SoftwareOne logo

Cyber Security Analyst

SoftwareOne

Amsterdam
Full-time
0-2 years experience
On-site

Key Skills

Security Monitoring
Threat Detection
Incident Response
Alert Triage
Incident Classification
Security Event Analysis
Microsoft Sentinel
Microsoft Defender XDR
Microsoft 365 Security
SIEM
Cloud Security
Identity Security
Networking
Customer Communication
Incident Documentation
SOC Runbooks And Playbooks

Job Description

Do you want to be among the first SOC Analysts dedicated to Dutch customers, helping establish a new security operations capability from day one? Are you passionate about threat detection, incident response, and working with modern Microsoft security technologies while influencing how a growing SOC operates? Ready to join SoftwareOne and be part of a global team driving the future of managed security services? Practical Information Location: Amsterdam, Netherlands | Work Arrangement: On-site | Reports to: Regional Service Line Delivery Leader- WEMEA | Visa Requirements: Valid working visa for Netherlands | Language Requirements: fluent/professional Dutch and English, written and verbal As a Cyber Security Analyst, you will help build SoftwareOne’s new Dutch-speaking Security Operations Center (SOC) capability while protecting enterprise customers through our global MDR service. Acting as the first line of defence, you will monitor, investigate, and respond to security threats using Microsoft Sentinel and the Microsoft Security platform. You will work directly with customers and collaborate with international SOC teams to deliver effective incident response. This is a unique opportunity to shape a growing security operation, influence best practices, and accelerate your cybersecurity career. Key Responsibilities Monitor and analyze security events across Microsoft Sentinel and Microsoft Defender environments Perform alert triage, incident classification, and initial investigations to identify threats and determine appropriate response actions Validate security events and escalate incidents to L2/L3 teams when required Serve as a primary point of contact for customers, providing first-response communications in Dutch and supporting security, NIS2, and DORA-related discussions Create and maintain accurate incident documentation, reports, and case records Contribute to the development and continuous improvement of SOC runbooks, playbooks, and operational procedures Help shape the future operating model of the Dutch SOC through service reviews, process improvements, and operational excellence initiatives Job Requirements Junior experience in SOC, cybersecurity, system administration, or similar IT security role, with exposure to security monitoring and incident handling Hands-on experience with SIEM platforms and security monitoring tools, ideally including Microsoft Sentinel and Microsoft Defender XDR Understanding of security incident response processes and best practices for threat detection, investigation, and escalation Knowledge of Microsoft 365 security technologies, with a basic understanding of networking, cloud security, and identity security concepts Strong analytical and problem-solving skills, with the ability to assess security events and make informed decisions in a fast-paced environment Excellent communication and customer-facing skills; experience working with external customers is considered an advantage Relevant certifications such as SC-200, Security+, MS-900, AZ-900, or ITIL Foundation are preferred What we offer Work with leading‑edge cybersecurity technologies Drive strategic, complex solutions that directly influence customer security posture Strong wellbeing and mental‑health support, including access to coaching and mindfulness offers Rich learning culture with structured development opportunities and an annual training budget Competitive time‑off benefits, including additional company leave and support during key life events Multiple mobility options such as public transport solutions, bike leasing, or company car eligibility. A vibrant, social workplace with great office facilities and regular team events Company description SoftwareOne is a global provider of software and cloud solutions. With a presence in over 70 countries and more than 12,000 professionals, we help organizations optimize software investments, modernize applications, and unlock the value of cloud, data, and AI. Our people are at the core of everything we do. We enable collaboration across borders, continuous learning, and opportunities to grow in a fast-evolving technology landscape. Whether your focus is on technology, customer success, or business operations, your ideas matter, and your contributions make a difference. Join a global team where you can build your skills, work with leading technologies, and make a real impact for our customers.

Core Responsibilities

Monitor and investigate security events using Microsoft Sentinel and Microsoft Defender, triage alerts, document incidents, and escalate threats to higher-level teams as needed. Communicate with customers in Dutch, support security and regulatory discussions, and help develop the Dutch SOC’s procedures and operating model.

Requirements

The role seeks junior experience in a SOC, cybersecurity, system administration, or a similar security role, with exposure to monitoring and incident handling and hands-on familiarity with SIEM tools. Candidates should understand incident response and Microsoft 365 security, have foundational knowledge of networking, cloud, and identity security, and communicate effectively in fluent or professional Dutch and English; relevant certifications are preferred.

Benefits

  • Wellbeing And Mental Health Support
  • Coaching And Mindfulness Offers
  • Structured Learning And Development
  • Annual Training Budget
  • Additional Company Leave
  • Life Event Support
  • Public Transport Options
  • Bike Leasing
  • Company Car Eligibility
  • Office Facilities
  • Team Events

About SoftwareOne

Industry: IT Services and IT Consulting

Company size: 5,001-10,000 employees

SoftwareOne is a global software and cloud solutions provider. With a presence in over 70 countries and a team of around 13,000 professionals, we combine global scale and local expertise to help clients optimize costs, accelerate growth, and navigate complex IT environments with confidence. Leveraging deep capabilities in cloud, software, and data and AI, the company empowers organizations to modernize, innovate, and unlock the full value of their technology investments. Headquartered in Switzerland, SoftwareOne is listed on the SIX Swiss Exchange and Euronext Oslo Børs under the ticker symbol SWON. Company imprint: https://www.softwareone.com/imprint

Added Today