Wanda is a security analyst at Enexis
Role details
Job location
Tech stack
Job description
Will you help us keeping our energy system secure and future-proof? Enexis is at the heart of the energy transition and, as a regional grid operator, is a crucial part of the critical infrastructure in the Netherlands. That makes our digital environment interesting for attackers - and challenging for you as a Cyber Defense Specialist. We are building a Next Generation Security Operations Center: a SOC driven by technology, automation and continuous improvement. Not a security "assembly line", but a smart combination of:
- Analysis (reactive) - responding quickly and effectively to signals and incidents
- Threat hunting (proactive) - actively searching for threats
- Detection engineering (improvement) - making our detections smarter every day with the team and its members at the heart of our operations. Our core principles: risk-driven operations and minimizing manual work.
How you'll tackle this challenge As a Senior Cyber Defense Specialist, you are one of the driving forces in our tier-less SOC. You are a creative problem solver with a strong security engineering mindset. Your motto is: "work smarter, not harder".
- You have experience with:
- Threat Intelligence and hunting:
- Creating threat landscape insights that are relevant for Enexis.
- Translating new and known threats into concrete actions and improvements.
- Developing hunting hypotheses and performing advanced hunts.
- Detection Engineering:
- Designing, building and maintaining (use case lifecycle management) advanced detection rules focused on APTs.
- Developing scripts, integrations and automations to improve detection and data analysis.
- Incident Triage and Response:
- Performing in-depth investigations and response activities (containment, eradication, recovery).
- Preparing the entire SOC team through trainings and exercises.
- Ensuring knowledge transfer and continuous improvement of response processes. You focus on 2 or 3 of the areas below: o Taking the lead in complex or critical security incidents. o Designing, implementing and improving threat hunting, incident response and detection engineering activities. This means you: o Have a clear understanding of the environment (business processes, digital landscape, chain dependencies), enabling you to accurately assess the impact of threats. o Know advanced attack techniques (TTPs) and how to counter them with smart detection engineering and targeted hunts. o Not only build detection logic, but also ensure our detection library is kept up to date, that we regularly test our detection logic, and adjust it where needed. o Building and maintaining automation (SOAR) and integrations to reduce manual work. In addition, you support the team by: o Developing an in-depth understanding of our infrastructure and our attack surface. o Participating in our stand-by shifts, contributing to our 24/7 resilience by performing. o Working closely with IT, OT SOC and security teams to sustainably mitigate risks and embed lessons learned. o Coaching colleagues within the SOC and promoting knowledge sharing and a culture of continuous improvement. o Keeping up with developments in the security domain and translating them into concrete improvements of our SOC capabilities. *, A personal budget of 10% and a 13th-month bonus of 10.7% of your gross annual salary. You can use this flexibly or have it paid out monthly or annually., A vitality budget of €700 for e.g. sports memberships. Expanding the family? During the first year of your child's life, you will be reimbursed 70% of your daily wage for 9 weeks.
Requirements
- Extensive experience in cyber defense, including threat hunting and incident response in a (preferably tierless) SOC, CERT, CSIRT or similar security role.
- Strong scripting/coding skills (for example Python, PowerShell or similar) for integrations, log processing and automation.
- Strong communication skills - you can clearly report incidents and findings to both technical and non-technical audiences.
- A strong focus on collaboration and the ability to coach others.
- Solid analytical skills - you recognize patterns and anomalies in large volumes of data.
- Decisiveness - you remain calm and effective during (potential) cyber incidents.
- Affinity with, or experience in, OT/industrial environments is an advantage.
Benefits & conditions
And we also invest in you At Enexis, you work at the forefront of one of the greatest challenges of our time. This begins with a comprehensive welcome package and program to get to know your colleagues, along with excellent working conditions:
- Salary between €5,592 and €7,989 gross per month (based on a 40-hour work week). Including secondary benefits, your salary can increase up to €10,282 gross per month.
- Contribution of 70% to your ABP pension scheme.
- Personal budget of 10% and a 13th month of 10.7% of your gross annual salary.
- 24.5 vacation days with options to purchase additional days.
- Opportunities to work from home, including a furnished workspace and reimbursement.
- Laptop, tablet, and phone for personal use.
- Travel allowance and a first-class public transport subscription.
- Wellness budget of € 700 for a gym membership, for instance.
- Opportunities to grow with our internal development platform or external courses. Work as a Senior Cyber Defense Specialist on the energy network of tomorrow