Incident Responder - Dutch speaking (m/f/d)

baobabinsurancegmbh

Rotterdam

Hybrid

EUR 55,000 - 90,000

Full time

3 days ago
Be an early applicant
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Benefits offered by this job

Flexible work options
28 vacation days
Competitive compensation
Continuous learning
Challenging & supportive culture

Job summary

Baobab Risk Solutions in Rotterdam is seeking a security incident responder to execute containment and forensic investigations of ransomware and other cyber incidents. You will work with client IT teams and MSPs across Windows, AD, M365, virtualization, and backups, documenting progress and escalating risks as needed.

With 2+ years in IT security or incident response, you will leverage SIEM/EDR and forensic tools, and apply AI tools to improve investigations and automation while upholding data

Qualifications

  • 2+ years hands-on experience in IT support, systems administration, recovery or incident response.
  • Proficiency with SIEM/EDR and forensic tools.
  • Practical experience documenting technical work in tickets or recovery notes.
  • Ability to use AI tools for technical tasks such as log analysis or information extraction.
  • Dutch and English for client discussions and coordination with partners.

Responsibilities

  • Execute containment and forensic investigation of ransomware, BEC and other incidents, preserving evidence and developing findings with guidance.
  • Support systems restoration after incidents: assess backups, rebuild servers and endpoints, validate services before go‑live.
  • Collaborate with client IT teams and MSPs across Windows, AD, M365, virtualization and backup environments.
  • Document technical work and communicate progress, risks and blockers to the lead.
  • Apply cutting-edge AI tools in investigations, recovery and automation, test new approaches and share results while protecting incident data.
  • Improve recovery checklists, scripts and playbooks by sharing lessons from casework.

Skills

Incident response
IT security
Security tooling
Documentation
AI in security

Tools

SIEM
EDR
Forensics
Windows Defender
CrowdStrike

Job description

Welcome to Baobab Risk Solutions – Your Partner for the Cyber Security of Tomorrow!
The digital world is growing – and with it, the threat of cyber attacks. Every successful attack not only jeopardises businesses but also undermines trust in our connected society. At Baobab Risk Solutions, we are committed to making the digital world safer – proactively, sustainably, and with cutting‑edge technology. Our mission: to protect companies from cyber threats before they arise, contributing to a more secure digital future.
Shape the digital security of tomorrow with us. Join a team that doesn’t just watch but actively protects. Your ideas and commitment can make all the difference. If that’s not enough, here’s more:

  • Flexible Working: With your MacBook, you can work from home two days per week and work in our modern office in Rotterdam the remaining days.

  • Attractive Compensation: Competitive salary and VSOP options.

  • Growth & Career: Grow with us – in a dynamic company with clear advancement opportunities.

  • and many more benefits.

Baobab Risk Solutions – Growing together. Making the digital world safer, together.

Your Mission
  • Execute containment and forensic investigation of ransomware, business email compromise and other incidents: preserve evidence, analyze host and identity logs, and develop findings with specialist guidance.

  • Support systems restoration after cyber incidents: assess backups, rebuild servers and endpoints, resolve dependencies and validate services before returning them to use.

  • Work with client IT teams and managed service providers across Windows, Active Directory, Microsoft 365, virtualization and backup environments.

  • Document technical work and communicate progress, uncertainties and blockers, escalating risks to the lead.

  • Put cutting‑edge AI tools to work in investigations, recovery and automation. Experiment with new approaches, validate results and help shape how the team adopts them, while protecting incident data.

  • Improve recovery checklists, scripts and playbooks by sharing lessons from casework.

Your Profile

Minimum requirements for the role

  • Professional working proficiency in Dutch and English for client discussions, written updates and coordination with international response partners.

  • 2+ years of hands‑on experience in IT support, systems administration, recovery or incident response.

  • Experience using SIEM, EDR and forensic tools, such as Windows Defender for Business, Splunk, CrowdStrike, Velociraptor, X‑Ways, KAPE, Hayabusa, SOF‑ELK or OpenRelik. (These are examples; experience with comparable tools is equally relevant.)

  • Basic experience documenting technical work in tickets, change logs or recovery notes.

  • Practical experience using AI tools for technical tasks, such as information extraction, log analysis or agentic workflows.

  • Openness to coaching and feedback, and motivation to develop your security and investigation skills.

Languages

  • Dutch - business fluent

  • English - business fluent

Requirements that give you an edge

  • Strong practical restoration experience, ideally with SMEs or small IT teams.

  • Hands‑on troubleshooting and backup or restore knowledge, with willingness to learn unfamiliar technologies.

  • Familiarity with threat hunting and using threat intelligence to guide investigations, prioritize suspicious activity and assess indicators of compromise.

Why us?
  • Flexible work options - work from home for up to two days a week and join us in our office in Rotterdam for the remaining two days

  • 28 Vacation Days - plus Christmas Eve & New Year’s Eve

  • Competitive Compensation - Attractive salary & equity options

  • Continuous Learning - Support for your professional growth and development, both internally and through access to the Udemy Business platform

  • Challenging & Supportive Culture - Work with motivated colleagues in an environment where you can grow, achieve, and enjoy the journey

  • Long-Term Growth - A stable career path in a fast-growing company

  • Welcoming Team - A people-first culture where joy at work and future prospects come first

Our Values
  • Customer First: Our customers and partners always come first.

  • Embrace Speed: Fast decisions and pragmatic solutions.

  • Data Over Gut Feeling: We make data-driven decisions.

  • Take Ownership: You get involved, no matter your position.

  • Continuous Learning: We challenge ourselves and grow together.

  • Open Culture: We have no rigid hierarchies. We communicate openly, directly, and at eye level.

Diversity welcome!

What matters to us is who you are and what you want to contribute – not your origin, gender, skin color, religion or beliefs, sexual orientation, gender identity, age, or whether you live with or without a disability. We believe in the strength of diverse teams and create an environment where everyone feels welcome and respected.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Incident Responder - Dutch speaking (m/f/d)
Incident Responder - Dutch speaking (m/f/d)

Baobab Insurance GmbH • Rotterdam

Hybrid
EUR 60,000 - 90,000
Flexible work from home
Office in Rotterdam
Udemy Business access
+2
Cyber Security Analyst
Cyber Security Analyst

SoftwareOne • Amsterdam

On-site
EUR 48,000 - 70,000
Leading-edge tech
Strategic solutions
Wellbeing support
+4
SOC Cyber Security Specialist
SOC Cyber Security Specialist

on2it • Zaltbommel

On-site
EUR 42,000 - 70,000
24 vacation days (option to buy more)
Mobility allowance
Shift compensation
+1
Technical Lead, Incident Response Cyber security Utrecht
Technical Lead, Incident Response Cyber security Utrecht

S-RM Intelligence and Risk Consulting • Utrecht

On-site
EUR 90,000 - 120,000
Maternity leave
Paternity leave
Holiday days
+4
Cyber Security Analyst | Microsoft Security
Cyber Security Analyst | Microsoft Security

SoftwareOne • Amsterdam

On-site
EUR 60,000 - 85,000
Learning & certification opportunities
Wellbeing initiatives
Mobility options
+2
Senior Cyber Security Analyst
Senior Cyber Security Analyst

SoftwareONE Deutschland GmbH • Amsterdam

Hybrid
EUR 90,000 - 130,000
Office facilities
Annual training budget
Mobility options
+3
Cyber Security Consultant
Cyber Security Consultant

Brightlyn • Den Haag

On-site
EUR 90,000 - 130,000
Coaching & mentorship
Learning opportunities
Meetups & conferences
+2
Security Operations Center – Tier 2 Analyst
Security Operations Center – Tier 2 Analyst

Vanderlande • Veghel

On-site
EUR 65,000 - 90,000
40 vacation days
Flexible hours
Hybrid workplace
+8
Cyber Security Analyst | Microsoft Security
Cyber Security Analyst | Microsoft Security

SoftwareONE Deutschland GmbH • Amsterdam

Hybrid
EUR 52,000 - 70,000
Brand-new Dutch SOC
Cross-European collaboration
Professional development & certs
+3
Cyber Security Analyst
Cyber Security Analyst

SoftwareONE Deutschland GmbH • Amsterdam

On-site
EUR 42,000 - 60,000
Training budget
Unlimited vacation
Mobility options
+1