101 to 125 of 125 Kusto Query Language Jobs

Cyber Security Threat Hunter – 11832SR

Hiring Organisation
Proactive Appointments
Location
United Kingdom
Salary
£ 60 K
Experience translating hunts and red team findings into practical detections and improvements (signal selection, tuning, suppression/thresholding, entity mapping, documentation, and operational handoff)KQL depth and query performance: Comfortable using joins/unions, parsing, time-windowing, summarisation, Essential baselining, and performance-aware query patterns for large datasetsCyber ...

Cyber Security Threat Hunter – 11832SR1

Hiring Organisation
Proactive Appointments
Location
Southampton, Hampshire, United Kingdom
Salary
£ 60 K
Experience translating hunts and red team findings into practical detections and improvements (signal selection, tuning, suppression/thresholding, entity mapping, documentation, and operational handoff)KQL depth and query performance: Comfortable using joins/unions, parsing, time-windowing, summarisation, Essential baselining, and performance-aware query patterns for large datasetsCyber ...

Senior SOC Analyst (Outside IR35)

Location
West Midlands, England, United Kingdom
encryption. Ability to think critically under pressure and respond effectively to fast-moving security incidents. Scripting or query experience is highly desirable (SPL, KQL, etc.). Good communication skills from previous roles. Due to the nature and urgency of this post, candidates holding or who have held high level ...

SIEM Engineer

Location
Reading, England, United Kingdom
Microsoft Sentinel, ensuring reliable and comprehensive security telemetry. Develop custom parsers and data transformations to normalise and enrich ingested data, and design and optimise KQL queries to support effective threat detection, monitoring and security investigations. Key skills and responsibilities, Integrate and onboard log sources into Microsoft Sentinel, ensuring reliable security … telemetry. Develop custom parsers, data transformations and KQL queries for threat detection and investigation. Create and maintain analytic rules and detection logic aligned to emerging threats and business requirements. Develop Logic Apps and SOAR workflows to automate security response. Implement CI/CD pipelines using Azure DevOps/ ...

Security Engineer - SIEM/XDR - London (Hybrid)

Hiring Organisation
Nova Source Technologies
Location
London, United Kingdom
Employment Type
Permanent, Work From Home
Salary
£70,000
Security Engineer (SIEM/XDR) Microsoft Sentinel, Defender, Endpoint, Detection Engineering, Detection-as-Code, KQL, Security Automation, SOAR, Playbooks, Telemetry, Cloud Security, APIs, CI/CD, Infrastructure-as-Code, Python, PowerShell, Windows, Linux, London (Hybrid) This is an exceptional permanent Security Engineer (SIEM/XDR) opportunity to join a leading … engineering or detection engineering experience Hands-on SIEM and XDR tooling, ideally Microsoft Sentinel and Microsoft Defender for Endpoint Detection engineering, detection-as-code, KQL, security content and alert logic Security telemetry, logging pipelines, data quality and telemetry coverage improvement Cloud security engineering and scalable security architecture design Automation, SOAR ...

Threat Intelligence Analyst

Location
City of Westminster, England, United Kingdom
sharing platforms, and dark web monitoring tools Correlating external intelligence with internal security events using Microsoft Sentinel and Microsoft Defender Developing and maintaining advanced KQL queries to support threat hunting, detection engineering, and incident investigation activities Producing actionable threat intelligence reports, threat actor profiles, IoCs, and executive briefings Supporting … methodologies, and intelligence frameworks such as MITRE ATT&CK, the Diamond Model, and Cyber Kill Chain Advanced knowledge of Microsoft Sentinel, Microsoft Defender, and KQL for threat hunting and investigation Experience working with threat intelligence platforms and dark web monitoring solutions, such as DarkIQ or equivalent Strong analytical skills with ...

Principal Security Engineer

Hiring Organisation
Hastings Direct
Location
Bexhill, East Sussex, United Kingdom
Salary
£ 80 K
We’re a digital insurance provider with ambitious plans to become The Best and Biggest in the UK market. Over the past few years, we've made significant investments in our data and tech capabilities ...

Principal Security Engineer

Hiring Organisation
Hastings Direct
Location
Bexhill-on-Sea, East Sussex, UK
Employment Type
Full-time
We're a digital insurance provider with ambitious plans to become The Best and Biggest in the UK market. Over the past few years, we've made significant investments in our data and tech capabilities ...

SOC Analyst - Active SC required

Location
Essex, England, United Kingdom
Experience within a Security Operations Centre (SOC) Proficiency with IBM QRadar SIEM for monitoring and incident response Familiarity with common query languages, preferably KQL Understanding of security processes and controls in enterprise environments Ability to work independently with minimal supervision Technical skills in Microsoft Defender, Microsoft Sentinel ...

Cyber Security Analyst - Microsoft Security / IAM - Contract

Hiring Organisation
Searchability
Location
Bristol, Avon, United Kingdom
Employment Type
Full-Time
Salary
£400.00 - £500.00 per day
Working with Entra ID, MFA, Conditional Access and RBAC Using Microsoft Sentinel to monitor and investigate security events and incidents Writing and working with KQL queries Investigating suspicious activity, security incidents and emerging threats Supporting vulnerability management and remediation activity Working across the wider Microsoft security ecosystem Identifying opportunities … with: Microsoft Entra ID/Azure AD Identity & Access Management (IAM) Conditional Access Multi-Factor Authentication (MFA) Role-Based Access Control (RBAC) Microsoft Sentinel KQL/custom SIEM queries Microsoft 365/Microsoft security technologies Security incident investigation and remediation Vulnerability management Network and infrastructure security Windows and Linux environments ...

Senior SOC Manager – Managed Cyber Defence

Location
Glasgow, Scotland, United Kingdom
Line of Service Assurance Industry/Sector Not Applicable Specialism Risk Management Level Senior Manager Job Description & Summary About the role: We are seeking a Senior Manager to lead the day-to-day technical delivery ...

Principal Security Engineer

Location
Leicester, England, United Kingdom
Principal Security Engineer page is loaded## Principal Security Engineerlocations: Bexhill: Leicestertime type: Full timeposted on: Posted Todayjob requisition id: 60013362We’re a digital insurance provider with ambitious plans to become The Best and Biggest in ...

Security Engineer - Microsoft Defender & Sentinel

Hiring Organisation
LT Harper Recruitment Group
Location
England, United Kingdom
implement, maintain and improve their security environments. This is a hands-on role where you’ll gain exposure to Microsoft Defender, Microsoft Sentinel, KQL, cloud security and security automation, while working alongside experienced engineers and SOC teams. What You'll Do Deploy and support Microsoft security technologies, particularly Defender … Sentinel. Help assess and improve customer security configurations and environments. Use KQL, scripting and automation to improve security operations. Support SIEM, detection and incident response activities. Investigate technical issues and analyse security data and logs. Work with customers and internal teams to deliver security projects. Produce clear technical documentation ...

Cyber Security Analyst – Microsoft Security / IAM – Contract

Location
West of England, England, United Kingdom
Working with Entra ID, MFA, Conditional Access and RBAC Using Microsoft Sentinel to monitor and investigate security events and incidents Writing and working with KQL queries Investigating suspicious activity, security incidents and emerging threats Supporting vulnerability management and remediation activity Working across the wider Microsoft security ecosystem Identifying opportunities … Microsoft Entra ID/Azure AD Identity andamp; Access Management (IAM) Conditional Access Multi-Factor Authentication (MFA) Role-Based Access Control (RBAC) Microsoft Sentinel KQL/custom SIEM queries Microsoft 365/Microsoft security technologies Security incident investigation and remediation Vulnerability management Network and infrastructure security Windows and Linux environments ...

Microsoft Azure Cybersecurity Advisor

Location
Greater London, England, United Kingdom
guidance, helping customers optimize their security defenses and mitigate risks effectively. Microsoft Focus: Utilize your knowledge of Microsoft security products, including Azure, Microsoft Sentinel, KQL, and the Microsoft Defender suite, to offer tailored recommendations and solutions. Relationship Building: Build and nurture strong relationships with customers, acting as a reliable … business and providing informal leadership in cyber security matters. Strong understanding of Microsoft security products and technologies, with proficiency in Azure, Microsoft Sentinel, KQL, and the Microsoft Defender suite or related product lines. Deep understanding of attacker tradecraft and security hardening techniques, enabling you to offer valuable insights and recommendations ...

Senior Security Engineer - Contract

Hiring Organisation
Flagstone
Location
London, United Kingdom
Salary
£ 80 K
What is Flagstone Flagstone is many things. An online savings platform, reinventing how individuals, businesses, and charities manage, protect, and grow their cash. A diverse group of people, bound by a collaborative spirit, and shared ...

Cyber Security Engineer

Location
Greater London, England, United Kingdom
remediation planning, reporting, and automation. Security incident triage, investigation, and response. Microsoft Defender, Entra ID/Active Directory, Conditional Access, and related controls. SIEM query building and KQL. Ransomware resilience, including backup and network segmentation. Cyber Essentials Plus and wider security maturity initiatives. AI, Copilot, Purview, and data security … incident response, and security operations. Microsoft security experience, especially Defender and identity/security controls. SIEM experience and confidence writing or working with queries. KQL is desirable. Someone who is self-sufficient, curious, and comfortable improving processes rather than simply following them. CompTIA Security+ or an equivalent baseline certification. Package ...

Lead Security Analyst

Location
United Kingdom
bench of analysts who can operate at the same standard. Key responsibilities Set the detection engineering standard — author, tune, and peer‐review detections in KQL, SPL, EQL, or Sigma; manage the false‐positive backlog; map coverage to MITRE ATT&CK; and train L1/L2 analysts to write and tune … Security Manager (CISM) CompTIA Advanced Security Practitioner (CASP+) Experience leading detection engineering in a SOC or similar environment— including writing and tuning detections in KQL, SPL, EQL, or Sigma, and managing coverage against MITRE ATT&CK Experience designing or improving a log and telemetry pipeline, including application‐level telemetry from ...

Senior Modern Workplace Engineer

Hiring Organisation
Galliford Try
Location
Hinckley, Leicestershire, United Kingdom
Salary
£ 60 K
Note for Recruitment Agencies:We prefer to hire directly and we will be in touch with our PSL Agencies if this role is eligible for release.We do not accept speculative CVs from agencies. If speculative ...

Modern Workplace Engineer

Location
Hinckley and Bosworth, England, United Kingdom
We are looking for a highly skilled Senior Modern Workplace Engineer to join our established Modern Workplace team. This is a senior technical position with responsibility for helping lead, support and continually improve an estate ...

Senior Modern Workplace Engineer

Location
Hinckley, England, United Kingdom
Role Title: Senior Modern Workplace Engineer Business Unit: Group Services Location: Hybrid working from our Leicester, Hinckley or Solihull offices. Applicants should be within reasonable commuting distance of one of these locations. Role Overview We ...

Hybrid Cyber Security Engineer — Lead Vulnerability & AI Security

Location
Greater London, England, United Kingdom
Gravitas Group in London is seeking a Cyber Security Engineer to lead and implement security controls across the organisation. This 12-month FTC focuses on hardening the security posture, delivering projects, and ensuring systems remain ...

Senior Application Security Engineer

Location
Greater London, England, United Kingdom
We’re looking for a Senior Application Security Engineer to join our expanding Information Security team. If you are a hands‐on AppSec expert who enjoys working deep in the SDLC, partnering with talented engineers ...

Security Engineer – Endpoint & Data Protection

Hiring Organisation
NTT DATA
Location
London, United Kingdom
Salary
£ 60 K
prevent unauthorized data sharing and mitigate data leakage risks.Leveraging Microsoft Defender for endpoint monitoring, threat hunting, and incident response.Performing advanced threat investigations using KQL queries and Defender portals.Acting as a liaison for external services such as Microsoft Defender Experts for proactive threat hunting.Supporting vulnerability management initiatives using tools like Qualys … Purview.Configure and monitor policies to detect, investigate, and act on malicious or unintentional activities.Experience with Microsoft Defender for endpoint security and threat hunting.Familiarity with KQL for advanced threat investigations.Experience in managing and monitoring Zscaler and Proofpoint.Strong knowledge of vulnerability management tools such as Qualys or similar.Understanding of CIS Benchmarks ...

Detection Content Engineer: KQL & Sentinel Automation

Location
Greater London, England, United Kingdom
threat-informed research, design scalable automation for onboarding and enrichment, and advise clients on detection logic with strong MS security stack skills and deep KQL expertise. #J-18808-Ljbffr ...