Principal SOC Analyst

Fox-IT

Rijswijk

Hybrid

EUR 90,000 - 120,000

Full time

14 days+

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Competitive salary
Hybrid/Remote work option
Pension scheme
26 vacation days + 4 days off
8% holiday pay
Fox Academy & Tech Talks
Company laptop & phone stipend
Remote work allowance
Bonus & profit sharing
Daily lunch in office

Job summary

Fox-IT in the Netherlands seeks a senior SOC lead to act as the technical escalation point for significant incidents and to guide junior analysts. You will work with senior management and analysts, shaping continuous improvement, incident response, and service activations across client engagements.

The role emphasizes hands-on expertise with IDS/IPS, SIEM, firewalls, and DDoS detection, while mentoring staff and driving security operations excellence. Hybrid work with onsite presence in Rijswijk.

Qualifications

  • Minimum HBO level in a relevant field
  • Experience in a SOC Senior Analyst role
  • Experience in technical client-facing SOC environment

Responsibilities

  • Serve as the technical conscience of the SOC
  • Represent the SOC in Service Activations
  • Perform quality assurance processes & continuous improvement of the SOC
  • Act as primary escalation point for incidents in collaboration with incident response teams
  • Guide and mentor junior staff
  • Lead as functional team lead and escalation point for Senior Analysts
  • Contribute to business development opportunities within Global Management Solutions
  • Maintain an advanced understanding of emerging threats and vulnerabilities
  • Develop and maintain training plans for all analysts in the SOC
  • Foster relationships with internal stakeholders and clients to grow security posture
  • Document and develop new security monitoring processes
  • Deliver customer service that exceeds expectations
  • Serve as escalation point for all SOC team members

Skills

IDS/IPS
Packet capture
Firewalls
DDoS detection
SIEM platforms
Incident escalation
Mentorship
Training plans
Documentation
Stakeholder engagement

Education

Bachelor's or Master's in related field
HBO level or higher

Tools

Splunk

Job description

Department: Cyber Services and Capabilities

Location: NLD Rijswijk (3 days per week onsite)

This position is a critical role within the organization, serving as the technical lead for our SOC and the primary point of contact for potential security incident escalation during significant incidents or crisis situations. The role involves close collaboration with Senior Management and Senior Analysts, provides guidance and mentorship to junior staff, develops continuous improvement processes, and contributes to business development opportunities within Global Management Solutions. It requires deep technical knowledge of IDS/IPS, full packet capture devices, firewalls, DDoS detection, and SIEM platforms, and serves as the technical escalation point for incidents, incident handlers, and incident remediation documentation.

Key Responsibilities
  • Serve as the technical conscience of the SOC
  • Represent the SOC in Service Activations
  • Perform quality assurance processes & procedures and continuous improvement of the SOC
  • Act as the principal point of contact for potential security incident escalation during significant incidents or crisis situations, in collaboration with the Computer Incident Response Team, Senior Management, and Senior Analysts
  • Guide and mentor junior staff members
  • Act as a functional team lead and escalation point for Senior Analysts
  • Contribute to continuous business development opportunities within Global Management Solutions
  • Maintain an advanced understanding of emerging threats and vulnerabilities
  • Develop and maintain training plans for all analysts within the Security Operations Centre
  • Foster collaborative relationships with internal stakeholders and clients, with a strong emphasis on growth
  • Document and develop new processes related to security monitoring procedures
  • Deliver customer service that consistently exceeds customer expectations
  • Serve as an escalation point for all members of the SOC team, offering assistance and mentorship as necessary
Minimum Requirements
  • Minimum HBO working/thinking level
  • Experience within a SOC Senior Analyst role
  • Previous experience working in a technical client‑facing capacity within a SOC
Desirable Requirements
  • Splunk Certified Power User / Advanced Power User
  • CompTIA Certifications (Security+, Network+, Linux+, Cloud+)
  • Crest, GIAC or CISSP Certification
  • Degree in a related field
  • Understanding of compliance standards & frameworks
  • Other relevant certifications
Behaviors
  • Working hours: 0900‑1730 Mon‑Fri, with 24/7 on‑call roster every 6 weeks
  • Professionalism – conduct yourself with integrity and ethical behaviour in all interactions and situations
  • Proactive – demonstrate a proactive approach to process improvement and creation, ensuring conformity to the standards of the MXDR SOC
  • Collaboration – work well within a team environment, communicating effectively with colleagues from different departments and sharing insights to improve security posture
  • Adaptability – embrace changes in technology and processes, adapting to new challenges and learning quickly in a dynamic security landscape
Job Benefits
  • Competitive salary commensurate with experience
  • Flexible working hours and the option to work from home or at the office
  • Favourable pension scheme, 26 vacation days (+4 mandatory days off), and 8% holiday pay with a full‑time contract
  • Extensive development opportunities through training, TechTalks, events, and the internal Fox Academy
  • Company‑provided laptop and business phone (up to €25 per month reimbursement for personal phone use)
  • Remote work allowance for hybrid working
  • Performance bonus and profit sharing
  • Daily lunch meal provided in office locations

Please note that we are currently unable to sponsor visas for this position.

This role involves mandatory pre‑employment background checks due to the nature of the work NCC Group does.

We are committed to diversity and flexibility in the workplace.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

SOC Analyst
SOC Analyst

Fox-IT • Rijswijk

On-site
EUR 50,000 - 70,000
Competitive salary
Pension scheme
26 vacation days + 4 mandatory days
+6
SOC Analyst
SOC Analyst

NCC Group • Netherlands

On-site
EUR 48,000 - 65,000
Competitive salary
Pension scheme
Twenty-six vacation days
+5
SOC Analyst
SOC Analyst

Northwave Cyber Security • Utrecht

On-site
EUR 55,000 - 75,000
25 vacation days plus all Dutch national holidays
€200 net annual allowance for flexible and remote working
Learning budget from €700 to €1,200 per year
Security Operations Center Analyst
Security Operations Center Analyst

CBSbutler • Randstad

Hybrid
EUR 65,000 - 85,000
Competitive day rates
Referral fees
SOC Analyst - Hybrid in The Hague or Berlin (f/m/x)
SOC Analyst - Hybrid in The Hague or Berlin (f/m/x)

Eye Security • Rotterdam, Den Haag

Hybrid
EUR 35,000 - 55,000
Generous time-off policy
Remote-friendly culture
Quarterly meetups and annual retreats
SOC Process & Capability Analyst
SOC Process & Capability Analyst

Proactive Technical Limited • Veghel

On-site
EUR 60,000 - 90,000
Cyber Security Analyst
Cyber Security Analyst

SoftwareONE Deutschland GmbH • Amsterdam

On-site
EUR 42,000 - 60,000
Training budget
Unlimited vacation
Mobility options
+1
Security Operations Center – Tier 2 Analyst
Security Operations Center – Tier 2 Analyst

Vanderlande • Veghel

On-site
EUR 65,000 - 90,000
40 vacation days
Flexible hours
Hybrid workplace
+8
Security Operations Center Analyst
Security Operations Center Analyst

Amoria Bond • Utrecht

On-site
EUR 55,000 - 70,000
Service Delivery Manager
Service Delivery Manager

Fox-IT • Rijswijk

Hybrid
EUR 65,000 - 90,000
Competitive salary
Flexible working hours
Hybrid work arrangement
+6