SOC Analyst – Level 2

Best - QX, Netherlands

Philips

Lue lisää Philipsistä ja katso miten terveydenhuollon-, kulutuselektroniikka- ja valaistus-divisiooniemme innovaatiot auttavat parantamaan ihmisten elämää.

View all jobs at Philips

Apply now Apply later

Job Title

SOC Analyst – Level 2

Job Description

The SOC Analyst’s main objectives are to contribute following a multidisciplinary approach to the key SOC operational tasks: content delivery, detection, monitoring and response.

SOC Analysts integrate into a multidisciplinary pool of resources with the ability to perform in several multi-functional aspects in Security Operations which are equally needed to deliver a proactive and avant-garde cyber defensive capability.

Following business and operational efficiency principles, proactive and performance-oriented activities are performed. This involves (analytical) activities to enable intelligence gathering and usage, improving detection capabilities and ability to perform in the triage processes (detect and response).

The Security Operations team within Philips IT works diligently to provide reliable and secure services across the global enterprise. The team has a focus on system reliability and security through the continuous operation of secure solutions. The Security Operations Center (SOC) consists of a 24/7 incident response capability, a threat intelligence team and dedicated security engineering and development staff.

Your role:

Incident Detection & Response:

  • Manage security incidents from identification to conclusion, ensuring timely and effective resolution.
  • Conduct forensic investigations to support incident response efforts.
  • Develop and deliver content for SIEM and SOAR platforms, such as scripts, use cases, queries for log management, and automated forensic data gathering.
  • Engage in anomaly detection and malware hunting activities to proactively mitigate potential threats.

Monitoring and Reporting:

  • Continuously monitor cybersecurity activity to identify and mitigate potential threats.
  • Prepare detailed reports on SOC activities, incident response outcomes, and other key metrics.
  • Enhance SOC exposure by communicating findings and achievements to stakeholders, demonstrating the SOC's value to the organization.

Coordination and Planning:

  • Collaborate with cross-functional teams to implement and refine SCRUM/Kanban methodologies within the SOC.
  • Develop and maintain SOC procedures and runbooks to enhance operational efficiency.
  • Assist in strategic planning and professionalization efforts to optimize team workflows and outputs.
     

You're the right fit if:

  • 4 years prior experience in a Computer Emergency Response Team (CERT/CIRT), IT security environment, or law enforcement.
  • Preferred certifications: GCIH, GCIA, GCFE, GCFA, GREM, OSCP, or equivalent experience.
  • Proficient knowledge of SIEM & SOAR platforms, Log management, IDS/IPS, endpoint security solutions.
  • Familiarity with network infrastructure, cloud environments, operating systems (Windows/Linux), applications, and protocols.
  • Experience with building and maturing a Security Operations Center is a plus.
  • (Administrative) experience with ServiceNOW, particularly with the ServiceNOW Security Operations module, is a plus.
  • Excellent communication skills, both verbal and written, to effectively convey technical concepts to business stakeholders and produce clear incident reports.
  • Strong analytical skills for in-depth investigation and problem-solving.
  • Fluency in English, both spoken and in writing (minimum B2)

How we work together

We believe that we are better together than apart. For our office-based teams, this means working in-person at least 3 days per week. Onsite roles require full-time presence in the company’s facilities.​ Field roles are most effectively done outside of the company’s main facilities, generally at the customers’ or suppliers’ locations.​

This role is an office role.

About Philips

We are a health technology company. We built our entire company around the belief that every human matters, and we won't stop until everybody everywhere has access to the quality healthcare that we all deserve. Do the work of your life to help the lives of others.

  • Learn more about our business here.
  • Discover our rich and exciting history here.
  • Learn more about our purpose here.

If you're interested in this role and have many, but not all, of the experiences needed, we encourage you to apply. You may still be the right candidate for this or other opportunities at Philips. Learn more about our commitment to diversity and inclusion here.

#LI-EU

Apply now Apply later

* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰

Job stats:  3  2  0

Tags: CERT Cloud Endpoint security GCFA GCFE GCIA GCIH GREM IDS Incident response IPS Kanban Linux Malware Monitoring OSCP Scrum SIEM SOAR SOC Threat intelligence Windows

Perks/benefits: Team events

Region: Europe
Country: Netherlands

More jobs like this

Explore more career opportunities

Find even more open roles below ordered by popularity of job title or skills/products/technologies used.