Level

ASML

Security risk expert - AI & emerging technology

AI in this role

Security risk expert specializing in evaluating security risks, threat models, and controls for AI and emerging technologies.

security-risk-assessmentthreat-modelingartificial-intelligencegenerative-aimachine-learning

Introduction to the job

As a Security risk expert - AI & emerging technology, you are responsible for executing security risk assessments and providing specialist security expertise for Artificial Intelligence (AI), Generative AI, Agentic AI, machine learning solutions, and other emerging technologies.


You will perform detailed security analysis, identify risks, evaluate controls, and develop practical recommendations to support informed risk-based decisions.



Role and responsibilities 

As a Security risk expert - AI & emerging technology, you will operate as a senior individual contributor under the direction and prioritization of the Security risk manager.


In this function, you will join the first-line Corporate Sector Security Risk Management department. You will be part of the ASML Security community and work closely with sector Security Risk Management (SRM) teams, central security competence teams, AI and data governance, Information Technology, Privacy, Legal & Compliance, Internal Audit and business stakeholders.


In this role, you will:

  • Execute security risk assessments for AI and emerging technology initiatives, identifying threats, vulnerabilities, control gaps, and risk scenarios, and developing evidence-based findings and recommendations
  • Perform detailed analysis of proposed technologies and architectures, including threat modelling, attack-path analysis, and evaluation of security controls and mitigations
  • Assess AI-specific risks, including model compromise, prompt injection, data leakage, training data risks, supply chain vulnerabilities, agentic behaviour risks, and access control weaknesses
  • Support security-by-design reviews throughout the technology lifecycle, provide subject matter expertise to project teams, advise stakeholders on security-by-design principles, and support solution design reviews
  • Assist teams in understanding security expectations and requirements, validate implementation of agreed security controls, and review remediation activities and compensating measures
  • Support exception management, risk treatment planning, and risk acceptance discussions, providing technical security expertise and recommendations
  • Contribute to the improvement of assessment methodologies, security standards, control frameworks, procedures, and reporting mechanisms, share knowledge and mentor less experienced practitioners, and escalate material risks, novel technologies, risk appetite concerns, regulatory concerns, and significant disagreements or unresolved issues to the Security Risk Manager

 

Education and experience 

  • Bachelor's or master's degree in a relevant discipline, e.g., business administration, information technology, cybersecurity, internal audit, IT management and/or data science & AI.
  • 3-7 years professional experience with a focus on security, IT auditing, Information Security Management Systems (ISMS). AI specialization required
  • Relevant certifications such as CISSP, CISM or CRISC.
  • Experience with defining and running AI security baselines, assessments    
  • Proven track record in Security at tactical level
  • Deep Knowledge of current security technologies, current and future developments for AI security, in-depth working knowledge of IT, Data and Information Risk/security frameworks and best practices, such as NIST Cyber security framework, ISF Standard of Good Practice for Information Security, IEC 62443, NIST SP 800 30 framework, NIS2 , ISO 27001/2 framework


Skills

To be successful in this role, you will need:

  • Excellent influencing and interpersonal skills
  • Ability to further develop Security Risk and Control Management within ASML by building trusting and long-term relationships
  • Aability to overcome organizational resistance, as well as the ability to interact across all levels of the organization
  • Solid foundation in internal and external stakeholder management as well as ability to understand different perspectives, act upon those and prioritize needs
  • Self-starter mindset and ability to operate autonomously with little guidance
  • Being comfortable in starting up several initiatives at the same time without losing the overview and bigger picture


Other information 

A Certificate of Good Conduct “Verklaring Omtrent het Gedrag (VOG)” is required for this position.

Inclusion and diversity

ASML is an Equal Opportunity Employer that values and respects the importance of a diverse and inclusive workforce. It is the policy of the company to recruit, hire, train and promote persons in all job titles without regard to race, color, religion, sex, age, national origin, veteran status, disability, sexual orientation, or gender identity. We recognize that inclusion and diversity is a driving force in the success of our company.

Need to know more about applying for a job at ASML? Read our frequently asked questions.

How we rate this

Security risk expert - AI & emerging technology at ASML rates 75 out of 100 for how much of the daily work is AI. That makes it Works on AI (AI Level 3 of 4). The level is about AI in the job, not seniority.

Classification

Works on AI. The daily work is on AI products, without building the model.

  1. ●●●● Builds AI80 to 100
  2. ●●●○ Works on AI60 to 79
  3. ●●○○ Uses AI40 to 59
  4. ●○○○ Little AI0 to 39

Levels come from how often the tools, models and workflows of the role are named in the posting itself. Open the description and count.

Prepare for this job

A free preview built only from this posting: what it asks for, what you could be asked in an interview, and how to adjust your resume.

Skills and AI tools this role asks for

Security Risk AssessmentThreat ModelingArtificial IntelligenceGenerative AIMachine Learning

Questions you could be asked

  1. Tell me about a project where security risk assessment was part of your work. What did you do?
  2. Tell me about a project where threat modeling was part of your work. What did you do?
  3. Tell me about a project where artificial intelligence was part of your work. What did you do?
  4. Tell me about a project where generative ai was part of your work. What did you do?
  5. Tell me about a project where machine learning was part of your work. What did you do?

Adapt your resume

  • List these exact terms on your resume: Security Risk Assessment, Threat Modeling, Artificial Intelligence, Generative AI, and Machine Learning. An applicant tracking system matches the wording, not the idea.
  • Attach one line of real, concrete experience to at least one of them — a tool named with nothing behind it rarely survives a human read.
  • Show where AI is part of your daily process, not a one-off project — this role expects it to be a running habit.

Want an expert to read your CV for this job?

Free. Send your CV and the role you want next. We reply by email within 2 to 4 business days.

Get a free CV review

Get new AI jobs (Works on AI ●●●○ or higher) by email

One email a week with the new AI jobs (Works on AI ●●●○ or higher), each rated for how much AI is in the work. No recruiter spam, unsubscribe in one click.

Free. One email a week. Unsubscribe in one click.

Similar roles

Security roles that work on AI, at other companies.

What kind of AI work fits you?

Answer 12 practical questions in about three minutes. Get a simple profile, the work it points to, and live roles to explore next.

Find my next step

More jobs at ASML

Related searches

Same AI level