> Markdown version of [/jobs/ext/2855892-soc-cyber-security-specialist](https://www.wearedevelopers.com/jobs/ext/2855892-soc-cyber-security-specialist). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # SOC Cyber Security Specialist - **Company:** Ai - **Location:** 'S-HERTOGENBOSCH, Netherlands - **Contract:** Permanent contract - **Skills:** Microsoft Windows, Artificial Intelligence, Apple Mac Systems, Bash Shell, Customer Data Management, Dynamic Host Configuration Protocol, Linux, Network Address Translation, Domain Name System (DNS), Virtual Private Networks (VPN), Python (Programming Language), Simple Mail Transfer Protocols, Network Segmentation, Markdown, Zero Trust Network Access, Transport Layer Security, Git, Fortinet, Software Version Control - **Published:** September 12, 2026 - **Apply:** https://startup.jobs/soc-cyber-security-specialist-on2it-9992654 ## About the Role * You pull the thread until you understand it * You can say "I don't know yet" and then go find out * You care about doing it properly: a sloppy investigation is worse than none * You can explain a technical problem without making anyone feel stupid, * Networking at CCNA level * Concepts network segmentation, VPN, NAT, DNS and certificates * Security thinking least privilege, defense in depth, and how an attack moves once inside * Systems Windows, macOS and Linux * Protocols the common ones (SSH, SSL, HTTPS, SMTP, DHCP), and the confidence to pick up the rest * Certifications willing to get them. We pay, you study, Nice to have: experience with Palo Alto Strata or Cortex, Microsoft Defender or Fortinet FortiGate; SOC, NOC or managed services experience; Dutch; Python, Bash or similar scripting. ## Description Our customers trust us to keep their networks out of the news. You are the person who makes that true. You analyze what is really happening on a customer's network, decide what matters, and configure the controls that stop the next attempt. You work in our Global Security Operations Center (GSOC) in Zaltbommel, part of a global team that runs 24x7. One shift you untangle a routing problem; on another you segment a customer's network into Protect Surfaces and tune the policy that guards them. Always with prevention as the goal: we stop the incident, not just report it. WHAT YOU WILL DO * Analyze anomalies, alerts and threats, and decide what is real * Fix security issues in routing and networks * Configure security controls along Zero Trust principles * Work hands-on with protocols like SSH, SSL, HTTPS, SMTP and DHCP * Document your work so the next colleague hits the ground running * Advise customers and colleagues, and make complex things simple WORKING IN SHIFTS Our SOC does not close. We work in shifts to ensure 24/7 security for our customers, alongside colleagues in Europe and the US. You will work a rotating pattern: * Two morning shifts (06:00 - 14:30) * Two afternoon shifts (14:00 - 22:30) * Two night shifts (22:00 - 06:30) * Followed by 4 days off HOW WE WORK WITH AI AI is built into our service, not bolted on: MDR Detect runs AI-assisted case handling behind our 24x7 human-led GSOC. We also build our own bespoke AI tooling on top of our platform, and the specialists who use it help shape it. We expect you to understand prompting (structure and context change the answer), reuse (turn a repeated prompt into a skill), verification (a model can be confident and wrong) and privacy (know what goes into which tool). Not an expert yet? Curious and honest about the gaps is what matters., * You use AI daily and can explain how, not just that you do * You can use git (clone, branch, commit, merge request) and write Markdown: our runbooks and AI context live in plain text under version control. This is not a developer role * You respect confidentiality: customer data does not go just anywhere ## Related Videos - [WeAreDevelopers LIVE - Back to CODE100](https://www.wearedevelopers.com/videos/1909-wearedevelopers-live-back-to-code100) - [Docker network without Docker](https://www.wearedevelopers.com/videos/1418-docker-network-without-docker) - [How a Small Team Shrank a Microsoft Monorepo by 94%](https://www.wearedevelopers.com/videos/1236-how-a-small-team-shrank-a-microsoft-monorepo-by-94) - [Cyber Sleuth: Finding Hidden Connections in Cyber Data](https://www.wearedevelopers.com/videos/893-cyber-sleuth-finding-hidden-connections-in-cyber-data) - [Docker exec without Docker](https://www.wearedevelopers.com/videos/1094-docker-exec-without-docker) - [Git for Code Reviews](https://www.wearedevelopers.com/videos/429-git-for-code-reviews) ## Related Articles - [Dev Digest 134 - Where pixels sing?](https://www.wearedevelopers.com/magazine/477-dev-digest-134-where-pixels-sing) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Dev Digest 138 - Are you secure about this?](https://www.wearedevelopers.com/magazine/486-dev-digest-138-are-you-secure-about-this) - [Dev Digest 216: CyberSec + Mythos, Stack Overflow for Agents & DOOM in TTF](https://www.wearedevelopers.com/magazine/728-dev-digest-216-cybersec-mythos-stack-overflow-for-agents-doom-in-ttf) - [Dev Digest 131 - AI'm not sure about OSS](https://www.wearedevelopers.com/magazine/472-dev-digest-131-ai-m-not-sure-about-oss) - [The Overflow: Security and Privacy](https://www.wearedevelopers.com/magazine/715-the-overflow-security-and-privacy)