Threat Detection Engineer

Threat Detection Engineer

Full-Time 60000 - 80000 £ / year (est.) Home office (partial)
Additional Resources Recruitment

At a Glance

  • Tasks: Design and develop innovative threat detection capabilities to protect sensitive healthcare data.
  • Company: Join a leading biotech company at the forefront of precision healthcare.
  • Benefits: Enjoy hybrid working, flexible benefits, and the chance to make a real impact.
  • Other info: Be part of a dynamic team driving innovation in threat detection.
  • Why this job: Lead projects with high autonomy and collaborate on cutting-edge security solutions.
  • Qualifications: Proficiency in KQL and experience with Microsoft Sentinel are essential.

The predicted salary is between 60000 - 80000 £ per year.

Join a well-established biotech company using large-scale genetic data and AI to predict disease risk and advance precision healthcare. We’re looking for a Threat Detection Engineer who thrives on innovation and technical ownership. This role is not a traditional SOC position — you’ll focus on building high-impact detection capabilities, shaping how security protects sensitive genomic and AI-driven data at scale.

Why This Role is Exciting

  • High autonomy: Lead projects from idea to deployment
  • Innovation-driven: Develop cutting-edge detections beyond standard SIEM rules
  • Collaborative: Work closely with internal teams and an outsourced SOC partner
  • Mission-focused: Protect critical healthcare data that supports precision medicine

Key Responsibilities

  • Design and develop threat-led detections using threat intelligence and threat-hunting outputs
  • Create novel analytic techniques for incident detection
  • Collaborate with an MSP SOC to maintain and tune the detection catalogue
  • Build automated reporting dashboards using Microsoft Sentinel workbooks
  • Support security initiatives including ISO 27001 activities and KQL-based tasks
  • Ensure monitoring coverage across cloud platforms, SaaS apps, and internal systems
  • Contribute to documentation of processes, tools, and detection logic

What You’ll Bring

Must-Have Skills & Experience:

  • Strong proficiency in KQL and hands-on experience with Microsoft Sentinel
  • Familiarity with Microsoft Defender tools (Endpoint & O365)
  • Exposure to Azure cloud logging and Kubernetes environments
  • Knowledge of attacker TTPs and MITRE ATT&CK frameworks
  • Proactive, collaborative, and innovative mindset

Desirable / Nice-to-Have:

  • Experience with Python, Terraform, or CI/CD pipelines
  • Familiarity with Microsoft Purview, Entra ID, DLP, or Insider Risk tools
  • Understanding of ISO 27001, Agile ways of working
  • Knowledge of statistics, data science, or AI/ML applied to cybersecurity
  • Relevant certifications (MS-500, AZ-500, SC-series, Security+, GSOC, CCSK)

Perks & Benefits

  • Hybrid/remote working options
  • Flexible benefits package
  • Opportunity to innovate and make a real impact in threat detection
  • Work in a small, fast-paced, highly collaborative team
  • Contribute to advancing precision healthcare using genomic data and AI

Ready to build next-generation threat detection and protect life-changing data? Apply today!

Threat Detection Engineer employer: Additional Resources Recruitment

Join a pioneering biotech company in Westminster that champions innovation and collaboration, offering a unique opportunity for a Threat Detection Engineer to lead impactful projects in the realm of precision healthcare. With a flexible benefits package and a hybrid working model, employees enjoy a supportive work culture that prioritises autonomy and professional growth, all while contributing to the vital mission of safeguarding sensitive genomic data through cutting-edge technology.
Additional Resources Recruitment

Contact Detail:

Additional Resources Recruitment Recruiting Team

StudySmarter Expert Advice 🤫

We think this is how you could land Threat Detection Engineer

✨Tip Number 1

Network like a pro! Reach out to folks in the industry, attend meetups, and connect on LinkedIn. You never know who might have the inside scoop on job openings or can refer you directly.

✨Tip Number 2

Show off your skills! Create a portfolio or GitHub repository showcasing your projects, especially those related to threat detection and KQL. This gives potential employers a taste of what you can do beyond your CV.

✨Tip Number 3

Prepare for interviews by brushing up on common technical questions and scenarios related to threat detection. Practice explaining your thought process clearly, as communication is key in collaborative roles.

✨Tip Number 4

Don’t forget to apply through our website! It’s the best way to ensure your application gets seen by the right people. Plus, we love seeing candidates who are proactive about their job search!

We think you need these skills to ace Threat Detection Engineer

KQL
Microsoft Sentinel
Microsoft Defender tools
Azure cloud logging
Kubernetes environments
Attacker TTPs
MITRE ATT&CK frameworks
Python
Terraform
CI/CD pipelines
ISO 27001
Agile methodologies
Statistics
Data science
AI/ML applied to cybersecurity

Some tips for your application 🫡

Show Your Passion for Innovation: When writing your application, let us see your enthusiasm for innovation and technical ownership. Share examples of how you've led projects or developed unique solutions in the past. We love candidates who think outside the box!

Highlight Relevant Skills: Make sure to emphasise your proficiency in KQL and experience with Microsoft Sentinel. If you’ve worked with Azure cloud logging or have knowledge of MITRE ATT&CK frameworks, don’t hold back! We want to know how your skills align with our needs.

Be Collaborative: Since this role involves working closely with internal teams and an outsourced SOC partner, showcase your collaborative spirit. Mention any experiences where teamwork led to successful outcomes. We value a proactive and team-oriented mindset!

Tailor Your Application: Take the time to tailor your application specifically for this role. Use keywords from the job description and relate your experiences directly to the responsibilities listed. Remember, applying through our website is the best way to get noticed!

How to prepare for a job interview at Additional Resources Recruitment

✨Know Your Tech Inside Out

Make sure you’re well-versed in KQL and Microsoft Sentinel, as these are crucial for the role. Brush up on your knowledge of attacker TTPs and the MITRE ATT&CK framework, as you might be asked to discuss how you would apply these in real-world scenarios.

✨Showcase Your Innovation Skills

Prepare examples of how you've developed novel detection techniques or improved existing processes. This role is all about innovation, so be ready to share your creative solutions and how they made an impact.

✨Collaboration is Key

Since this position involves working closely with internal teams and an outsourced SOC partner, think of instances where you’ve successfully collaborated on projects. Highlight your communication skills and how you can work effectively in a team setting.

✨Understand the Bigger Picture

Familiarise yourself with the company’s mission in precision healthcare and how your role contributes to it. Being able to articulate why protecting sensitive genomic data is important will show your alignment with their goals and values.

Land your dream job quicker with Premium

You’re marked as a top applicant with our partner companies
Individual CV and cover letter feedback including tailoring to specific job roles
Be among the first applications for new jobs with our AI application
1:1 support and career advice from our career coaches
Go Premium

Money-back if you don't land a job in 6-months

>