Threat Detection Engineer — Cloud Security & AI Automation

Additional Resources

Greater London

Hybrid

GBP 60,000 - 80,000

Full time

4 days ago
Be an early applicant
Application generator

A complete application in a minute — tailored resume and cover letter, ready to send.

Get past ATS filters

Job summary

Additional Resources is seeking a Threat Detection Engineer in London with hybrid/remote options to design and implement threat-led detection and analytics. You will collaborate with an outsourced SOC and contribute to cloud-native security tooling across Azure, Office 365, and Kubernetes environments.

The role requires advanced KQL skills, experience with Microsoft Sentinel/Defender, and knowledge of ISO 27001. It offers a permanent position with a salary band of 60k–80k GBP plus benefits.

Qualifications

  • Proven experience in threat detection engineering or related security role.
  • Strong KQL expertise and hands-on with Microsoft Sentinel/Defender.
  • Familiarity with Microsoft Entra ID including Identity Governance and Purview DLP.
  • Experience with cloud-native logging in Azure and Kubernetes.
  • Knowledge of attacker TTPs, threat modelling, and cyber security frameworks.
  • Awareness of ISO 27001 standards and security compliance.

Responsibilities

  • Design and implement threat-led detection logic informed by threat intelligence and hunting activities.
  • Develop analytical techniques to identify incidents effectively.
  • Collaborate with outsourced SOC to maintain and optimise detection catalogues.
  • Create and refine DLP and other security rules using cloud-native tools.
  • Monitor, tune, and ensure high-quality service delivery from external SOC providers.
  • Automate reporting on security performance and operational metrics.

Skills

KQL
Threat intelligence
Agile
ISO 27001
Data science/AI security

Education

MS-500
AZ-500
SC-200
SC-300
SC-400
Security+

Tools

Microsoft Sentinel
Defender for Endpoint
Entra ID
Purview
DLP tools
Azure
Kubernetes
CI/CD

Job description

Additional Resources is seeking a Threat Detection Engineer in London with hybrid/remote options to design and implement threat-led detection and analytics. You will collaborate with an outsourced SOC and contribute to cloud-native security tooling across Azure, Office 365, and Kubernetes environments.

The role requires advanced KQL skills, experience with Microsoft Sentinel/Defender, and knowledge of ISO 27001. It offers a permanent position with a salary band of 60k–80k GBP plus benefits.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Cyber Security Engineer
Cyber Security Engineer

Additional Resources • Greater London

Hybrid
GBP 60,000 - 80,000
Hybrid Cyber Security Engineer — SIEM, Azure & Threat Response
Hybrid Cyber Security Engineer — SIEM, Azure & Threat Response

Picture More Ltd • Ouzlewell Green

Hybrid
GBP 36,000 - 60,000
Hybrid work model
Competitive benefits
Hybrid Cybersecurity Engineer: Cloud & Threat Defense
Hybrid Cybersecurity Engineer: Cloud & Threat Defense

Atlantic Talent Recruitment • Greater London

Hybrid
GBP 70,000 - 100,000
Hybrid working
Annual leave 26 days + public holidays
Birthday day off
+3
Senior Security Engineer
Senior Security Engineer

TRIA • Greater London

Hybrid
GBP 90,000 - 120,000
Security Engineer - Systems Integrator
Security Engineer - Systems Integrator

Hamilton Barnes Associates Limited • Greater London, Cardiff

Hybrid
GBP 41,000 - 50,000
Primarily remote work
Occasional office attendance (London /
Client-facing responsibilities
Senior Detection Engineer - Microsoft Sentinel (KQL)
Senior Detection Engineer - Microsoft Sentinel (KQL)

Sopra Steria Ltd • Farnborough

Hybrid
GBP 55,000 - 60,000
Health Shields
Life assurance
Pension
+2
Cloud Security Engineer
Cloud Security Engineer

Ocho People • Belfast City District

Hybrid
GBP 70,000 - 95,000
35 days annual leave
8% matched pension
Equity/share options
+1
Cyber Security Analyst: Threat Detection & IR (Hybrid)
Cyber Security Analyst: Threat Detection & IR (Hybrid)

Elite Cloud Care LTD. • Greater London

Hybrid
GBP 50,000 - 65,000
Comprehensive health and dental保险
Cyber Security Operations Engineer - Cloud Threat Detection
Cyber Security Operations Engineer - Cloud Threat Detection

La Fosse • Greater London

On-site
GBP 60,000 - 80,000
Senior Security Engineering Consultant
Senior Security Engineering Consultant

Infosec • Basingstoke

Hybrid
GBP 56,000 - 80,000
Salary up to £80,000
Bonuses
Hybrid work