Security Operations Center - SIEM Architect
Vanderlande Industries · Veghel, Netherlands
You apply off-site, with the employer or the job board. I never handle applications.
Job Title
Security Operations Center - SIEM Architect### Job Description
Introduction
Vanderlande’s Security Operations Center (SOC) is looking for a SIEM Engineer with experience designing, operating, and optimizing enterprise security monitoring platforms. Skilled in log ingestion, detection engineering, alert tuning, and dashboard development to support SOC operations, incident response, and compliance requirements.
What will you be doing?
-
Onboards log sources (Windows, Linux, firewalls, cloud, SaaS apps)
-
Parses and normalizes logs so data is searchable and consistent
-
Creates detection rules and alerts for threats (e.g., brute force, malware, insider risk)
-
Tunes alerts to reduce false positives
-
Builds dashboards and reports for SOC teams and leadership
-
Maintains performance and reliability of the SIEM
-
Supports incident response by helping analysts investigate alerts
-
Ensures compliance (e.g., log retention for ,NIS2, ISO 27001, IEC62443) What are your responsibilities?
-
Engineered and maintained multitenant SIEM platforms (, supporting enterprise‑scale security monitoring
-
Onboarded and normalized logs from servers, endpoints, network devices, cloud services, and security tools (EDR, IAM, IDS firewalls)
-
Developed and tuned correlation rules, detections, and alerts, reducing false positives and improving threat detection accuracy
-
Mapped detections to the MITRE ATT&CK framework to strengthen coverage of adversary techniques
-
Built operational and executive dashboards to improve SOC visibility and reporting
-
Integrated threat intelligence feeds to enhance detection capabilities
-
Supported SOC analysts during investigations by providing log analysis and forensic context
-
Automated SIEM tasks and data processing using Python, PowerShell, and Bash
-
Optimized log retention and storage to balance performance, cost, and regulatory requirements
-
Documented SIEM architecture, detections, and onboarding processes for audit readiness What do we ask from you?
Desired Technical Skills
-
SIEM Platforms: e.g. Splunk, Microsoft Sentinel Exabeam Elastic
-
Log Sources: Windows Event Logs, Linux Syslog, Firewall, Proxy, IAM, EDR
-
Cloud Logging: Azure Monitor, AWS CloudTrail, GCP Logging
-
Security Frameworks: MITRE ATT&CK, NIST, Incident Response Lifecycle
-
Scripting & Automation: Python, PowerShell, Bash
-
Networking: TCP/IP, DNS, HTTP/S Other**Skills
-
Strong analytical and problem‑solving skills
-
Ability to communicate technical issues to non‑technical stakeholders
-
Attention to detail and documentation
-
Ability to work independently and collaboratively Experience
-
4+ years in cybersecurity, SIEM engineering, SOC operations, or related role
-
Experience onboarding and managing large‑scale log environments
What we offer
In this challenging and responsible position, you will have the chance to make a significant contribution to industry-leading projects and be connected to our dedicated people and customers. We offer a position in an informal, international and professional working environment with a lot of scope for personal development. By joining our profitable and growing company you will be able to reach your goals and focus on your future.
This position offers a competitive salary range of € 5000 to € 6700
gross per month (excluding 8% holiday allowance). Through exceeding performance expectations, you even have the possibility to grow outside this scale.
On top of your fixed salary you’ll receive the following secondary benefits:
- 40 vacation days (20 statutory days and a flexible budget worth 20 days).
- Flexible working hours.
- A hybrid workplace (40% working from home and 60% in the office).
- A Health & Wellbeing budget worth €300,- per calendar year.
- Commuting allowance, including full reimbursement of travel by public transport.
- Working from home allowance.
- Collective pension scheme and discount on additional health insurance.
- On-site company health centres with a gym, physiotherapists and occupational therapists.
- Vanderlande Academy and training facilities to boost your skills.
- A variety in Vanderlande Network communities and initiatives.
- And a great company restaurant and coffee bar with barista.
Your application
Are you interested in this position? Then apply now directly on our workday vacancy link with your resume and a short summary about your interest in this role.
- Application acceptance timeline: In the event of receiving enough suitable applicants, this vacancy can get closed earlier than the mentioned job posting end date.
- Due to process compliance, we cannot process emailed applications. Kindly use the correct vacancy link to apply for this vacancy.
Diversity & Inclusion
Vanderlande is an equal opportunity/affirmative action employer. Qualified applicants will be considered without regards to race, religion, color, national origin, gender, sexual orientation, age, marital status, or disability status.
Background screening
For this position it is possible that a background screening will be conducted. This screening can include checks such as verification of identity, qualifications or other relevant records, which may include criminal background or sanctions list checks, in accordance with our internal policies and applicable laws. Any job offer may be extended under the condition that the screening does not give reason to reconsider the hiring decision. Candidates will always be informed about the process and their rights before any screening is initiated.