Verified from career page · Posted 2mo ago
- Posted
- 2mo ago
- Workplace
- Not specified
- Salary
- Not disclosed
- Visa sponsorship
- Not specified
Posted on 28 July 2026
Work model not stated
Salary range not shared by the company
Visa sponsorship details unknown
Why SoftwareOne?
SoftwareOne and Crayon have come together to form a global, AI-powered software and cloud solutions provider with a bold vision for the future. With a footprint in over 70 countries and a diverse team of 13,000+ professionals, we offer unparalleled opportunities for talent to grow, make an impact, and shape the future of technology. At the heart of our business is our people. We empower our teams to work across borders, innovate fearlessly, and continuously develop their skills through world-class learning and development programs. Whether you're passionate about cloud, software, data, AI, or building meaningful client relationships, you’ll find a place to thrive here. Join us and be part of a purpose-driven culture where your ideas matter, your growth is supported, and your career can go global.
The role
Do you want to be among the first SOC Analysts dedicated to Dutch customers, helping establish a new security operations capability from day one?
Are you passionate about threat detection, incident response, and working with modern Microsoft security technologies while influencing how a growing SOC operates?
Ready to join SoftwareOne and be part of a global team driving the future of managed security services?
Practical Information
Location: Amsterdam, Netherlands | Work Arrangement: On-site | Reports to: Regional Service Line Delivery Leader- WEMEA | Visa Requirements: Valid working visa for Netherlands | Language Requirements: fluent/professional Dutch and English, written and verbal
As a Cyber Security Analyst, you will help build SoftwareOne’s new Dutch-speaking Security Operations Center (SOC) capability while protecting enterprise customers through our global MDR service. Acting as the first line of defence, you will monitor, investigate, and respond to security threats using Microsoft Sentinel and the Microsoft Security platform. You will work directly with customers and collaborate with international SOC teams to deliver effective incident response. This is a unique opportunity to shape a growing security operation, influence best practices, and accelerate your cybersecurity career.
Key Responsibilities
Monitor and analyze security events across Microsoft Sentinel and Microsoft Defender environments
Perform alert triage, incident classification, and initial investigations to identify threats and determine appropriate response actions
Validate security events and escalate incidents to L2/L3 teams when required
Serve as a primary point of contact for customers, providing first-response communications in Dutch and supporting security, NIS2, and DORA-related discussions
Create and maintain accurate incident documentation, reports, and case records
Contribute to the development and continuous improvement of SOC runbooks, playbooks, and operational procedures
Help shape the future operating model of the Dutch SOC through service reviews, process improvements, and operational excellence initiatives
What we need to see from you
2-4 years of experience in a SOC, cybersecurity, or security operations environment, including hands-on involvement in security monitoring, incident investigation, and response activities.
Hands-on experience with Microsoft Sentinel, Microsoft Defender XDR, or a comparable Microsoft security stack.
Understanding of security incident response processes and best practices for threat detection, investigation, and escalation
Knowledge of Microsoft 365 security technologies, with a basic understanding of networking, cloud security, and identity security concepts
Strong analytical and problem-solving skills, with the ability to assess security events and make informed decisions in a fast-paced environment
Excellent communication and customer-facing skills; experience working with external customers is considered an advantage
Relevant certifications such as SC-200, Security+, MS-900, AZ-900, or ITIL Foundation are preferred
What we offer
Work with leading‑edge cybersecurity technologies
Drive strategic, complex solutions that directly influence customer security posture
Strong wellbeing and mental‑health support, including access to coaching and mindfulness offers
Rich learning culture with structured development opportunities and an annual training budget
Unlimited vacation days
Multiple mobility options such as public transport solutions, bike leasing, or company car eligibility.
A vibrant, social workplace with great office facilities and regular team events
Job Function
Services
Accommodations
SoftwareOne welcomes applicants from all backgrounds and abilities to apply. If you require reasonable adjustments at any point during the recruitment process, email us at reasonable.accommodations@softwareone.com.
Please include the role for which you are applying and your country location. Someone from our organization that is not part of the decision-making process will be in touch to discuss your specific needs and we will make every effort to accommodate you. Any information shared will be stored securely and treated in the strictest of confidence in line with GDPR.
At SoftwareOne, we are committed to providing an environment of mutual respect where equal employment opportunities are available to all applicants and teammates without regard to race, color, religion, age, sex, national origin, disability status, genetics, protected veteran status, sexual orientation, gender identity or expression, or any other characteristic protected by federal, state, or local laws. Additionally, we encourage experienced individuals that have taken an intentional career break and are now prepared to return to work to explore our SOAR program.
About SoftwareOne
SoftwareOne is a Swiss software licensing and cloud services firm, and its engineering is spread across Europe rather than gathered anywhere: Amsterdam, Leipzig, Warsaw, Budapest, Sofia, Oslo and Bucharest, none of them more than a couple of dozen roles. Software, SRE and security work sits alongside a sales and solutions organisation about as large.