26 to 45 of 45 Remote/Hybrid Kusto Query Language Jobs

Security Analyst

Location
Greater London, England, United Kingdom
Required Proven experience in Security Operations or Cyber Security. Hands‐on experience with Splunk, log forwarding and SIEM administration. Strong analytical skills using SPL, KQL and/or SQL. Experience investigating security incidents, insider threats or data exfiltration. Knowledge of vulnerability management and security assurance within enterprise environments. #J ...

Senior Detection & Threat Engineer

Hiring Organisation
Checkout.com
Location
London, UK
Employment Type
Full-time
intrusion techniques across the attack lifecycleHands-on experience buidling detection logic in modern SIEM platforms (e.g Sentinel)Proficienty with scripting and programmaining (e.g. Python, KQL) to build detection pipelines and automationWillingness to challenge bad detections, weak assumptions, and vanity metricsPragmatic mindset: precision and impact beat coverage theatreExperience operating beyond traditional ...

Application Security / DevSecOps Engineer - Central or Eastern time, US or Canada

Location
Boston, England, United Kingdom
management tools such as GitHub Advanced Security, Tenable, or similar. Knowledge of API, web application, and software supply chain security (SBOM) Familiarity with major language frameworks such as C#, Java, React, or Python. Awareness of security considerations for AI/ML integrations, such as risks like prompt injection Familiarity … fundamentals and network security concepts. Proficiency in at least one scripting or programming language such as Python, PowerShell, JavaScript, or Go. Familiarity with KQL or similar query languages is preferred. Knowledge & Frameworks Understanding of common cybersecurity threats, attack techniques, and defensive controls. Familiarity with the MITRE ...

24/7 SOC Analyst

Location
Basingstoke, England, United Kingdom
Experience with Microsoft Sentinel, Google SecOps or other SIEM platforms. Experience with Defender, CrowdStrike, SentinelOne or other XDR solutions. Ability to query in KQL, CQL, S1QL, XQL or similar languages. Awareness of threat intelligence concepts and application to investigations. Awareness of coding or scripting, with proficiency in at least … language preferred (but not required). Job Specifics Location: This role is home‐based with occasional visits to the office in Basingstoke Hours: 12‐hour shifts: 2 days, 2 nights; 4 days/nights off. Flexibility with hours will be required in the event of a major incident Security ...

Cyber Operations Security Engineer

Location
Manchester, England, United Kingdom
across the platforms in use and surrounding technical practices Deliver end‐to‐end SIEM/Sentinel engineering by onboarding customers, configuring data connectors, integrations, KQL, automation, dashboards and reporting. Implement tuning, enrichment and optimisation across Sentinel and align with other SIEM tools. Maintain SIEM ingestion pipeline reliability by investigating ...

SecOps Engineering Lead

Location
Abingdon, England, United Kingdom
health, ingestion and cost management, retention, and integration with Defender XDR, Defender for Cloud and Entra ID Protection. Own detection engineering: write and tune KQL analytics rules and hunting queries, map coverage to MITRE ATT&CK, track false‐positive rates, and retire rules that no longer earn their place. Automate … mentoring analysts. Hands‐on Microsoft Sentinel administration: workspace design, data connectors and ingestion cost control, retention, workbooks, automation rules and Logic Apps playbooks. Strong KQL and detection engineering: you can write, tune and defend an analytics rule mapped to MITRE ATT&CK, and explain why it fires ...

Remote UK: Threat Detection Content Engineer

Location
United Kingdom
candidates will have 5-8 years in detection engineering or related roles, with deep expertise in Microsoft Sentinel, 365 Defender, Logic Apps, and strong KQL skills. #J-18808-Ljbffr ...

Security Engineering Consultant (Detection Engineering / Microsoft Sentinel)

Hiring Organisation
Fazer Recruitment
Location
London, South East England, United Kingdom
Employment Type
Full-Time
Salary
£80,000 - £85,000 per annum
detection as code" approach, so detections and automations are built consistently and at scale. What you'll do Build and tune detection rulesets in KQL (or equivalent) across SIEM and XDR platforms Design use cases aligned to MITRE ATT&CK and assess coverage against customer log sources Develop SOAR automations … clear deliverables such as detection strategies, use case catalogues and coverage assessments What you'll bring Strong SIEM engineering experience, ideally Microsoft Sentinel Proven KQL detection writing SOAR experience (Logic Apps, Cortex XSOAR or similar) Python or PowerShell scripting, including API integration XDR/EDR experience (Defender, CrowdStrike, Cortex ...

Senior Cyber Security Analyst

Hiring Organisation
Tria Recruitment
Location
London, UK
Employment Type
Full-time
industry best practice. Detection Engineering & Security AutomationConfigure, optimise and continuously improve Microsoft Sentinel and Microsoft Defender technologies. Develop and tune detection logic using KQL to identify emerging threats and attacker behaviours. Build and maintain automated SOAR workflows using Logic Apps and related technologies. Integrate Microsoft security tooling with third-party … Experience managing stakeholder communications during high-severity incidents. Strong understanding of attacker tactics, techniques and procedures (TTPs).Technical SkillsStrong Microsoft security ecosystem expertise. Advanced KQL experience for investigations, detections and reporting. Experience building automation workflows using Logic Apps or similar technologies. Knowledge of cloud security principles across Azure and ideally ...

Cloud Security Engineer

Location
Leicester, England, United Kingdom
Welcome to Hastings Direct We’re a digital insurance provider with ambitious plans to become The Best and Biggest in the UK market. Over the past few years, we've made significant investments in our ...

Security Engineer - Systems Integrator

Location
Cardiff, Wales, United Kingdom
take ownership of security improvements, detection capabilities, and automation across client environments. Responsibilities: Design, implement and optimise security controls. Develop detection capabilities using KQL and Advanced Hunting. Build and maintain Microsoft Sentinel analytical rules. Deploy and manage Content Hub solutions. Tune Microsoft Defender and wider threat policies. Manage phishing simulation … Functions and codeless playbooks where appropriate. Skills/Must Have: Extensive Security Engineering or Senior Security Analysis experience. Strong Microsoft Defender XDR experience. Strong KQL and Advanced Hunting knowledge. Microsoft Sentinel experience. Experience with vulnerability scanning and risk analysis. Strong understanding of security protocols and industry standards. Ability to interpret ...

Security Engineer - Systems Integrator

Location
Greater London, England, United Kingdom
take ownership of security improvements, detection capabilities, and automation across client environments. Responsibilities: Design, implement and optimise security controls. Develop detection capabilities using KQL and Advanced Hunting. Build and maintain Microsoft Sentinel analytical rules. Deploy and manage Content Hub solutions. Tune Microsoft Defender and wider threat policies. Manage phishing simulation … Functions and codeless playbooks where appropriate. Skills/Must Have: Extensive Security Engineering or Senior Security Analysis experience. Strong Microsoft Defender XDR experience. Strong KQL and Advanced Hunting knowledge. Microsoft Sentinel experience. Experience with vulnerability scanning and risk analysis. Strong understanding of security protocols and industry standards. Ability to interpret ...

Principal Security Engineer

Location
Leicester, England, United Kingdom
Principal Security Engineer page is loaded## Principal Security Engineerlocations: Bexhill: Leicestertime type: Full timeposted on: Posted Todayjob requisition id: 60013362We’re a digital insurance provider with ambitious plans to become The Best and Biggest in ...

Cloud Integration Engineer

Location
Witney, England, United Kingdom
Infrastructure as Code (Bicep), ensuring repeatable, secure, and scalable environments.* **Implement and maintain observability**, set up dashboards, alerts, and logging (App Insights, Log Analytics, KQL) so we always know how our integrations are performing.* **Enable secure, private connectivity** for business data using Azure networking features (Private Link, Private DNS, Managed …/test/prod) using CI/CD pipelines.* Familiarity with monitoring and troubleshooting integrations using Azure’s observability tools (App Insights, Log Analytics, KQL).* Understanding of secure networking in Azure (Private Endpoints, Private DNS, VNETs).* A focus on business outcomes and always looking for ways to automate ...

SOC Team Lead

Hiring Organisation
Constant Recruitment Ltd
Location
Folkestone, Kent, United Kingdom
Employment Type
Permanent
Salary
£45000 - £50000/annum
specific platforms is desirable rather than essential. We welcome applicants who have worked with other SIEM technologies. The following would also strengthen your application: KQL or similar query languages used to investigate security events. Threat hunting and the use of threat intelligence within investigations. Familiarity with MITRE ...

Cyber Security Analyst – Microsoft Security / IAM – Contract

Location
West of England, England, United Kingdom
Working with Entra ID, MFA, Conditional Access and RBAC Using Microsoft Sentinel to monitor and investigate security events and incidents Writing and working with KQL queries Investigating suspicious activity, security incidents and emerging threats Supporting vulnerability management and remediation activity Working across the wider Microsoft security ecosystem Identifying opportunities … Microsoft Entra ID/Azure AD Identity andamp; Access Management (IAM) Conditional Access Multi-Factor Authentication (MFA) Role-Based Access Control (RBAC) Microsoft Sentinel KQL/custom SIEM queries Microsoft 365/Microsoft security technologies Security incident investigation and remediation Vulnerability management Network and infrastructure security Windows and Linux environments ...

Senior Modern Workplace Engineer

Location
Hinckley, England, United Kingdom
Role Title: Senior Modern Workplace Engineer Business Unit: Group Services Location: Hybrid working from our Leicester, Hinckley or Solihull offices. Applicants should be within reasonable commuting distance of one of these locations. Role Overview We ...

Hybrid Cyber Security Engineer — Lead Vulnerability & AI Security

Location
Greater London, England, United Kingdom
Gravitas Group in London is seeking a Cyber Security Engineer to lead and implement security controls across the organisation. This 12-month FTC focuses on hardening the security posture, delivering projects, and ensuring systems remain ...

Senior Application Security Engineer

Location
Greater London, England, United Kingdom
We’re looking for a Senior Application Security Engineer to join our expanding Information Security team. If you are a hands‐on AppSec expert who enjoys working deep in the SDLC, partnering with talented engineers ...

Detection Content Engineer: KQL & Sentinel Automation

Location
Greater London, England, United Kingdom
threat-informed research, design scalable automation for onboarding and enrichment, and advise clients on detection logic with strong MS security stack skills and deep KQL expertise. #J-18808-Ljbffr ...