Title: Cybersecurity Engineer
Location: Brussels, Belgium
Duration: 3 months + renewable
Languages: French and English
Mode: On-site
Job Description
- Deploy, configure, and manage all components of the Splunk ecosystem, including forwarders, indexers, and search heads.
- Develop, maintain, and optimize parsing rules and data onboarding pipelines for diverse log sources.
- Ensure the reliability, integrity, and continuity of event log collection, correlation, and analysis processes.
- Manage system and configuration changes in a structured, controlled, and well-documented manner.
- Regularly review, update, and optimize SIEM configurations in line with changes to the network, server, and application environments.
- Administer and support vulnerability scanning platforms and attack surface monitoring tools.
- Manage and maintain secret management solutions.
- Produce and maintain high-quality architecture documentation, operating procedures, and log collection specifications.
- Collaborate with and support other technical teams in the use and integration of cybersecurity tools and platforms.
Requirements
What do you need to succeed in this position?
- Master's degree in a relevant field.
- At least one ICT Security professional certification (e.g., CISSP, CISM, CISA, CEH, OSCP, GIAC).
- Minimum 6 years of relevant professional experience, including:
- 3 years of operational and technical experience in cyber defence (SOC/CSIRT operations, security assessment platforms, or technical security infrastructures such as PKI or endpoint security).
- 2 years as a team leader or technical lead for major security-related projects.
- Strong, hands-on expertise in log management and SIEM platforms, especially Splunk.
- Experience with Identity and Access Management.
- Proficiency with endpoint security technologies, including antivirus, HIDS/HIPS, encryption, hardening, and data protection.
- Solid understanding of network security concepts and technologies: Internet/Intranet/Extranet, authentication systems, firewalls, proxies, IDS/IPS, e-mail gateways, IPsec, and remote access controls.
- Strong knowledge of Windows security: workstation and server hardening, Active Directory administration and security, and log collection/processing.
- Strong knowledge of Linux security: system hardening, configuration management, and log collection/monitoring.
- Experience with cloud security in Microsoft environments (Sentinel, Entra ID, Defender) and AWS environments (GuardDuty, Security Hub, IAM).
- Familiarity with container deployments and associated security practices.
- Ability to contribute to the strategic development and future direction of ICT and cybersecurity capabilities.
- Very good command of English (spoken and written).
- Knowledge of French is considered an asset.
Solliciteren