12 of 12 Remote/Hybrid Permanent Kusto Query Language Jobs

SOC Engineer

Hiring Organisation
Proactive Appointments
Location
Milton Keynes, Buckinghamshire, England, United Kingdom
Employment Type
Full-Time
Salary
£50,000 - £55,000 per annum
documentation, runbooks, and operational procedures. Skills & Experience Experience engineering and supporting SIEM platforms, ideally Microsoft Sentinel. Strong scripting and automation skills (Python, PowerShell, Bash, KQL). Experience with SOAR technologies and security automation. Knowledge of detection engineering and threat hunting. Strong understanding of Windows and Linux logging. Good networking knowledge ...

Principal Microsoft Defender XDR, IRM & Deception Engineer

Hiring Organisation
WTW
Location
Greater London, United Kingdom
Employment Type
Full Time
Skills & Experience: Hands-on experience with: Open-source and commercial deception/honeypot platforms (e.g., Thinkst Canary, T-Pot, Cowrie, OpenCanary, Zscaler Deception) Advanced KQL for detection engineering and threat hunting at scale Detection-as-code, CI/CD of detection content, and security content management Strong knowledge of adversary ...

2nd / 3rd Line Security Analyst

Hiring Organisation
XACT PLACEMENTS LIMITED
Location
Reading, Berkshire, South East, United Kingdom
Employment Type
Permanent
Salary
£60,000
incidents from triage through to closure Hands-on experience writing and tuning SIEM detection logic, with a solid understanding of MITRE ATT&CK and KQL (or equivalent) Practical scripting/automation experience (Python, Logic Apps, REST APIs) or hands-on SOAR platform configuration Working knowledge of several of: Microsoft Sentinel ...

Senior Application Security Engineer / DevSecOps Engineer

Hiring Organisation
Additional Resources
Location
London, United Kingdom
Employment Type
Permanent
Salary
£80000 - £90000/annum
scale medical research. You will work closely with engineering, architecture and cloud teams to integrate security throughout the software development lifecycle. Microsoft Azure and KQL experience are essential, alongside relevant experience in CI/CD, Kubernetes, API security, security-as-code and security automation. This is a hands-on application ...

Threat Detection Engineer - Hybrid / Remote

Hiring Organisation
Additional Resources
Location
Westminster, City of Westminster, Greater London, United Kingdom
Employment Type
Permanent
Salary
£60000 - £80000/annum
maintain and tune the detection catalogue Build automated reporting dashboards using Microsoft Sentinel workbooks Support security initiatives including ISO 27001 activities and KQL-based tasks Ensure monitoring coverage across cloud platforms, SaaS apps, and internal systems Contribute to documentation of processes, tools, and detection logic What You’ll Bring Must … Have Skills & Experience: Previously worked as a Threat Detection Engineer or in a similar role. Strong proficiency in KQL and hands-on experience with Microsoft Sentinel Familiarity with Microsoft Defender tools (Endpoint & O365) Exposure to Azure cloud logging and Kubernetes environments Knowledge of attacker TTPs and MITRE ATT&CK frameworks ...

Threat Detection Engineer - Hybrid / Remote

Hiring Organisation
Additional Resources Ltd
Location
London, South East, England, United Kingdom
Employment Type
Full-Time
Salary
£60,000 - £80,000 per annum
maintain and tune the detection catalogue Build automated reporting dashboards using Microsoft Sentinel workbooks Support security initiatives including ISO 27001 activities and KQL-based tasks Ensure monitoring coverage across cloud platforms, SaaS apps, and internal systems Contribute to documentation of processes, tools, and detection logic What You’ll Bring Must … Have Skills & Experience: Previously worked as a Threat Detection Engineer or in a similar role. Strong proficiency in KQL and hands-on experience with Microsoft Sentinel Familiarity with Microsoft Defender tools (Endpoint & O365) Exposure to Azure cloud logging and Kubernetes environments Knowledge of attacker TTPs and MITRE ATT&CK frameworks ...

Security Engineer (SIEM / XDR) Microsoft Sentinel, Defender - Remote

Hiring Organisation
Nova Source Technologies
Location
United Kingdom
Employment Type
Permanent, Work From Home
Security Engineer (SIEM/XDR) Microsoft Sentinel, Defender, Endpoint, Detection Engineering, Detection-as-Code, KQL, Security Automation, SOAR, Playbooks, Telemetry, Cloud Security, APIs, CI/CD, Infrastructure-as-Code, Python, PowerShell, Windows, Linux, Remote (with UK wide travel) This is an exceptional permanent Security Engineer (SIEM/XDR) opportunity … security engineering or detection engineering experience Hands-on SIEM and XDR tooling Microsoft Sentinel and Microsoft Defender for Endpoint Detection engineering, detection-as-code, KQL, security content and alert logic Automation, SOAR, playbooks, enrichment workflows and response improvement Scripting/programming with Python and/or PowerShell Infrastructure-as-code ...

Senior Detection Engineer (Consultancy)

Hiring Organisation
Fazer Recruitment
Location
Reading, Berkshire, England, United Kingdom
Employment Type
Full-Time
Salary
£85,000 - £90,000 per annum, Negotiable, Inc benefits, OTE
clearance requirement. What you'll be doing Designing and building detection rulesets across SIEM and XDR platforms Writing and tuning detection logic in KQL, cutting false positives without losing coverage Mapping customer log sources against use cases to identify and close coverage gaps Designing use cases aligned to MITRE … workshops, coverage assessments and use case catalogues as customer deliverables What we're looking for Hands-on SIEM engineering experience, ideally Microsoft Sentinel Confident KQL — this is the core of the role SOAR playbook design in Azure Logic Apps, Cortex XSOAR or similar Scripting in Python or PowerShell, and comfort ...

SOC Engineer

Hiring Organisation
4Square Recruitment Ltd
Location
Cambridge, Cambridgeshire, England, United Kingdom
Employment Type
Full-Time
Salary
£40,000 - £80,000 per annum
capability What we’re looking for: Strong SOC/Security Operations experience Hands-on SIEM engineering experience Detection engineering and alert tuning Experience with KQL, SQL or similar query languages Linux experience Threat hunting and incident response experience Scripting/automation using Python and/or PowerShell Exposure ...

SOC Engineer

Hiring Organisation
IBEX RECRUITMENT LTD
Location
North West, United Kingdom
Employment Type
Permanent, Work From Home
Salary
£70,000
Engineering and maintaining Microsoft Sentinel , Defender XDR , and Log Analytics platforms Onboarding and normalising log sources across hybrid/cloud environments Writing and tuning KQL detection rules and analytics logic Building SOAR playbooks (Logic Apps, automation workflows) to reduce manual effort Managing telemetry ingestion, parsers, and data retention for cost … contributing to team development Acting as technical SME during incidents What we're looking for: Deep experience with Microsoft Sentinel , Defender suite , and KQL Strong scripting/automation skills ( PowerShell, Python, Logic Apps ) Solid understanding of MITRE ATT&CK , NCSC CAF , NIST CSF Stakeholder management able to translate technical complexity ...

Senior SOC Engineer

Hiring Organisation
Fazer Recruitment
Location
Cardiff, South Glamorgan, Wales, United Kingdom
Employment Type
Full-Time
Salary
£65,000 - £70,000 per annum, Inc benefits
doing Designing and maintaining the SIEM and XDR platform — data ingestion, log parsing and normalisation, retention, performance Writing and tuning detections in KQL, and building automation to cut manual analyst effort Scripting custom connectors and integrations across the security toolset Leading the technical onboarding of new customers alongside SOC Operations … looking for Around 3–5 years in a Security Operations Centre in an engineering or platform capacity Strong Microsoft Sentinel experience, with confident KQL Hands-on with Microsoft Defender and the wider Microsoft security stack — Intune, Entra ID, Defender for Endpoint Exposure to endpoint tooling such as CrowdStrike, Carbon Black ...

Senior Security Specialist - Threat Hunting

Hiring Organisation
Yolk Recruitment Limited
Location
Cardiff, South Glamorgan, Wales, United Kingdom
Employment Type
Permanent
hypothesis-driven approaches. Investigate complex security incidents and provide technical escalation within the CSOC. Develop and optimise SIEM detections, analytics, use cases and KQL queries to improve threat detection and reduce false positives. Identify gaps in logging, monitoring and telemetry across cloud, identity, endpoint, network and application environments. Analyse threat … related technical discipline. Strong knowledge of cyber security operations, threat hunting, incident response and security monitoring. Experience with SIEM platforms (ideally Microsoft Sentinel), KQL or similar analytics tools. Good understanding of cloud, endpoint, identity, network and application security. Knowledge of security frameworks such as NIST or ISO 27001. Experience Proven ...