Are you an experienced SOC Analyst who gets excited about staying one step ahead of hackers?
Will you be our new colleague?
Do you want to work with a close-knit and dedicated team in a State-of-the-Art Security Operations Centre using the latest technologies?
Then you're the new SOC analyst we're looking for!
You know that most SOC roles ultimately boil down to the same thing: triaging alerts, closing tickets, sending reports. So do we. That’s why we’re building something different.
At Defenced, you’re not just another specialist on the team. You’re a Defender. That might sound like marketing speak, but it describes how we work. We think like attackers. We don’t sell peace of mind to clients; we deliver control. And yes, that demands more from you.
What you'll do
You work in a SOC without silos. Every Defender on our team owns the full chain: from onboarding and detection engineering to incident response and client conversation. Not because we're too small to do it differently, but because we believe the best detection comes from someone who also understands what's behind those data streams.
In practice:
Monitor, analyse and respond to security incidents for Dutch organisations
Develop and improve detections and use cases on our next-generation platform — no separate SIEM and SOAR, one integrated platform
Onboard new clients, including setting up data streams and detection scenarios
Contribute to automation and improvement projects within the SOC
Coach fellow analysts
Work with the SOC Lead on the continued development of the SOC
Client contact is not a side note. You explain what you see, what it means and what needs to happen. Directly, substantively, without an intermediary.
Our SOC protects client environments 24/7. Shifts outside office hours are part of the role.
What you bring
Demonstrable experience in a SOC or comparable security operations environment
Knowledge of incident response, detection and log analysis
Experience with SIEM or XDR platforms
The drive to improve, not just to process
The ability to guide colleagues and own projects end to end
Proficiency in Dutch and English, spoken and written
Relevant certifications (GSOC, GMON, GCIA, GOSI or equivalent) — or the willingness to pursue them. We actively invest in that.
Nice to have: experience with scripting or automation, threat hunting or purple teaming.
What you'll find here
Defenced has been certified Great Place to Work three years running. Not as a goal, but as an outcome. 99% of our Defenders say they are treated fairly. That's culture, not HR policy.
Beyond that:
Direct influence on how the SOC develops — your ideas actually get implemented
A team of sharp, substantive colleagues with no bureaucracy in between
Training and certifications as a serious part of your work, not an afterthought
A salary that reflects your level and experience
25 days of leave, a solid pension, laptop
We like working together in the office. Remote work is fine, but the energy on-site is real
And yes — we do a ski trip, drinks when the sun's out, and an annual team outing.
One more thing
We help organisations discover their real risk, make bold decisions and take control of their digital world. No fear as a sales argument. No checkbox security. That's what we do, every day.
If that's where you want to go too — let's talk.
Senior SOC specialist
Convinced You're the Right Fit?
Let us know!
Fill out the form below and share your motivation and CV — we’d love to hear from you!