18 of 18 Kusto Query Language Jobs in England

Remote L3 SOC Analyst - Microsoft XDR/ Defender/ Sentinel

Hiring Organisation
Robert Walters
Location
London, South East, England, United Kingdom
Employment Type
Temporary
Salary
£450 - £500 per day
manage high-severity security incidents from identification through containment, eradication, recovery, and post-incident reporting Perform advanced threat hunting using Microsoft Defender XDR, Sentinel, KQL, and other telemetry sources to identify emerging threats, anomalous behaviour, and undetected malicious activity Develop, tune, and maintain Sentinel analytics rules, workbooks, playbooks (Logic Apps … Defender for Endpoint, Office 365, Identity, Cloud Apps, Defender for Cloud, and Azure security controls Create and maintain Kusto Query Language (KQL) queries, automation workflows, and enrichment logic to enhance detections and investigation efficiency Support purple-team activities, threat modelling, and attack-simulation scenarios aligned to MITRE ...

Microsoft Sentinel Engineer

Hiring Organisation
Constant Recruitment Ltd
Location
Chelmsford, Essex, England, United Kingdom
Employment Type
Full-Time
Salary
£60,000 - £70,000 per annum
Microsoft Sentinel Engineer, you will design, implement, and optimise Sentinel solutions across enterprise environments. You will connect multiple data sources, write complex KQL queries, build automation playbooks, and work closely with clients to strengthen their security operations and response capabilities. This is a technically advanced role that combines engineering depth … Develop and optimise automation rules, playbooks, and runbooks using Logic Apps and Power Automate. Write and fine-tune Kusto Query Language (KQL) queries to analyse and visualise raw security data. Integrate third-party tools (firewalls, IAM, telemetry) into Sentinel. Use MITRE ATT&CK to anticipate and counter ...

Microsoft Sentinel Engineer

Hiring Organisation
Constant Recruitment
Location
West Malling, Kent, South East, United Kingdom
Employment Type
Permanent, Work From Home
Salary
£70,000
Microsoft Sentinel Engineer, you will design, implement, and optimise Sentinel solutions across enterprise environments. You will connect multiple data sources, write complex KQL queries, build automation playbooks, and work closely with clients to strengthen their security operations and response capabilities. This is a technically advanced role that combines engineering depth … Develop and optimise automation rules, playbooks, and runbooks using Logic Apps and Power Automate. Write and fine-tune Kusto Query Language (KQL) queries to analyse and visualise raw security data. Integrate third-party tools (firewalls, IAM, telemetry) into Sentinel. Use MITRE ATT&CK to anticipate and counter ...

Security Analyst - HYBRID

Hiring Organisation
Proactive Appointments
Location
Surrey, England, United Kingdom
Employment Type
Contractor
Contract Rate
£370 - £380 per day
threat categories. Analyze logs generated by applications using Azure Log Analytics and Azure Sentinel to identify anomalies and potential threats. Design, build, and maintain KQL queries to extract and correlate security-relevant data from logs. Implement automated alerting and reporting workflows through Azure Logic Apps integrated with Azure Sentinel. Collaborate … configuration, customization, and automation. In-depth knowledge of Azure Log Analytics , log ingestion, and data analysis. Proficiency in Kusto Query Language (KQL) for creating efficient, scalable queries. Experience with Azure Logic Apps to orchestrate automated response and reporting workflows. Solid understanding of application security principles, common threat ...

SOC Analyst

Hiring Organisation
Elysian IT
Location
Basingstoke, Wooton Saint Lawrence, Hampshire, United Kingdom
Employment Type
Permanent
Salary
£25000 - £30000/annum
customers. Required Skills Basic understanding of cybersecurity principles and threat landscapes Experience working with Microsoft Security tools (Sentinel, Defender XDR, Entra ID) Basics in KQL (Kusto query language) Strong analytical and problem-solving skills Excellent verbal and written communication skills Preferred Qualifications About 12 months of experience ...

Threat Modelling Consultant

Hiring Organisation
Sanderson Recruitment
Location
London, United Kingdom
Employment Type
Contract
Contract Rate
£500 - £550 per day
threat categories Analyse logs generated by applications using Azure Log Analytics and Azure Sentinel to identify anomalies and potential threats Design, build and maintain KQL queries Implement automated alerting and reporting workflows through Azure Logic Apps with Azure Sentinel Collaborate with the Information Security team to ensure actionable insights … Strong expertise in Azure Sentinel, including configuration, customisation and automation Azure Log Analytics, log ingestion and data analysis Kusto Query Language (KQL) Azure Logic Apps Understanding of application security principles, common threat categories and attack vectors. Excellent communication skills to document findings and present complex technical information ...

Azure Cloud Engineer

Hiring Organisation
ADLIB
Location
Bristol, Avon, England, United Kingdom
Employment Type
Full-Time
Salary
£60,000 - £70,000 per annum
with Terraform as the primary tool and Bicep as an Azure-native IaC language. Ideally, you will have the ability to write and use KQL for dashboards, alerts, investigations, and insights in Log Analytics, Azure Monitor, and Application Insights. Experience administering and optimizing Windows Server workloads on Azure Virtual Machines ...

IT Cyber Security Analyst - Tier 3

Hiring Organisation
Littlefish
Location
Nottingham, Nottinghamshire, East Midlands, United Kingdom
Employment Type
Permanent
Salary
£50,000
environments Strong working knowledge of SIEM, EDR, and email security platforms Practical experience with Microsoft XDR technologies Ability to create and tune detections using KQL Track record of supporting or mentoring other analysts SC-200, CySA+, or comparable certifications (desirable) Clear communicator in both technical and business contexts Analytical, methodical ...

Senior Security Engineer

Hiring Organisation
Develop
Location
London, United Kingdom
Employment Type
Permanent
Salary
£80,000
desirable) Platforms & Infrastructure: Active Directory/Entra hybrid identity Windows Server and Linux Networking, VPNs, firewalls, endpoint management Tooling & Automation: KQL PowerShell API integrations Automation tooling Key Responsibilities Technical Delivery Lead technical discussions with customers, guiding architecture, design decisions, and best practice implementations. Own the end-to-end delivery … Design and implement detections, automation workflows, and runbooks. Conduct technical assessments across identity, endpoint, cloud posture, logging, and security operations. Develop, optimise, and tune KQL queries for detection engineering and threat hunting. Review and enhance security configurations across cloud and SIEM/SOAR platforms. Manage engagements through architecture, deployment, tuning ...

Security Engineer - SIEM, KQL

Hiring Organisation
Harvey Nash
Location
London, South East, England, United Kingdom
Employment Type
Contractor
Contract Rate
£350 - £400 per day
Security Engineer - SIEM, KQL- sought by investment bank based in London. *Inside IR35 - 3 days a week on-site** Key Responsibilities SIEM Management & Optimization: Design, implement, and maintain Microsoft Sentinel workspaces, connectors, analytics rules, and playbooks Develop advanced KQL queries for threat hunting and reporting Optimize SIEM performance, cost … further details - Alex Reeder Harvey Nash 3+ years in a Security Engineer, SOC Analyst, or similar role Hands-on experience with Microsoft Sentinel and KQL Strong knowledge of Active Directory, Windows/Linux systems, and cloud platforms (Azure, AWS, GCP) Proficiency in scripting (PowerShell, Python) Familiarity with security frameworks (MITRE ...

SOC Manager

Hiring Organisation
Symmetric Recruitment Ltd
Location
M3, Manchester, United Kingdom
Employment Type
Permanent
Salary
£70000 - £80000/annum
Defender XDR • Deep understanding of Azure security architecture and ingestion strategy • Proven experience configuring connectors and tuning detection rules • Experience with SOAR platforms • Strong KQL capability • Ability to manage competing priorities in fast-paced environments • Experience managing ingestion costs or cloud service optimisation • Confident customer communication Desirable • Integration experience (Mimecast ...

Data Engineer

Hiring Organisation
Youngs Employment Services
Location
Hammersmith and Fulham, Greater London, Notting Barns, United Kingdom
Employment Type
Permanent
Salary
£60000 - £70000/annum Excellent Benefits
Data Factory (pipelines, orchestration) o Data Engineering (Lakehouse, notebooks, Apache Spark) o Data Warehouse (SQL endpoints, schemas, MPP performance tuning) o Real-Time Analytics (KQL databases, event ingestion) o Manage and enhance OneLake architecture, delta lake tables, security policies, and data governance within Fabric. o Build scalable, reusable data assets ...

Security Operations Engineer | Strategic Financial Risk Solutions Firm

Hiring Organisation
Techfellow Limited
Location
City of London, London, United Kingdom
engineering role Strong familiarity with security monitoring platforms such as SIEM, SOAR, and threat intelligence tooling Experience writing or tuning detection logic, ideally using KQL or similar query languages Practical exposure to threat hunting and analysing security alerts or incidents Experience building integrations or automation across security tooling Experience ...

Security Engineer & Analyst Contracts - London

Hiring Organisation
Method Resourcing
Location
London, South East, England, United Kingdom
Employment Type
Contractor
Contract Rate
£500 - £600 per day
deep technical analysis Clear stakeholder communication Security Analyst (Contract) Focus: Detection, Response & Optimisation Key Responsibilities Advanced Microsoft Defender analysis & optimisation Write, tune, and troubleshoot KQL queries Investigate alerts and support incident response workflows Liaise with SOC & technical teams Analyse ITSM backlog/ticket trends Recommend improvements to Conditional Access … policies Required Experience Strong Microsoft Defender expertise Advanced KQL capability (hands-on) SOC/incident investigation background Analytical mindset with operational focus Strong communication & user engagement skills Security Engineer & Analyst Contracts - London RSG Plc is acting as an Employment Business in relation to this vacancy. ...

Head of Azure Platform Security

Hiring Organisation
Huxley Associates
Location
London, United Kingdom
Employment Type
Permanent
flow log analysis and intrusion detection engineering - building detection logic for lateral movement, beaconing, anomalous egress, and C2 patterns SIEM engineering: detection rule authoring (KQL, SPL, or equivalent), log pipeline design, alert correlation, triage workflow - you write the rules, not just read the dashboard Endpoint and desktop security: EDR deployment … flow log analysis and intrusion detection engineering - building detection logic for lateral movement, beaconing, anomalous egress, and C2 patterns SIEM engineering: detection rule authoring (KQL, SPL, or equivalent), log pipeline design, alert correlation, triage workflow - you write the rules, not just read the dashboard Endpoint and desktop security: EDR deployment ...

SIEM Engineer contract

Hiring Organisation
Searchability NS&D
Location
Wokingham, Berkshire, England, United Kingdom
Employment Type
Contractor
Contract Rate
£400 - £425 per day
tools (Sentinel or Elastic) EDR deployment and management (Tanium, Trellix, Defender, or similar) Log ingestion creation (OOTB and custom integrations) Familiarity with scripting languages (KQL, Python, or PowerShell) TO BE CONSIDERED: Please either apply through this advert or email me directly via . For further information, please call … subject to required skills) your application to our client in conjunction with this vacancy only. KEY SKILLS SIEM Engineer, Sentinel, Elastic, EDR, Syslog, Linux, KQL, PowerShell, SC Cleared ...

Microsoft Fabric Architect - Chester

Hiring Organisation
Harvey Nash
Location
Chester, Cheshire, England, United Kingdom
Employment Type
Full-Time
Salary
£80,000 - £90,000 per annum
Microsoft Fabric Architect - Chester Hybrid working Salary upto £90,000 A leading client in Chester seeks a Microsoft Fabric Architect to design and deliver data and AI solutions on the Microsoft Fabric platform. As Technical ...

SIEM Engineer

Hiring Organisation
Searchability NS&D
Location
Watford, Hertfordshire, England, United Kingdom
Employment Type
Full-Time
Salary
£85,000 - £95,000 per annum
Splunk Enterprise Security Strong background in detection engineering and SIEM operations Experience designing and managing large scale data ingestion pipelines Advanced knowledge of SPL, KQL or EQL for detection engineering Experience with automation, scripting or Infrastructure as Code in SIEM environments Understanding of MITRE ATT&CK and threat detection techniques … your application to our client in conjunction with this vacancy only. KEY SKILLS Elastic Security, Splunk Enterprise Security, SIEM, Detection Engineering, Elastic Stack, SPL, KQL, EQL, MITRE ATT and CK, Security Monitoring, Log Ingestion, Terraform, Ansible, SOC Engineering, NSD. ...