Security Operations Center - Siem Architect

vanderlande industries b v

📍 veghel netherlands🕐 16d ago🔗 workday

Job Description

### Job Title Security Operations Center - SIEM Architect ### Job Description **Introduction**   Vanderlande’s Security Operations Center (SOC) is looking for a SIEM Engineer with experience designing, operating, and optimizing enterprise security monitoring platforms. Skilled in log ingestion, detection engineering, alert tuning, and dashboard development to support SOC operations, incident response, and compliance requirements.  **What will you be doing?**  * **Onboards log sources** (Windows, Linux, firewalls, cloud, SaaS apps)  * **Parses and normalizes logs** so data is searchable and consistent  * **Creates detection rules and alerts** for threats (e.g., brute force, malware, insider risk)  * **Tunes alerts** to reduce false positives  * **Builds dashboards and reports** for SOC teams and leadership  * **Maintains performance and reliability** of the SIEM  * **Supports incident response** by helping analysts investigate alerts  * **Ensures compliance** (e.g., log retention for ,NIS2, ISO 27001, IEC62443)  **What are your responsibilities?** * Engineered and maintained multitenant SIEM platforms (, supporting enterprise‑scale security monitoring  * Onboarded and normalized logs from servers, endpoints, network devices, cloud services, and security tools (EDR, IAM, IDS firewalls)  * Developed and tuned **correlation rules, detections, and alerts**, reducing false positives and improving threat detection accuracy  * Mapped detections to the **MITRE ATT&CK framework** to strengthen coverage of adversary techniques  * Built operational and executive dashboards to improve SOC visibility and reporting  * Integrated **threat intelligence feeds** to enhance detection capabilities  * Supported SOC analysts during investigations by providing log analysis and forensic context  * Automated SIEM tasks and data processing using **Python, PowerShell, and Bash**  * Optimized log retention and storage to balance performance, cost, and regulatory requirements  * Documented SIEM architecture, detections, and onboarding processes for audit readiness  **What do we ask from you?** _Desired Technical Skills_   * **SIEM Platforms:** e.g. Splunk, Microsoft Sentinel Exabeam Elastic  * **Log Sources:** Windows Event Logs, Linux Syslog, Firewall, Proxy, IAM, EDR  * **Cloud Logging:** Azure Monitor, AWS CloudTrail, GCP Logging  * **Security Frameworks:** MITRE ATT&CK, NIST, Incident Response Lifecycle  * **Scripting & Automation:** Python, PowerShell, Bash  * **Networking:** TCP/IP, DNS, HTTP/S  _Other Skills_   * Strong analytical and problem‑solving skills   * Ability to communicate technical issues to non‑technical stakeholders   * Attention to detail and documentation   * Ability to work independently and collaboratively  _Experience_  * 4+ years in cybersecurity, SIEM engineering, SOC operations, or related role  * Experience onboarding and managing large‑scale log environments  **What we offer​** In this challenging and responsible position, you will have the chance to make a significant contribution to industry-leading projects and be connected to our dedicated people and customers. We offer a position in an informal, international and professional working environment with a lot of scope for personal development. By joining our profitable and growing company you will be able to reach your goals and focus on your future.​ This position offers a competitive salary range of € 5000 to € 6700 gross per month (excluding 8% holiday allowance). Through exceeding performance expectations, you even have the possibility to grow outside this scale.  On top of your fixed salary you’ll receive the following secondary benefits:​   * 40 vacation days (20 statutory days and a flexible budget worth 20 days).​ * Flexible working hours.​ * A hybrid workplace (40% working from home and 60% in the office).​ * A Health & Wellbeing budget worth €300,- per calendar year. * Commuting allowance, including full reimbursement of travel by public transport.​ * Working from home allowance.​ * Collective pension scheme and discount on additional health insurance.​ * On-site company health centres with a gym, physiotherapists and occupational therapists.​ * Vanderlande Academy and training facilities to boost your skills.​ * A variety in Vanderlande Network communities and initiatives.​ * And a great company restaurant and coffee bar with barista. **Your application** Are you interested in this position? Then apply now directly on our workday vacancy link with your resume and a short summary about your interest in this role. * **Application acceptance timeline:** In the event of receiving enough suitable applicants, this vacancy can get closed earlier than the mentioned job posting end date. * Due to process compliance, we **cannot process emailed applications**. Kindly use the correct vacancy link to apply for this vacancy. **Diversity & Inclusion** Vanderlande is an equal opportunity/affirmative action employer. Qualified applicants will be considered without regards to race, religion, color, national origin, gender, sexual orientation, age, marital status, or disability status. **Background screening** For this position it is possible that a background screening will be conducted. This screening can include checks such as verification of identity, qualifications or other relevant records, which may include criminal background or sanctions list checks, in accordance with our internal policies and applicable laws. Any job offer may be extended under the condition that the screening does not give reason to reconsider the hiring decision. Candidates will always be informed about the process and their rights before any screening is initiated.