Expert Security Analyst – Incident Coordinator

ASML Germany GmbH

Netherlands

Hybrid

EUR 85,000 - 125,000

Full time

3 days ago
Be an early applicant
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Job summary

ASML Germany GmbH is seeking an Advance security analyst to join the Security Operations Center. You will monitor security alerts and improve detection and response capabilities across cyber, IT, OT, and DLP domains.

You will act as an SME on security technologies, mentor junior analysts, and drive improvements in security processes and tools. The role may require shift work or on-call duties.

Qualifications

  • Bachelor's degree in CS/IT/cybersecurity or equivalent
  • 3+ years in security operations with hands-on experience in SIEM, EDR, and threat detection
  • Preferred certifications include GCIH, GCFA, CISSP, or equivalent

Responsibilities

  • Monitor security alerts across cyber, IT, OT, and DLP to detect malicious activity or anomalies.
  • Investigate, prioritize, and respond to security incidents, escalating as needed.
  • Tune and optimize detections to reduce false positives and enhance detection accuracy.
  • Mentor junior analysts and share knowledge to improve team capabilities.
  • Contribute to tooling, automation, and security process improvements.

Skills

Strategic thinking
Technical proficiency
Leadership
Innovation

Education

Bachelor's degree in computer science, information technology, cybersecurity, or equivalent

Tools

SIEM
EDR
Threat detection

Job description

Introduction to the job

As an Advance security analyst, you will take on a balanced role, focusing equally on monitoringsecurity alerts (Cyber, IT, OT, DLP) and enhancing detection and response capabilities. You will beresponsible for primarily focused on analyzing medium-to-high risk incidents, fine-tuning detectionsystems, and executing security improvements. Additionally, you will act as a subject matter expert(SME) for specific security technologies or threat domains.

This role requires a deeper understanding of cyber threats and provides the opportunity to mentorjunior analysts while driving improvements in security processes, tools, and techniques.

Role and responsibilities

he Security Incident Response Team (SIRT) operates within the Security Operations Center (SOC) todetect and mitigate security threats in real time. As an Advance security analyst, you will beresponsible for both operational security monitoring and security improvements.

In this role, you will focus on:

Incident detection & response

  • Security monitoring – Actively monitor security alerts for malicious activity or anomalies, ensuring
  • swift response
  • Incident analysis – Investigate, prioritize, and respond to security incidents, escalating as needed
  • Threat identification – Recognize patterns of attack, correlate related events, and identify indicators ofcompromise (IoCs)
  • Tuning & optimization – Reduce false positives and enhance detection accuracy by refining securitymonitoring rules

Process & technology improvements

  • Tooling enhancements – Implement improvements in SOC security technologies
  • Automation & orchestration – Contribute to automating routine security tasks to improve efficiency
  • Knowledge sharing & mentorship – Assist in training and mentoring junior analysts to improve teamcapabilities
Education and experience

We seek a critical thinker and team player with experience in security operations who can analyzesecurity threats and implement improvements proactively.

You bring:

  • Bachelor’s degree in computer science, information technology, cybersecurity, orequivalent work experience
  • 3+ years in security operations, with hands‑on experience in SIEM, EDR, and threatdetection.
  • Preferred certifications include GCIH, GCFA, CISSP, or equivalent
Skills
  • Strategic thinking – Ability to assess incidents and understand their broader impact
  • Technical proficiency – Strong knowledge of threat analysis, vulnerabilities, and security tools.
  • Leadership – Ability to mentor junior analysts and drive security enhancements.
  • Innovation – Proactively seek opportunities to improve security monitoring and response strategies
Other information
  • The role may involve shift work or on-call duties to provide 24/7 security coverage.
  • This position is primarily office-based, with the possibility of remote work.

This position requires access to controlled technology, as defined in the United States Export Administration Regulations (15 C.F.R. § 730, et seq.). Qualified candidates must be legally authorized to access such controlled technology prior to beginning work. Business demands may require ASML to proceed with candidates who are immediately eligible to access controlled technology.

Inclusion and diversity

ASML is an Equal Opportunity Employer that values and respects the importance of a diverse and inclusive workforce. It is the policy of the company to recruit, hire, train and promote persons in all job titles without regard to race, color, religion, sex, age, national origin, veteran status, disability, sexual orientation, or gender identity. We recognize that inclusion and diversity is a driving force in the success of our company.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

SIRT Team Lead – Security Incident Response Team
SIRT Team Lead – Security Incident Response Team

ASML Germany GmbH • Veldhoven

On-site
EUR 90,000 - 130,000
Lead Security Incident Analyst & Detection Optimizer
Lead Security Incident Analyst & Detection Optimizer

ASML Germany GmbH • Netherlands

Hybrid
EUR 85,000 - 125,000
Security Operations Center Analyst
Security Operations Center Analyst

Nebius Group • Amsterdam

On-site
EUR 65,000 - 85,000
Competitive salary and comprehensive benefits package
Opportunities for professional growth
Hybrid working arrangements
SOC Analyst
SOC Analyst

IBM • Amsterdam

On-site
EUR 55,000 - 75,000
Principal SOC Analyst
Principal SOC Analyst

Fox-IT • Rijswijk

Hybrid
EUR 90,000 - 120,000
Competitive salary
Hybrid/Remote work option
Pension scheme
+7
Application security specialist
Application security specialist

ASML Germany GmbH • Veldhoven

On-site
EUR 90,000 - 120,000
SOC Analyst
SOC Analyst

Northwave Cyber Security • Utrecht

On-site
EUR 55,000 - 75,000
25 vacation days plus all Dutch national holidays
€200 net annual allowance for flexible and remote working
Learning budget from €700 to €1,200 per year
Security Operations Center – Tier 2 Analyst
Security Operations Center – Tier 2 Analyst

Vanderlande • Veghel

On-site
EUR 65,000 - 90,000
40 vacation days
Flexible hours
Hybrid workplace
+8
Cybersecurity Analyst – join our Security Operations Center in Amsterdam!
Cybersecurity Analyst – join our Security Operations Center in Amsterdam!

Verisure • Amsterdam

On-site
EUR 55,000 - 75,000
SOC Analyst - Hybrid in The Hague or Berlin (f/m/x)
SOC Analyst - Hybrid in The Hague or Berlin (f/m/x)

Eye Security • Rotterdam, Den Haag

Hybrid
EUR 35,000 - 55,000
Generous time-off policy
Remote-friendly culture
Quarterly meetups and annual retreats