MP

Marco Park

Principal Security Specialist

Perth · Perth, WA · marco.park@data3.com.au

Principal Security Specialist driving Microsoft Sentinel, Defender XDR and Zero Trust programs across critical Australian industries

Banking & FinanceDefenceEnergy & UtilitiesMining & Resources

About

Marco Park is a Principal Security Specialist at Data#3 with deep expertise in Microsoft Sentinel, Microsoft Defender XDR, and Zero Trust architecture. He has successfully led multiple SOC transformation programs and security architecture engagements for clients in energy, banking, defence and mining. With 14 years of industry experience, Marco brings a pragmatic, risk-focused approach to building resilient security operations and modernising threat detection capabilities.

Experience

  1. 2022-03 — Present
    Current
    Principal Security Specialist
    Data#3

    Lead security consulting engagements focusing on Microsoft security platforms, Zero Trust strategy and SOC transformation for enterprise clients in regulated industries.

    • Architected and delivered two full SOC build programs from requirements through to operational handover
    • Developed Zero Trust roadmaps adopted by major energy and mining clients
    • Mentor for mid-level security consultants across the national practice
  2. 2019-01 — 2022-02
    Senior Cyber Security Consultant
    Deloitte Australia

    Delivered complex security transformation projects for banking and government clients with a focus on Microsoft cloud security and threat detection platforms.

    • Led Microsoft Sentinel deployment for a Tier-1 Australian bank
    • Conducted Zero Trust maturity assessments for two defence-related agencies
    • Contributed to national security thought leadership on XDR technologies
  3. 2016-06 — 2018-12
    Cyber Security Analyst
    Woodside Energy

    Provided operational security support and project delivery within the OT and enterprise environments of a major Australian energy producer.

    • Designed and implemented SIEM use cases covering both IT and OT environments
    • Played key role in incident response during a significant ransomware attempt
    • Developed security monitoring capability for upstream mining operations
  4. 2013-07 — 2016-05
    Security Operations Engineer
    Commonwealth Bank of Australia

    Operated within the bank's 24x7 Security Operations Centre managing detection technologies and responding to advanced threats.

    • Managed Splunk and Microsoft security tooling for enterprise-wide visibility
    • Reduced mean-time-to-detect by 45% through custom correlation rules
    • Participated in red team exercises and purple teaming initiatives
  5. 2010-02 — 2013-06
    Graduate Security Engineer
    Thales Australia

    Early career role supporting defence industry security projects and gaining foundational experience in secure systems engineering.

    • Supported delivery of protected network solutions for Australian Defence Force programs
    • Gained exposure to classified environments and formal security accreditation processes

Projects

  1. Microsoft XDR and Sentinel Deployment
    2023-05 — 2024-04
    Fortescue Metals Group · Mining & Resources · as Security Architect

    Deployed unified XDR across 12,000 endpoints and 3 data centres; improved visibility into OT/IT convergence and reduced critical severity incidents by 55%.

    Microsoft Defender XDRMicrosoft SentinelAzure MonitorEntra IDWindows 11 Enterprise
  2. Enterprise SOC Transformation
    2023-02 — 2024-01
    Confidential Major Energy Retailer · Energy & Utilities · as Lead Security Architect

    Designed and delivered a new 24x7 SOC capability; reduced alert volume by 68% and achieved 40% faster mean-time-to-respond within six months of go-live.

    Microsoft SentinelMicrosoft Defender XDRAzure ADAzure LighthouseLogic AppsKQL
  3. Zero Trust Architecture Program
    2022-09 — 2023-08
    Western Australian Government Department of Defence · Defence · as Principal Consultant

    Developed a three-year Zero Trust roadmap and implemented initial controls across identity and endpoint; successfully passed IRAP assessment for protected-level workloads.

    Microsoft Defender for CloudAzure AD Conditional AccessMicrosoft SentinelIntunePower BI
  4. SOC Build & Operationalisation
    2021-03 — 2022-02
    National Australia Bank · Banking & Finance · as Solution Lead

    Led end-to-end SOC build including people, process and technology; delivered 180+ automated response playbooks resulting in 70% reduction in manual triage effort.

    Microsoft SentinelMicrosoft 365 DefenderAzure Logic AppsSOAR playbooksKusto Query Language
  5. Threat Detection Modernisation
    2020-08 — 2021-05
    Confidential Mining Services Company · Mining & Resources · as Senior Security Consultant

    Replaced legacy SIEM with Microsoft Sentinel; achieved 99.7% uptime for security monitoring across global operations and improved detection of credential-based attacks by 82%.

    Microsoft SentinelDefender for EndpointAzure AD Identity ProtectionPower Automate
  6. Security Architecture Review & Zero Trust Pilot
    2019-11 — 2020-06
    Chevron Australia · Energy & Utilities · as Security Architect

    Conducted comprehensive architecture review and piloted Zero Trust controls for LNG operations; identified and remediated 14 high-risk misconfigurations.

    Azure ADConditional AccessMicrosoft Defender for IdentitySentinel

Beyond the day job

Skills and experience from outside the day job — community, volunteering, hobbies and more.

  1. Cyber Security Mentor
    Volunteering
    Cyber Security Cooperative Research Centre (CSCRC)

    Mentors university students and early-career professionals from diverse backgrounds entering the cyber security field.

    CommunicationKnowledge TransferMentoring
  2. Perth Coastal Kayaking Club
    Sport / coaching
    Perth Coastal Kayaking Club

    Regular participant in ocean paddling and occasional volunteer safety officer for club events.

    Crisis ResponseRisk ManagementTeam Coordination
  3. Dungeon Master
    Hobby
    Weekly D&D group

    Runs a long-running Dungeons & Dragons campaign — improvises narrative, adjudicates rules on the fly, and keeps six players engaged for hours.

    Conflict ResolutionFacilitationImprovisationStorytelling

Peer endorsements

No endorsements yet.