Senior SOC Automation Consultant

nviso

Brussel Hoofdstad

On-site

EUR 90,000 - 130,000

Full time

14 days+
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Benefits offered by this job

Training budget 10,000€
Company car + Belgian fuel card
Flexible working hours and home office
32 holidays

Job summary

NVISO is seeking a Senior SOC Automation Consultant based in Brussels to help clients modernize and scale their Security Operations Centers by designing, implementing and improving automation across detection, triage, investigation and response workflows.

You will help evolve SOC strategies beyond SOAR, leveraging AI-assisted decision support, deterministic workflows and governance to deliver trusted, scalable solutions with strong data quality and log onboarding.

Qualifications

  • Experience with SOC automation technologies including SOAR platforms, orchestration tooling, workflow engines, or related automation capabilities.
  • Strong foundation in Python and/or other relevant scripting languages.
  • Solid understanding of SOC operations, IR processes and detection/response workflows.
  • Open mind toward modern SOC capabilities including AI-assisted operations, agentic workflows and advanced automation concepts.

Responsibilities

  • Designing and implementing SOC automation solutions across detection, triage, investigation and response workflows.
  • Helping customers evolve from traditional SOAR-centric approaches toward broader automation architectures with AI capabilities and analyst-in-the-loop decision making.
  • Building, configuring and integrating automation platforms, case management workflows, orchestration capabilities and supporting services.
  • Developing and maintaining playbooks, automations and integrations for customer-specific use cases and tech stacks.
  • Defining higher-level automation patterns and reusable building blocks beyond single-use cases.

Skills

SOC automation
Python
SOC operations
AI-assisted ops
Governance
Communication
SOC Analyst experience

Tools

SOAR platforms
Orchestration tooling
Workflow engines
APIs
Data transformation

Job description

It all starts with the mission: NVISO is here to protect European society from potentially devastating cyber attacks! This means we offer cyber security services to private and governmental organizations to help them better prepare for, prevent, detect and respond to cyber security incidents.

All of this is built on four fundamental values that define who we are: We are Proud, We Break Barriers, We Care and No BS!

Tasks

As a Senior SOC Automation Consultant located in Brussels, you will help customers modernize and scale their Security Operations Center (SOC) by designing, implementing and improving automation capabilities across detection, triage, investigation and response workflows.

You understand that the SOC of today is no longer driven by SOAR alone, but by a combination of AI-assisted decision support, agentic execution models, deterministic workflows and strong operational governance.

You support customers in increasing efficiency, consistency and resilience in their security operations by combining the right level of automation with the right level of human oversight. You are able to translate operational SOC needs into sustainable automation strategies and practical implementations, covering not only tooling and playbooks, but also data quality, log onboarding, governance and lifecycle management.

You have strong communication and interpersonal skills, which enable you not only to understand requirements, but also to put these requirements into an implementation roadmap, explain it to customers and guarantee proper execution. You have an open and approachable mind, in line with NVISO's values.

Typical tasks include but are not limited to:

  • Designing and implementing SOC automation solutions across detection, triage, investigation and response workflows;
  • Helping customers evolve from traditional SOAR-centric approaches toward broader automation architectures that combine deterministic workflows, AI capabilities and analyst-in-the-loop decision making;
  • Building, configuring and integrating automation platforms, case management workflows, orchestration capabilities and supporting services;
  • Developing and maintaining playbooks, automations and integrations that support customer-specific use cases, processes and technology stacks;
  • Defining higher-level automation patterns and reusable building blocks rather than only point solutions for individual use cases;
  • Advising on governance for SOC automation, including ownership, testing, change management, exception handling, auditability and operational risk control;
  • Participating in technical workshops with SOC management, engineers and analysts to capture functional and operational requirements and translate them into implementation plans;
  • Helping customers identify where AI and agentic capabilities can add value in the SOC, while ensuring solutions remain trustworthy, explainable and operationally safe;
  • Ensuring you remain up to speed with latest trends and technologies in SOC automation, AI for security operations and security engineering.
  • You are passionate about cyber security, engineering and automation. Building practical solutions and working with customers energizes you and you look forward to growing in all the aforementioned domains.
Requirements
  • You hold citizenship in one of the 32 NATO member states or the Austrian citizenship;
  • Experience with SOC automation technologies, including SOAR platforms, orchestration tooling, workflow engines, or related automation capabilities;
  • A strong foundation in Python and/or other relevant scripting or automation languages;
  • A solid understanding of SOC operations, incident response processes and detection and response workflows;
  • An open mind toward modern SOC capabilities, including AI-assisted operations, agentic workflows and advanced automation concepts;
  • The ability to think beyond individual playbooks and contribute to scalable operating models, governance approaches and implementation roadmaps;
  • Ideally, hands-on experience in a SOC role, such as SOC Analyst, Detection Engineer, Security Engineer or Incident Responder;
  • Ideally, experience with security integrations, APIs, data transformation, enrichment pipelines and system interoperability;
  • Ideally, foundational knowledge of one or more major security ecosystems such as Microsoft, Palo Alto, Splunk, Google, SentinelOne or similar.
Soft Skills:
  • Ability to work independently and keep track of your priorities;
  • Strong interpersonal and verbal/written communication skills that enable the ability to work effectively in a collaborative team environment across the entire company;
  • Excellent English communication skills, both verbal and written;
  • German is a plus;
  • A positive, team-oriented and mission-driven attitude;
  • Ability to prepare, document and present your work to colleagues and customers;
  • Comfort in combining strategic thinking with hands-on implementation.
Benefits
  • A training budget of 10.000€ and 10 days every two years
  • Company car + Belgian fuel card
  • Working and learning from the best people in the European cyber security industry. We have multiple SANS Instructors working at NVISO, our staff has presented at popular hacking conferences (BlackHat, BruCON, OWASP, etc) and all of our technical staff can acquire deep technical security certifications (GSE, GXPN, GREM, GCFA, OSCP, etc)
  • An entrepreneurial and agile company, where you will be stimulated and supported in driving new initiatives (either through internal innovation or by improving our service offering), without losing sight of having fun!
  • Regular team-building and fun events throughout the year;
  • Our commitment to coach and counsel you and help you grow; each employee receives a personal coach within the team, whose role is to ensure your well-being and helps you grow in your career!
  • Flexible working hours and home office possibilities
  • Flex Reward Plan
  • 32 holidays
Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Security Operations Engineering Consultant
Security Operations Engineering Consultant

NVISO GmbH • Brussel Hoofdstad

Hybrid
EUR 42,000 - 60,000
Senior SOC Architect
Senior SOC Architect

Nviso • Brussel Hoofdstad

On-site
EUR 110,000 - 170,000
Flexible working hours and home office
EU-wide remote work option
Professional growth and coaching
+1
SOC Engineer
SOC Engineer

Nviso • Brussel Hoofdstad

On-site
EUR 60,000 - 95,000
Training budget
Mentor program
Flexible work model
+4
Senior Security Operations Engineering Manager
Senior Security Operations Engineering Manager

NVISO GmbH • Brussel Hoofdstad

On-site
EUR 120,000 - 150,000
Training budget 10000€
Flexible working hours
Home office options
+3
Senior Cyber Strategy & Architecture Consultant
Senior Cyber Strategy & Architecture Consultant

NVISO Security • Brussel Hoofdstad

Hybrid
EUR 90,000 - 130,000
Training budget 10000€
Home office options
Flexible working hours
+3
Senior SOC Architect
Senior SOC Architect

NVISO Security • Brussel

Hybrid
EUR 90,000 - 130,000
Training budget 10,000€
Company car + Belgian fuel card
Flexible working hours and home office
+4
Senior Incident Response & Digital Forensics Consultant
Senior Incident Response & Digital Forensics Consultant

Nviso • Brussel Hoofdstad

On-site
EUR 60,000 - 90,000
Training budget of 10.000€ and 10 days every 2 years
Company car and Belgian charging card
Flexible working hours
+1
Cyber Incident Manager
Cyber Incident Manager

NVISO GmbH • Brussel

Hybrid
EUR 90,000 - 130,000
Training budget
Company car
Flexible hours
+1
Junior Application Security Consultant
Junior Application Security Consultant

Nviso • Belgium

On-site
EUR 40,000 - 60,000
Training budget and learning perks
Company car and Belgian fuel card
Regular team-building events
+1
Technical Lead Manager
Technical Lead Manager

NVISO • Brussel Hoofdstad

On-site
Confidential
Training budget 10.000€
Flexible working hours
32 paid leave days