Hiring.Camp

Security Operations Center – Tier 2 Analyst

Vanderlande

·

Today

Salary
€4k – €6k
Location
Veghel, Netherlands
Type
Full-time
Department
Operations
Experience
3+ years
Closing date
Today
Source
Workday

Description

Job Title

Security Operations Center – Tier 2 Analyst

Job Description

Introduction

As the Security Operations Center – Tier 2 Analyst will lead complex investigations, coordinate incident response efforts, and drive continuous improvement in threat detection and response capabilities. You will serve as a technical expert and escalation point for Tier 1 analysts, customers or other departments.  This role supports incident detection, escalation, and response activities within customer environments, in line with agreed SOC service scope and service level agreements (SLAs). You will have had previous experience in handling escalation from Tier 1 and direct work in security monitoring, threat intelligence, or incident response 

What will you be doing?

  • Perform advanced analysis of escalated security incidents and support investigation efforts. 

  • Act as an escalation point for Tier 1 analysts and provide expert guidance during incident response activities. 

  • Develop and tune detection rules and use cases in SIEM and other platforms. 

  • Perform threat hunting based on intelligence and behavioral analysis. 

  • Conduct forensic analysis and reverse engineering of malware when needed. 

  • Collaborate with threat intelligence teams to enrich investigations. 

  • Provide strategic recommendations to improve SOC processes and technologies. 

  • Mentor junior analysts and contribute to training programs. 

  • Participate in detection validation and lessonslearned activities to enhance SOC detection and response. 

A day in this role:

Monitoring & Detection 

  • Validate complex alerts  escalated by Tier 1 

  • Determine scope, impact, and severity of confirmed incidents. 

  • Perform deep log analysis, forensic investigations, and develop custom detection rules. 

  • Implement containment, mitigation and remediation actions.in accordance with playbooks and customer agreements 

  • Understanding TTPs (tactics, techniques, procedures) of threat actors 

  • Ability to develop custom detection rules and correlation logic  

Investigation & Analysis 

  • Analyze data patterns and outliers to identify threat actor behaviors and insider threats.  

  • Conduct deep investigations into logs, network telemetry, and endpoint activity.  

  • Document findings, actions taken, and recommended next steps. 

Incident Response Support 

  • Assist the SOC team during active security incidents by collecting evidence and containing lowseverity threats as per playbooks. 

  • Follow established runbooks to ensure consistent and compliant response actions. 

  • Respond to escalated security incidents requiring advanced analysis.  

  • Provide containment recommendations and support remediation. 

Access Management  

  • Processing user access requests (add, remove, modify) following established workflows. 

  • Enforcing leastprivilege principles and rolebased access standards. 

  • Conducting periodic access reviews (user accounts, permissions, group memberships). 

  • Investigating and escalating suspicious access activities or unauthorized access attempts. 
     

Patch Management  

  • Assist with tracking and verifying system patch status as part of vulnerability review activities. 

  • Monitor patchrelated alerts (failed deployments, outdated versions) within security tools and coordinate remediation with IT operations. 

  • Support the vulnerability management process by validating missing patches identified during scans and escalating highrisk findings. 
    (This is aligned with Tier 1’s documented tasks involving vulnerability scans and reporting.) 

Reporting & Communication 

  • Generate clear, accurate incident reports and daily shift summaries. 

  • Communicate event details with internal teams in a professional and timely manner. 

Continuous Improvement 

  • Recommend improvements to detection rules, response processes, and SOC procedures. 

  • Stay current on cyber threat trends, attacker techniques (TTPs), and security best practices. 

 

What do we ask from you?

Experience:

  • 3+ years of experience in cybersecurity, with at least 2 years in a SOC or IR role. 

  • Advanced expertise in SIEM, EDR, and forensic tools. 

  • Strong understanding of MITRE ATT&CK framework and threat actor TTPs. 

  • Experience with scripting and automation (e.g., Python, PowerShell). 

  • Ability to lead and manage incident response efforts under pressure. 

  • Relevant security certifications from ISC2 or ISACA  

  • Excellent communication and leadership skills. 

 

Qualifications 

  • Bachelor’s degree in IT, Cybersecurity, or CS  

  • Certifications such as:  

  • CompTIA Security+ 

  • Microsoft SC-200 

  • CEH, CySA+ 

  • GIAC certifications (GSEC, GCIH, GMON) 

  • Experience with:  

  •  EDR, IDS/IPS, and network security tools 

  • SIEM/SOAR workflows/playbooks 

  • Threat intelligence platforms 

 

Desired competencies

  • Strong analytical and problemsolving skills 

  • Attention to detail 

  • Ability to work under pressure during incidents 

  • Teamfirst mindset and willingness to learn 

  • Ability to recognize patterns and anomalies 

  • Prior SOC or IR experience 

  • Strong analysis and investigation skills 

  • Familiarity with threat intelligence and adversary behavior 

  • Ability to perform forensic/log analysis 

  • More advanced certifications preferred 

 

Important:

  • 24/7 SOC environment (shift work may be required) 

  • Fastpaced operational setting with tight response timelines 

  • Collaboration with crossfunctional IT and security teams 

What we offer​

In this challenging and responsible position, you will have the chance to make a significant contribution to industry-leading projects and be connected to our dedicated people and customers. We offer a position in an informal, international and professional working environment with a lot of scope for personal development. By joining our profitable and growing company you will be able to reach your goals and focus on your future.​

This position offers a competitive salary range of € 4347 to € 5900 gross per month (excluding 8% holiday allowance). Through exceeding performance expectations, you even have the possibility to grow outside this scale. 

On top of your fixed salary you’ll receive the following secondary benefits:​
 

  • 40 vacation days (20 statutory days and a flexible budget worth 20 days).​
  • Flexible working hours.​
  • A hybrid workplace (40% working from home and 60% in the office).​
  • A Health & Wellbeing budget worth €300,- per calendar year.
  • Commuting allowance, including full reimbursement of travel by public transport.​
  • Working from home allowance.​
  • Collective pension scheme and discount on additional health insurance.​
  • On-site company health centres with a gym, physiotherapists and occupational therapists.​
  • Vanderlande Academy and training facilities to boost your skills.​
  • A variety in Vanderlande Network communities and initiatives.​
  • And a great company restaurant and coffee bar with barista.

Your application

Are you interested in this position? Then apply now directly on our workday vacancy link with your resume and a short summary about your interest in this role.

Application timeline: In the event of receiving enough suitable applicants, this vacancy can get closed earlier than the mentioned job posting end date.

PS: Due to process compliance, we cannot process email applications. Kindly use the correct vacancy link to apply for this vacancy.

Diversity & Inclusion

Vanderlande is an equal opportunity/affirmative action employer. Qualified applicants will be considered without regards to race, religion, color, national origin, gender, sexual orientation, age, marital status, or disability status.

Background screening

For this position it is possible that a background screening will be conducted. This screening can include checks such as verification of identity, qualifications or other relevant records, which may include criminal background or sanctions list checks, in accordance with our internal policies and applicable laws. Any job offer may be extended under the condition that the screening does not give reason to reconsider the hiring decision. Candidates will always be informed about the process and their rights before any screening is initiated.

Skills

PythonCybersecuritySIEMSOCComplianceBaristaCompTIA

Similar Jobs

30

Global Security Operations Center (GSOC) Supervisor

security Aus · Woodlands, TX, US

Today

Global Security Operations Center (GSOC) Supervisor

Security Aus · Woodlands, TX, US

Today

Bancorp Security Operations Center Agent I 3pm-11:30pm

Fifththird · Fifth Third Center Cincinnati, United States of America

Today

Security Operations Center (SOC) Operator

Mayo Clinic · Rochester, MN, United States, US

3 days ago

Security Operations Center Analist

Securitas · Middenmeer, NH, Netherlands

4 days ago

Manager, Global Security Operations Center

Nationwide Careers · Ohio - Columbus, One Nationwide Plaza, United States of America · Onsite

4 days ago

Security Operations Center Operator

security Aus · Normal, IL, US

5 days ago

Multi-lingual ES - Spanish, Global Security Operations Center

Amazon

6 days ago

Multi-lingual ES - Hindi, Global Security Operations Center

Amazon

6 days ago

Multi-lingual ES - Spanish, Global Security Operations Center

Amazon

6 days ago

Multi-lingual ES - Spanish, Global Security Operations Center

Amazon

6 days ago

Multi-lingual ES - Hindi, Global Security Operations Center

Amazon

6 days ago

Multi-lingual ES - Hindi, Global Security Operations Center

Amazon

6 days ago

Multi-lingual ES - Hindi, Global Security Operations Center

Amazon

6 days ago

Security Operations Center (SOC) Operator

Paylocity · Las Vegas, NV · Onsite

6 days ago

Global Security Operations Center Specialist

Fiserv is the global leader · Omaha, Nebraska, United States of America · Onsite

1 week ago

Specialist 2, Security Operations Center

Comcast · GA - Atlanta, 2605 Circle 75 Pkwy SE, United States of America

1 week ago

Sr. Security Operations Center Manager - Shackelford SOC

Oracle · Abilene, TX, United States, US

1 week ago

Security Operations Center Specialist (Contract Employee)

Sacramento Regional Transit · 1400 29th Street Sacramento, CA, CA, US

1 week ago

Sr. Security Operations Center Manager

Oracle · Saline, MI, United States, US

1 week ago

Principal Security Operations Center Manager

Oracle · Saline, MI, United States, US

1 week ago

Sr. Security Operations Center Manager

Oracle · Anthony, NM, United States, US

1 week ago

Manager, Security Operations Center

Huntress · Australia

1 week ago

Principal Security Operations Center Manager

Oracle · Anthony, NM, United States, US

1 week ago

Lead Security Operations Center (SOC) Analyst

Livenation · Work From Home - Nevada, United States of America · Remote

1 week ago

Strategic Support Associate, Security Operations Center

Jackson · Lansing, MI, United States of America

1 week ago

Security Operations Center Operator-Public Safety Full Time Evenings

Northwestern Medicine · Palos Heights, IL, United States

1 week ago

Security Operations Center Centralist

Securitas · Winschoten, GR, Netherlands

1 week ago

Manager Security Operations Center

KPN · Hilversum, NH, Netherlands · Hybrid

2 weeks ago

Security Operations Center (SOC) Tier 3 Analyst / Incident Responder

Myhrhome · HQ_Baltimore MD Management Office, United States of America · Remote, Hybrid

2 weeks ago