> Markdown version of [/jobs/ext/3176676-cs-s-security-architect](https://www.wearedevelopers.com/jobs/ext/3176676-cs-s-security-architect). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # CS&S Security Architect - **Company:** ASML - **Location:** Veldhoven, Netherlands - **Experience:** Expert - **Contract:** Permanent contract - **Skills:** Artificial Intelligence, Cloud Computing Security, Cyber Security, Information Technology Operations, Information Systems Security Architecture Professional, Systems Development Life Cycle, Sherwood Applied Business Security Architecture, Data Streaming, Software Security, Togaf - **Published:** September 24, 2026 - **Apply:** https://www.indeed.com/viewjob?jk=5959b821dad00b25 ## About the Role * Master's degree in information security, cyber security or equivalent. * You prove to have at least 10+ years' experience in security architecture, design and requirements collection. * Worked in multi-disciplinary projects; Dealt with customers. * Deep knowledge of security technologies, architecture principles, risk management practices and industry best practices. * Experience with security assessments and assessing security implications; Affinity with various security frameworks and current EU legislations, including CRA and NIS 2.0. * Experience coordinating and managing information security risks in partnership with business and technology stakeholders. * Strong ability to communicate technical risks and security requirements in business language and influence decision-making at all levels. * Proven track record of creating, managing and delivering security roadmaps and step-ups in infrastructure, products and services. * Experience within a high-tech, engineering or semiconductor environment is considered a strong advantage. Relevant certifications such as CISSP, CCSP, ISSAP, SABSA, TOGAF or equivalent are required; however, demonstrated practical experience, architectural judgement and delivery of security outcomes are valued more highly than certifications alone. *, * Strong communication and listening skills * Strong problem solving capabilities * Ability to influence and manage different stakeholders on multiple levels * Strong motivation on finding creative solutions for complex multi system, multiple customers problems. Translate security requirements and business goals into detailed specifications and designs that are accepted by stakeholders at many levels in the organizations. * ## Description Your task as CS &S Security Architect is to provide architecture-level security direction and assurance across applications, AI solutions, products and services. In close collaboration with Capability Architects, Solution and Infrastructure Architects, product and service teams, security experts and IT, you will evaluate solution designs, identify technical risks and security gaps, define appropriate controls, and align security improvements with business and IAS technology roadmaps. This means: * Architecture-level technical risk assessments, including defining proportionate controls for new applications, AI solutions, products and services. * Secure solution design assurance, covering data flows, trust boundaries, integrations, identity, operational dependencies and residual risks. * Strong architectural understanding of secure SDLC, application security, cloud security, AI security and product security. * The ability to translate technical findings into business exposure, delivery choices, remediation priorities and investment decisions. * Development of security capability and service roadmaps aligned with product portfolios, infrastructure roadmaps and IT operations. * Engagement with CS&S infrastructure, solutions, product and operations architects to embed security consistently across their roadmaps. * Support for both IAS product teams releasing solutions to the field and service teams operating business-critical capabilities. * Interpretation of penetration-test, vulnerability, threat-model, code-review and compliance assessment findings into an actionable remediation plan. * Contribution to broader operational security decisions, architecture deviations and recurring security improvement initiatives. Conduct Security Control Gap Assessments (Risk Scoping) for new and existing solutions to identify control deficiencies, evaluate associated risks, and ensure alignment with enterprise governance, risk, and compliance (GRC) requirements. *, As a CS&S Security Architect, you are part of the CS&S Security & Risk Management department positioned within Customer Solutions & Support and will report to the CS&S Security Lead. ## Related Videos - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [Python-Based Data Streaming Pipelines Within Minutes](https://www.wearedevelopers.com/videos/1233-python-based-data-streaming-pipelines-within-minutes) - [Thinking Differently - How to Make Money from Cyber Attacks & Cheats](https://www.wearedevelopers.com/videos/745-thinking-differently-how-to-make-money-from-cyber-attacks-cheats) - [We (don't) need a software architect!?!](https://www.wearedevelopers.com/videos/663-we-don-t-need-a-software-architect) - [Cyber Security: Small, and Large!](https://www.wearedevelopers.com/videos/259-cyber-security-small-and-large) - [Why and when should we consider Stream Processing frameworks in our solutions](https://www.wearedevelopers.com/videos/1085-why-and-when-should-we-consider-stream-processing-frameworks-in-our-solutions) ## Related Articles - [Events like RSAC Get You CISOs. Developers Decide What Actually Gets Deployed.](https://www.wearedevelopers.com/magazine/693-events-like-rsac-get-you-cisos-developers-decide-what-actually-gets-deployed) - [The 12 Best Jobs for Software Engineers](https://www.wearedevelopers.com/magazine/401-the-12-best-jobs-for-software-engineers) - [How We Built a Worry-Free System That Runs for 10+ Years – And What We’d Do Again](https://www.wearedevelopers.com/magazine/751-how-we-built-a-worry-free-system-that-runs-for-10-years-and-what-we-d-do-again) - [Best Companies in the Netherlands: Top 25 Companies in 2023 ](https://www.wearedevelopers.com/magazine/193-best-companies-in-the-netherlands-top-25-companies-in-2023) - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [The Most Popular IT Jobs on the Market](https://www.wearedevelopers.com/magazine/376-the-most-popular-it-jobs-on-the-market)