This list contains only the countries for which job offers have been published in the selected language (e.g., in the French version, only job offers written in French are displayed, and in the English version, only those in English).
The mission of the Security department at ASML is to enable the company to control the protection of its information and assets, as well as those of its customers and suppliers, by applying risk-based efficient measures to people, processes, and technology. We support business goals by embedding security within the DNA of its people, processes, and technologies. ASML’s security team acts as a critical support function, providing risk-based programs, services, and systems to protect employees, knowledge, assets, and the company's reputation. This team is one of multi-expert context and skilled professionals, demanding high standards of skillset making sure we deliver on par for ASML as well nurturing a healthy and safe working environment to strive for the best.
Job Responsibility:
Leading the creation of plans or roadmaps for different roll-outs of third-party certification for ASML's ISMS
Managing the organization of the roll-out: collecting demand, setting the scope, contracting external certification bodies, planning and preparing security audits with the organization
Following through on audit findings and ensuring they are resolved
Managing and updating ISMS documentation and maintaining support tools for the management system
Communicating internally with stakeholders about certification
Delivering training and workshops to stakeholders
Cooperating with stakeholders and specialists from other management systems (ISO 9001 and ISO 14001)
Requirements:
Master’s degree in cybersecurity, computer science, information systems, information management, IT audit, or another relevant field
Prior experience assessing information security-related controls and/or requirements in business processes or applications, such as ISO 27001 auditing
Experience with and strong knowledge of ISO 27001 and NIST CSF
Understanding of control environments, such as the linkage between risks, control objectives, and controls
Sound knowledge of information security controls in various domains, such as access control, encryption, and networks
Demonstrated diplomacy skills, with the ability to handle complex discussions and maintain constructive relationships
Knowledge of Business Process Management frameworks, IT Management frameworks, e.g., ITIL, familiarity with audit frameworks like COBIT
Strong stakeholder management and communication skills
IT security background with experience auditing information systems or information management
A Certificate of Good Conduct “Verklaring Omtrent het Gedrag (VOG)” is required
Nice to have:
Experience with Agile methodologies
Experience with Service Now (governance)
Familiarity with the NIST Cybersecurity Framework (CSF)
Understanding of the General Data Protection Regulation (GDPR)
Relevant experience within the semiconductor sector