Back to all jobs
Visible on IKONS todayNewPopular

Teamlead CSIRT

UtrechtHybrid40 hours/week<3months

As Teamlead CSIRT, you focus on operational excellence, coordination, and leadership of incident response capabilities within an organization. You are responsible for efficiently monitoring, detecting, and responding to security threats, while maintaining a high level of service. You lead the evolution of the team during the transition from a traditional SOC to a CSIRT and act as the dedicated first-line security manager for the holding and captive organizations.

What you do

  • Daily operations & CSIRT leadership
  • Incident coordination & Stakeholder management
  • People Management, Coaching & Mentoring of the CSIRT
  • Security Management for the holding and captive organizations

Profile

  • Natural talent to balance business agility with structured incident response and security measures.
  • Strong analytical thinking with quick problem-solving and crisis management skills.
  • Team player who enjoys leading, coaching, and motivating technical professionals.
  • Excellent communicator with strong written and verbal communication skills in both Dutch and English.
  • Optimist who remains calm under pressure and keeps the work enjoyable for the team during stressful incidents.
  • Able to work independently and manage operations, while remaining closely aligned with broader organizational leadership.

What they ask

  • Proven experience working in a SOC/CSIRT environment, incident response, or IT security consultancy, with a background in leading teams.
  • Solid practical knowledge of cybersecurity, incident handling frameworks, and operating systems.
  • Advanced understanding of security protocols, infrastructure systems, and cloud environments to effectively guide analysts during incidents.
  • Familiarity with identity and access management (IAM), network security, and logging/monitoring solutions (e.g., SentinelOne, Microsoft Defender, Okta).
  • Excellent communication and interpersonal skills, with the ability to manage stakeholders during high-pressure P1 incidents.
  • Willingness to travel when necessary.

Preferences.

  • A bachelor's or associate degree in computer science, IT, or a similar field.
  • Demonstrable experience in IT risk management, incident response, or information security.
  • Minimum of 5 years of experience in an operational IT security role with demonstrable experience in leading and coaching teams.
  • Relevant certifications in IT security, incident response, or risk assessment (e.g., CISSP, CISM, GCIH, GCIA) are a strong plus.

How to apply

View the full assignment text and application details once your tailored application is ready.

Order a tailored application to view the full assignment and application details.

More context, less searching.

You get enough context to judge whether this job is relevant. The full brief, client details and next steps stay available inside the app.