Security AI strategy and supporting product technologies (Microsoft 365 Defender, Sentinel, and Purview) to effectively guide customers and partners
  • Work directly with customers at all levels of their security organization from analyst to CISO to support investigation and response
  • Deliver partner and customer readiness sessions online and/or in person
  • Embody Microsoft’s culture and values
  • Fulltime
Read More
Arrow Right

Senior Product Manager, Security

We are seeking an experienced Product Manager with a strong background in securi...
Location
Location
United States
Salary
Salary:
160000.00 - 215000.00 USD / Year
clickhouse.com Logo
ClickHouse
Expiration Date
Until further notice
Flip Icon
Requirements
Requirements
  • Bachelor's degree in Computer Science, Engineering, or a related technical field, or equivalent practical experience
  • Minimum of 5 years of experience in product management, with a significant focus on security products or features
  • Proven experience with database security principles and best practices
  • Strong understanding of networking concepts and their implications for security
  • In-depth knowledge of identity and access management (IAM) topics
  • Demonstrated experience in quality assurance processes and methodologies
  • Solid background in program management, including planning, execution, and risk management
  • Prior experience in security engineering is required
  • Excellent communication, interpersonal, and presentation skills
  • Ability to thrive in a fast-paced, collaborative environment
Job Responsibility
Job Responsibility
  • Define and evangelize the product vision, strategy, and roadmap for security-focused features and products
  • Conduct market research, competitive analysis, and customer feedback sessions to identify opportunities and inform product decisions
  • Collaborate closely with engineering, design, sales, and marketing teams to deliver high-quality, secure products
  • Translate complex security requirements into clear, concise product specifications and user stories
  • Prioritize product backlog and manage trade-offs to optimize for business value and customer satisfaction
  • Drive product launch activities, including go-to-market strategy, sales enablement, and user documentation
  • Monitor product performance, gather insights, and iterate on product features based on data and user feedback
  • Act as a subject matter expert for security within the organization, providing guidance and insights to various stakeholders
What we offer
What we offer
  • Flexible work environment
  • Healthcare - Employer contributions towards your healthcare
  • Equity in the company - Every new team member who joins our company receives stock options
  • Time off - Flexible time off in the US, generous entitlement in other countries
  • A $500 Home office setup if you’re a remote employee
  • Global Gatherings – opportunities to engage with colleagues at company-wide offsites
  • Fulltime
Read More
Arrow Right