|
26 to 50 of 61 Kusto Query Language Jobs in East Anglia
stevenage, east anglia, United Kingdom Hybrid / WFH Options Net Talent
alerts, and system logs for signs of suspicious activity or security breaches. Requirements Proven experience with Microsoft Sentinel, Defender for Endpoint, Defender for Identity KQL experience In depth understanding of PCAP analysis using Wireshark or equivalent. Network engineering/network admin OT operations/security (optional, but a bonus) What More ❯
norwich, east anglia, United Kingdom Hybrid / WFH Options Net Talent
alerts, and system logs for signs of suspicious activity or security breaches. Requirements Proven experience with Microsoft Sentinel, Defender for Endpoint, Defender for Identity KQL experience In depth understanding of PCAP analysis using Wireshark or equivalent. Network engineering/network admin OT operations/security (optional, but a bonus) What More ❯
bedford, east anglia, United Kingdom Hybrid / WFH Options Net Talent
alerts, and system logs for signs of suspicious activity or security breaches. Requirements Proven experience with Microsoft Sentinel, Defender for Endpoint, Defender for Identity KQL experience In depth understanding of PCAP analysis using Wireshark or equivalent. Network engineering/network admin OT operations/security (optional, but a bonus) What More ❯
colchester, east anglia, United Kingdom Hybrid / WFH Options Net Talent
alerts, and system logs for signs of suspicious activity or security breaches. Requirements Proven experience with Microsoft Sentinel, Defender for Endpoint, Defender for Identity KQL experience In depth understanding of PCAP analysis using Wireshark or equivalent. Network engineering/network admin OT operations/security (optional, but a bonus) What More ❯
peterborough, east anglia, United Kingdom Hybrid / WFH Options Net Talent
alerts, and system logs for signs of suspicious activity or security breaches. Requirements Proven experience with Microsoft Sentinel, Defender for Endpoint, Defender for Identity KQL experience In depth understanding of PCAP analysis using Wireshark or equivalent. Network engineering/network admin OT operations/security (optional, but a bonus) What More ❯
basildon, east anglia, United Kingdom Hybrid / WFH Options Net Talent
alerts, and system logs for signs of suspicious activity or security breaches. Requirements Proven experience with Microsoft Sentinel, Defender for Endpoint, Defender for Identity KQL experience In depth understanding of PCAP analysis using Wireshark or equivalent. Network engineering/network admin OT operations/security (optional, but a bonus) What More ❯
chelmsford, east anglia, United Kingdom Hybrid / WFH Options Net Talent
alerts, and system logs for signs of suspicious activity or security breaches. Requirements Proven experience with Microsoft Sentinel, Defender for Endpoint, Defender for Identity KQL experience In depth understanding of PCAP analysis using Wireshark or equivalent. Network engineering/network admin OT operations/security (optional, but a bonus) What More ❯
cambridge, east anglia, United Kingdom Hybrid / WFH Options Net Talent
alerts, and system logs for signs of suspicious activity or security breaches. Requirements Proven experience with Microsoft Sentinel, Defender for Endpoint, Defender for Identity KQL experience In depth understanding of PCAP analysis using Wireshark or equivalent. Network engineering/network admin OT operations/security (optional, but a bonus) What More ❯
watford, hertfordshire, east anglia, United Kingdom Hybrid / WFH Options Net Talent
alerts, and system logs for signs of suspicious activity or security breaches. Requirements Proven experience with Microsoft Sentinel, Defender for Endpoint, Defender for Identity KQL experience In depth understanding of PCAP analysis using Wireshark or equivalent. Network engineering/network admin OT operations/security (optional, but a bonus) What More ❯
hemel hempstead, east anglia, United Kingdom Hybrid / WFH Options Net Talent
alerts, and system logs for signs of suspicious activity or security breaches. Requirements Proven experience with Microsoft Sentinel, Defender for Endpoint, Defender for Identity KQL experience In depth understanding of PCAP analysis using Wireshark or equivalent. Network engineering/network admin OT operations/security (optional, but a bonus) What More ❯
luton, bedfordshire, east anglia, United Kingdom Hybrid / WFH Options Net Talent
alerts, and system logs for signs of suspicious activity or security breaches. Requirements Proven experience with Microsoft Sentinel, Defender for Endpoint, Defender for Identity KQL experience In depth understanding of PCAP analysis using Wireshark or equivalent. Network engineering/network admin OT operations/security (optional, but a bonus) What More ❯
bedford, east anglia, United Kingdom Hybrid / WFH Options Cloud Decisions
complex Microsoft Sentinel at SMC and enterprise Understanding of security telemetry across identity, endpoint, cloud, and network layers Experience in SIEM content development, including KQL, analytics rules, and custom data connectors Scripting and engineering skills – Python, PowerShell, APIs, Function Apps A background in cyber threat detection, incident response or DFIR … is a real plus Comfortable working in very fast-moving, customer facing delivery environments The Technical Shizzle: Microsoft Sentinel ( KQL, Analytics Rules, Workbooks, Watchlists) Azure Function Apps, Logic Apps, ARM templates PowerShell, Python, REST APIs Log ingestion and parsing across multi platforms (Azure/AWS/GCP, M365, Defender, Entra More ❯
ipswich, east anglia, United Kingdom Hybrid / WFH Options Cloud Decisions
complex Microsoft Sentinel at SMC and enterprise Understanding of security telemetry across identity, endpoint, cloud, and network layers Experience in SIEM content development, including KQL, analytics rules, and custom data connectors Scripting and engineering skills – Python, PowerShell, APIs, Function Apps A background in cyber threat detection, incident response or DFIR … is a real plus Comfortable working in very fast-moving, customer facing delivery environments The Technical Shizzle: Microsoft Sentinel ( KQL, Analytics Rules, Workbooks, Watchlists) Azure Function Apps, Logic Apps, ARM templates PowerShell, Python, REST APIs Log ingestion and parsing across multi platforms (Azure/AWS/GCP, M365, Defender, Entra More ❯
peterborough, east anglia, United Kingdom Hybrid / WFH Options Cloud Decisions
complex Microsoft Sentinel at SMC and enterprise Understanding of security telemetry across identity, endpoint, cloud, and network layers Experience in SIEM content development, including KQL, analytics rules, and custom data connectors Scripting and engineering skills – Python, PowerShell, APIs, Function Apps A background in cyber threat detection, incident response or DFIR … is a real plus Comfortable working in very fast-moving, customer facing delivery environments The Technical Shizzle: Microsoft Sentinel ( KQL, Analytics Rules, Workbooks, Watchlists) Azure Function Apps, Logic Apps, ARM templates PowerShell, Python, REST APIs Log ingestion and parsing across multi platforms (Azure/AWS/GCP, M365, Defender, Entra More ❯
colchester, east anglia, United Kingdom Hybrid / WFH Options Cloud Decisions
complex Microsoft Sentinel at SMC and enterprise Understanding of security telemetry across identity, endpoint, cloud, and network layers Experience in SIEM content development, including KQL, analytics rules, and custom data connectors Scripting and engineering skills – Python, PowerShell, APIs, Function Apps A background in cyber threat detection, incident response or DFIR … is a real plus Comfortable working in very fast-moving, customer facing delivery environments The Technical Shizzle: Microsoft Sentinel ( KQL, Analytics Rules, Workbooks, Watchlists) Azure Function Apps, Logic Apps, ARM templates PowerShell, Python, REST APIs Log ingestion and parsing across multi platforms (Azure/AWS/GCP, M365, Defender, Entra More ❯
cambridge, east anglia, United Kingdom Hybrid / WFH Options Cloud Decisions
complex Microsoft Sentinel at SMC and enterprise Understanding of security telemetry across identity, endpoint, cloud, and network layers Experience in SIEM content development, including KQL, analytics rules, and custom data connectors Scripting and engineering skills – Python, PowerShell, APIs, Function Apps A background in cyber threat detection, incident response or DFIR … is a real plus Comfortable working in very fast-moving, customer facing delivery environments The Technical Shizzle: Microsoft Sentinel ( KQL, Analytics Rules, Workbooks, Watchlists) Azure Function Apps, Logic Apps, ARM templates PowerShell, Python, REST APIs Log ingestion and parsing across multi platforms (Azure/AWS/GCP, M365, Defender, Entra More ❯
basildon, east anglia, United Kingdom Hybrid / WFH Options Cloud Decisions
complex Microsoft Sentinel at SMC and enterprise Understanding of security telemetry across identity, endpoint, cloud, and network layers Experience in SIEM content development, including KQL, analytics rules, and custom data connectors Scripting and engineering skills – Python, PowerShell, APIs, Function Apps A background in cyber threat detection, incident response or DFIR … is a real plus Comfortable working in very fast-moving, customer facing delivery environments The Technical Shizzle: Microsoft Sentinel ( KQL, Analytics Rules, Workbooks, Watchlists) Azure Function Apps, Logic Apps, ARM templates PowerShell, Python, REST APIs Log ingestion and parsing across multi platforms (Azure/AWS/GCP, M365, Defender, Entra More ❯
norwich, east anglia, United Kingdom Hybrid / WFH Options Cloud Decisions
complex Microsoft Sentinel at SMC and enterprise Understanding of security telemetry across identity, endpoint, cloud, and network layers Experience in SIEM content development, including KQL, analytics rules, and custom data connectors Scripting and engineering skills – Python, PowerShell, APIs, Function Apps A background in cyber threat detection, incident response or DFIR … is a real plus Comfortable working in very fast-moving, customer facing delivery environments The Technical Shizzle: Microsoft Sentinel ( KQL, Analytics Rules, Workbooks, Watchlists) Azure Function Apps, Logic Apps, ARM templates PowerShell, Python, REST APIs Log ingestion and parsing across multi platforms (Azure/AWS/GCP, M365, Defender, Entra More ❯
chelmsford, east anglia, United Kingdom Hybrid / WFH Options Cloud Decisions
complex Microsoft Sentinel at SMC and enterprise Understanding of security telemetry across identity, endpoint, cloud, and network layers Experience in SIEM content development, including KQL, analytics rules, and custom data connectors Scripting and engineering skills – Python, PowerShell, APIs, Function Apps A background in cyber threat detection, incident response or DFIR … is a real plus Comfortable working in very fast-moving, customer facing delivery environments The Technical Shizzle: Microsoft Sentinel ( KQL, Analytics Rules, Workbooks, Watchlists) Azure Function Apps, Logic Apps, ARM templates PowerShell, Python, REST APIs Log ingestion and parsing across multi platforms (Azure/AWS/GCP, M365, Defender, Entra More ❯
stevenage, east anglia, United Kingdom Hybrid / WFH Options Cloud Decisions
complex Microsoft Sentinel at SMC and enterprise Understanding of security telemetry across identity, endpoint, cloud, and network layers Experience in SIEM content development, including KQL, analytics rules, and custom data connectors Scripting and engineering skills – Python, PowerShell, APIs, Function Apps A background in cyber threat detection, incident response or DFIR … is a real plus Comfortable working in very fast-moving, customer facing delivery environments The Technical Shizzle: Microsoft Sentinel ( KQL, Analytics Rules, Workbooks, Watchlists) Azure Function Apps, Logic Apps, ARM templates PowerShell, Python, REST APIs Log ingestion and parsing across multi platforms (Azure/AWS/GCP, M365, Defender, Entra More ❯
luton, bedfordshire, east anglia, United Kingdom Hybrid / WFH Options Cloud Decisions
complex Microsoft Sentinel at SMC and enterprise Understanding of security telemetry across identity, endpoint, cloud, and network layers Experience in SIEM content development, including KQL, analytics rules, and custom data connectors Scripting and engineering skills – Python, PowerShell, APIs, Function Apps A background in cyber threat detection, incident response or DFIR … is a real plus Comfortable working in very fast-moving, customer facing delivery environments The Technical Shizzle: Microsoft Sentinel ( KQL, Analytics Rules, Workbooks, Watchlists) Azure Function Apps, Logic Apps, ARM templates PowerShell, Python, REST APIs Log ingestion and parsing across multi platforms (Azure/AWS/GCP, M365, Defender, Entra More ❯
watford, hertfordshire, east anglia, United Kingdom Hybrid / WFH Options Cloud Decisions
complex Microsoft Sentinel at SMC and enterprise Understanding of security telemetry across identity, endpoint, cloud, and network layers Experience in SIEM content development, including KQL, analytics rules, and custom data connectors Scripting and engineering skills – Python, PowerShell, APIs, Function Apps A background in cyber threat detection, incident response or DFIR … is a real plus Comfortable working in very fast-moving, customer facing delivery environments The Technical Shizzle: Microsoft Sentinel ( KQL, Analytics Rules, Workbooks, Watchlists) Azure Function Apps, Logic Apps, ARM templates PowerShell, Python, REST APIs Log ingestion and parsing across multi platforms (Azure/AWS/GCP, M365, Defender, Entra More ❯
hemel hempstead, east anglia, United Kingdom Hybrid / WFH Options Cloud Decisions
complex Microsoft Sentinel at SMC and enterprise Understanding of security telemetry across identity, endpoint, cloud, and network layers Experience in SIEM content development, including KQL, analytics rules, and custom data connectors Scripting and engineering skills – Python, PowerShell, APIs, Function Apps A background in cyber threat detection, incident response or DFIR … is a real plus Comfortable working in very fast-moving, customer facing delivery environments The Technical Shizzle: Microsoft Sentinel ( KQL, Analytics Rules, Workbooks, Watchlists) Azure Function Apps, Logic Apps, ARM templates PowerShell, Python, REST APIs Log ingestion and parsing across multi platforms (Azure/AWS/GCP, M365, Defender, Entra More ❯
cambridge, east anglia, United Kingdom Hays
SIEM detections and security automations. The successful candidate will be proficient in automation and orchestration tools (e.g., SOAR platforms, scripting languages like Python, PowerShell, KQL) and have experience with integrating security tools (e.g., SIEM, EDR, firewalls) APIs, and Case Management tools for data enrichment. Key Skills and Experience Experience contributing … Hub, Sentinel Analytics, Sentinel Automation, Azure Event Hub, Azure Logic Apps Azure Function Apps. Experience in Sentinel/Analytics Rules/Logic App automations KQL Demonstrated ability in cybersecurity, with at least 5 years in a technical role in security operations and/or security software development. Solid understanding of More ❯
bedford, east anglia, United Kingdom Hybrid / WFH Options Context Recruitment
to automate, optimize, and strengthen security operations at scale. A key position within a world-class MSSP, leveraging Microsoft Sentinel, Defender for Endpoint, and KQL to enhance threat detection, response, and security automation. Responsibilities include developing automated security workflows, streamlining investigations, and advancing proactive defense strategies. Key Responsibilities: Design and … monitoring strategies and contribute to the overall SIEM architecture. Experience required: Proven experience working with Microsoft Sentinel and Defender for Endpoint. Strong proficiency in KQL for deep threat hunting and security analytics. Knowledge of SIEM automation, playbooks, and integrations. Experience in cybersecurity operations, threat detection, and incident response. Passion for More ❯
|
|