An established Australian financial services organization is seeking an experienced Cyber Security Engineer - Threat Detection & Response to lead the optimization and tuning of its production Darktrace environment.
This is a hands-on delivery engagement focused on improving detection quality, reducing alert fatigue, strengthening visibility across the network estate, and ensuring the platform is delivering maximum value to the organization's cyber security program.
The successful consultant will work through a defined backlog of optimization activities while partnering closely with internal security, infrastructure and technology stakeholders.
What You'll Be Doing
- Assess the current Darktrace deployment against vendor recommendations and industry best practice
- Tune detection models and analytics to improve signal quality and reduce false positives
- Execute a backlog of Darktrace and NDR optimization initiatives
- Validate monitoring coverage across the network environment and identify visibility gaps
- Review alerting trends and recommend improvements to detection effectiveness
- Document configuration changes, tuning activities, findings and recommendations
- Develop sustainable processes and knowledge artefacts for internal teams
- Work closely with technology, security and consulting stakeholders
- Deliver technical knowledge transfer and mentoring to internal teams
- Provide regular updates on progress, risks, findings and recommendations
What We're Looking For
- Proven experience tuning and optimizing Darktrace within enterprise production environments
- Strong knowledge of Threat Detection & Response (NDR) technologies and methodologies
- Expertise in behavioral analytics, anomaly detection, machine learning-driven threat detection and alert triage
- Demonstrated success improving detection accuracy and reducing alert noise
- TCP/IP
- LAN/WAN technologies
- Routing and switching
- Network security fundamentals
- Ability to work independently within a consulting or project-based engagement
- Excellent stakeholder management, documentation and communication skills
- Experience providing practical remediation recommendations and knowledge transfer
- Microsoft environments including:
- Microsoft 365
- Sophos Endpoint
- Exposure to ISO 27001 security uplift initiatives
- SOC, MDR, incident response or security operations experience
You’ll be joining an organization with:
- Darktrace deployed as the primary NDR capability
- A Microsoft-centric technology ecosystem
- Sophos endpoint and firewall technologies providing additional visibility
- Externally managed SOC, MDR and EDR services
- Engaged technical stakeholders and accessible decision-makers
- Robust executive support for implementing security improvements
#J-18808-Ljbffr
📌 Cyber Security Engineer (New South Wales)
🏢 Ntt Data
📍 New South Wales
Reply to this offer
Impress this employer describing Your skills and abilities, fill out the form below and leave Your personal touch in the presentation letter.