At least 3 years of cyber security experience and deep knowledge of IT Security, Cloud Security, and industry standards (NIST, ISO 27000, IMO).
Must have strong hands-on and implementation skills in Azure Cloud Security, including experience with Azure Security Center, Microsoft Defender for Cloud, and Azure Policy.
As a Senior Security Engineer, you'll play a key role in managing security incidents, performing threat hunting using SIEM/SOAR tools, and supporting IT audits. This role also involves overseeing vulnerability assessments, leading security projects, conducting training sessions, and ensuring IT security for vessels. You'll engage with external parties to stay updated on cyber threats and provide expert advisory for security projects.
Responsibilities
Security Incident Management
Investigate security incidents and conduct threat-hunting activities using SIEM/SOAR tools (e.g., Microsoft Sentinel).
Maintain hands-on experience with security monitoring tools.
Audit and Governance
Participate in internal and external IT audits, and maintain incident response plans and IT policies.
Conduct vulnerability assessments, penetration tests, and security awareness training, including phishing campaigns.
Design and review IT/cybersecurity architectures.
Collaborate with external entities (e.g., CSA, MPA) on the latest cyber threats and trends.
Support vessel IT security setup, audits, and remediation.
Project Security Oversight
Manage and lead security-related projects and provide security advisory for all projects.
Participate in RFP and RFQ processes.
Skills and Qualifications
Bachelor's degree in Information Security, Computer Science, or related fields, with a minimum of 3 years of relevant experience.
Deep knowledge of IT Security, Cloud Security, and industry standards (NIST, ISO 27000, IMO).
Advanced skills in Azure Cloud Security, including experience with Azure Security Center, Microsoft Defender for Cloud, and Azure Policy.
Broad IT Security Management experience across areas like network, server, application, endpoint, and access security.
Proficiency in managing network security devices (NextGen Firewalls, IDS/IPS, UTM, NAC, AV), Windows, Linux, and networking services.
Extensive hands-on experience with Azure cloud computing, especially in security architecture and DevOps integration.