Skip to content
← Back to job listings

Senior Detection Engineer

Our Future Health · London, United Kingdom

External listingfull-time7 days ago

About The Role

Join Our Future Health as a Senior Detection Engineer and make a real impact in the field of information security. In this role, you will take ownership of high-impact work that shapes how we detect and respond to threats at scale. You will collaborate closely with our in-house Threat team and our outsourced SOC partner, building unique detection capabilities that go beyond just SIEM detections. This is an exciting opportunity to design detections that matter and be part of something unique at a large scale.

  • Developing new threat-led detections in collaboration with the threat team based on threat intelligence and threat hunts.
  • Creating novel analytic methods and techniques for incident detection, and working with the MSP provided SOC to maintain the detection catalogue.
  • Supervising the MSP SOC to ensure a high-quality service is provided, and that the maturity of security monitoring is continually improving.
  • Knowledge of statistics, data science and AI/ML, in particular when applied to cyber security
  • To succeed in this role you will be able to demonstrate some of the following skills and experience:
  • Experience with Microsoft Purview tooling, in particular MPIP and Purview Data Loss Prevention
  • Significant hands-on experience with Microsoft Sentinel
  • Experience with Microsoft’s Defender suite, in particular Defender for Endpoints and Defender for O365
  • Knowledge of attacker Tactics, Techniques and Procedures (TTPs)
  • Relevant certifications, such as: Microsoft certifications (MS-500, AZ-500, SC-200, SC-300, SC-400), CompTIA Security+, GIAC Security Operations Certified (GSOC), Cloud Security Alliance CCSK
  • Exposure to working with/inside an MSP SOC
  • Highly proficient in writing KQL and ideally some level of proficiency in Python and Terraform
  • Experience of an ‘everything-as-code’, or at least a ‘detection-as-code’ approach, including CI/CD pipelines
  • Experience with Microsoft Entra ID (previously AAD), including the Identity Governance capabilities
  • Exposure to Agile working
  • Experience with cloud-native logging (in particular Azure and Kubernetes)
  • Knowledge of ISO 27001
  • Desire to be part of a small fast-paced team

This is an external listing. JobSpring does not represent or verify the employer. Report this listing