Senior Cloud Detection Engineer - Elastic Stack, Sentinel, KQL, EQL
Senior Cloud Detection Engineer Is this your next job Read the full description below to find out, and do not hesitate to make an application.
- AWS & Azure, Elastic Stack, Sentinel, KQL, EQL, SOC
- Global B2B SaaS £120k per annum 6-month Fixed Term Contract 100% remote Outstanding opportunity to join this global B2B SaaS organisation looking for a Senior Cloud Detection Engineer to take ownership of cloud-native detection and response capability. If you thrive in high-scale cloud environments and love building smart detections and automated response workflows, this role gives you real technical impact. What You'll Do: Build and optimise detections in Elastic and Azure Sentinel Develop threat models for AWS & Azure and our global SaaS products Create and maintain incident response playbooks Automate response actions with the Security Team Partner with our external SOC to refine detection strategies Perform threat hunting and analysis across large-scale cloud environments Tune rules to reduce false positives Document detection logic and playbook procedures What You Bring: 5 years in security operations, threat detection, or SOC roles Strong experience with Elastic Stack and/or Azure Sentinel Hands-on detection rule writing in KQL & EQL Deep understanding of AWS & Azure security ideally in a global SaaS context Experience with automation tools (Tines, Shuffler, Tracecat) Familiarity with MITRE xehkeey ATT&CK or similar frameworks Playbook and incident response experience Strong communication skills and ability to work independently SOAR experience PowerShell & Python scripting Cloud-native security tools (CloudTrail, GuardDuty, Security Hub) Security certifications (GIAC, CEH, CISSP, etc.) Experience working with MSSPs or external SOCs £120k per annum 6-month Fixed Term Contract 100% remote
- AWS & Azure, Elastic Stack, Sentinel, KQL, EQL, SOC
- Global B2B SaaS £120k per annum 6-month Fixed Term Contract 100% remote Outstanding opportunity to join this global B2B SaaS organisation looking for a Senior Cloud Detection Engineer to take ownership of cloud-native detection and response capability. If you thrive in high-scale cloud environments and love building smart detections and automated response workflows, this role gives you real technical impact. What You'll Do: Build and optimise detections in Elastic and Azure Sentinel Develop threat models for AWS & Azure and our global SaaS products Create and maintain incident response playbooks Automate response actions with the Security Team Partner with our external SOC to refine detection strategies Perform threat hunting and analysis across large-scale cloud environments Tune rules to reduce false positives Document detection logic and playbook procedures What You Bring: 5 years in security operations, threat detection, or SOC roles Strong experience with Elastic Stack and/or Azure Sentinel Hands-on detection rule writing in KQL & EQL Deep understanding of AWS & Azure security ideally in a global SaaS context Experience with automation tools (Tines, Shuffler, Tracecat) Familiarity with MITRE xehkeey ATT&CK or similar frameworks Playbook and incident response experience Strong communication skills and ability to work independently SOAR experience PowerShell & Python scripting Cloud-native security tools (CloudTrail, GuardDuty, Security Hub) Security certifications (GIAC, CEH, CISSP, etc.) Experience working with MSSPs or external SOCs £120k per annum 6-month Fixed Term Contract 100% remote