SOC Cyber Security Specialist

ON2IT Cybersecurity International

Zaltbommel

On-site

EUR 55,000 - 90,000

Full time

2 days ago
Be an early applicant
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Benefits offered by this job

24 vacation days
Mobility allowance
Shift compensation
Catered lunch

Job summary

ON2IT Cybersecurity International operates a Global Security Operations Center (GSOC) in Zaltbommel, delivering 24x7 protection for customers across Europe and the US. You will analyze network activity, decide what matters, and configure controls that prevent incidents.

The role requires hands-on work with common protocols and a readiness for shift-based rotation in a strict on-site environment near Zaltbommel. Excellent English is required, and pre-employment screening is standard.

Qualifications

  • Networking CCNA level
  • Concepts network segmentation, VPN, NAT, DNS and certificates
  • Security thinking least privilege, defense in depth, and how an attack moves once inside
  • Systems Windows, macOS and Linux
  • Protocols the common ones (SSH, SSL, HTTPS, SMTP, DHCP), and the confidence to pick up the rest
  • Certifications willing to get them. We pay, you study
  • You pull the thread until you understand it
  • You can say "I don't know yet" and then go find out
  • You care about doing it properly: a sloppy investigation is worse than none
  • You can explain a technical problem without making anyone feel stupid
  • You use AI daily and can explain how, not just that you do
  • You can use git (clone, branch, commit, merge request) and write Markdown: our runbooks and AI context live in plain text under version control. This is not a developer role
  • You respect confidentiality: customer data does not go just anywhere

Responsibilities

  • Analyze anomalies, alerts and threats, and decide what is real
  • Fix security issues in routing and networks
  • Configure security controls along Zero Trust principles
  • Work hands-on with protocols like SSH, SSL, HTTPS, SMTP and DHCP
  • Document your work so the next colleague hits the ground running
  • Advise customers and colleagues, and make complex things simple

Skills

Networking
CCNA level
Zero Trust
Windows
macOS
Linux
SSH
SSL
HTTPS
SMTP
DHCP
Certificates
Git
Markdown
AI tooling
Python
Bash

Tools

Palo Alto Strata
Cortex
Microsoft Defender
Fortinet FortiGate

Job description

THE ROLE

Our customers trust us to keep their networks out of the news. You are the person who makes that true. You analyze what is really happening on a customer's network, decide what matters, and configure the controls that stop the next attempt. You work in our Global Security Operations Center (GSOC) in Zaltbommel, part of a global team that runs 24x7. One shift you untangle a routing problem; on another you segment a customer's network into Protect Surfaces and tune the policy that guards them. Always with prevention as the goal: we stop the incident, not just report it.

Job Description

Our customers trust us to keep their networks out of the news. You are the person who makes that true. You analyze what is really happening on a customer's network, decide what matters, and configure the controls that stop the next attempt. You work in our Global Security Operations Center (GSOC) in Zaltbommel, part of a global team that runs 24x7. One shift you untangle a routing problem; on another you segment a customer's network into Protect Surfaces and tune the policy that guards them. Always with prevention as the goal: we stop the incident, not just report it.

What You Will Do
  • Analyze anomalies, alerts and threats, and decide what is real
  • Fix security issues in routing and networks
  • Configure security controls along Zero Trust principles
  • Work hands-on with protocols like SSH, SSL, HTTPS, SMTP and DHCP
  • Document your work so the next colleague hits the ground running
  • Advise customers and colleagues, and make complex things simple
Working in shifts

Our SOC does not close.

We Work In Shifts To Ensure 24/7 Security For Our Customers, Alongside Colleagues In Europe And The US. You Will Work a Rotating Pattern

  • Two morning shifts (06:00 - 14:30)
  • Two afternoon shifts (14:00 - 22:30)
  • Two night shifts (22:00 - 06:30)
  • Followed by 4 days off
How we work with AI

AI is built into our service, not bolted on: MDR Detect runs AI-assisted case handling behind our 24x7 human-led GSOC. We also build our own bespoke AI tooling on top of our platform, and the specialists who use it help shape it.

We expect you to understand prompting (structure and context change the answer), reuse (turn a repeated prompt into a skill), verification (a model can be confident and wrong) and privacy (know what goes into which tool). Not an expert yet? Curious and honest about the gaps is what matters.

Job Requirements
Who you are
  • You pull the thread until you understand it
  • You can say "I don't know yet" and then go find out
  • You care about doing it properly: a sloppy investigation is worse than none
  • You can explain a technical problem without making anyone feel stupid
What you bring
Technical Foundation
  • Networking at CCNA level
  • Concepts network segmentation, VPN, NAT, DNS and certificates
  • Security thinking least privilege, defense in depth, and how an attack moves once inside
  • Systems Windows, macOS and Linux
  • Protocols the common ones (SSH, SSL, HTTPS, SMTP, DHCP), and the confidence to pick up the rest
  • Certifications willing to get them. We pay, you study
Ways of working
  • You use AI daily and can explain how, not just that you do
  • You can use git (clone, branch, commit, merge request) and write Markdown: our runbooks and AI context live in plain text under version control. This is not a developer role
  • You respect confidentiality: customer data does not go just anywhere
The rest
  • Excellent English, spoken and written
  • Willing to join a 24x7 shift rotation
  • On-site: this is not a hybrid role, and you live within ~50 minutes of Zaltbommel
  • Pre-employment screening, due to the sensitive nature of the job

Nice to have: experience with Palo Alto Strata or Cortex, Microsoft Defender or Fortinet FortiGate; SOC, NOC or managed services experience; Dutch; Python, Bash or similar scripting.

What We Offer
  • A clear path Junior to Medior to Senior, with explicit criteria for each step
  • Cutting-edge technology for customers all over the world; no two environments are the same
  • Colleagues who teach and unlimited learning: training, certification and the time to do it
  • 24 vacation days (option to buy more), mobility allowance, shift compensation, catered lunch

Our customers are hospitals, research labs, retailers, banks and manufacturers. When you catch something early, their operation keeps running and the people who depend on it never notice anything happened. That is the point of the job.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Principal SOC Analyst
Principal SOC Analyst

Fox-IT • Rijswijk

Hybrid
EUR 90,000 - 120,000
Competitive salary
Hybrid/Remote work option
Pension scheme
+7
SOC Cyber Security Specialist
SOC Cyber Security Specialist

On2IT • Netherlands

On-site
EUR 55,000 - 75,000
24 vacation days with the option to buy extra
Mobility allowance
Advancement opportunities
+1
Medior SOC Analyst
Medior SOC Analyst

DEFION • Netherlands

Hybrid
EUR 60,000 - 90,000
Lease car
Mobility allowance
24 vacation days
+2
Security Operations Center – Tier 2 Analyst
Security Operations Center – Tier 2 Analyst

Vanderlande • Veghel

On-site
EUR 65,000 - 90,000
40 vacation days
Flexible hours
Hybrid workplace
+8
SOC Analyst
SOC Analyst

NCC Group • Netherlands

On-site
EUR 48,000 - 65,000
Competitive salary
Pension scheme
Twenty-six vacation days
+5
SOC Analyst
SOC Analyst

Northwave Cyber Security • Utrecht

On-site
EUR 55,000 - 75,000
25 vacation days plus all Dutch national holidays
€200 net annual allowance for flexible and remote working
Learning budget from €700 to €1,200 per year
Associate SOC Analyst
Associate SOC Analyst

NCC Group • Rijswijk

Hybrid
EUR 20,000 - 32,000
Flexible working hours
Work from home / office flexibility
Pension scheme
+5
SOC Analyst - Hybrid in The Hague or Berlin (f/m/x)
SOC Analyst - Hybrid in The Hague or Berlin (f/m/x)

Eye Security • Rotterdam, Den Haag

Hybrid
EUR 35,000 - 55,000
Generous time-off policy
Remote-friendly culture
Quarterly meetups and annual retreats
Cyber Security Analyst
Cyber Security Analyst

SoftwareONE Deutschland GmbH • Amsterdam

On-site
EUR 42,000 - 60,000
Training budget
Unlimited vacation
Mobility options
+1
Cyber Security Analyst
Cyber Security Analyst

SoftwareOne • Amsterdam

On-site
EUR 35,000 - 52,000
Office facilities
Annual training budget
Mobility options