Security Operations Center (SOC) analyst threat intelligence–Clean Networks Platform

Who are we?

At the National Management Organization for Internet Providers (NBIP), we work together with our participants to realize a safer internet. As a center of expertise for DDoS Mitigation, Lawful Interception and Threat Intelligence Analysis, we provide support services to internet, hosting and cloud providers in the Netherlands and Europe. Read more.

We provide our services from our Operations Center where we use the latest high-quality technology to ensure the continuity of our participants.

We have plenty of ideas and ambitions for innovative projects. We need you to realize and implement those ambitions and ideas!

What will you be doing?

  • As a SOC analyst, you will be the first point of contact for NBIP participants. Together with your colleagues, you take care of taking and analyzing cybersecurity reports and advise on actions to be taken.
  • You provide support and advice in resolving cybersecurity incidents.
  • You assist in providing information about vulnerabilities and (possible) misuse of IT systems and networks.
  • You help analyze and interpret news items and (research) reports on cybersecurity.
  • You contribute to an (online) platform where (cyber) security specialists can exchange information.
  • You help build NBIP, think with us about products and services, interesting research and opportunities to further develop NBIP.

What do you bring?

You have a passion for information security, enjoy solving problems and sharing knowledge with others. You perform well under pressure and are constantly looking for opportunities to further develop both yourself and your team.

  • You have a senior secondary vocational degree, or equivalent professional and intellectual ability
  • You have 2 years of experience as an incident handler in a similar environment.
  • You have knowledge of web applications, Unix/Linux/Windows.
  • You are familiar with Security Headers, SPF/DKIM/DMARC, DNSSEC, hashing and encryption, and able to explain them.
  • You are also familiar with common attack methodologies such as DDoS, (SQL) Injection, Path Traversal, phishing, malware, and other methodologies.
  • You have basic knowledge of Bash, Python, Powershell, and/or other scripting languages.
  • You can convey technical information to customers who have varying levels of technical knowledge and skills.
  • You have strong problem-solving skills, are an analytical thinker, and have a keen eye for detail.

What does a working day at NBIP look like?

The day starts at the office or virtually. You immediately have an overview of the NBIP team’s workload of that day. You are actively involved in the team meeting and you pay attention to whether the jobs that are assigned to you are carried out on time. Sometimes you activate a system remotely, often you have to call a technician at our participants to coordinate matters, sometimes you are configuring a piece of computer hardware and then you are back in the car on your way to a network of our participant to install something. You then update the administration at the office. You check and put the right reminders in the system and pick up the next task. There is room to innovate, learn and develop ideas. Working outside office hours is not the rule, but it can happen. Therefore a certain degree of flexibility is necessary to be able to complete tasks on time and properly.

What do we have to offer?

As part of our Operations team, you work together with colleagues to serve the public interest by making internet traffic safer and strive for the best possible service.

Our team comprises more than just the people at our office. The NBIP and its services are widely supported by the internet service provider and hosting community. We are in close contact with our participants and regularly organise committees of technical people who like to exchange knowledge with us. As an employee of NBIP, you become part of a loyal and strong community that likes to help each other and deems sharing knowledge important.

  • Competitive salary.
  • A commute allowance and/or public transportation card.
  • Excellent study and development opportunities.
  • A unique opportunity to work in the technical field for a special and socially very important sector.
  • A laptop.
  • The possibility of hybrid working, with an office in Houten.
  • Lots of responsibility and independence within your position.
  • Fun, driven and professional colleagues in a close-knit team.

Do you recognize yourself in this vacancy? Send your motivation and CV to


  • A VOG statement will be requested for the person in this position.
  • Because of the nature of this position, it is necessary to sign an extensive Confidentiality Statement before starting work.