SOC Lead

Zohorecruit

Brussel

On-site

EUR 85,000 - 120,000

Full time

14 days+
Application generator

A complete application in a minute — tailored resume and cover letter, ready to send.

Get past ATS filters

Benefits offered by this job

Competitive salary & benefits
Professional development opportunities

Job summary

Zohorecruit in Brussels seeks a senior Vulnerability & Incident Response SOC Expert to lead global vulnerability management and incident response efforts. You will work with the SOC, IR, and security teams to detect, investigate, and mitigate threats across the enterprise.

The role requires 5+ years in cybersecurity, a Master’s in a technical field, strong SIEM/EDR/XDR experience, ISO 27001 knowledge, and the ability to produce executive reports.

Qualifications

  • Master’s degree in Cybersecurity, Information Security, Computer Science, Engineering, or related field.
  • 5+ years of professional experience in cybersecurity, with SOC operations, vulnerability management, incident response, or cyber defense.
  • Strong hands-on experience with vulnerability management methodologies and tools.
  • Proven experience investigating and responding to cybersecurity incidents.
  • Strong understanding of SIEM, EDR/XDR, IDS/IPS, endpoint security, network security, and cloud security technologies.
  • Solid knowledge of ISO/IEC 27001.
  • Understanding of CVSS, CWE, and CVE.
  • Experience with incident response lifecycle, threat detection, containment, eradication, and recovery.
  • Strong Windows and Linux security concepts, networking, identity, authentication, and Active Directory.
  • Knowledge of MITRE ATT&CK and modern cyber threat techniques.
  • Fluent English; knowledge of French and/or Dutch is an advantage.

Responsibilities

  • Own and lead vulnerability management across infrastructure, endpoints, applications, cloud environments, and network devices.
  • Coordinate remediation with IT, infrastructure, application, and cloud teams.
  • Monitor remediation against SLAs and risk thresholds.
  • Support vulnerability scanning, penetration testing, security assessments, and remediation validation.
  • Develop vulnerability management metrics, dashboards, and executive reporting.
  • Stay informed about emerging vulnerabilities, CVEs, exploits, and threat intelligence.
  • Act as senior technical expert during cybersecurity incidents.
  • Investigate and respond to security alerts and incidents in collaboration with the SOC.
  • Perform incident triage, analysis, containment, eradication, and recovery.
  • Coordinate incident response across global IT, infrastructure, cloud, application, and business teams.
  • Contribute to incident response playbooks, procedures, and tabletop exercises.
  • Participate in on-call rotation; produce post-incident reports and recommendations.

Education

Master’s degree

Job description

Vulnerability & Incident Response SOC Expert

Employment Type: Full-time

Department: Information Security / Cybersecurity

Experience: 5+ years

Education: Master’s degree or equivalent

Level: Senior / Expert

About the Company

We are a leading global baking and food company with operations across multiple countries and a strong portfolio of well-known brands. As our business continues to grow and digitalize, cybersecurity is a critical priority in protecting our people, manufacturing operations, supply chain, customer data, and global IT environment.

We are looking for an experienced Vulnerability & Incident Response SOC Expert to join our cybersecurity team in Brussels and strengthen our Security Operations and cyber-resilience capabilities.

The Role

As a Vulnerability & Incident Response SOC Expert , you will play a key role in identifying, assessing, and reducing cybersecurity risks across our global environment. You will work closely with the Security Operations Center (SOC), infrastructure and cloud teams, application owners, and regional IT teams to detect, investigate, and respond to security incidents.

You will also lead and coordinate vulnerability management activities, helping the organization prioritize remediation based on business risk and threat intelligence.

The role is highly hands-on and requires strong technical expertise, analytical thinking, and the ability to operate effectively during security incidents.

Key Responsibilities
Vulnerability Management
  • Own and continuously improve the organization's global vulnerability management process.
  • Identify, assess, prioritize, and track vulnerabilities across infrastructure, endpoints, applications, cloud environments, and network devices.
  • Analyze vulnerability findings and translate technical risks into clear business priorities.
  • Coordinate remediation activities with IT, infrastructure, application, and cloud teams.
  • Monitor vulnerability remediation against agreed SLAs and risk thresholds.
  • Support vulnerability scanning, penetration testing, security assessments, and remediation validation.
  • Develop vulnerability management metrics, dashboards, and executive reporting.
  • Stay informed about emerging vulnerabilities, CVEs, exploits, and relevant threat intelligence.
Security Incident Response
  • Act as a senior technical expert during cybersecurity incidents.
  • Investigate and respond to security alerts and incidents in collaboration with the SOC.
  • Perform incident triage, analysis, containment, eradication, and recovery activities.
  • Investigate indicators of compromise, suspicious activity, malware, phishing, credential compromise, and unauthorized access.
  • Support digital forensics and root-cause analysis where required.
  • Coordinate incident response across global IT, infrastructure, cloud, application, and business teams.
  • Contribute to incident response playbooks, procedures, and tabletop exercises.
  • Participate in an on-call or escalation rotation when required.
  • Produce detailed post-incident reports and recommend corrective and preventive measures.
SOC & Security Operations
  • Work closely with internal and/or outsourced SOC teams to improve detection and response capabilities.
  • Analyze security events and correlate information from SIEM, EDR/XDR, vulnerability management, identity, network, and cloud security platforms.
  • Help improve detection rules, use cases, alert quality, and incident response processes.
  • Support threat hunting and proactive identification of potential compromises.
  • Evaluate emerging security threats and recommend appropriate controls.
ISO 27001 & Security Governance
  • Support the maintenance and continuous improvement of the organization's ISO/IEC 27001 Information Security Management System (ISMS) .
  • Contribute to risk assessments, security controls, audits, and corrective action plans.
  • Provide technical evidence and support for internal and external ISO 27001 audits.
  • Ensure vulnerability and incident management processes align with ISO 27001 requirements and organizational security policies.
  • Support security governance, risk management, and compliance initiatives.
Required Qualifications & Experience
  • Master’s degree in Cybersecurity, Information Security, Computer Science, Engineering, or a related technical discipline.
  • 5+ years of professional experience in cybersecurity, with significant experience in SOC operations, vulnerability management, incident response, or cyber defense.
  • Strong hands-on experience with vulnerability management methodologies and tools.
  • Proven experience investigating and responding to cybersecurity incidents.
  • Strong understanding of SIEM, EDR/XDR, IDS/IPS, endpoint security, network security, and cloud security technologies.
  • Solid knowledge of cybersecurity frameworks and standards, particularly ISO/IEC 27001 .
  • Understanding of vulnerability standards and methodologies such as CVSS, CWE, and CVE .
  • Experience with incident response lifecycle, threat detection, containment, eradication, and recovery.
  • Strong understanding of Windows and Linux security concepts, networking, identity, authentication, and Active Directory.
  • Ability to analyze security logs, alerts, indicators of compromise, and attack techniques.
  • Knowledge of MITRE ATT&CK and modern cyber threat techniques.
  • Experience working in a multinational or complex enterprise environment.
  • Excellent analytical, problem-solving, and communication skills.
  • Fluent English; knowledge of French and/or Dutch is an advantage .
Preferred Certifications

One or more of the following certifications would be highly desirable:

  • CISSP
  • GIAC / GCIH / GCIA / GCFA
  • CEH
  • ISO 27001 Lead Implementer or Lead Auditor
  • CompTIA Security+ / CySA+
  • Microsoft Security certifications
  • Relevant cloud security certifications such as AWS or Azure Security
What We Offer
  • The opportunity to join a global organization with a strong commitment to cybersecurity and digital transformation .
  • A senior technical role with significant visibility across international operations.
  • Exposure to a diverse global IT and manufacturing environment.
  • Opportunities to shape and mature vulnerability management and incident response capabilities.
  • A collaborative, international working environment based in Brussels, Belgium .
  • Competitive salary and benefits package.
  • Professional development and certification opportunities.
  • The opportunity to make a measurable impact on the organization's cyber resilience.
Our Ideal Candidate

You are a cybersecurity professional who combines deep technical expertise with strong business awareness . You are comfortable investigating a complex security incident, challenging vulnerability remediation priorities, working with SOC analysts and infrastructure teams, and communicating risk to senior stakeholders.

You are curious, calm under pressure, and continuously looking for ways to improve security operations and reduce cyber risk.

If you are ready to take a leading role in strengthening the cybersecurity resilience of a global organization, we would like to hear from you.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Cybersecurity Vulnerability Manage
Cybersecurity Vulnerability Manage

Centum Recruitment International Limited • Brussel

On-site
EUR 90,000 - 120,000
Cyber Security Operations Manager
Cyber Security Operations Manager

EVS • Luik

Hybrid
EUR 90,000 - 130,000
Wellness benefits
Healthcare benefits
Flexible schedules
+1
L2 SOC Analyst
L2 SOC Analyst

Integrity360 • Oudergem

On-site
EUR 52,000 - 76,000
Senior Incident Responder
Senior Incident Responder

Orange Cyberdefense • Brussel Hoofdstad

Hybrid
EUR 70,000 - 100,000
32 vacation days
Meal vouchers
Insurance (hospitalisation & group)
+1
Cybersecurity Engineer
Cybersecurity Engineer

Joris Ide • Belgium

On-site
EUR 55,000 - 75,000
Attractive salary package
Extra-legal benefits
Flexible working hours
+3
L2 SOC Analyst
L2 SOC Analyst

Integrity360 • Brussel Hoofdstad

On-site
EUR 55,000 - 85,000
Cybersecurity Analyst - CyberOps - EU Institution Brussels
Cybersecurity Analyst - CyberOps - EU Institution Brussels

EKXEL IT Services & Financial Engineering • Brussel Hoofdstad

On-site
EUR 90,000 - 120,000
SOC Analyst – Microsoft Security Focus
SOC Analyst – Microsoft Security Focus

EASI • Oost-Vlaanderen

On-site
EUR 45,000 - 70,000
Company car Belgium charging card
Eco-vouchers
Hospitalization insurance
+4
Cybersecurity Analyst - CyberOps - EU Institution Brussels
Cybersecurity Analyst - CyberOps - EU Institution Brussels

EKXEL IT Services & Financial Engineering • Brussel

On-site
EUR 70,000 - 100,000
Senior Business Consultant - Cybersecurity
Senior Business Consultant - Cybersecurity

Orange Cyberdefense • Antwerpen

On-site
EUR 90,000 - 130,000
32 vacation days
Meal vouchers
Eco-cheques
+4