Detection Consultant Department: Cyber Services and Capabilities Employment Type: Full Time Location: NLD Rijswijk Description Our Global Detection Engineering Team provides detection capabilities for various security pr…
AD - Global Detection Engineering Department: Cyber Services and Capabilities Employment Type: Full Time Location: NLD Rijswijk Description The purpose of this role is to lead a global team that builds, maintains and con…
Skills: Detection Engineering, SIEM, EDR, NDR, Data Science
Senior Python Developer Department: Cyber Services and Capabilities Employment Type: Full Time Location: NLD Rijswijk Description An exciting opportunity to be one of the core team members of the Software Engineering tea…
Korte introductieWil jij werken bij één van de marktleiders op het gebied van testen, inspectie en certificering? Bij een organisatie die internationaal kwaliteit en veiligheid transparant maakt in diverse branches? En w…
Korte introductieVoor de certificatieregeling Arbokerndeskundige (AKD) zoeken wij onafhankelijke inhoudsdeskundigen die bijdragen aan het waarborgen van de kwaliteit van opleidingen en examens. Over de functie Arbokernde…
Skills: Occupational Health and Safety Expertise, Exam Assessment, Quality Assurance, Analytical Thinking, Reporting Skills
Kiwa Nederland
Examinator Arbokerndeskundige (Arbeidshygienist en A&O)
Rijswijk, South Holland, Netherlands · On-site
Senior
Korte introductieWil jij jouw expertise inzetten om de kwaliteit van arboprofessionals in Nederland te waarborgen? Als Examinator Arbokerndeskundige draag je direct bij aan de professionaliteit en betrouwbaarheid van dit…
Stagiair of afstudeerder bij Kiwa (open sollicitatie)
Apeldoorn, Gelderland, Netherlands · Hybrid
Entry level
Korte introductieSla je slag voor een succesvolle carrière en word (afstudeer) stagiair bij Kiwa! Bij Kiwa zet je jouw talent in om bij te dragen aan vertrouwen en veiligheid! Bij Kiwa op één van onze locaties ga je aan …
Solution Architect (Netherlands) Department: Cyber Services and Capabilities Employment Type: Full Time Location: NLD Rijswijk Description Fox-IT We are Fox-IT, or Fox. We stand for making the world safer and more secure…
Senior Client Manager Application Deadline: 31 August 2026 Department: Sales Employment Type: Full Time Location: NLD Rijswijk Description Fox-IT We are Fox-IT, or Fox. We stand for making the world safer and more secure…
Executive (Delivery) Security Consultant Department: Cyber Services and Capabilities Employment Type: Fixed Term - Full Time Location: NLD Rijswijk Description Role Overview: The Executive (Delivery) Security Consultant …
Korte introductieBij Hudson Cybertec in Den Haag werk je aan het versterken van de beveiliging van vitale infrastructuur en industriële systemen. Met jouw expertise in IEC 62443 en NIS2 help je organisaties hun digitale …
Korte introductieZorg jij ervoor dat technische installaties veilig, betrouwbaar en volgens de norm worden ontworpen en aangelegd? Als Auditor BRL 6000-AB bij Kiwa speel je een sleutelrol in de kwaliteitsborging van gebo…
Sign up with Clera and we'll reach out the moment a role actually fits you — no more spraying applications into the void.
Full-time
Competitive Salary, Flexible Working Hours, Work From Home Options, Pension Scheme, 26 Vacation Days, 4 Mandatory Days Off
Posted 56d ago
~40 hrs/week
Responsibilities
The role involves bridging the gap between customers and detection engineers to develop tailored custom security detections. Key tasks include hosting threat workshops, querying SIEM data, and writing pseudo-logic for detections-as-code.
Requirements
Candidates should have experience in detection engineering, SOC operations, or security-focused systems administration. Proficiency with SIEM tools like Splunk and Sentinel, along with a strong understanding of contemporary attack tactics, is desired.
Full job description
Detection Consultant
Department: Cyber Services and Capabilities
Employment Type: Full Time
Location: NLD Rijswijk
Description
Our Global Detection Engineering Team provides detection capabilities for various security products used in our 24/7 managed monitoring service with customers all over the world. This role will be to join our detection engineering team, where you will focus on providing a tailored experience of custom detections to all our customers.
All customers have the benefit of access to NCC’s wide library of detections but there are many cases for exceptions and requirements for custom detections. This role sits at the pivotal point between our customers and the detection engineers. Together with (representatives of our) customers you will focus on assessing the gap and need for custom detections (on top of the deployment of detections from NCC’s detection library) to provide the appropriate level of detection each customer desires.
We're looking for a wide range of backgrounds for potential candidates; the exact responsibilities of any candidate can be tailored given their experience and skillset. Any candidate that only partially matches the skillset is encouraged to apply.
Key Responsibilities
Schedule and host threat workshops utilizing industry-approved methodologies such as DREAD or STRIDE.
Correlate log events in SIEM solutions with activities which have taken place in the (business) application or technology.
Query data ingested into customer SIEM environments to assess the practical feasibility of newly proposed detections.
Prepare pseudo-logic and work packages for detection engineers who write detections-as-code within the NCC detection repository.
Derive new generic detection opportunities from Threat Intelligence reports to further expand NCC’s detection library.
Identify potential abuse patterns in customer applications.
Query large datasets of data in SIEMs (Sentinel & Splunk).
Explain (potential) attack paths to customers.
Write pseudo-logic for the development of new detections.
Track the status of detections under development and share status updates with the customer.
Obtain feedback from customers on exceptions and allowed behavior during the testing phase of the development of new analytics.
Ensure work is up-to-date and tracked in (internal) ticketing system(s).
Skills, Knowledge & Expertise
Experience in detection engineering on a range of technologies (SIEM and EDR)
OR
Experience in SOC or Managed Detection Services
OR
Experience in Analytically-minded IT Systems administration/Network Administration and looking for a change in career/focus on Security
Excellent oral and written communication skills.
Ability to work with client engagement teams and NCC colleagues to continuously improve the service we deliver.
Good understanding of IT Systems and platforms from a security context.
Desired Requirements:
A security mindset and demonstrable experience or knowledge of contemporary attack tactics and techniques.
Forensics or Incident Response competency would be considered valuable.
Strong knowledge of the latest threats in security.
The skills to translate technical attacks to effects in the business (and vice versa).
Experience in simulating attacks is considered an advantageous skill to enhance other skills
Experience with SIEM tools, preferably Splunk and Microsoft Sentinel.
And has knowledge of one or more of the below:
Azure or other cloud technologies,
Windows Active Directory,
Windows Operating System fundamentals,
Networking fundamentals.
System management technologies
Identity and access management procedures and technologies
Job Benefits
A good salary that matches the things you have already done and will do;
Flexible working hours and flexibility in working from home or at the office, allowing you to optimally combine your private life with your work;
A favorable pension scheme, 26 vacation days (+4 mandatory days off), and 8% holiday pay with a full-time contract;
Plenty of development opportunities: you can gain and share knowledge through training, TechTalks, events, and our own Fox Academy;
A laptop and business phone. If you use your own phone, you will receive a reimbursement of up to €25 per month;
A remote work allowance (for hybrid working);
A performance bonus and profit sharing because we value your effort;
When we work in the office, we gather every day for a delicious lunch.
We are NCC Group. A people powered, tech-enabled global cyber security and resilience company with 2,000 colleagues around the world.
For over 25 years we’ve been trusted by the world’s leading companies and Governments to manage and deliver cyber resilience, working together to create a more secure digital future.
How many Security & Safety jobs are open in Rijswijk, Netherlands right now?
There are currently 32 open security & safety positions in Rijswijk, Netherlands listed on Clera. New openings are added daily as companies post roles.
Which companies are hiring for Security & Safety roles in Rijswijk, Netherlands?
Companies currently hiring include NCC Group, Kiwa Nederland, Securitas Group, AS Watson, GE Vernova, among others. Browse the listings above to see every active employer.
Are there remote or hybrid Security & Safety jobs in Rijswijk, Netherlands?
Yes — 19 of the 32 open security & safety positions offer remote or hybrid work (0 remote, 19 hybrid).
How do I apply for Security & Safety jobs in Rijswijk, Netherlands?
Each listing links directly to the employer's application page. Apply early — fresh listings get the most recruiter attention in the first two weeks.