You will work with a modern security stack, real operational scale and a fast-growing programme of AI cyber security and risk initiatives, including the use of agentic AI in SOC operations and security automation. If you are ready to build an interesting maritime cyber security career, this role is for you.
The successful candidate will be responsible for Microsoft security operations, cloud security, incident response and security automation workflows, supporting vulnerability management and helping ensure compliance with ISO 27001, ISO 22301 and NIST CSF 2.0.
Job Description
- Administer, configure and integrate Microsoft security technologies, including Microsoft Defender XDR, Microsoft Defender for Cloud, Microsoft Entra ID, Microsoft Purview (including DLP) and Microsoft Intune, to strengthen threat detection, protection, data protection and endpoint compliance across the Microsoft ecosystem.
- Act as a cloud security specialist, designing, implementing and managing security controls, configurations, posture management and monitoring across cloud platforms and workloads.
- Operate and continuously improve our security platforms, including Rapid7 InsightVM, Rapid7 InsightIDR (SIEM), Rapid7 InsightConnect (automation), Sophos XDR, GreenRadar email security, UpGuard and KnowBe4.
- Investigate and respond to security incidents across shore and vessel environments, performing containment, root cause analysis and recommending preventive measures.
- Act as a security automation implementor, designing, developing and implementing SOAR playbooks and automation workflows, and helping apply agentic AI to alert triage, enrichment, reporting and routine security operations.
- Support identity and access security, including multi-factor authentication, conditional access, privileged access management, and secure remote and vendor access.
- Demonstrate a strong understanding of security operations and response, including monitoring, alert triage, escalation and SOC workflows.
- Manage vulnerability and exposure management activities, including identification, prioritisation, tracking and remediation of vulnerabilities across shore and vessel systems.
- Contribute to ISO 27001, ISO 22301 and NIST CSF 2.0 control implementation, evidence collection and audit readiness.
- Work as a trusted partner to IT, digitalisation and business teams, understanding what they are trying to achieve and helping them deliver it securely.
- Act as a senior technical reference point for the team, reviewing work, mentoring colleagues and contributing to security standards, runbooks and design decisions.
Skills & Professional Requirements
- Bachelor’s degree in Computer Science, Information Technology, or related field.
- More than 5 years of experience in security operations, with hands-on experience configuring, integrating and administering Microsoft security technologies such as Microsoft Defender XDR, Microsoft Defender for Cloud, Microsoft Entra ID, Microsoft Purview DLP and Microsoft Intune.
- Experience securing cloud platforms and workloads, including the implementation of cloud security controls, configurations and monitoring.
- Experience developing and implementing SOAR playbooks and security automation workflows. Experience with Rapid7 InsightConnect or a comparable platform is an advantage.
- Exposure to agentic AI or AI-assisted SOC operations and security automation is a strong advantage.
- Cloud and identity security exposure, including privileged access management (PAM). Experience with Duo Security is an added advantage.
- Working knowledge of ISO 27001, ISO 22301 and NIST CSF 2.0, and how security controls are implemented, evidenced and audited.
- Professional certifications such as CISSP, CISM or CEH are a strong value-add, as are Microsoft security certifications (e.g., SC-200 or AZ-500).
- Hands-on experience with SIEM, XDR, vulnerability management and email security technologies.
- Programming and scripting skills (e.g., Python, PowerShell) are a plus.
- Experience investigating and responding to security incidents, including containment, root cause analysis, and recommending preventive measures.
- Analytical skills with strong attention to detail in identifying patterns, anomalies and threats.
- Effective communication and collaboration skills for cross-team coordination and incident handling.
- Maritime or OT experience is welcome but not essential. If you bring strong security engineering skills, we will help you learn the maritime side.