{"id":806402,"url":"https://alion.io/job/i3d-lead-security-analyst","title":"Lead Security Analyst","company":{"id":679591,"name":"I3D","domain":"i3d.net","url":"https://alion.io/company/i3d","size_band":"51-200","is_staffing_agency":false,"employer_type":"direct","is_intermediary":false,"listed_via":null,"ats_vendor":"Ashby","truth_index":null},"role":"Security","role_family":"Security","seniority":"lead","employment_type":"full_time","work_mode":"hybrid","remote_scope":null,"remote_scope_basis":null,"remote_working_hours":null,"hiring_geo_confidence":"structured","locations":["Rotterdam, Netherlands"],"countries":["NL"],"hiring_countries":[],"hiring_countries_total":0,"salary":null,"salary_estimate":{"min_usd":60000,"max_usd":160000,"period":"year","method":"global_role_cell_scaled_by_country","sample_n":399},"experience_years_min":5,"visa_sponsorship":false,"relocation_package":false,"has_equity":false,"technologies":[{"name":".NET","optional":false},{"name":"Azure","optional":false},{"name":"IAM","optional":false},{"name":"ISO 27001","optional":false},{"name":"Microsoft Defender","optional":false},{"name":"Microsoft Entra ID","optional":false},{"name":"SIEM","optional":false},{"name":"C#","optional":true},{"name":"Splunk","optional":true},{"name":"Wazuh","optional":true}],"status":"live","first_seen_at":"2026-07-03T08:44:59Z","employer_posted_date":"2026-07-03","last_verified_at":"2026-09-30T23:37:21Z","board_verified":true,"closed_at":null,"days_open":89,"trust":{"level":"ok","repost_count":null,"flags":[],"days_open":89},"description":"At i3D.net, we provide world-class global coverage with one of the most interconnected networks in the world. Our solutions focus on low latency, zero packet loss, and unmatched scalability, enabling seamless experiences for millions of users worldwide. With dedicated support, bespoke solutions, and cutting-edge technology, we deliver reliable, cost-efficient infrastructure that empowers game developers and businesses to scale effortlessly. Partnering with major names likeNvidia, DuckDuckGo, and Ubisoft, we are shaping the future of gaming and network technology.\nWhy your role matters\nAt i3D.net, we’re building our internal security foundation, and you’ll be right at the center of it. As our Lead Security Analyst, you’ll play a key role in securing our Microsoft environment (including Azure, Entra ID, and IAM), while also working on broader topics like incident response, tooling improvements, and DDOS investigations.\nWe’re currently moving to a new Microsoft tenant, which means you’ll help shape security from the ground up. This includes defining how access is managed, working closely with the Workspace Management (WSM) team, and supporting the rollout of new security controls and monitoring tools.\nYou’ll collaborate closely with our other Security Analysts and subject matter experts to strengthen detection and response and help support our future SOC capabilities and i3D’s overall security program.\nWhat you’ll be doing\nOwnership of securing our environment from the physical layer all the way up to application: Help design and improve the security of our Azure tenant, Entra ID, and identity and access setup.\n\nPartner with the Workspace Management (WSM) team: You’ll guide protecting employees, endpoints and tools. Coordinate with the team that manages rights, starters, movers, and leavers, so access stays under control and risks are caught early.\n\nTracking, and handling escalated alerts and incidents: Investigate alerts, respond to breaches or policy violations, and make sure issues are resolved properly.\n\nDrive continuous improvement: Suggest smarter ways of working, contribute to the development of security tools and processes, and strengthen the overall security posture of the company.\n\nPartnering with Risk and Compliance teams: maintain and enable our compliance with frameworks such as ISO27001 and NIS2\n\nLead vulnerability management: Drive system patching efforts for user endpoints and server infrastructure, making sure vulnerabilities are addressed quickly and effectively.\n\nSupport our SOC setup: Help implement or improve tooling like SIEM and SOAR together with the other Security Analyst(s) and partners.\n\nStay ahead of threats: Track what’s happening in the security world and help us stay a step ahead.\n\nKeep others informed: Make sure relevant updates get to the right people, and that security processes are well documented.\n\nCollaborate with external partners: Join conversations with groups like CSIRT-DSP and handle outside security contacts when needed.\n\nWork with internal teams: Server as a SME and business partner to aid other departments and product teams to improve how they handle security in their own systems and workflows.\n\nWhat success looks like in the first year\nOur technology environment is safer, easier to manage, and aligned with best practices.\n\nAlerts and incidents are handled faster and with more confidence, reducing overall risk.\n\nOur SOC tooling and processes have improved, thanks to your input and collaboration.\n\nVulnerability management is running smoothly, and critical systems are patched on time.\n\nThe company’s overall security posture has strengthened - security is embedded in workflows and visible across teams.\n\nYou’ve made yourself known across the company as someone who drives security forward and gets things done.\n\nYour profile\nBroad security ownership experience: You bring 5+ years of experience securing enterprise environments and have owned security outcomes across identity, infrastructure, endpoints, cloud, and incident response. You have been responsible for improving security posture, not just monitoring it.\n\nDeep Microsoft security expertise: You have hands-on experience securing Azure, Entra ID, Conditional Access, Privileged Identity Management (PIM), Intune, and Microsoft Defender. You understand how to design and implement secure identity and access controls at scale.\n\nSOC/Blue Team experience: You've monitored, detected, and responded to security threats in live environments, led incident investigations, and coordinated remediation across multiple teams.\n\nSecurity tooling and detection engineering: You have experience implementing and improving SIEM, SOAR, and detection capabilities, developing use cases, tuning alerts, and increasing the effectiveness of security monitoring.\n\nVulnerability management leadership: You have driven vulnerability remediation programs, partnered with infrastructure teams to prioritize risks, and ensured critical findings are resolved effectively.\n\nSecurity architecture and stakeholder influence: You are comfortable advising technical teams, challenging existing approaches, and helping shape security controls, standards, and processes across the organization.\n\nReliable and flexible when needed: You’re available when something urgent comes up, even outside of regular hours.\n\nNetherlands-based and Hybrid-ready: You live in the Netherlands and are happy to join us on-site around two days a week.\n\nGood to Haves\nExperience with SIEM and SOAR tooling: It’s a plus if you’ve worked with tools like Wazuh, Sentinel or Splunk and helped set them up or improve how they’re used.\n\nCertifications: CISSP, CISM, CompTIA Security+, CySA+, AZ-500, or SC-900 or other relevant security certifications help, but your real experience matters most.\n\nFamiliarity with secure development practices is a bonus.\n\nWhy join us?\nReal Impact: Your work directly protects our employees, platform, our customers, and the broader internet, from handling DDOS cases to shaping how we secure our systems.\n\nSmall Team, Big Ownership: You’re not just a cog in the machine; you’ll help shape tools, processes, and how we grow our security practice.\n\nCompetitive Perks: Enjoy great pay, shift bonuses, annual bonus, 25 vacation days (excluding national holidays), travel allowance, and a premium-free pension.\n\nSkill Development: Level up with career guidance and education reimbursement.\n\nGaming Perks: Get lifetime access to Ubisoft’s game library and two free games every year.\n\nStay Active: Use our in-house gym in Rotterdam or unwind in the game and music rooms.","description_format":"text","description_chars":6606,"description_truncated":false,"requirements":{"experience_years_min":5,"management_years_min":null,"team_size_min":null,"manages_managers":false,"education":null,"security_clearance":false,"languages":[]},"benefits":[],"hiring_locations":[{"name":"Netherlands","iso":"NL","kind":"country"}],"hiring_excludes":[],"relocation_offered":false,"industries":["Cloud Platforms (IaaS & PaaS)","Web Hosting & VPS"],"lifecycle":[{"event":"open","at":"2026-09-12T09:29:30Z"}],"liveness":{"score":12,"band":"cold","label":"Long shot","p_open":1,"p_active":0.419,"p_room":0.28,"age_days":88,"expected_fill_days":31,"reasons":["conf:1","win:tail","crowd:"],"computed_at":"2026-09-30T05:45:00Z"},"pay":null,"html_url":"https://alion.io/job/i3d-lead-security-analyst","json_url":"https://alion.io/job/i3d-lead-security-analyst.json","meta":{"generated_at":"2026-10-01T04:56:10Z","cache_seconds":300,"methodology":"https://alion.io/methodology","terms":"https://alion.io/terms","contact":"https://alion.io/contact","api":"https://alion.io/developers","usage":{"tier":"crawler","counted_by":"address","units_charged":1,"used_today":4511,"day_limit":5000,"remaining_today":489,"minute_limit":60,"resets_at":"2026-10-02T00:00:00Z"}}}