76 to 100 of 125 Kusto Query Language Jobs

Cyber Operations Security Engineer

Hiring Organisation
Softcat
Location
Marlow, Buckinghamshire, United Kingdom
Salary
£ 80 K
efficiency across the platforms in use and surrounding technical practicesDeliver end‐to‐end SIEM/Sentinel engineering by onboarding customers, configuring data connectors, integrations, KQL, automation, dashboards and reporting.Implement tuning, enrichment and optimisation across Sentinel and align with other SIEM tools.Maintain SIEM ingestion pipeline reliability by investigating and resolving issues ...

Cyber Operations Security Engineer

Location
Manchester, England, United Kingdom
across the platforms in use and surrounding technical practices Deliver end‐to‐end SIEM/Sentinel engineering by onboarding customers, configuring data connectors, integrations, KQL, automation, dashboards and reporting. Implement tuning, enrichment and optimisation across Sentinel and align with other SIEM tools. Maintain SIEM ingestion pipeline reliability by investigating ...

Security Detection & Response Specialist

Location
Chester, England, United Kingdom
experience with log analysis and telemetry interpretation, including familiarity with querying or analyzing data using tools such as SIEM platforms or query languages (KQL, SPL, SQL, or similar) Exposure to security platforms and technologies such as SIEM, EDR/XDR, identity systems, or cloud environments Foundational understanding of common ...

Senior SOC Analyst

Location
England, United Kingdom
confirm investigation workflows and expected outcomes. Analyse attacker tactics, techniques and procedures (TTPs) and ensure detection content remains aligned with emerging threats. Utilise KQL, SPL, SQL, log analysis, event correlation, and telemetry investigation to validate detection's and support investigations. Support continuous improvement of detection and response capabilities. Stakeholder Management … understanding of attacker tactics, techniques and procedures (TTPs). Experience mapping detections to recognised threat frameworks such as MITRE ATT&CK . Experience using KQL, SPL, SQL , or similar query languages for investigation, threat hunting, and alert validation. Ability to define escalation criteria and investigation workflows. Experience working across ...

Threat Intelligence Analyst: Hunt, Detect, and Respond

Location
Greater London, England, United Kingdom
global threat landscapes, analyse intel from OSINT, dark web sources, and feeds, and support incident response for manufacturing and logistics sectors. You will develop KQL queries for threat hunting, produce actionable reports, and collaborate with SOC teams to strengthen detection and response using Microsoft Sentinel and Defender. #J-18808-Ljbffr ...

Cyber Security Operations Lead

Hiring Organisation
Sanderson Recruitment
Location
United Kingdom
Employment Type
Contract
Contract Rate
GBP 550 - 575 Daily
Cyber Security Operations - 6 months - Umbrella - 2 days on site in Head Office per week - £550/£575 Sentinel/Defender XDR and KQL proficient Able to pick up new tooling Outstanding communication skills Nice to haves but not essential Proofpoint, Tenable, Secure web gateway, purview. Role is monitor ...

Remote UK: Threat Detection Content Engineer

Location
United Kingdom
candidates will have 5-8 years in detection engineering or related roles, with deep expertise in Microsoft Sentinel, 365 Defender, Logic Apps, and strong KQL skills. #J-18808-Ljbffr ...

Cyber Security Operations Lead

Hiring Organisation
Sanderson Recruitment
Location
South West, United Kingdom
Employment Type
Contract
Contract Rate
£550 - £575 per day
Cyber Security Operations - 6 months - Umbrella - 2 days on site in Head Office per week - £550/£575 Sentinel/Defender XDR and KQL proficient Able to pick up new tooling Outstanding communication skills Nice to haves but not essential Proofpoint, Tenable, Secure web gateway, purview. Role is monitor ...

Cyber Security Operations Lead

Hiring Organisation
Sanderson
Location
South West England, United Kingdom
Employment Type
Full-Time
Salary
£550.00 - £575.00 per day
Cyber Security Operations - 6 months - Umbrella - 2 days on site in Head Office per week - £550/£575 Sentinel/Defender XDR and KQL proficient Able to pick up new tooling Outstanding communication skills Nice to haves but not essential Proofpoint, Tenable, Secure web gateway, purview. Role is monitor ...

Cloud FinOps Analyst

Location
Tonbridge, England, United Kingdom
models and platform fundamentals (Azure, Snowflake, Kubecost desirable). Experience with FinOps practices and cost management tools, particularly Kubecost and cloud‐native cost portals (KQL desirable). Demonstrated ability to work cross‐functionally with Finance and technical teams to support cost visibility and decision‐making #J-18808-Ljbffr ...

Cloud FinOps Analyst

Hiring Organisation
Manufacturing Recruitment Limited
Location
City of London, London, United Kingdom
Employment Type
Permanent
Salary
£60,000
models and platform fundamentals (Azure, Snowflake, Kubecost desirable). Experience with FinOps practices and cost management tools, particularly Kubecost and cloud-native cost portals (KQL desirable). Demonstrated ability to work cross-functionally with Finance and technical teams to support cost visibility and decision-making. ...

Cloud FinOps Analyst

Hiring Organisation
Hastings Direct
Location
Bexhill, East Sussex, United Kingdom
Salary
£ 70 K
finding opportunities to drive value Fundamental understanding of a cloud platform and its usage and cost dynamics, with knowledge of Azure, Snowflake, Kubecost and KQL as a plus.What we will give you:Join us and you’ll find a different way of doing things. We call it the 4Cs. ...

Threat Detection Engineer - Hybrid / Remote

Hiring Organisation
Additional Resources
Location
London, United Kingdom
Salary
£ 70 K
maintain and tune the detection catalogueBuild automated reporting dashboards using Microsoft Sentinel workbooksSupport security initiatives including ISO 27001 activities and KQL-based tasksEnsure monitoring coverage across cloud platforms, SaaS apps, and internal systemsContribute to documentation of processes, tools, and detection logicWhat You’ll BringMust-Have Skills & Experience:Previously worked … Threat Detection Engineer or in a similar role.Strong proficiency in KQL and hands-on experience with Microsoft SentinelFamiliarity with Microsoft Defender tools (Endpoint & O365)Exposure to Azure cloud logging and Kubernetes environmentsKnowledge of attacker TTPs and MITRE ATT&CK frameworksProactive, collaborative, and innovative mindsetDesirable/Nice-to-Have:Experience with ...

Senior Cyber Security Analyst

Hiring Organisation
Tria Recruitment
Location
London, United Kingdom
Salary
£ 80 K
documentation aligned to industry best practice.Detection Engineering & Security AutomationConfigure, optimise and continuously improve Microsoft Sentinel and Microsoft Defender technologies.Develop and tune detection logic using KQL to identify emerging threats and attacker behaviours.Build and maintain automated SOAR workflows using Logic Apps and related technologies.Integrate Microsoft security tooling with third-party technologies … Defender Vulnerability Management.Experience managing stakeholder communications during high-severity incidents.Strong understanding of attacker tactics, techniques and procedures (TTPs).Technical SkillsStrong Microsoft security ecosystem expertise.Advanced KQL experience for investigations, detections and reporting.Experience building automation workflows using Logic Apps or similar technologies.Knowledge of cloud security principles across Azure and ideally ...

Senior Cyber Security Analyst

Hiring Organisation
Tria Recruitment
Location
London, UK
Employment Type
Full-time
industry best practice. Detection Engineering & Security AutomationConfigure, optimise and continuously improve Microsoft Sentinel and Microsoft Defender technologies. Develop and tune detection logic using KQL to identify emerging threats and attacker behaviours. Build and maintain automated SOAR workflows using Logic Apps and related technologies. Integrate Microsoft security tooling with third-party … Experience managing stakeholder communications during high-severity incidents. Strong understanding of attacker tactics, techniques and procedures (TTPs).Technical SkillsStrong Microsoft security ecosystem expertise. Advanced KQL experience for investigations, detections and reporting. Experience building automation workflows using Logic Apps or similar technologies. Knowledge of cloud security principles across Azure and ideally ...

Security Detection & Response Specialist

Hiring Organisation
Bank of America
Location
Chester, Cheshire, United Kingdom
Salary
£ 70 K
experience with log analysis and telemetry interpretation, including familiarity with querying or analyzing data using tools such as SIEM platforms or query languages (KQL, SPL, SQL, or similar)Exposure to security platforms and technologies such as SIEM, EDR/XDR, identity systems, or cloud environmentsFoundational understanding of common attacker ...

SIEM Engineer

Location
Reading, England, United Kingdom
engineering and Project Amur/ECAF compliance. Scope Onboard and integrate log sources into Sentinel; build custom parsers and data transformations Design and optimise KQL queries; build and tune analytic rules and detection logic Develop Logic Apps/SOAR workflows to automate response Implement CI/CD pipelines (Azure DevOps … positives Key Skills Active SC Clearance (Essential) Strong Microsoft Sentinel engineering, administration and optimisation experience Log source onboarding, custom parsers and data normalisation Advanced KQL development and optimisation Analytic rule/detection logic design and tuning Logic Apps, Playbooks and SOAR automation Azure DevOps/Git CI/CD pipeline ...

Cloud Platform Security Engineer Software engineering London

Location
Greater London, England, United Kingdom
remediation of misconfigurations and vulnerabilities against CIS, NIST, and PCI DSS benchmarks. Security Monitoring Fine tune, and maintain modern SIEM platform (e.g. Sentinel) including KQL detection rules, workbooks, logging pipelines, and AI-assisted alert triage. Map detection coverage against MITRE ATT&CK tactics and techniques. Identify and close visibility gaps … security or other cloud native tooling. Experience with security tools: Microsoft Sentinel, SentinelOne, Netskope, Flashpoint, Wiz or similar tooling. Strong Microsoft Sentinel expertise: KQL, detection rules, workbooks, and logging pipelines. Working knowledge of DLP and threat intelligence monitoring. Experience applying AI/ML to security workflows – automated triage, behavioural analytics ...

Cloud Security Engineer

Location
Leicester, England, United Kingdom
Welcome to Hastings Direct We’re a digital insurance provider with ambitious plans to become The Best and Biggest in the UK market. Over the past few years, we've made significant investments in our ...

Cloud Security Engineer

Hiring Organisation
Hastings Direct
Location
Bexhill, East Sussex, United Kingdom
Salary
£ 70 K
Welcome to Hastings Direct We’re a digital insurance provider with ambitious plans to become The Best and Biggest in the UK market. Over the past few years, we've made significant investments in our ...

Threat Detection Engineer

Hiring Organisation
Millennium Management
Location
London, United Kingdom
Salary
£ 100 K
equivalent demonstrable experience.3 years’ experience working in a security engineering role, financial industry experience preferred.Experience in creating detections in modern query languages (KQL, SQL, SPL).Possesses security certifications (Security+, OSCP, CISSP, CEH, GCIA, GCIH).Experience with modern security tooling across security domains; network, endpoint, data, identity and cloud.Experience ...

Threat Detection Engineer

Hiring Organisation
Millennium Management
Location
London, UK
Employment Type
Full-time
equivalent demonstrable experience.3 years' experience working in a security engineering role, financial industry experience preferred. Experience in creating detections in modern query languages (KQL, SQL, SPL).Possesses security certifications (Security+, OSCP, CISSP, CEH, GCIA, GCIH).Experience with modern security tooling across security domains; network, endpoint, data, identity and cloud. ...

Senior Sales Engineer

Location
Greater London, England, United Kingdom
Okta, endpoint telemetry, etc.) Familiarity with detection frameworks (MITRE ATT&CK) and threat modeling Comfort with APIs, scripting (Python, Bash), and query languages (KQL, SPL, SQL) Able to clearly explain complex technical and security concepts to both technical and non-technical audiences Trusted, credible, and customer-oriented in high ...

Cyber Security Threat Hunter – 11832SR1

Location
West of England, England, United Kingdom
Experience translating hunts and red team findings into practical detections and improvements (signal selection, tuning, suppression/thresholding, entity mapping, documentation, and operational handoff) KQL depth and query performance: Comfortable using joins/unions, parsing, time-windowing, summarisation, Essential baselining, and performance-aware query patterns for large datasets ...

Cyber Security Threat Hunter – 11832SR1

Location
City Of London, England, United Kingdom
Experience translating hunts and red team findings into practical detections and improvements (signal selection, tuning, suppression/thresholding, entity mapping, documentation, and operational handoff) KQL depth and query performance: Comfortable using joins/unions, parsing, time-windowing, summarisation, Essential baselining, and performance-aware query patterns for large datasets ...