Cyber Defense Specialist
Role details
Job location
Tech stack
Job description
As a driving force in a modern SOC where the motto is "work smarter, not harder," you will focus on a combination of the following areas:
- Detection Engineering: Design, build, and maintain advanced detection rules (UCLM) focused on APTs and modern attack techniques (TTPs).
- Threat Hunting: Develop hypotheses and conduct proactive hunts across a complex landscape (IT and partially OT).
- Incident Response: Lead complex or critical security incidents and contribute to 24/7 resilience through a standby rotation.
- Automation & SOAR: Build and maintain integrations and scripts to accelerate response processes and minimize manual intervention.
- Coaching & Strategy: Mentor team members and translate trends in the threat landscape into concrete improvements for SOC capabilities.
Requirements
Are you a cybersecurity expert who believes that automation is the key to an impenetrable defense? For a critical player in the national vital infrastructure, we are looking for a Senior Cyber Defense Specialist. In this "tier-less" SOC, you won't be doing repetitive "conveyor belt" work. Instead, you will combine in-depth incident analysis with proactive threat hunting and intelligent detection engineering. You will design advanced detection logic, build SOAR automations to eliminate manual tasks, and act as the incident lead during complex threats. This is a role for a creative tech-mind with an engineering mindset who wants to significantly impact the digital resilience of the energy grid., * BSC or MSc in a relevant domain.
- Extensive background in cyber defense, threat hunting, and incident response within a SOC, CERT, or CSIRT environment.
- Strong proficiency in scripting/coding (Python, PowerShell) for log processing, integrations, and automation.
- Deep understanding of IT infrastructure, attack surfaces, and modern attack methodologies (Cyber Kill Chain, MITRE ATT&CK).
- Strong communicator (reporting to both technical and business audiences), decisive under pressure, and a natural coach.
- A creative problem-solver with a "security engineering" mindset.
- Affinity with or experience in OT/Industrial environments (ICS/SCADA) is a significant advantage.
- High proficiency in English (Dutch is a plus but not mandatory)., On-call services are part of this position, willingness to participate in the incident response standby rotation is required.
Benefits & conditions
A temp-to-perm position in the Den Bosch area for 32-40 hours per week; you will start with a flex contract via Independent Recruiters and after a year you will join our client as a direct employee. The salary for this position is between €4500 and €6000 gross per month.