Responsibilities
- Investigate and respond to cybersecurity incidents, including business email compromise, account compromise, ransomware, and other security threats.
- Act as a senior escalation point for complex alerts and investigations within the SOC.
- Take ownership of complex investigations, Business Email Compromise (BEC) cases, and other escalated incidents.
- Communicate clearly and confidently with clients, guiding them through investigations, remediation activities, and security incidents.
- Support MDR operations and participate in a 24/7 on-call rotation.
- Collaborate with internal teams including Security Operations, Customer Success, Support, and Product.
- Improve internal playbooks, documentation, processes, and tooling to strengthen our security operations.
- Contribute to initiatives such as automation, threat intelligence, and operational improvements.
Requirements
- Proven experience in Security Operations (SOC), Managed Detection & Response (MDR), Incident Response (IR), DFIR, CSIRT, CERT, or similar cybersecurity environments.
- Experience investigating and responding to security incidents independently.
- Strong understanding of modern attack techniques, incident response methodologies, and security operations.
- Experience working with technologies such as Microsoft 365, Azure, Windows environments, EDR solutions, SIEM platforms, and cloud infrastructure.
- Excellent communication skills and the ability to remain calm and structured during high-pressure situations.
- Strong analytical and problem-solving skills with a natural curiosity to investigate root causes and improve processes.
- A collaborative mindset and willingness to support teammates, customers, and internal stakeholders.
- Fluency in Dutch and English.
- Residence in the Netherlands.
- Availability to participate in a 24/7 on-call rotation.
Nice to Have
- Experience investigating Business Email Compromise (BEC) incidents.
- Experience with digital forensics, threat hunting, or threat intelligence.
- Experience creating playbooks, documentation, or operational procedures.
- Experience mentoring junior analysts or acting as a technical escalation point.
Benefits
- A meaningful mission: protect organizations across Europe from real-world cyber threats
- Work with top-tier professionals from national CERTs, intelligence agencies, and leading tech backgrounds
- A remote-friendly culture with quarterly meetups and annual company retreats (in Spain, Portugal, Italy…)
- Thursday socials to stay connected
- A generous time-off policy, including wellbeing and volunteering days
Additional Information
- Fluency in Dutch and English
- Residence in the Netherlands
- Availability to participate in a 24/7 on-call rotation
- Thursday socials to stay connected
- Quarterly meetups and annual company retreats (in Spain, Portugal, Italy...)