Incident Analyst

il y a 3 semaines


Bruxelles, Belgique Stott and May Temps plein

Cybersecurity Incident Responder / SOAR Automation Specialist (2 consultants) Contract type: Freelance / B2B Location: Brussels, Belgium Work mode: Mainly onsite (90–100%) Duration: Long-term assignment - up to 3 years project Eligibility: EU nationality required Role Overview A large, highly regulated international client is seeking a Cybersecurity Incident Responder with SOAR/XSOAR automation expertise to support and enhance its security operations capability. The role is hands-on and operational, combining end-to-end incident response with the design, development, and optimisation of automated incident handling workflows. The successful consultant will work closely with SOC analysts, cyber defence teams, infrastructure teams, and external stakeholders in a high-maturity security environment. Key Responsibilities • Handle cybersecurity incidents end-to-end, including triage, investigation, escalation, containment, and resolution. • Define and maintain incident response procedures, automation requirements, and playbook logic aligned with operational needs. • Design, develop, and maintain SOAR / Cortex XSOAR playbooks, integrations, and automated enrichment workflows. • Integrate SOAR workflows with security platforms such as SIEM, EDR, and cloud services. • Ensure consistent and standardised handling of recurring alert types through automation and documented workflows. • Coordinate incident response activities with SOC teams, cyber defence units, infrastructure teams, and relevant stakeholders. • Produce high-quality incident reports, technical documentation, and operational procedures for the internal knowledge base. • Track and report on operational KPIs (e.g. MTTH, escalation rate, false/true positive ratio, automation coverage). • Support training and knowledge transfer for analysts on incident response methodologies and playbook usage. • Continuously identify opportunities to improve detection quality, automation efficiency, and response effectiveness. Required Skills & Experience • University degree (Bachelor's or Master's) in IT, Cybersecurity, or a related field. • Minimum 10 years of experience in IT/cybersecurity, with strong focus on incident response and SOC operations. • Proven hands-on experience with SOAR platforms, preferably Palo Alto Cortex XSOAR. • Strong experience designing and maintaining automated incident response playbooks and enrichment workflows. • Solid programming/scripting experience, particularly Python, for automation and integration purposes. • Practical experience with: • SIEM platforms (e.g. Splunk, Azure Sentinel)• EDR solutions (e.g. Microsoft Defender, Carbon Black Cloud)• Cloud environments (AWS and/or Azure)• Exposure to container security solutions is a plus • Strong understanding of incident response methodologies and best practices. • Experience working in large, complex, or multinational environments. • Excellent analytical and problem-solving skills, with the ability to identify root causes and propose automation improvements. • Ability to communicate clearly with both technical and non-technical stakeholders. • High standards for documentation, reporting, and operational consistency. Certifications (Required / Highly Preferred)• Relevant cybersecurity certifications (minimum 2), such as: • Palo Alto Cortex XSOAR • Splunk • Microsoft Security (e.g. SC-200)• AWS Security Specialty • Azure Security Engineer • Other recognised incident response or cloud security certifications


  • Senior Pensions Analyst

    il y a 3 semaines


    Bruxelles, Belgique Stott and May Temps plein

    Cybersecurity Incident Responder / SOAR Automation Specialist (2 consultants) Contract type: Freelance / B2B Location: Brussels, Belgium Work mode: Mainly onsite (90–100%) Duration: Long-term assignment - up to 3 years project Eligibility: EU nationality required Role Overview A large, highly regulated international client is seeking a...

  • Senior SOC Analyst @ itsme

    il y a 3 semaines


    Bruxelles, Belgique Amon Temps plein

    Belgian Mobile ID, known for the innovative itsme app, is one of Europe's fastest-growing scale-ups. In 2017, itsme was founded through a unique collaboration of seven Belgian market leaders from the banking and telecommunications sectors with a clear mission: to offer a state-of-the-art digital identity solution to everyone, enabling secure and seamless...


  • Bruxelles, Belgique eXalt Temps plein

    Analyste Fonctionnel – Secteur Énergie Bruxelles | CDIeXalt recrute un(e) Analyste Fonctionnel(le) en CDI pour intervenir sur des missions à fort impact chez nos clients (TSO, DSO, fournisseurs, traders, producteurs).C'est l'occasion idéale de mettre votre sens de l'analyse au service de projets stratégiques qui façonnent l'énergie de demain. Votre...

  • Security Operation Analyst

    il y a 3 semaines


    Bruxelles, Belgique Enzo Tech Group Temps plein

    Job Opportunity: SOC Tier 2 Analyst (Temporary – Night Shift) Schedule: Night shifts, 12 hours (19:00–07:00) We are urgently looking for an entry-level SOC Tier 2 Analyst to join our Cyber Defense team on a temporary basis. This role is critical to supporting our 24/7 security operations and ensuring continuous monitoring during night hours. The...

  • Senior SOC Analyst @ itsme

    il y a 3 semaines


    Bruxelles, Belgique Amon Temps plein

    Belgian Mobile ID, known for the innovative itsme® app, is one of Europe's fastest-growing scale-ups. In 2017, itsme was founded through a unique collaboration of seven Belgian market leaders from the banking and telecommunications sectors with a clear mission: to offer a state-of-the-art digital identity solution to everyone, enabling secure and seamless...


  • Bruxelles, Belgique ACA Factory Temps plein

    Au sein de son département Digital Business Solutions, l’équipe ERP de mon client aide les départements HR, Finances, Logistique et Achats à optimiser leurs méthodes de travail et à améliorer l’expérience des utilisateurs. L’équipe ERP regroupe une dizaine de professionnels et se compose de chefs de projet, d’analystes fonctionnels et de...

  • Business Analyst H/F

    il y a 4 semaines


    Bruxelles, Belgique JEMS Temps plein

    Qui sommes nous ? Nous sommes le premier industriel de la donnée en Europe. Notre métier est de créer, manager et exploiter le patrimoine data de nos clients. Nous avons la conviction que chaque entreprise peut adopter une démarche innovante de gestion de la donnée et créer des cas d'usage disruptifs en réduisant l'impact écologique et en diminuant...

  • Business Analyst H/F

    il y a 4 jours


    Bruxelles, Belgique JEMS Temps plein

    Qui sommes nous ?Nous sommes le premier industriel de la donnée en Europe. Notre métier est de créer, manager et exploiter le patrimoine data de nos clients.Nous avons la conviction que chaque entreprise peut adopter une démarche innovante de gestion de la donnée et créer des cas d'usage disruptifs en réduisant l'impact écologique et en diminuant la...

  • Senior Business Analyst

    il y a 3 semaines


    Bruxelles, Belgique DigiTribe Temps plein

    Digital Business Analyst - Accounts, Reporting & Transactions Mission Context The mission of the Digital Business Analyst is to drive the development and optimization of digital channels for corporate banking customers and users, by aligning business objectives with digital strategies. This involves analyzing business needs, identifying digital solutions,...

  • Contracts IT

    il y a 6 jours


    Bruxelles, Belgique Contracts IT Temps plein

    Senior technical analyst Location: Brussels (Hybrid) Contract Duration: 12 months (220 days) - long-term engagement Languages: French or Dutch (native) English Openings: Up to 10 positions urgent 12 month contract - role hiring now This is a *Belgium Hybrid* based role with an excellent immediate start within a Global Consulting company working on...