SOC Engineer, Security Operations Center - Shape Cyber Defense at DSB

DSB

Enhance DSB’s response to IT security incidents and help build our cyber resilience through effective security solutions.

Join our IT Security Department

In our IT Security Department, 19 specialists protect critical Danish infrastructure by reducing vulnerabilities and safeguarding the systems DSB and our customers rely on.

We are based at DSB’s headquarters in Høje Taastrup, Denmark.

Our skills cover Governance, Risk & Compliance, IT Security Architecture, and Security Operations.

Our SOC team protects critical systems and infrastructure by detecting, analyzing, and responding to security threats across DSB.

We handle IT security incidents professionally and efficiently.

The team consists of six colleagues from France, Cyprus, Portugal, the UK, and Denmark. Our diverse backgrounds and perspectives create a collaborative and inspiring work environment.

IT Security Analyst, Jessika, describes her role and the team like this

“It’s a job that never gets boring, attackers always innovate to bypass protection measures, which means we always have something new to look at.

We focus on detections that make sense for DSB and work well in our environment, and that to me is a huge advantage as I can be more creative.

When I run out of ideas or miss information to solve a task, I know that I can always find a sparring partner that has a suggestion on something new to try”

What You Will Do

Over the next three years, we will expand our monitoring and security coverage across DSB's IT landscape. This calls for collaboration, technical insight, and strategic focus, and you will be key in making it happen.

In this role, you will combine analyst responsibilities with a focus on optimizing system processes, workflows, runbooks, and related procedures.

Our team provides second-line support. First-line support is handled by an external managed detection and response partner, so technical integration and continuous improvement are vital elements of the job.

A typical day might start with a cup of coffee with a team member while discussing the best way forward on a particularly tricky incident.

You may then run a table-top exercise to test and hone our incident response capabilities.

After lunch, you’ll focus on enhancing processes and refining our technical setup.

Every Friday, you will join a coordination meeting with security analysts and architects to share knowledge and plan upcoming activities.

Occasionally, your schedule may include meetings about tenders, ISO audits, or follow-ups with our Security & Risk Management supplier.

Other Responsibilities Include

  • Defining and executing the SOC roadmap
  • Creating and updating runbooks and integrations
  • Planning and delivering security training
  • Providing sparring and technical input to the team and other parts of the organization

Are you our new SOC Engineer?

We are looking for someone who is motivated by optimizing the way we work - someone who thinks like an architect and executes like a developer in the SOC domain

In your daily work, you thrive on combining operational responsibilities with practical decisions in a complex IT/OT environment.

Cybersecurity and technology are both your specialty and your professional interest, and you want to keep learning and developing.

You have experience with

  • Working in a SOC or similar IT security environment for at least 3 years
  • Integration know-how, either from ServiceNow and/or IT security platforms
  • Operational security work and analysis, supported by a solid technical understanding
  • IT companies, large organizations with in-house IT, or consultancies

What can DSB offer you?

  • Free transportation with DSB
  • Flexible working hours and the option to work from home a few days a week
  • Access to DSB’s gym and attractive DSB discounts, including fitness centers
  • Pension plan and health insurance
  • Subsidized lunch scheme and the opportunity to buy food to take home

At DSB, we have a smoke-free working hours policy as part of our overall efforts to promote health and well-being across the company.

Apply now

The application deadline is July 19, 2026.

Please upload your motivation for applying (which can also be a video), CV, and exam papers, if applicable.

Questions? Please call CISO Christian Brünniche Lund, at +45 2076 6074.

Recruitment Process

If you move forward in the recruitment process, you can expect three interviews. The final stage includes a behavioral profile assessment, an analytical test, and possibly a case study.

With your consent, we will conduct digital reference checks.

Before employment, you will be asked to provide a criminal record certificate.

Hvordan man ansøger

For at ansøge om dette job skal du autorisere på vores websted. Hvis du ikke har en konto endnu, bedes du tilmelde.