1 to 25 of 28 Remote/Hybrid Kusto Query Language Jobs in the UK excluding London

Microsoft Security Platform Security Engineer

Location
Salford, England, United Kingdom
improvement of Microsoft Sentinel as our central security monitoring and response platform Develop and maintain detection rules, dashboards, workbooks and threat-hunting queries using KQL Create and enhance automated response playbooks using Azure Logic Apps Integrate and optimise Microsoft Defender alerts and security controls Design and implement data classification, sensitivity … Microsoft Purview Experience implementing or managing Data Loss Prevention (DLP), information protection and security monitoring solutions Proficiency in Kusto Query Language (KQL) and security analytics Experience with Azure Logic Apps, automation and Microsoft cloud security technologies Good understanding of cloud security, threat detection, incident response and cyber ...

Cyber Security Specialist (Operational)

Location
Manchester, England, United Kingdom
description attached for full list of responsibilities. Person Specification Knowledge Knowledge of Microsoft Defender, Sentinel, including Kusto Query Language (KQL), threat hunting, analytics rule development, security monitoring, incident investigation and automation capabilities. Education/Qualifications Holds highly developed specialist knowledge and expertise acquired through master's degree ...

Cyber Security Specialist (Operational)

Hiring Organisation
NICE – The National Institute for Health and Care Excellence
Location
Manchester, M1 3BN, United Kingdom
Salary
£57528.00 to £64750.00
description attached for full list of responsibilities. Person Specification Knowledge Desirable Knowledge of Microsoft Defender, Sentinel, including Kusto Query Language (KQL), threat hunting, analytics rule development, security monitoring, incident investigation and automation capabilities. Education/Qualifications Essential Holds highly developed specialist knowledge and expertise acquired through master ...

Security Analyst: 2nd Line

Location
Newcastle upon Tyne, England, United Kingdom
Solid understanding of networking principles and security technologies, including firewalls, WAFs, application gateways and network infrastructure. Experience using Kusto Query Language (KQL) and PowerShell to investigate, automate and improve security operations. Ability to create clear technical documentation, including security playbooks, processes and network diagrams. Self-motivated ...

Managing Engineer - Observability, Pipeline & Analytics (Hybrid)

Location
Belfast City District, Northern Ireland, United Kingdom
transformation initiatives. Desirable Skills: Experience implementing telemetry cost optimization and data reduction strategies at enterprise scale. Knowledge of Kusto Query Language (KQL) and large‐scale analytics platforms. Experience with Cribl, ADX, Datadog Pipelines, Splunk, Sentinel, Kafka, Event Hubs, Open Telemetry, Elastic, Grafana, or similar observability ecosystems. Ability ...

Automation Engineer

Hiring Organisation
Sopra Steria
Location
Farnborough, Hampshire, United Kingdom
Employment Type
Full-Time
Salary
£55,000 - £60,000 per annum
cloud-based engineering principles. It would be great if you had: Experience in Cyber Security, SOC or Security Engineering environments. Microsoft Sentinel experience. KQL, SQL or other query language knowledge. Power BI data modelling, DAX and Power Query experience. Logic Apps, Power Automate or Azure Automation. Terraform ...

L3 SOC Engineer - Belfast

Hiring Organisation
Lorien
Location
City, Belfast, United Kingdom
Employment Type
Permanent
Salary
GBP 60,000 Annual
Response environment Strong security monitoring and threat detection capabilities Eligibility for UK Security Clearance (SC) Experience with technologies such as Microsoft Sentinel, Microsoft Defender, KQL, QRadar, LogRhythm, SOAR platforms and other SIEM tools Strong communication and stakeholder management skills Desirable SC-200 (Microsoft Security Operations Analyst Associate) Microsoft security technology ...

2nd/3rd Line Security Analyst - Reading

Hiring Organisation
Xact Placements Limited
Location
Reading, Berkshire, United Kingdom
Employment Type
Full-Time
Salary
£50,000 - £60,000 per annum
incidents from triage through to closure Hands-on experience writing and tuning SIEM detection logic, with a solid understanding of MITRE ATT&CK and KQL (or equivalent) Practical scripting/automation experience (Python, Logic Apps, REST APIs) or hands-on SOAR platform configuration Working knowledge of several of: Microsoft Sentinel ...

Logs Specialist

Location
Maidenhead, England, United Kingdom
proactively provide technical guidance to unlock more log data volume and user adoption.* Conduct "Best Practice" workshops focused on log-based alerting, DQL (Dynatrace Query Language) proficiency, and dashboarding.## **What will help you succeed****Qualifications & Requirements*** Experience: 5+ years in a domain, specialist, pre-sales, professional services … role, with at least 3 years specifically focused on Log Management or Big Data analytics.* Technical Depth: Advanced proficiency in Query Languages (e.g., Splunk SPL, Kusto QL, SQL, or Lucene).* Deep understanding of Log Ingestion pipelines and "Telemetry Pipelines" (Cribl, BindPlane, Vector).* Hands-on experience with ...

SOC Analyst

Location
Harlow, England, United Kingdom
QRadar SIEM Experience monitoring, triaging, and investigating security incidents Knowledge of incident response lifecycle and root cause analysis Experience with Microsoft Defender (essential) KQL knowledge desirable Ability to work independently and manage complex cyber investigations Technical Exposure: IBM QRadar Microsoft Defender/EDR Microsoft Sentinel (desirable) Microsoft Entra ID/ ...

SOC Analyst (MS Sentinel & Defender, SC Cleared)

Location
Harlow, England, United Kingdom
including Microsoft Sentinel Experience monitoring, triaging, and investigating security incidents Knowledge of incident response lifecycle and root cause analysis Experience with Microsoft Defender (essential) KQL knowledge desirable Ability to work independently and manage complex cyber investigations Technical Exposure: IBM QRadar Microsoft Defender/EDRMicrosoft Sentinel (essential) Microsoft Entra ID/ ...

Azure Platform Architect

Location
Slough, England, United Kingdom
Policy, Management Groups and subscription architecture Azure Migrate and associated discovery tooling Microsoft Defender for Cloud and Microsoft Sentinel Azure Monitor, Log Analytics and KQL Zero Trust architecture High availability and disaster recovery FinOps and cloud cost optimisation Use of GitHub Copilot to accelerate Infrastructure as Code development The Person ...

Senior Security Engineering Consultant

Hiring Organisation
Infosec
Location
Basingstoke, Hampshire, South East, United Kingdom
Employment Type
Permanent, Work From Home
Salary
£80,000
functions, tooling, and detection capabilities. Key Responsibilities: Design and deliver detection rulesets across SIEM and XDR platforms Develop and tune detection logic using KQL or equivalent query languages Design detection use cases aligned to MITRE ATT&CK and real-world attack techniques Map customer log sources to detection … Requirements: Strong hands-on experience with SIEM engineering, including developing and tuning detection rules, with Microsoft Sentinel preferred Experience writing detection logic using KQL or similar query languages Proven experience designing and implementing SOAR automations and playbooks such as Logic Apps, Cortex XSOAR or similar Scripting and automation capability ...

Senior Security Engineering Consultant

Hiring Organisation
Matchtech
Location
Basingstoke, Hampshire, United Kingdom
Salary
£ 70 K
automate their SOC functions, tooling, and detection capabilities.Key Responsibilities:Design and deliver detection rulesets across SIEM and XDR platformsDevelop and tune detection logic using KQL or equivalent query languagesDesign detection use cases aligned to MITRE ATT&CK and real-world attack techniquesMap customer log sources to detection use cases … detection outcomesJob Requirements:Strong hands-on experience with SIEM engineering, including developing and tuning detection rules, with Microsoft Sentinel preferredExperience writing detection logic using KQL or similar query languagesProven experience designing and implementing SOAR automations and playbooks such as Logic Apps, Cortex XSOAR or similarScripting and automation capability using ...

3rd Line Security Analyst

Location
Reading, England, United Kingdom
carry out malware analysis and threat validation. Design, implement and optimise detection content across Microsoft Sentinel, Defender XDR, CrowdStrike and associated platforms, developing advanced KQL queries and analytics rules aligned to MITRE ATT&CK. Act as senior technical owner for security platforms including Microsoft Sentinel, Defender XDR, CrowdStrike Falcon, Entra … Microsoft Defender XDR, CrowdStrike Falcon and associated security technologies. Proven experience in incident response, threat hunting, malware analysis, digital forensics and security investigations. Advanced KQL skills, with the ability to develop and optimise complex detections and threat hunting queries. Strong scripting and automation experience using PowerShell and/or Python ...

SC-Cleared SIEM Engineer — Microsoft Sentinel Expert

Location
Reading, England, United Kingdom
specialist SIEM Engineer with active SC clearance to enhance and automate its Microsoft Sentinel platform. You will onboard log sources, build parsers, optimise KQL queries and design detection logic. The role involves developing Logic Apps/Playbooks and setting up CI/CD pipelines for secure deployments across environments. ...

24/7 SOC Analyst

Location
Basingstoke, England, United Kingdom
Experience with Microsoft Sentinel, Google SecOps or other SIEM platforms. Experience with Defender, CrowdStrike, SentinelOne or other XDR solutions. Ability to query in KQL, CQL, S1QL, XQL or similar languages. Awareness of threat intelligence concepts and application to investigations. Awareness of coding or scripting, with proficiency in at least … language preferred (but not required). Job Specifics Location: This role is home‐based with occasional visits to the office in Basingstoke Hours: 12‐hour shifts: 2 days, 2 nights; 4 days/nights off. Flexibility with hours will be required in the event of a major incident Security ...

Cyber Operations Security Engineer

Hiring Organisation
Softcat
Location
Manchester, Greater Manchester, United Kingdom
Salary
£ 70 K
efficiency across the platforms in use and surrounding technical practicesDeliver end‐to‐end SIEM/Sentinel engineering by onboarding customers, configuring data connectors, integrations, KQL, automation, dashboards and reporting.Implement tuning, enrichment and optimisation across Sentinel and align with other SIEM tools.Maintain SIEM ingestion pipeline reliability by investigating and resolving issues ...

Cyber Operations Security Engineer

Location
Manchester, England, United Kingdom
across the platforms in use and surrounding technical practices Deliver end‐to‐end SIEM/Sentinel engineering by onboarding customers, configuring data connectors, integrations, KQL, automation, dashboards and reporting. Implement tuning, enrichment and optimisation across Sentinel and align with other SIEM tools. Maintain SIEM ingestion pipeline reliability by investigating ...

Cloud FinOps Analyst

Hiring Organisation
Hastings Direct
Location
Bexhill, East Sussex, United Kingdom
Salary
£ 70 K
finding opportunities to drive value Fundamental understanding of a cloud platform and its usage and cost dynamics, with knowledge of Azure, Snowflake, Kubecost and KQL as a plus.What we will give you:Join us and you’ll find a different way of doing things. We call it the 4Cs. ...

SIEM Engineer

Location
Reading, England, United Kingdom
engineering and Project Amur/ECAF compliance. Scope Onboard and integrate log sources into Sentinel; build custom parsers and data transformations Design and optimise KQL queries; build and tune analytic rules and detection logic Develop Logic Apps/SOAR workflows to automate response Implement CI/CD pipelines (Azure DevOps … positives Key Skills Active SC Clearance (Essential) Strong Microsoft Sentinel engineering, administration and optimisation experience Log source onboarding, custom parsers and data normalisation Advanced KQL development and optimisation Analytic rule/detection logic design and tuning Logic Apps, Playbooks and SOAR automation Azure DevOps/Git CI/CD pipeline ...

Cloud Security Engineer

Hiring Organisation
Hastings Direct
Location
Bexhill, East Sussex, United Kingdom
Salary
£ 70 K
Welcome to Hastings Direct We’re a digital insurance provider with ambitious plans to become The Best and Biggest in the UK market. Over the past few years, we've made significant investments in our ...

Cloud Security Engineer

Location
Leicester, England, United Kingdom
Welcome to Hastings Direct We’re a digital insurance provider with ambitious plans to become The Best and Biggest in the UK market. Over the past few years, we've made significant investments in our ...

Security Engineer - Systems Integrator

Location
Cardiff, Wales, United Kingdom
take ownership of security improvements, detection capabilities, and automation across client environments. Responsibilities: Design, implement and optimise security controls. Develop detection capabilities using KQL and Advanced Hunting. Build and maintain Microsoft Sentinel analytical rules. Deploy and manage Content Hub solutions. Tune Microsoft Defender and wider threat policies. Manage phishing simulation … Functions and codeless playbooks where appropriate. Skills/Must Have: Extensive Security Engineering or Senior Security Analysis experience. Strong Microsoft Defender XDR experience. Strong KQL and Advanced Hunting knowledge. Microsoft Sentinel experience. Experience with vulnerability scanning and risk analysis. Strong understanding of security protocols and industry standards. Ability to interpret ...

Principal Security Engineer

Location
Leicester, England, United Kingdom
Principal Security Engineer page is loaded## Principal Security Engineerlocations: Bexhill: Leicestertime type: Full timeposted on: Posted Todayjob requisition id: 60013362We’re a digital insurance provider with ambitious plans to become The Best and Biggest in ...