26 to 38 of 38 Kusto Query Language Jobs in England

Senior SOC Analyst

Location
Greater London, England, United Kingdom
confirm investigation workflows and expected outcomes. Analyse attacker tactics, techniques and procedures (TTPs) and ensure detection content remains aligned with emerging threats. Utilise KQL, SPL, SQL, log analysis, event correlation, and telemetry investigation to validate detection's and support investigations. Support continuous improvement of detection and response capabilities. Stakeholder Management … understanding of attacker tactics, techniques and procedures (TTPs). Experience mapping detections to recognised threat frameworks such as MITRE ATT&CK . Experience using KQL, SPL, SQL , or similar query languages for investigation, threat hunting, and alert validation. Ability to define escalation criteria and investigation workflows. Experience working across ...

Cyber Security Operations Lead

Hiring Organisation
Sanderson Recruitment
Location
South West, United Kingdom
Employment Type
Contract
Contract Rate
£550 - £575 per day
Cyber Security Operations - 6 months - Umbrella - 2 days on site in Head Office per week - £550/£575 Sentinel/Defender XDR and KQL proficient Able to pick up new tooling Outstanding communication skills Nice to haves but not essential Proofpoint, Tenable, Secure web gateway, purview. Role is monitor ...

Cyber Security Operations Lead

Location
London, United Kingdom
Cyber Security Operations - 6 months - Umbrella - 2 days on site in Head Office per week - £550/£575 Sentinel/Defender XDR and KQL proficient Able to pick up new tooling Outstanding communication skills Nice to haves but not essential Proofpoint, Tenable, Secure web gateway, purview. Role is monitor ...

Cyber Security Operations Lead

Hiring Organisation
Sanderson
Location
South West England, United Kingdom
Employment Type
Full-Time
Salary
£550.00 - £575.00 per day
Cyber Security Operations - 6 months - Umbrella - 2 days on site in Head Office per week - £550/£575 Sentinel/Defender XDR and KQL proficient Able to pick up new tooling Outstanding communication skills Nice to haves but not essential Proofpoint, Tenable, Secure web gateway, purview. Role is monitor ...

Cloud FinOps Analyst

Hiring Organisation
Manufacturing Recruitment Limited
Location
City of London, London, United Kingdom
Employment Type
Permanent
Salary
£60,000
models and platform fundamentals (Azure, Snowflake, Kubecost desirable). Experience with FinOps practices and cost management tools, particularly Kubecost and cloud-native cost portals (KQL desirable). Demonstrated ability to work cross-functionally with Finance and technical teams to support cost visibility and decision-making. ...

Cloud Operations Manager

Location
Dudley, England, United Kingdom
including escalation handling, stakeholder communication and corrective action tracking. Ability to report findings, operational analysis, service performance and improvement recommendations in clear and concise language to technical and non-technical stakeholders. Ability to work closely with cross functional teams on shared deployment, release, incident and customer experience objectives. Creative … APIs including Swagger, OAuth2 and ODATA. Experience with Relational DBMS systems including SQL and T-SQL. Experience with Azure Monitoring and Log Analytics, notably KQL, Python and PowerShell. Location: This role may be based in either our Dudley, United Kingdom office or our Plzeň, Czech Republic office. While the position ...

Graduate SOC Analyst

Hiring Organisation
CyPro
Location
City of London, London, United Kingdom
JIRA Service Management. Detection Engineering Develop and implement new detection rules in Microsoft Sentinel aligned to the MITRE ATT&CK framework. Draft and optimise KQL queries for detection and threat hunting. Refine existing detection logic based on false positive analysis and threat evolution. Threat Intelligence & Enrichment Analyse threat intelligence feeds … hour) of Canary Wharf, London Technical Skills Familiarity with scripting and automation development (you do not need to be fluent in any particular coding language, but you should be able to demonstrate an understanding of how scripting and other tools (such as AI agents) can be used to streamline ...

Senior Detection Engineer (Consultancy)

Hiring Organisation
Fazer Recruitment
Location
Reading, Berkshire, United Kingdom
Employment Type
Full-Time
Salary
£85,000 - £90,000 per annum
clearance requirement. What you'll be doing Designing and building detection rulesets across SIEM and XDR platforms Writing and tuning detection logic in KQL, cutting false positives without losing coverage Mapping customer log sources against use cases to identify and close coverage gaps Designing use cases aligned to MITRE … workshops, coverage assessments and use case catalogues as customer deliverables What we're looking for Hands-on SIEM engineering experience, ideally Microsoft Sentinel Confident KQL — this is the core of the role SOAR playbook design in Azure Logic Apps, Cortex XSOAR or similar Scripting in Python or PowerShell, and comfort ...

SOC Analyst - Active SC required

Location
Essex, England, United Kingdom
Experience within a Security Operations Centre (SOC) Proficiency with IBM QRadar SIEM for monitoring and incident response Familiarity with common query languages, preferably KQL Understanding of security processes and controls in enterprise environments Ability to work independently with minimal supervision Technical skills in Microsoft Defender, Microsoft Sentinel ...

Cyber Security Analyst - Microsoft Security / IAM - Contract

Hiring Organisation
Searchability
Location
Bristol, Avon, United Kingdom
Employment Type
Full-Time
Salary
£400.00 - £500.00 per day
Working with Entra ID, MFA, Conditional Access and RBAC Using Microsoft Sentinel to monitor and investigate security events and incidents Writing and working with KQL queries Investigating suspicious activity, security incidents and emerging threats Supporting vulnerability management and remediation activity Working across the wider Microsoft security ecosystem Identifying opportunities … with: Microsoft Entra ID/Azure AD Identity & Access Management (IAM) Conditional Access Multi-Factor Authentication (MFA) Role-Based Access Control (RBAC) Microsoft Sentinel KQL/custom SIEM queries Microsoft 365/Microsoft security technologies Security incident investigation and remediation Vulnerability management Network and infrastructure security Windows and Linux environments ...

SOC Engineer

Hiring Organisation
4Square Recruitment Ltd
Location
Cambridge, Cambridgeshire, United Kingdom
Employment Type
Full-Time
Salary
£40,000 - £80,000 per annum
capability What we’re looking for: Strong SOC/Security Operations experience Hands-on SIEM engineering experience Detection engineering and alert tuning Experience with KQL, SQL or similar query languages Linux experience Threat hunting and incident response experience Scripting/automation using Python and/or PowerShell Exposure ...

Technical Account Manager - Cybersecurity

Location
Greater London, England, United Kingdom
guidance, helping customers optimize their security defenses and mitigate risks effectively. Microsoft Focus Utilize your knowledge of Microsoft security products, including Azure, Microsoft Sentinel, KQL, and the Microsoft Defender suite, to offer tailored recommendations and solutions. Relationship Building Build and nurture strong relationships with customers, acting as a reliable … business and providing informal leadership in cyber security matters. Strong understanding of Microsoft security products and technologies, with proficiency in Azure, Microsoft Sentinel, KQL, and the Microsoft Defender suite or related product lines. Deep understanding of attacker tradecraft and security hardening techniques, enabling you to offer valuable insights and recommendations ...

Performance & Observability Engineer

Location
Greater London, England, United Kingdom
Collaborate with SRE and DevOps teams to optimise CI/CD pipelines for performance improvements. Collaborate with wider IT teams to Implement caching strategies, query optimisation, and autoscaling to enhance system efficiency. Observability Platform Development & Implementation Design and implement end-to-end observability frameworks covering metrics, logs, traces … cloud expenses. Qualifications, Skills and Experience Technical Skills Experience in using and maintaining Observability & APM Tools – Grafana experience is essential Experience of using KQL Performance Testing & Load Testing Cloud & Infrastructure Monitoring – AWS CloudWatch, Azure Monitor, GCP Operations Suite, Kubernetes Observability. Knowledge of Log Aggregation & Analysis – eg: Grafana Loki, Splunk ...