Apply now »

Associate Engineer, Attack Surface Management

JOB DESCRIPTIONKEY RESPONSIBILITIES

The Attack Surface Management Associate Engineer is responsible for the deployment, configuration, and management of attack surface management tools and delivery of related services.The role of Attack Surface Management Associate Engineer is to identify and analyze the attack surface of Royal Caribbean information systems, identify security problems, and drive remediation.This role will be responsible for identifying misconfigurations and failure to comply with security baselines/policies. Although not primarily responsible for Application Security or Attack surface management, the Attack Surface Management Associate Engineer will also work closely with those teams to ensure that their efforts are informed by an accurate inventory of our entire attack surface.Conduct attack surface discovery of both on-premise and Cloud infrastructure using multiple tools, including NMAP, WHOIS, Shodan, and others.Identify unknown services and configuration issues found during discovery.Identify system owners and work toward timely remediation of identified issues.Recommend security controls and corrective actions to mitigate technical and business riskDevelop and evolve security configuration baselines to comply with CIS Benchmarks, PCI, GDPR, and similar requirements.Deploy and manage tools that detect variation from secure configuration requirements, especially CSPM.

QUALIFICATIONS AND EDUCATION2+ years of information technology experience, including understanding of attack surface management topics (such as attack surface discovery or secure configuration baselining/hardening).Bachelor’s Degree in information security or equivalent. Advanced degree preferred.Experience with attack surface discovery tools (e.g. Shodan, RiskIQ, Censys, etc.).Experience with cloud security posture management tools (e.g. Prisma, Orca Security, ZScaler CSPM, etc.).Adept knowledge of securing Active Directory, Azure AD, and cloud environments.Certifications related to secure configurations in Microsoft, Azure, AWS, and similar preferred.

PHYSICAL REQUIREMENTS

Position is based in Miramar, FL. Driving between sites in South Florida may be required. Up to 30% travel including other countries may be required.WORKING CONDITIONSDay to day will mostly consist of working on computer.


Nearest Major Market: Miami

Apply now »