Senior Engineer Darktrace NDR
Senior Engineer Darktrace NDR to manage and optimize our Network Detection and Response (NDR) infrastructure with a focus on Darktrace.
This role will involve defining security requirements, deploying, and tuning NDR capabilities, integrating data sources, and enhancing detection content.
The ideal candidate will have strong experience in network security, threat detection, and security operations with hands-on expertise in deploying and managing Darktrace NDR solutions.
How Youll Make An Impact :
- Define NDR requirements based on security policies, compliance standards, industry best practices, and business needs.
- Identify key TAP / SPAN points and virtual environments to ensure comprehensive network visibility.
- Deploy physical and virtual Darktrace collectors for network telemetry ingestion.
- Configure and implement ingestion pipelines, health monitoring, and uptime tracking for all deployed collectors.
- Collaborate with the Darktrace team to support the ingestion of unsupported data sources and contribute to the development of new parsing and processing pipelines.
- Work with stakeholders to identify and implement key integrations between Darktrace and other security platforms.
- Develop and fine-tune NDR detection rules and behavioral models to address security gaps.
- Provide contextual intelligence to reduce false positives, enhance alert fidelity, and identify true threats.
- Establish reporting and dashboards to measure risk, improve operational efficiency, and enhance visibility across security operations.
What Were Looking For :
5+ years of experience in network security, threat detection, or security operations, with at least 2 years managing Darktrace NDR solutions.Strong understanding of NDR principles, network telemetry, and packet analysis.Hands-on experience with deploying and managing Darktrace or other NDR related sensors and collectors in on-premises, hybrid, and cloud environments.Proficiency in network protocols (TCP / IP, DNS, HTTP, etc.), security architecture, and traffic analysis.Familiarity with SIEM / SOAR integrations and security automation workflows.Knowledge of compliance frameworks (e.g., NIST, CIS, PCI-DSS, ISO 27001) and regulatory requirements.Strong problem-solving skills with experience in investigating network threats and anomalies.Excellent communication skills and ability to work with cross-functional teams.What You Can Expect From Optiv :
A company committed to championing Diversity, Equality, and Inclusion through our Employee Resource Groups.Work / life balance.Professional training resources.Creative problem-solving and the ability to tackle unique, complex projects.Volunteer Opportunities.Optiv Chips In encourages employees to volunteer and engage with their teams and communities.The ability and technology necessary to productively work remotely / from home (where applicable).(ref : hirist.tech)