Glasgow, Scotland, United Kingdom Hybrid / WFH Options
JR United Kingdom
reliability. Provide recommendations and solutions to ensure consistent highl level of service to customers. Develop scripts and queries (KustoQueryLanguage - KQL, PowerShell, Python) for log analysis. Implement automated remediation workflows where possible. Recommend improvements to architecture based on performance data. Work closely with engineering, DevOps, and … or DevOps support. Strong knowledge of Microsoft Azure services (App Service, SQL Database, Blob Storage, Azure Monitor, Application Insights, Log Analytics). Proficiency in KQL (KustoQueryLanguage) for log analysis. Experience with automation scripting (PowerShell, Python, or Azure Functions). Familiarity with SIEM tools (Splunk, ELK More ❯
triage and analysis on security events, determining threat severity and advising on initial responses. Utilize SIEM solutions with KustoQueryLanguage (KQL) for log analysis, event correlation, and documentation. Identify and escalate critical threats to Tier 3 Analysts with detailed analysis. Investigate potential security incidents through deeper … and traffic flow. Proficiency in Windows and Linux operating environments. Experience with SIEM solutions (e.g., ArcSight, Azure Sentinel) and analysis tools. Ability to use KQL effectively. Familiarity with OSINT techniques. Strong communication skills, capable of explaining technical issues clearly. Ability to produce concise reports and manage workload efficiently. Willingness to More ❯
Glasgow, Scotland, United Kingdom Hybrid / WFH Options
JR United Kingdom
Microsoft Sentinel. Experience in building and maintaining workflows with Azure Logic Apps to automate processes. Strong experience in API development and integration. Proficiency in KQL, JSON, and PowerShell. Good written and verbal communication skills. Technical understanding of IT infrastructure – Microsoft 365 suite, Defender XDR, Entra ID (Azure Active Directory), Azure More ❯
Glasgow, Scotland, United Kingdom Hybrid / WFH Options
JR United Kingdom
exploits, malware, ransomware, etc. their creation and activation and detection methods. • Knowledge of web application architecture and system administration. • Experienced building complex custom RQL, KQL or SQL queries. • Experienced with Microsoft Azure, AWS or GCP installation, configuration, and administration of security features and services. • Programming experience with Python or PowerShell More ❯
Glasgow, Scotland, United Kingdom Hybrid / WFH Options
JR United Kingdom
base and engineering standards Requirements Experience with Microsoft Sentinel in enterprise environments Understanding of security telemetry across various layers Skills in SIEM content development, KQL, analytics rules, data connectors Scripting skills: Python, PowerShell, APIs, Function Apps Background in threat detection, incident response, or DFIR (a plus) Ability to work in More ❯
Glasgow, Scotland, United Kingdom Hybrid / WFH Options
KPMG UK
. Experience securing cloud environments and ensuring compliance. Understanding of API security standards, exploits, malware, and web architecture. Proficiency in building complex queries (RQL, KQL, SQL). Hands-on experience with Microsoft Azure, AWS, or GCP security features. Programming skills in Python or PowerShell. We support flexible working arrangements and More ❯
At least 4 years of experience working in a SOC environment, handling high-profile incidents. Strong knowledge of the Microsoft Security stack – Defender, Sentinel, KQL, etc. Experience working in hybrid-cloud SOC environments, preferably Azure/AWS. Ability to articulate specific projects you have built, developed, or led, related to More ❯
experience and knowledge of the Microsoft suite of products to automate processes and improve existing automation solutions through evolution. Demonstrate a working knowledge of KQL to query and analyse security logs and data. Apply a strong knowledge of the cyber threats, hazards, risks, controls, and mitigations to protect organisations … nature. Knowledge and experience of the following would be advantageous: The Microsoft cloud security ecosystem including Sentinel, Entra and Defender. Practical experience of using KQL in threat-hunting scenarios Documentation and reporting using various Power Platform tools (Power Bi, Powershell etc.) What we look for in our people Strong alignment More ❯