3 дня назад
Security Risk Manager - AI & Emerging Technology (AI)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
Текст:
TL;DR
Security Risk Manager - AI & Emerging Technology (AI): Leading AI security risk management across ASML, including portfolio ownership, governance, complex assessments, and a team of security specialists with an accent on AI lifecycle risks, regulatory requirements, and risk-based decision-making. Focus on challenging high-impact assessments, advising senior stakeholders, and developing consistent security risk methodologies for emerging technologies.
Location: Veldhoven, Netherlands
Company
is a global technology company with a broad security community supporting semiconductor manufacturing operations.
What you will do
- Lead, coach, and develop a team of Security AI Experts, including performance management, recruitment, onboarding, succession planning, and capacity management.
- Own the AI and emerging technologies security risk portfolio, prioritizing assessments, treatment plans, exceptions, remediation, and escalations.
- Establish and maintain security risk assessment methodologies, standards, procedures, metrics, and reporting mechanisms.
- Lead and challenge complex assessments involving novel technologies, strategic programs, high residual risk, regulatory exposure, and cross-sector dependencies.
- Advise senior management and collaborate with Business, IT, Enterprise Architecture, Data & AI, Privacy, Legal, Compliance, and Internal Audit stakeholders.
- Monitor emerging threats, technologies, regulations, and market developments to improve AI security risk management maturity.
Requirements
- Experience leading security risk assessments, treatment planning, exceptions, residual-risk escalation, control assurance, and management reporting.
- Experience influencing senior business, IT, Data, Architecture, Privacy, Legal, Compliance, and Security stakeholders in a complex international environment.
- Working knowledge of AI systems and lifecycle risks, including confidentiality, integrity, availability, model and supply-chain risks, prompt or data leakage, access control, monitoring, and agentic autonomy.
- Deep knowledge of NIST AI RMF, NIST CSF 2.0, ISO/IEC 27001/27002, ISO/IEC 27005, ISO/IEC 42001, and NIST SP 800-30.
- Understanding of the EU AI Act and NIS2, with the ability to prioritize portfolios, make evidence-based recommendations, and communicate with senior stakeholders.
- A Certificate of Good Conduct (Verklaring Omtrent het Gedrag – VOG) is required.
Nice to have
- Awareness of OWASP guidance for LLM applications and MITRE ATLAS.
Culture & Benefits
- Work as part of the first-line Corporate Sector Security Risk Management department and the wider Security community.
- Collaborate across business sectors and central security competence teams.
- Contribute to an inclusive and diverse workplace.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →