Posted on: 09/09/2025
Senior Engineer Darktrace NDR
- Identify key TAP/SPAN points and virtual environments to ensure comprehensive network visibility.
- Deploy physical and virtual Darktrace collectors for network telemetry ingestion.
- Configure and implement ingestion pipelines, health monitoring, and uptime tracking for all deployed collectors.
- Collaborate with the Darktrace team to support the ingestion of unsupported data sources and contribute to the development of new parsing and processing pipelines.
- Work with stakeholders to identify and implement key integrations between Darktrace and other security platforms.
- Develop and fine-tune NDR detection rules and behavioral models to address security gaps.
- Provide contextual intelligence to reduce false positives, enhance alert fidelity, and identify true threats.
- Establish reporting and dashboards to measure risk, improve operational efficiency, and enhance visibility across security operations.
What Were Looking For :
- Strong understanding of NDR principles, network telemetry, and packet analysis.
- Hands-on experience with deploying and managing Darktrace or other NDR related sensors and collectors in on-premises, hybrid, and cloud environments.
- Proficiency in network protocols (TCP/IP, DNS, HTTP, etc.), security architecture, and traffic analysis.
- Familiarity with SIEM/SOAR integrations and security automation workflows.
- Knowledge of compliance frameworks (e.g., NIST, CIS, PCI-DSS, ISO 27001) and regulatory requirements.
- Strong problem-solving skills with experience in investigating network threats and anomalies.
- Excellent communication skills and ability to work with cross-functional teams.
What You Can Expect From Optiv :
- Work/life balance.
- Professional training resources.
- Creative problem-solving and the ability to tackle unique, complex projects.
- Volunteer Opportunities.
- Optiv Chips In encourages employees to volunteer and engage with their teams and communities.
- The ability and technology necessary to productively work remotely/from home (where applicable).
Did you find something suspicious?
Posted By
Posted in
CyberSecurity
Functional Area
Networking & Wireless
Job Code
1542482
Interview Questions for you
View All