Security Operations Center SIEM Architect
Veghel - Netherlands
Job Summary
Introduction
Vanderlandes Security Operations Center(SOC)is looking for aSIEM Engineer with experience designingoperating andoptimizingenterprise security monitoring platforms. Skilled in log ingestion detection engineering alert tuning and dashboard development to support SOC operations incident response and compliance requirements.
What will you be doing
Onboards log sources(Windows Linux firewalls cloud SaaS apps)
Parses and normalizes logsso data is searchable and consistent
Creates detection rules and alertsfor threats (e.g. brute force malware insider risk)
Tunes alertsto reduce false positives
Builds dashboards and reportsfor SOC teams and leadership
Maintains performance and reliabilityof the SIEM
Supports incident responseby helping analysts investigate alerts
Ensures compliance(e.g. log retention forNIS2ISO 27001IEC62443)
What are your responsibilities
Engineered andmaintainedmultitenantSIEM platforms ( supporting enterprisescale security monitoring
Onboarded and normalized logs from servers endpoints network devices cloud services and security tools (EDRIAMIDSfirewalls)
Developed and tunedcorrelation rules detections and alerts reducing false positives and improving threat detection accuracy
Mapped detections to theMITRE ATT&CK frameworkto strengthen coverage of adversary techniques
Built operational and executive dashboards to improve SOC visibility and reporting
Integratedthreat intelligence feedsto enhance detection capabilities
Supported SOC analysts during investigations by providing log analysis and forensic context
Automated SIEM tasks and data processing usingPython PowerShell and Bash
Optimized log retention and storage to balance performance cost and regulatory requirements
Documented SIEM architecture detections and onboarding processes for audit readiness
What do we ask from you
Desired Technical Skills
SIEM Platforms:e.g.Splunk Microsoft SentinelExabeamElastic
Log Sources:Windows Event Logs Linux Syslog Firewall Proxy IAM EDR
Cloud Logging:Azure Monitor AWS CloudTrail GCP Logging
Security Frameworks:MITRE ATT&CK NIST Incident Response Lifecycle
Scripting & Automation:Python PowerShell Bash
Networking:TCP/IP DNS HTTP/S
OtherSkills
Strong analytical and problemsolving skills
Ability to communicate technical issues tonontechnical stakeholders
Attention to detail and documentation
Ability to work independently and collaboratively
Experience
4 years in cybersecurity SIEM engineering SOC operations or related role
Experience onboarding and managing largescale log environments
What we offer
In this challenging and responsible position you willhave the chance to make a significant contribution to industry-leading projects and be connected to ourdedicated people and customers. We offer a position in an informal international and professional working environment with a lot of scope for personal development. By joiningour profitable and growing companyyou willbe able to reach your goals and focus on your future.
This position offers a competitive salary range of 5000 to 6700
gross per month (excluding 8% holiday allowance). Through exceeding performance expectations you even have the possibility to grow outside this scale.
On top of your fixedsalaryyoullreceive the following secondary benefits:
- 40 vacation days (20 statutory days and a flexible budget worth 20 days).
- Flexible working hours.
- A hybrid workplace (40% working from home and 60% in the office).
- A Health & Wellbeing budget worth 300- per calendar year.
- Commuting allowance including full reimbursement of travel by public transport.
- Working from home allowance.
- Collective pension scheme and discount on additional health insurance.
- On-site company health centres with a gym physiotherapists and occupational therapists.
- Vanderlande Academy and training facilities to boost your skills.
- A variety in Vanderlande Network communities and initiatives.
- And a great company restaurant and coffee bar with barista.
Your application
Are you interested in this position Then apply now directly on our workday vacancy link with your resume and a short summary about your interest in this role.
- Application acceptance timeline: In the event of receiving enough suitable applicants this vacancy can get closed earlier than the mentioned job posting end date.
- Due to process compliance we cannot process emailed applications. Kindly use the correct vacancy link to apply for this vacancy.
Diversity & Inclusion
Vanderlande is an equal opportunity/affirmative action employer. Qualified applicants will be considered without regards to race religion color national origin gender sexual orientation age marital status or disability status.
Background screening
For this position it is possible that a background screening will be conducted. This screening can include checks such as verification of identity qualifications or other relevant records which may include criminal background or sanctions list checks in accordance with our internal policies and applicable laws. Any job offer may be extended under the condition that the screening does not give reason to reconsider the hiring decision. Candidates will always be informed about the process and their rights before any screening is initiated.
Required Experience:
Staff IC
About Company
Vanderlande is the global market leader for value-added logistic process automation at airports, and in the parcel market. The company is also a leading supplier of process automation solutions for warehouses. ... The company focuses on the optimisation of its customers' business proc ... View more