Security Engineer - SIEM, KQL- sought by investment bank based in London. o 3+ years in a Security Engineer, SOC Analyst, or similar role * Optimize SIEM performance, cost, and data retention policies * Support PoCs for new security tools - o Familiarity with security frameworks (MITRE ATT&CK, NIST, Kill Chain) *Inside IR35 - 3 days a week on-site** Key Responsibilities * Design, implement, and maintain Microsoft Sentinel workspaces, connectors, analytics rules, and playbooks * Develop advanced KQL queries for threat hunting and reporting * Troubleshoot log ingestion and parsing issues * Onboard and configure critical log sources (AD, firewalls, servers, cloud infrastructure) * Manage event collection and forwarding infrastructure * I
more