1 to 25 of 26 Remote Kusto Query Language Jobs

Sentinel Engineer

Hiring Organisation
Opus Recruitment Solutions
Location
Remote work, United Kingdom
Employment Type
Contract
Contract Rate
£500 - £550/day
into Microsoft Sentinel . Develop and maintain analytics rules, alerting capabilities and detection use cases. Create and optimise Kusto Query Language (KQL) queries for threat hunting, incident investigation and reporting. Integrate and onboard new log sources and security tooling into Sentinel. Configure and support Azure Monitor … Analytics Azure Monitor Microsoft Defender XDR Microsoft Defender for Endpoint Microsoft Defender for Cloud Microsoft 365 Security Kusto Query Language (KQL) Azure Logic Apps Azure Lighthouse Experience Minimum 5 years' experience within Cyber Security, Security Engineering, SOC, SIEM Engineering or related disciplines. Strong understanding of SIEM, SOAR ...

Grafana Observability Engineer

Hiring Organisation
Shaw Daniels Solutions
Location
Other, United Kingdom
Employment Type
Permanent, Work From Home
gaps and improve system observability. Support incident investigation and continuous service improvement. Manage monitoring configuration using Infrastructure as Code (Bicep) and version control. Develop KQL queries, dashboards and visualisations. Define monitoring standards, SLIs and SLOs where appropriate. Produce documentation and share knowledge across the engineering team. Essential Skills & Experience Significant … Grafana administration, dashboards and alerting. Experience with Microsoft Azure, including Azure Monitor, Application Insights and Log Analytics. Strong Kusto Query Language (KQL) skills. Experience monitoring Azure Integration Services, including Function Apps, Logic Apps, Service Bus and API Management. Experience integrating monitoring platforms with ITSM tools such ...

Grafana Observability Engineer (6-month contract)

Hiring Organisation
Shaw Daniels Solutions
Location
Other, United Kingdom
Employment Type
Contract, Work From Home
gaps and improve system observability. Support incident investigation and continuous service improvement. Manage monitoring configuration using Infrastructure as Code (Bicep) and version control. Develop KQL queries, dashboards and visualisations. Define monitoring standards, SLIs and SLOs where appropriate. Produce documentation and share knowledge across the engineering team. Essential Skills & Experience Significant … Grafana administration, dashboards and alerting. Experience with Microsoft Azure, including Azure Monitor, Application Insights and Log Analytics. Strong Kusto Query Language (KQL) skills. Experience monitoring Azure Integration Services, including Function Apps, Logic Apps, Service Bus and API Management. Experience integrating monitoring platforms with ITSM tools such ...

Grafana Observability Engineer (6-month contract)

Hiring Organisation
17918
Location
London, United Kingdom
gaps and improve system observability. Support incident investigation and continuous service improvement. Manage monitoring configuration using Infrastructure as Code (Bicep) and version control. Develop KQL queries, dashboards and visualisations. Define monitoring standards, SLIs and SLOs where appropriate. Produce documentation and share knowledge across the engineering team. Essential Skills & Experience Significant … Grafana administration, dashboards and alerting. Experience with Microsoft Azure, including Azure Monitor, Application Insights and Log Analytics. Strong Kusto Query Language (KQL) skills. Experience monitoring Azure Integration Services, including Function Apps, Logic Apps, Service Bus and API Management. Experience integrating monitoring platforms with ITSM tools such ...

SC Cleared Senior Security Advisor - Remote - Inside IR35

Hiring Organisation
Solirius Limited
Location
London, United Kingdom
Employment Type
Contract
Contract Rate
GBP Annual
public sector inter-agency integrations. 3. Cyber Operations & Threat Defense Oversight SIEM & SOC Alignment: Work alongside SOC/SecOps teams to optimize Microsoft Sentinel (KQL analytics rules, automation playbooks, and log telemetry) to maintain high-signal threat detection. Incident Response Escalation: Serve as a subject matter expert for major cyber ...

Splunk SIEM Engineer

Hiring Organisation
Experis
Location
Knutsford, Cheshire, United Kingdom
Employment Type
Contract
Security & Modern Infrastructure: Proficiency with AWS/Azure cloud security, containerized environments, and SaaS-based security solutions. Programming & Scripting: Advanced skills in Python, PowerShell, KQL, SPL, and SQL for automation, custom integrations, and advanced analytics development. Security Certifications: Professional certifications such as CISSP, GCIH, GCFA, Splunk Certified Architect, or Microsoft ...

SOC Engineer

Hiring Organisation
Proactive Appointments
Location
Milton Keynes, Buckinghamshire, England, United Kingdom
Employment Type
Full-Time
Salary
£55,000 per annum
documentation, runbooks, and operational procedures. Skills & Experience Experience engineering and supporting SIEM platforms, ideally Microsoft Sentinel. Strong scripting and automation skills (Python, PowerShell, Bash, KQL). Experience with SOAR technologies and security automation. Knowledge of detection engineering and threat hunting. Strong understanding of Windows and Linux logging. Good networking knowledge ...

Senior Cyber Consultant

Hiring Organisation
Reed Technology
Location
United Kingdom
Employment Type
Permanent
Salary
GBP Annual
MITRE ATT&CK, develop response playbooks, and implement Detection-as-Code best practices. Key Requirements Experience with SIEM platforms (Microsoft Sentinel preferred) Strong KQL and detection engineering skills SOAR automation and playbook development experience Python and/or PowerShell scripting XDR/EDR experience Knowledge of MITRE ...

Senior Cyber Consultant

Hiring Organisation
Reed Technology
Location
South East, United Kingdom
Employment Type
Permanent
MITRE ATT&CK, develop response playbooks, and implement Detection-as-Code best practices. Key Requirements Experience with SIEM platforms (Microsoft Sentinel preferred) Strong KQL and detection engineering skills SOAR automation and playbook development experience Python and/or PowerShell scripting XDR/EDR experience Knowledge of MITRE ...

Cyber Security Engineer

Hiring Organisation
DCV Technologies Limited
Location
Tring, Hertfordshire, South East, United Kingdom
Employment Type
Contract
Contract Rate
£65,000
operations (coverage management, escalation handling, policy tuning). Familiarity with Microsoft Defender suite and/or Microsoft Sentinel. Scripting/automation skills (PowerShell, KQL, Python). Knowledge of ransomware recovery patterns (immutable backups, restore validation, offline documentation). Exposure to audit/compliance requirements (ISO 27001, NIST, CIS) and evidence ...

Cyber Security Lead

Hiring Organisation
GR Consulting
Location
London, South East, England, United Kingdom
Employment Type
Full-Time
Salary
£100,000 per annum, Inc benefits
Microsoft Sentinel. Proven ability to design and implement Conditional Access, identity protection, and device compliance policies. Experience developing detection rules, analytics, and automation using KQL and Sentinel playbooks. Solid understanding of Zero Trust architecture and practical implementation across enterprise environments. Strong knowledge of endpoint hardening, EDR tuning, and modern attack ...

Senior Security Analyst

Hiring Organisation
Fynity
Location
Leeds, West Yorkshire, United Kingdom
Employment Type
Permanent
Salary
£42000 - £49500/annum
Senior Security Analyst Leeds | Hybrid Working | Microsoft Security | Defender XDR | Sentinel | KQL I'm working with an exciting new client looking to add several experienced Senior Security Analysts to a high-performing SOC team supporting a regulated enterprise environment. This is a genuinely hands-on SOC role where … holidays What you'll be doing Investigating and responding to complex cyber security incidents Threat hunting across Microsoft Defender XDR and Microsoft Sentinel Using KQL to investigate alerts and identify root cause Working closely with Infrastructure, Cloud and Security Engineering teams Running proactive security activities, including vulnerability scanning and security ...

Security Engineer (SIEM / XDR) Microsoft Sentinel, Defender - Remote

Hiring Organisation
Nova Source Technologies
Location
United Kingdom
Employment Type
Permanent
Salary
GBP Annual
Security Engineer (SIEM/XDR) Microsoft Sentinel, Defender, Endpoint, Detection Engineering, Detection-as-Code, KQL, Security Automation, SOAR, Playbooks, Telemetry, Cloud Security, APIs, CI/CD, Infrastructure-as-Code, Python, PowerShell, Windows, Linux, Remote (with UK wide travel) This is an exceptional permanent Security Engineer (SIEM/XDR) opportunity ...

Senior Security Engineering Team Lead

Hiring Organisation
Interface Recruitment
Location
Nationwide, United Kingdom
Employment Type
Permanent
Salary
£82500 - £85500/annum 25 days / PHI / PEN / DIS
including: Microsoft Defender XDR Defender for Endpoint Defender for Identity Microsoft Sentinel Logic Apps SOAR Automation Microsoft Purview Qualys XM Cyber CyberArk Detection Engineering KQL Threat Hunting Platform Engineering About You We're looking for someone who combines deep technical expertise with natural leadership skills. You'll likely have experience ...

Cyber Security Engineer

Hiring Organisation
17918
Location
Cambridge, Cambridgeshire, United Kingdom
just looking at baseline CVSS scores Incident response experience, including investigation, remediation, and root cause analysis Working knowledge of Microsoft Sentinel, Defender, and KQL A background in sys admin or engineering that gives you intuition for how systems actually fail A mindset that security exists to enable the business Comfortable ...

Senior Data Architect - Microsoft Fabric & Azure Platform

Hiring Organisation
Jobleads-UK
Location
Greater London, England, United Kingdom
Microsoft Fabric-based solutions while collaborating closely with clients to ensure effective implementation and performance. The ideal candidate will have expertise in SQL, KQL, and Azure data services, alongside experience in modern data architectures. This position offers a remote-first work environment with occasional travel to London. #J-18808-Ljbffr ...

Threat Detection Engineer - Hybrid / Remote

Hiring Organisation
Additional Resources
Location
Westminster, City of Westminster, Greater London, United Kingdom
Employment Type
Permanent
Salary
£60000 - £80000/annum
maintain and tune the detection catalogue Build automated reporting dashboards using Microsoft Sentinel workbooks Support security initiatives including ISO 27001 activities and KQL-based tasks Ensure monitoring coverage across cloud platforms, SaaS apps, and internal systems Contribute to documentation of processes, tools, and detection logic What You’ll Bring Must … Have Skills & Experience: Previously worked as a Threat Detection Engineer or in a similar role. Strong proficiency in KQL and hands-on experience with Microsoft Sentinel Familiarity with Microsoft Defender tools (Endpoint & O365) Exposure to Azure cloud logging and Kubernetes environments Knowledge of attacker TTPs and MITRE ATT&CK frameworks ...

Threat Detection Engineer - Hybrid / Remote

Hiring Organisation
Additional Resources Ltd
Location
London, South East, England, United Kingdom
Employment Type
Full-Time
Salary
£60,000 - £80,000 per annum
maintain and tune the detection catalogue Build automated reporting dashboards using Microsoft Sentinel workbooks Support security initiatives including ISO 27001 activities and KQL-based tasks Ensure monitoring coverage across cloud platforms, SaaS apps, and internal systems Contribute to documentation of processes, tools, and detection logic What You’ll Bring Must … Have Skills & Experience: Previously worked as a Threat Detection Engineer or in a similar role. Strong proficiency in KQL and hands-on experience with Microsoft Sentinel Familiarity with Microsoft Defender tools (Endpoint & O365) Exposure to Azure cloud logging and Kubernetes environments Knowledge of attacker TTPs and MITRE ATT&CK frameworks ...

Security Engineer (SIEM / XDR) Microsoft Sentinel, Defender - Remote

Hiring Organisation
Nova Source Technologies
Location
United Kingdom
Employment Type
Permanent, Work From Home
Security Engineer (SIEM/XDR) Microsoft Sentinel, Defender, Endpoint, Detection Engineering, Detection-as-Code, KQL, Security Automation, SOAR, Playbooks, Telemetry, Cloud Security, APIs, CI/CD, Infrastructure-as-Code, Python, PowerShell, Windows, Linux, Remote (with UK wide travel) This is an exceptional permanent Security Engineer (SIEM/XDR) opportunity … security engineering or detection engineering experience Hands-on SIEM and XDR tooling Microsoft Sentinel and Microsoft Defender for Endpoint Detection engineering, detection-as-code, KQL, security content and alert logic Automation, SOAR, playbooks, enrichment workflows and response improvement Scripting/programming with Python and/or PowerShell Infrastructure-as-code ...

SOC Engineer

Hiring Organisation
IBEX RECRUITMENT LTD
Location
North West, United Kingdom
Employment Type
Permanent, Work From Home
Salary
£70,000
Engineering and maintaining Microsoft Sentinel , Defender XDR , and Log Analytics platforms Onboarding and normalising log sources across hybrid/cloud environments Writing and tuning KQL detection rules and analytics logic Building SOAR playbooks (Logic Apps, automation workflows) to reduce manual effort Managing telemetry ingestion, parsers, and data retention for cost … contributing to team development Acting as technical SME during incidents What we're looking for: Deep experience with Microsoft Sentinel , Defender suite , and KQL Strong scripting/automation skills ( PowerShell, Python, Logic Apps ) Solid understanding of MITRE ATT&CK , NCSC CAF , NIST CSF Stakeholder management able to translate technical complexity ...

SOC Engineer

Hiring Organisation
17918
Location
London, United Kingdom
Engineering and maintaining Microsoft Sentinel , Defender XDR , and Log Analytics platforms Onboarding and normalising log sources across hybrid/cloud environments Writing and tuning KQL detection rules and analytics logic Building SOAR playbooks (Logic Apps, automation workflows) to reduce manual effort Managing telemetry ingestion, parsers, and data retention for cost … contributing to team development Acting as technical SME during incidents What we're looking for: Deep experience with Microsoft Sentinel , Defender suite , and KQL Strong scripting/automation skills ( PowerShell, Python, Logic Apps ) Solid understanding of MITRE ATT&CK , NCSC CAF , NIST CSF Stakeholder management able to translate technical complexity ...

Lead Security Analyst

Hiring Organisation
Hackajob Ltd
Location
Bristol, Avon, South West, United Kingdom
Employment Type
Permanent, Part Time, Work From Home
Salary
£80,000
bench of analysts who can operate at the same standard. Key Responsibilities Set the detection engineering standard - author, tune, and peer-review detections in KQL, SPL, EQL, or Sigma; manage the false-positive backlog; map coverage to MITRE ATT&CK; and train L1/L2 analysts to write and tune … Security Manager (CISM) CompTIA Advanced Security Practitioner (CASP+) Experience leading detection engineering in a SOC or similar environment - including writing and tuning detections in KQL, SPL, EQL, or Sigma, and managing coverage against MITRE ATT&CK Experience designing or improving a log and telemetry pipeline, including application-level telemetry from ...

Senior SOC Analyst - Hybrid / London

Hiring Organisation
Interface Recruitment
Location
London, United Kingdom
Employment Type
Permanent
Salary
£58600/annum 26 days hols / Pen / Health / DISx4
Monitoring security events across cloud, endpoint, identity and network environments Threat hunting and proactive security investigations Querying and analysing data using KQL within Microsoft Sentinel Working with Microsoft Defender XDR technologies Supporting vulnerability management and security posture improvements Detection engineering, alert tuning and security tooling optimisation Producing technical reports … Senior SOC Analyst SOC Analyst Cyber Security Analyst Security Analyst Security Operations Analyst Incident Response Analyst Blue Team Analyst Experience with Microsoft Sentinel, KQL and the wider Microsoft security ecosystem would be highly advantageous. Package £48,654.60 base salary £9,965.40 shift allowance 4 on/4 off 12-hour ...

Senior SOC Analyst - Hybrid / Bristol

Hiring Organisation
Interface Recruitment
Location
Bristol, City of Bristol, United Kingdom
Employment Type
Permanent
Salary
£58600/annum 26 days hols / Pen / Health / DISx4
Monitoring security events across cloud, endpoint, identity and network environments Threat hunting and proactive security investigations Querying and analysing data using KQL within Microsoft Sentinel Working with Microsoft Defender XDR technologies Supporting vulnerability management and security posture improvements Detection engineering, alert tuning and security tooling optimisation Producing technical reports … Senior SOC Analyst SOC Analyst Cyber Security Analyst Security Analyst Security Operations Analyst Incident Response Analyst Blue Team Analyst Experience with Microsoft Sentinel, KQL and the wider Microsoft security ecosystem would be highly advantageous. Package £48,654.60 base salary £9,965.40 shift allowance 4 on/4 off 12-hour ...

Senior SOC Analyst - Hybrid / Leeds

Hiring Organisation
Interface Recruitment
Location
Leeds, West Yorkshire, United Kingdom
Employment Type
Permanent
Salary
£58600/annum 26 days hols / Pen / Health / DISx2
Monitoring security events across cloud, endpoint, identity and network environments Threat hunting and proactive security investigations Querying and analysing data using KQL within Microsoft Sentinel Working with Microsoft Defender XDR technologies Supporting vulnerability management and security posture improvements Detection engineering, alert tuning and security tooling optimisation Producing technical reports … Senior SOC Analyst SOC Analyst Cyber Security Analyst Security Analyst Security Operations Analyst Incident Response Analyst Blue Team Analyst Experience with Microsoft Sentinel, KQL and the wider Microsoft security ecosystem would be highly advantageous. Package £48,654.60 base salary £9,965.40 shift allowance 4 on/4 off 12-hour ...