Skip to content
MVPeopleGroup
SOC & Blue Team

SOC Lead

AmsterdamFreelance / ZZP (MVPeople)HybridLeadbankwezen

About the assignment

A leading organisation in the financial sector seeks an experienced SOC Lead to build and manage their security operations function. You'll oversee a team of security analysts, establish incident response protocols, and ensure 24/7 monitoring of enterprise infrastructure.

Your challenge: transform raw security alerts into actionable intelligence, reduce mean time to detect (MTTD) and mean time to respond (MTTR), and mature the SOC from reactive to proactive threat hunting. You report directly to the CISO and own the security team's performance and development.

Your responsibilities

  • Lead and mentor a team of SOC analysts, setting performance targets and career development plans
  • Design and implement incident response procedures aligned with NIST and industry standards
  • Monitor security alerts, escalate critical incidents, and coordinate containment and recovery
  • Manage SIEM and security tools (Splunk, Sentinel, QRadar) to maximise detection accuracy
  • Conduct threat hunting using MITRE ATT&CK framework to identify advanced threats
  • Prepare security dashboards and KPI reports for executive leadership
  • Evaluate and integrate new security tools and technologies into the SOC
  • Maintain on-call schedules and ensure business continuity during incidents

Tech Stack & Tools

Platforms & Tooling

SplunkMicrosoft SentinelIBM QRadarCrowdStrike FalconCortex XDRServiceNow

Frameworks & Standards

NIST Cybersecurity FrameworkMITRE ATT&CKNIST Incident Response LifecycleISO 27035

Cloud & Infrastructure

Microsoft AzureAWS Security Hub

Methodologies

Incident response playbooksThreat huntingLog analysisAlert tuning and optimisation

Certifications (preferred)

CISSPGCIA (GIAC Certified Intrusion Analyst)GCIH (GIAC Certified Incident Handler)CySA+ (CompTIA Cybersecurity Analyst)

Must-haves

  • 7+ years SOC experience including 3+ years in a lead or management role
  • Hands-on expertise with enterprise SIEM platforms (Splunk, Sentinel, or QRadar)
  • Strong knowledge of incident response, threat detection, and MITRE ATT&CK framework
  • Proven ability to build and manage high-performing technical teams
  • Experience mentoring junior analysts and conducting security training
  • Excellent communication skills for executive reporting and cross-functional collaboration

Nice-to-haves

  • Experience with threat intelligence platforms and dark web monitoring
  • Familiarity with SOAR (security orchestration, automation and response) tools
  • Background in endpoint detection and response (EDR) or managed detection services (MDR)
  • Track record of reducing MTTD/MTTR metrics and improving alert fidelity

What we offer

  • Competitive salary and performance bonus structure
  • Lead a modern SOC with advanced tooling and 24/7 operational capability
  • Direct influence on security strategy and board-level visibility
  • Continuous learning budget for certifications and conferences
  • Flexible working arrangements and hybrid office model
  • Personal guidance from a dedicated MVPeople consultant who knows your niche

The process

1

Introduction

Phone call with your MVPeople consultant (within 24 hours)

2

Match & Brief

We discuss the assignment in detail and prepare you

3

Client meeting

Introduction to the client

4

Start

Contracting and onboarding

Details

Type

Freelance / ZZP (MVPeople)

Location

Amsterdam

Work model

Hybrid

Level

Lead

Industry

bankwezen

Market indication

€95 - €130 per hour

Posted

17 September 2026

Job ID

58177



Contact

Apply nowMore information
Apply now