An application made for this job — a tailored resume and cover letter that speak straight to the posting.
Get past ATS filters
Benefits offered by this job
Hands-on experience with modern SIEM and XDR platforms
Exposure to real-world attacker behaviors
Opportunity for career advancement
Job summary
A cybersecurity firm in Greater London seeks a skilled security operations professional. This role entails designing and tuning detection logic across multiple platforms, writing and optimizing KQL queries, and collaborating with SOC teams for effective threat detection. Candidates must have SOC experience and a solid understanding of attack techniques, as well as familiarity with Microsoft security tools like Sentinel and Defender XDR. This position offers the chance to enhance security effectiveness and grow into senior roles.
Qualifications
Practical experience working in a SOC or security operations environment.
Knowledge of KQL or equivalent, with experience writing or tuning detections.
Solid understanding of common attack techniques across identity, endpoint, and cloud.
Responsibilities
Design and tune detection logic across Sentinel and XDR platforms.
Write and optimize KQL and S1QL queries for detection scenarios.
Support optimization of logging pipelines and signal ingestion.
Skills
KQL
SOC experience
Analytical thinking
Microsoft security tooling
Understanding attack techniques
Tools
Sentinel
Defender XDR
Python
PowerShell
Job description
A cybersecurity firm in Greater London seeks a skilled security operations professional. This role entails designing and tuning detection logic across multiple platforms, writing and optimizing KQL queries, and collaborating with SOC teams for effective threat detection. Candidates must have SOC experience and a solid understanding of attack techniques, as well as familiarity with Microsoft security tools like Sentinel and Defender XDR. This position offers the chance to enhance security effectiveness and grow into senior roles.