freiberufler Cybersecurity Engineer | SOC & SIEM | EDR/XDR | Splunk | Elastic | auf freelance.de

Cybersecurity Engineer | SOC & SIEM | EDR/XDR | Splunk | Elastic |

zuletzt online vor wenigen Tagen
  • auf Anfrage
  • 1328 RV Almere
  • Umkreis (bis 200 km)
  • nl  |  en  |  es  |  id  |  de  |  ar
  • 17.07.2026
  • Contract ready

Kurzvorstellung

Ich verfüge über umfassende Erfahrung in verschiedenen Bereichen der IT-Sicherheit, von der Architektur bis zur operativen Umsetzung.

Geschäftsdaten

 Freiberuflich
 Steuernummer bekannt
 Berufshaftpflichtversicherung aktiv

Qualifikationen

  • Detection engineering
  • E-Commerce
  • Governance3 J.
  • Identitätsmanagement6 J.
  • Incident response
  • Leiter Sicherheitsbetrieb
  • Risikoanalyse9 J.
  • Risikomanagement6 J.
  • Security Operations Center (SOC)2 J.
  • SIEM Architecture
  • Softwaredokumentation7 J.
  • Threat hunting

Projekt‐ & Berufserfahrung

Security Officer Lead
Energy Orb, Rijswijk
4/2026 – offen (6 Monate)
Wohnungswirtschaft
Tätigkeitszeitraum

4/2026 – offen

Tätigkeitsbeschreibung

Built and professionalized the security function for an international renewable energy startup. Developed security policies, governance, risk assessments, and technical and organizational controls for a cloud platform supporting services for approximately three million end users. Assessed risks related to cloud infrastructure, customer data, energy data, access management, external development environments, and operational processes. Translated security requirements into practical measures, clear responsibilities, escalation paths, and a roadmap aligned with ISO 27001 and EU data sovereignty.

Eingesetzte Qualifikationen

Governance, Leiter Sicherheitsbetrieb, Risikoanalyse, Risikomanagement, Softwaredokumentation

SIEM & SOC Architect
Martini Hospital, Groningen
1/2026 – 4/2026 (4 Monate)
Gesundheitswesen
Tätigkeitszeitraum

1/2026 – 4/2026

Tätigkeitsbeschreibung

Responsible for the design, implementation, and professionalization of SIEM and SOC operations within a complex hospital environment comprising IT, OT, and IoMT components. Built a scalable monitoring and detection infrastructure that brought together critical log sources, medical systems, detection use cases, incident processes, responsibilities, and reporting. Developed and aligned detection rules based on threat scenarios and MITRE ATT&CK, with a strong focus on availability, patient safety, and minimizing disruption to clinical operations. Established triage, escalation, and incident response processes, and developed dashboards and KPI reports for both the SOC and management.

Eingesetzte Qualifikationen

Analytiker E-Business, Betriebsingenieur, Microsoft Access, Workflows

Head of Security
Yulin Studio, Flevoland
1/2026 – offen (9 Monate)
IT & Entwicklung
Tätigkeitszeitraum

1/2026 – offen

Tätigkeitsbeschreibung

Built and professionalized cybersecurity, data protection, and governance within an internationally operating digital studio that develops websites, e-commerce platforms, branding, and digital solutions for clients. Integrated security throughout the full lifecycle of client projects, from design, architecture, and development to integrations, deployment, management, and supplier collaboration. Assessed risks related to client data, software development, cloud hosting, access management, external developers, international collaboration, and third-party integrations. Translated these risks into practical controls, clear responsibilities, and secure delivery processes.

Eingesetzte Qualifikationen

E-Commerce

SOC Lead & Detection Engineer
MSPS Groep B.V., Flevoland
1/2024 – 12/2025 (2 Jahre)
IT & Entwicklung
Tätigkeitszeitraum

1/2024 – 12/2025

Tätigkeitsbeschreibung

Responsible for establishing, leading and continuously improving SIEM and SOC operations for four organisations. Each organisation had its own SIEM environment, technical infrastructure, threat profile and compliance requirements. The role focused on detection engineering, improving alert quality, structuring triage, escalation and incident response processes, and guiding analysts in their daily operations. In addition, developed use cases and tuned detection rules to reduce noise and improve visibility into relevant threats. Translated technical findings, incident trends and SOC performance into dashboards, KPIs and periodic reports for the CISO, management team and executive leadership.

Eingesetzte Qualifikationen

Security Operations Center (SOC)

SOC Analyst Tier 3
MSPS Groep B.V., Flevoland
1/2021 – 12/2024 (4 Jahre)
IT & Entwicklung
Tätigkeitszeitraum

1/2021 – 12/2024

Tätigkeitsbeschreibung

Responsible for security monitoring and incident handling across multiple organisations operating in different technical environments. Progressed from Tier 1 to Tier 3, with responsibilities evolving from alert triage and escalation to in-depth incident investigation, threat hunting, incident response, and the improvement of detection rules and use cases. Investigated and correlated endpoint, identity, email and network alerts using Microsoft Sentinel, Splunk, Elastic Security, CrowdStrike, Microsoft Entra, Mimecast and Cisco Umbrella. Findings were documented, independently resolved or escalated, and structurally translated into stronger detections, more efficient SOC processes and improved alert quality.

Eingesetzte Qualifikationen

Forschung

Vulnerability Manager
MSPS Groep B.V., Flevoland
1/2020 – 12/2026 (7 Jahre)
IT & Entwicklung
Tätigkeitszeitraum

1/2020 – 12/2026

Tätigkeitsbeschreibung

Responsible for leading and professionalising vulnerability management across four organisations and multiple external development, operations and technology partners. Identified, validated and risk-prioritised vulnerabilities based on technical severity, exploitability, external exposure, asset criticality and business impact.
Coordinated findings with system owners, IT teams, suppliers and security stakeholders, translating them into remediation plans, mitigating measures, SLA agreements and formal risk acceptance. Third-party environments, outsourced applications and supplier dependencies were also included in the assessment and follow-up process.

Eingesetzte Qualifikationen

Risikoanalyse, Risikomanagement

System Administrator & IT Engineer
Infomedics B.V. & Famed B.V., Almere
1/2017 – 12/2020 (4 Jahre)
IT & Entwicklung
Tätigkeitszeitraum

1/2017 – 12/2020

Tätigkeitsbeschreibung

Responsible for the management, support, and security of the internal IT environment. Managed workstations, user accounts, servers, endpoint security, and network components to ensure organizational availability and continuity. In addition to daily incident handling and end-user support, contributed to access management, onboarding and offboarding, hardware deployment, patch management, and system monitoring. Standardized administrative processes, documented recurring issues, and implemented structural improvements to make the IT environment more stable, secure, and manageable.

Eingesetzte Qualifikationen

Identitätsmanagement, Operations Manager, Softwaredokumentation

IT Change Officer
KLM Royal Dutch Airlines, Amsterdam
1/2015 – 12/2017 (3 Jahre)
Luft- und Raumfahrtindustrie
Tätigkeitszeitraum

1/2015 – 12/2017

Tätigkeitsbeschreibung

Responsible for coordinating, assessing and ensuring the controlled implementation of IT changes within a complex enterprise environment. As part of a change and support team of approximately ten employees, supported an organisation of around 32,000 employees.
Prepared, scheduled and coordinated changes with technical teams, suppliers and operational stakeholders, with a strong focus on risk, availability and minimising disruption to business-critical processes. Monitored progress, dependencies, incidents and communication throughout the entire change lifecycle and ensured changes were implemented in a controlled and successful manner.

Eingesetzte Qualifikationen

Change Management, Governance, Projektplanung, Risikoanalyse, Softwaredokumentation

IT Engineer
De Nieuwe Bibliotheek, Flevoland
1/2014 – 12/2015 (2 Jahre)
Hochschulen und Forschungseinrichtungen
Tätigkeitszeitraum

1/2014 – 12/2015

Tätigkeitsbeschreibung

Daily management, support, and improvement of the IT infrastructure within a public library organization. Managed workstations, user accounts, servers, applications, and network services, while supporting employees with incidents, disruptions, and change requests. Prepared, coordinated, and implemented technical changes in a controlled manner, assessing dependencies and potential impact in advance to minimize disruption. Standardized administrative processes, documented recurring issues, and improved maintenance routines to structurally support the stability, availability, and continuity of library services.

Eingesetzte Qualifikationen

Identitätsmanagement, Incident-Management, Server Administration, Softwaredokumentation, Technischer Support

Ausbildung

Windesheim University
HBO - Cybersecurity
2020
Zwolle
ROC van Flevoland
Ausbildung
2017
Almere

Über mich

Cybersecurity has never been a narrowly defined field for me, and that is exactly what makes it interesting. Based in the Netherlands, I have worked across several IT security roles, allowing me to operate broadly without sacrificing depth. My experience spans SIEM and SOC architecture, detection engineering, incident response, vulnerability management, and security governance. I move easily between technology, operations, and policy, and I am comfortable both delivering hands-on work and providing leadership.

Persönliche Daten

Sprache
  • Niederländisch (Muttersprache)
  • Englisch (Gut)
  • Spanisch (Gut)
  • Indonesisch (Grundkenntnisse)
  • Deutsch (Grundkenntnisse)
  • Arabisch (Grundkenntnisse)
Reisebereitschaft
Umkreis (bis 200 km)
Arbeitserlaubnis
  • Europäische Union
Profilaufrufe
43
Alter
29
Berufserfahrung
12 Jahre und 8 Monate (seit 01/2014)

Kontaktdaten

Nur registrierte PREMIUM-Mitglieder von freelance.de können Kontaktdaten einsehen.

Jetzt Mitglied werden