Cyber Security Engineer

Additional Resources

Greater London

Hybrid

GBP 60,000 - 80,000

Full time

4 days ago
Be an early applicant
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Job summary

Additional Resources is seeking a Threat Detection Engineer in London with hybrid/remote options to design and implement threat-led detection and analytics. You will collaborate with an outsourced SOC and contribute to cloud-native security tooling across Azure, Office 365, and Kubernetes environments.

The role requires advanced KQL skills, experience with Microsoft Sentinel/Defender, and knowledge of ISO 27001. It offers a permanent position with a salary band of 60k–80k GBP plus benefits.

Qualifications

  • Proven experience in threat detection engineering or related security role.
  • Strong KQL expertise and hands-on with Microsoft Sentinel/Defender.
  • Familiarity with Microsoft Entra ID including Identity Governance and Purview DLP.
  • Experience with cloud-native logging in Azure and Kubernetes.
  • Knowledge of attacker TTPs, threat modelling, and cyber security frameworks.
  • Awareness of ISO 27001 standards and security compliance.

Responsibilities

  • Design and implement threat-led detection logic informed by threat intelligence and hunting activities.
  • Develop analytical techniques to identify incidents effectively.
  • Collaborate with outsourced SOC to maintain and optimise detection catalogues.
  • Create and refine DLP and other security rules using cloud-native tools.
  • Monitor, tune, and ensure high-quality service delivery from external SOC providers.
  • Automate reporting on security performance and operational metrics.

Skills

KQL
Threat intelligence
Agile
ISO 27001
Data science/AI security

Education

MS-500
AZ-500
SC-200
SC-300
SC-400
Security+

Tools

Microsoft Sentinel
Defender for Endpoint
Entra ID
Purview
DLP tools
Azure
Kubernetes
CI/CD

Job description

Salary: £25,000 - 50,000 per year

Requirements:
  • Previously worked as a Threat Detection Engineer or in a similar role.
  • Strong expertise in KQL.
  • Hands-on experience with Microsoft Sentinel and Defender (Endpoint, Office 365).
  • Familiarity with Microsoft Entra ID, including Identity Governance.
  • Experience with Microsoft Purview, particularly DLP and data protection tools.
  • Exposure to cloud-native logging in Azure and Kubernetes environments.
  • Understanding of detection as code or everything as code approaches, including CI/CD pipelines.
  • Experience working with or alongside MSP SOC teams.
  • Awareness of Agile methodologies and ways of working.
  • Knowledge of attacker TTPs, threat modelling, and cyber security frameworks.
  • Understanding of statistics, data science, or AI/ML as applied to security.
  • Awareness of ISO 27001 standards.
  • Relevant cyber security certifications such as MS-500, AZ-500, SC-200, SC-300, SC-400, Security+, GSOC, or CCSK.
Responsibilities:
  • Design and implement threat-led detection logic informed by threat intelligence and hunting activities.
  • Develop innovative analytical techniques to identify incidents effectively.
  • Collaborate with an outsourced SOC to maintain, tune, and optimise detection catalogues.
  • Create and refine DLP, Insider Risk Management, and other security rules using cloud-native tools.
  • Monitor and ensure high-quality service delivery from external SOC providers.
  • Automate reporting on security performance and operational metrics.
  • Partner with technology teams to ensure adequate monitoring across cloud platforms, SaaS, and internal systems.
  • Document security processes, tool configurations, and contribute to service delivery documentation.
  • Support colleagues with ISO 27001 compliance and KQL-related tasks.
Technologies:
  • AI
  • Azure
  • CI/CD
  • Cloud
  • Support
  • Kubernetes
  • Office 365
  • Security
  • Network
More:

We are a well-established biotech company using large-scale genetic data and AI to predict disease risk and advance precision healthcare. This is a permanent Threat Detection Engineer opportunity based in Westminster, Central London, with hybrid/remote working options and a salary of 60,000 to 80,000 plus benefits. We offer the chance to contribute to meaningful cyber security work in a modern cloud-first environment, where your expertise will directly influence how threats are detected and mitigated at scale.

last updated 36 week of 2026

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Cyber Security Engineer
Cyber Security Engineer

IT Naturally • Peterborough

Hybrid
GBP 40,000 - 50,000
Private healthcare from day one
Company bonus
Pension
+4
Cyber Security Engineer
Cyber Security Engineer

Erin Associates • Altrincham

On-site
GBP 45,000 - 55,000
Training and certification support
Career progression
Collaborative team environment
Senior Security Engineer
Senior Security Engineer

TRIA • Greater London

Hybrid
GBP 90,000 - 120,000
Threat Detection Engineer — Cloud Security & AI Automation
Threat Detection Engineer — Cloud Security & AI Automation

Additional Resources • Greater London

Hybrid
GBP 60,000 - 80,000
Cyber Security Analyst – Threat Intelligence SME
Cyber Security Analyst – Threat Intelligence SME

Bangura Solutions • Greater London

Hybrid
GBP 33,000 - 71,000
Cyber Security Engineer
Cyber Security Engineer

Morson Talent • Manchester

Hybrid
GBP 60,000 - 85,000
Pension
Life Insurance
25 days annual leave
+1
Cyber Security Analyst - London
Cyber Security Analyst - London

Involved Solutions • Greater London

On-site
GBP 68,000 - 108,000
Cyber Security & Infrastructure Engineer
Cyber Security & Infrastructure Engineer

Adria Solutions Ltd • North Shields

On-site
GBP 40,000 - 50,000
Security Engineer - Security Operations
Security Engineer - Security Operations

Perk • Greater London

On-site
GBP 72,000 - 85,000
Equity options
Private medical insurance
Life insurance
+2
Cyber Security Analyst
Cyber Security Analyst

Tria Recruitment • Greater London

Hybrid
GBP 54,000 - 94,000
Hybrid work model
Certification funding (Palo Alto)