Information Security Engineer – macOS & Linux Detection
Digital
Security
Secondary, Bachelor, Master
Advanced (5+)
- Location
- Leuven, Flemish Brabant
- Work type
- Consultancy
- Work model
- Fulltime, Hybrid
Our client, a leading organization in the financial sector, is looking for an Information Security Engineer to join their Security Operations Center. This role focuses on designing and maintaining advanced detection systems for macOS and Linux environments to protect against evolving cyber threats.
Responsibilities
- Design, build, and maintain security detection use cases specifically for macOS and Linux platforms.
- Analyze security logs including syslog, audit logs, and EDR telemetry to translate them into actionable detections.
- Improve and fine-tune existing use cases to reduce false positives and enhance detection quality.
- Collaborate with SOC analysts to align detections with real-world threats and organizational visibility needs.
- Utilize frameworks such as MITRE ATT&CK to build detections in a structured and standardized manner.
- Document and monitor security breaches while assessing potential damage and flaws through penetration testing.
Requirements
- You bring 5+ years of experience in proactively monitoring and remedying security breaches within a SOC environment.
- You possess advanced knowledge of macOS and Linux systems from a security or engineering perspective.
- You have experience working with SIEM tools and log analysis techniques.
- You have a solid understanding of Cyber Risk Management and the Software Development Life Cycle (SDLC).
- You have experience using the MITRE ATT&CK framework for structured detection.
- You have strong analytical skills and a structured approach to conceptual thinking.
- You possess clear, structured, and convincing communication skills.
- You're a collaborative team player with a quality-driven and security-focused mindset.
- You are fluent in English.
Nice to Haves
- Experience with Splunk.
- Knowledge of shell scripting and regex.
- Familiarity with Agile methodologies.
Offer
- Start date: ASAP
- Duration: 120 days
- Work regime: Full-time (40 hours per week)
- Location: Leuven
- Contract: open to both permanent employees and freelancers
# 100960
or
Not sure if this job is right for you? Chat with Alex, our AI career coach, and discover the vacancies that match your profile.
)