An established Australian financial services organization is seeking an experienced Cyber Security Engineer - Threat Detection & Response to lead the optimization and tuning of its production Darktrace environment.
n
This is a hands-on delivery engagement focused on improving detection quality, reducing alert fatigue, strengthening visibility across the network estate, and ensuring the platform is delivering maximum value to the organization's cyber security program.
n
The successful consultant will work through a defined backlog of optimization activities while partnering closely with internal security, infrastructure and technology stakeholders.
n
What You'll Be Doing
n
n
- Assess the current Darktrace deployment against vendor recommendations and industry best practice
n
- Tune detection models and analytics to improve signal quality and reduce false positives
n
- Execute a backlog of Darktrace and NDR optimization initiatives
n
- Validate monitoring coverage across the network environment and identify visibility gaps
n
- Review alerting trends and recommend improvements to detection effectiveness
n
- Document configuration changes, tuning activities, findings and recommendations
n
- Develop sustainable processes and knowledge artefacts for internal teams
n
- Work closely with technology, security and consulting stakeholders
n
- Deliver technical knowledge transfer and mentoring to internal teams
n
- Provide regular updates on progress, risks, findings and recommendations
n
n
What We're Looking For
n
n
- Proven experience tuning and optimizing Darktrace within enterprise production environments
n
- Solid knowledge of Threat Detection & Response (NDR) technologies and methodologies
n
- Expertise in behavioral analytics, anomaly detection, machine learning-driven threat detection and alert triage
n
- Demonstrated success improving detection accuracy and reducing alert noise
n
- TCP/IP
n
- LAN/WAN technologies
n
- Routing and switching
n
- Network security fundamentals
n
- Ability to work independently within a consulting or project-based engagement
n
- Excellent stakeholder management, documentation and communication skills
n
- Experience providing practical remediation recommendations and knowledge transfer
n
- Microsoft environments including:
n
- Microsoft 365
n
- Sophos Endpoint
n
- Exposure to ISO 27001 security uplift initiatives
n
- SOC, MDR, incident response or security operations experience
n
n
You'll be joining an organization with:
n
n
- Darktrace deployed as the primary NDR capability
n
- A Microsoft-centric technology ecosystem
n
- Sophos endpoint and firewall technologies providing additional visibility
n
- Externally managed SOC, MDR and EDR services
n
- Engaged technical stakeholders and accessible decision-makers
n
- Strong executive support for implementing security improvements
n
#J-18808-Ljbffr
📌 Cyber Security Engineer (New South Wales)
🏢 Ntt Data
📍 New South Wales
Reply to this offer
Impress this employer describing Your skills and abilities, fill out the form below and leave Your personal touch in the presentation letter.