Senior SOC Engineer: Detection & Incident Response Lead

ANVA

Amersfoort

On-site

EUR 90,000 - 120,000

Full time

13 hours ago
Be an early applicant
Application generator

A complete application in a minute — tailored resume and cover letter, ready to send.

Get past ATS filters

Job summary

ANVA is seeking a Senior SOC Engineer to build and own our detection and incident response capability. You will define telemetry visibility, tune detections, and lead investigations, working with MDR partners and supporting the ISAE 3000 assurance program.

In this role you will shape the security operations model, own security telemetry across cloud and endpoints, and drive automation and playbooks to mature our cloud-native SaaS platform.

Qualifications

  • 7+ years in Security Operations, Incident Response, or Detection Engineering.
  • Proven experience creating, testing, and tuning detection logic within SIEM or security data platforms.
  • Experience leading incident investigations from scoping through containment and post-incident reporting.
  • Experience working with MDR or outsourced SOC partners.

Responsibilities

  • Own telemetry coverage across cloud, endpoint, identity, application, and infrastructure log sources.
  • Assess and prioritize the detection and response roadmap against a defined threat model.
  • Tune MDR-managed and baseline detections to the insurance and fintech threat landscape.
  • Develop custom detection logic where coverage gaps exist.
  • Balance detection effectiveness against alert fatigue and operational noise.
  • Design and maintain incident response playbooks covering unauthorized access, data exfiltration, and breach scenarios.
  • Build triage and evidence collection automation.
  • Define alert thresholds and escalation criteria used by the MDR partner.
  • Lead investigations during security incidents.
  • Run tabletop exercises and continuously improve response procedures.
  • Own technical controls supporting the ISAE 3000 assurance program
  • Support auditors with detection and response-related inquiries
  • Develop and hand over operational runbooks and logging standards

Skills

Security Operations
Incident Response
Detection Engineering
SIEM
MDR / SOC
Cloud telemetry
Python / Bash

Tools

CrowdStrike
Elastic Stack
GuardDuty
CloudTrail
IAM
Terraform

Job description

ANVA is seeking a Senior SOC Engineer to build and own our detection and incident response capability. You will define telemetry visibility, tune detections, and lead investigations, working with MDR partners and supporting the ISAE 3000 assurance program.

In this role you will shape the security operations model, own security telemetry across cloud and endpoints, and drive automation and playbooks to mature our cloud-native SaaS platform.

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Senior SOC Engineer
Senior SOC Engineer

ANVA • Amersfoort

On-site
EUR 90,000 - 120,000
Senior SOC Engineer: AI-Driven Detection & Response
Senior SOC Engineer: AI-Driven Detection & Response

Info Support • Veenendaal

On-site
EUR 75,000 - 110,000
Onbeperkt leerbudget
Pensioenregeling
Winstuitkering
+4
Senior SOC Analyst: Threat Detection & IR Lead
Senior SOC Analyst: Threat Detection & IR Lead

Vanderlande • Veghel

Hybrid
EUR 65,000 - 90,000
40 vacation days
Flexible hours
Hybrid workplace
+8
Senior AI-Driven SOC Detection Engineer
Senior AI-Driven SOC Detection Engineer

Info Support • Netherlands

Hybrid
EUR 90,000 - 130,000
Leerbudget onbeperkt leerbudget
Salaris afgestemd op kennis
Pensioenbijdrage
+5
Senior Cybersecurity Monitoring & Incident Response Lead
Senior Cybersecurity Monitoring & Incident Response Lead

Planon • Nijmegen

Hybrid
EUR 59,000 - 67,000
Hybrid work model
Continuous development opportunities
Learning-oriented environment
Senior SOC Engineer: Threat Intel & Incident Response
Senior SOC Engineer: Threat Intel & Incident Response

Overheidzzp • Den Haag

On-site
EUR 90,000 - 120,000
SOC Analyst - Dynamic Cyber Defense & Response
SOC Analyst - Dynamic Cyber Defense & Response

Northwave Cyber Security • Utrecht

On-site
EUR 50,000 - 70,000
Modern work equipment
25 vacation days
Pension scheme
+2
Senior SOC Detection Engineer – AI-Driven Security
Senior SOC Detection Engineer – AI-Driven Security

Info Support Nederland • Veenendaal

On-site
EUR 90,000 - 120,000
Ruimte voor ontwikkeling via coaching
Leerbudget en certificeringstrajecten
Pensioenbijdrage en winstdeling
+3
Senior SOC-Analist: Threat Hunting & SOAR Lead
Senior SOC-Analist: Threat Hunting & SOAR Lead

Nationaal Cyber Security Centrum (NCSC-NL) • Den Haag

On-site
EUR 70,000 - 100,000
36-urige werkweek
Senior SOC Analist: Incident Response & Threat Hunting
Senior SOC Analist: Incident Response & Threat Hunting

SLTN • Netherlands

Remote
EUR 70,000 - 110,000
Leaseauto / mobiliteitsregeling
Contract voor onbepaalde tijd
25 vakantiedagen (+ optionele extra 12
+1