Country Security Lead Korea & Japan
AI in this role
Manage cybersecurity, protect intellectual property, and direct virtual security teams across Korea and Japan.
KEY PURPOSE OF ROLE
The Country Security Lead (CSL) for ASML Korea & Japan acts as the local representative of the ASML CISO and
protects and secures ASML’s Intellectual property, digital assets and technologies in Korea & Japan, in line with
ASML’s Security strategy. The CSL for Korea & Japan develops and implements comprehensive security
roadmaps for Korea & Japan, in close alignment with the local sector 1st line Security Risk Managers and the
central 2nd line security team, to protect sensitive data against cyber and physical threats and ensures compliance
with relevant regulations.
ASML manages 1st line security via the sectors which creates a challenge on country level where multiple sectors
can be represented. To manage security from a country point of view with local security risk managers reporting
into the central sector SRM’s, ASML set up a Virtual Security Team (VST) to bring all relevant (security)
representatives together in one virtual team to manage jointly security for Korea & Japan.
The CSL forms and drives the Virtual Security Team (VST) in Korea & Japan, consisting of Korea & Japan’s first
and second line security representatives and other relevant stakeholders, to improve the level of security
maturity in Korea & Japan and report progress to the country’s Management Team.
KEY RESPONSIBILITIES
(THE CORE ACTIVITIES, OUTPUTS EXPECTED OF THE ROLE, REGULATORY & LEGAL REQUIREMENTS)
• Overall: responsible for managing the Korea & Japan security organization on behalf of the CISO of
ASML, driving the development and delivery of security services in Korea & Japan. Challenge and verify
the adequate performance of security controls in Korea & Japan, against ASML and Korea & Japan risk
appetite and as executed by the first line of responsibility in the sectors in Korea & Japan.
• Strategy: execute the central security strategy as determined by the CISO and adding country specific
aspects to it to improve security maturity.
• Risk management: Collaboration with the 1st line sector SRMs to identify, assess and mitigate security
risks, overseeing and reporting via the Korea & Japan Virtual Security Team (VST). Identify improvement
Confidentialopportunities together with the 1st line sector SRMs’ and the 2nd line team in terms of processes and
activities. The CSL provides necessary support for improvements and will act in a pivotal role to bring
(security) teams together where needed
• Incident response: overseeing the development of country specific response plans, assuring the timely
and thorough handling of security indents under coordination of the central Security Operations Centre
• Compliance oversight: ensuring adherence to centrally determined or country specific laws and
regulations related to information security.
• Team leadership & capability building: act on behalf of the CISO of ASML and work closely together with
the 1st line country SRM’s to define and execute a joined security roadmap for Korea & Japan. Assure the
capabilities as required by the central Second Line Security, Intelligence Fusion Centre and Security
Operations Center teams are developed and maintained, as well as organizing Security activities related
to risk culture and awareness initiatives. Will drive the preparation of a uniform reporting out to the
Korea & Japan Country Management Team and align with the CISO and the VST team the agenda for
these meetings.
• Stakeholder engagement: Providing regular updates, in alignment with the local first line sector Security
Risk Managers of the VST, to senior management in Korea & Japan on the status of information security
in Korea & Japan and the central information security program. Considering the given governance, this
will always be in alignment with the respective 1st line SRM.
• Providing the general security training to all Korea & Japan staff to improve their awareness
Some travel will be required to other ASML offices in Korea, Japan and abroad (+/- 15%)
KEY WORKING RELATIONSHIPS
External: Security Vendors, Customers, Suppliers, (always in alignment with local account management
and procurement teams, Industry Peers and Forums)
Internal: ASML IT, ASML ABS Japan, local ASML Sector Security Functions, RBA&S, Legal, Sectors
SKILLS AND QUALIFICATIONS
Essential Skills & Experience (key competencies)
• Minimum of 10 years (Information) Security experience
• Minimum of 8 years experience with physical security
• Minimum of 5 years IT working experience.
• Ability to build strong, trusting relationships with technical and non-technical user base;
• Highly-motivated, with a strong work ethic and able to work effectively under minimal supervision
• Excellent verbal and written communication skills in English and Korean, preference Japanese.
• Excellent multi-tasking skills.
• Strong ability to engage, influence, and advise (senior) key stakeholders in the Korea & Japan business
Skills
Functional
• Enterprise Security risk expertise: Strong understanding of risk frameworks, strategic security risk mgt,
policy management, and business continuity management.
• Security Risk mitigation & advisory: Ability to identify, assess, manage and monitor security risk
mitigation strategies at a country level
Confidential• Business acumen: Deep understanding of ASML business context, priorities, processes, and
dependencies in Korea & Japan or related to Korea & Japan
• Security leadership: Strong knowledge and leadership in Security Risk and Compliance, including
regulatory requirements, governance, security control (frameworks) and risk management
• Strategic thinking: Anticipate future security risks and opportunities, translating them into effective
strategies
Behavioral
• Collaborate – proven ability to build strong relationships, establish and foster interactions across levels
and across teams, working closely with business leaders and risk owners to ensure security risk
management is an integrated function
• Inspire: Proven ability to set a compelling security vision, motivate teams into actions, and act as a role
model for all people leaders
• Ensure accountability: Act with a clear sense of ownership and ensures risk accountabilities are clear,
accepted and acted upon
• Communicate effectively: Ensure transparency in risk reporting, effectively communicating risk insights
to senior leadership
Certifications and/or Membership
• Master’s degree in Information Science/Security or equivalent experience
• Valid industry certifications such as the Certified Information Systems Security Professional (CISSP),
Certified Information Security Manager (CISM), , Certified Cloud Security Professional (CCSP), etc.
• Experience with multiple frameworks (e.g. ISO 27001, NIST)Knowledge on country specific laws and
regulations related to information security.
This position requires access to controlled technology, as defined in the United States Export Administration Regulations (15 C.F.R. § 730, et seq.). Qualified candidates must be legally authorized to access such controlled technology prior to beginning work. Business demands may require ASML to proceed with candidates who are immediately eligible to access controlled technology.
Inclusion and diversity
ASML is an Equal Opportunity Employer that values and respects the importance of a diverse and inclusive workforce. It is the policy of the company to recruit, hire, train and promote persons in all job titles without regard to race, color, religion, sex, age, national origin, veteran status, disability, sexual orientation, or gender identity. We recognize that inclusion and diversity is a driving force in the success of our company.
Need to know more about applying for a job at ASML? Read our frequently asked questions.
How we rate this
Country Security Lead Korea & Japan at ASML rates 0 out of 100 for how much of the daily work is AI. That makes it Little AI (AI Level 1 of 4). The level is about AI in the job, not seniority.
Little AI. AI is not part of the work.
- ●●●● Builds AI80 to 100
- ●●●○ Works on AI60 to 79
- ●●○○ Uses AI40 to 59
- ●○○○ Little AI0 to 39
Levels come from how often the tools, models and workflows of the role are named in the posting itself. Open the description and count.
Prepare for this job
A free preview built only from this posting: what it asks for, what you could be asked in an interview, and how to adjust your resume.
Skills and AI tools this role asks for
Questions you could be asked
- Tell me about a project where cybersecurity was part of your work. What did you do?
- Tell me about a project where risk management was part of your work. What did you do?
- Tell me about a project where incident response was part of your work. What did you do?
- Tell me about a project where security compliance was part of your work. What did you do?
Adapt your resume
- List these exact terms on your resume: Cybersecurity, Risk Management, Incident Response, and Security Compliance. An applicant tracking system matches the wording, not the idea.
- Attach one line of real, concrete experience to at least one of them — a tool named with nothing behind it rarely survives a human read.
Want an expert to read your CV for this job?
Free. Send your CV and the role you want next. We reply by email within 2 to 4 business days.
Get a free CV reviewGet new AI jobs by email
One email a week with the new AI jobs, each rated for how much AI is in the work. No recruiter spam, unsubscribe in one click.
Free. One email a week. Unsubscribe in one click.
Similar roles
Security roles that involve little AI, at other companies.
What kind of AI work fits you?
Answer 12 practical questions in about three minutes. Get a simple profile, the work it points to, and live roles to explore next.
Find my next step