Apply now »

Senior Engineer, Cyber Security Counter Threat Management

Journey with us! Combine your career goals and sense of adventure by joining our exciting team of employees. Royal Caribbean Group is pleased to offer a competitive compensation and benefits package, and excellent career development opportunities, each offering unique ways to explore the world.

 

We are proud to be the vacation-industry leader with global brands — including Royal Caribbean International, Celebrity Cruises and Silversea Cruises — the most innovative fleet and private destinations, and the best people. Together, we are dedicated to turning the vacation of a lifetime into a lifetime of vacations for our guests.

 

The Royal Caribbean Group’s Global Information Security Team has an exciting career opportunity for a full time Senior Engineer, Cyber Security Threat Management reporting to the Senior Director, Cybersecurity Business Enablement Engineering.

 

The position is onsite and based in Miramar, Florida. 

 

The position is also not eligible for work authorization sponsorship.

 

 

 

Position Summary

The Senior Engineer, Cyber Security Counter Threat Management will serve as a technical authority in red teaming and adversary emulation, leading engagements that stress-test our defenses against sophisticated attack scenarios. This role requires deep offensive security expertise across cloud, identity, network, and endpoint layers, using advanced tradecraft to uncover gaps and convert findings into actionable risk reduction. Acting as the subject matter expert, this individual will mentor team members, shape detection engineering, and influence enterprise defense strategy through hands-on execution and strategic guidance.

 

Essential Duties and Responsibilities

  • Lead end-to-end red team and adversary emulation campaigns — including scoping, objective definition, execution, and reporting — aligned with threat intelligence and MITRE ATT&CK.
  • Design and deliver advanced attack paths targeting Azure, AWS, Active Directory, endpoints, and networks, chaining techniques to achieve defined objectives under stealth conditions.
  • Develop custom offensive tooling, payloads, and C2 infrastructure; innovate techniques to evade mature detection and response controls.
  • Execute phishing, social engineering, and initial-access methodologies against hardened environments.
  • Act as the offensive-security subject matter expert for leadership, detection, and engineering teams; advise on realistic attacker behaviors and defensive priorities.
  • Conduct purple team exercises to enhance detection coverage while strengthening incident detection and response processes.
  • Produce high-impact reports and executive briefings translating findings into clear technical actions and strategic risk insights.
  • Mentor junior operators, provide technical reviews, and codify operational methodologies and tooling standards.
  • Research emerging threats, develop new techniques, and ensure the team remains ahead of evolving adversaries.
  • Promote ethical judgment, operational security discipline, and compliance within engagement rules.

 

Qualifications, Knowledge and Skills

  • Bachelor’s degree in Cybersecurity, Computer Science, or a related field; equivalent experience considered.
  • 7+ years in offensive security, focusing extensively on red teaming and operating within well-defended, enterprise-scale environments.
  • Proven ability to lead red team engagements independently and communicate findings effectively to technical and executive audiences.
  • Expertise in adversary tradecraft across the full kill chain, with operational fluency in MITRE ATT&CK.
  • Skilled in developing custom offensive tools, payloads, and obfuscation techniques for defeating EDR/XDR.
  • Proficiency with C2 frameworks (Cobalt Strike, Mythic, Sliver) and offensive toolsets (BloodHound, Impacket).
  • Strong scripting/programming skills (Python, PowerShell, C#, or Go).
  • Deep command of cloud and identity attack techniques (Azure, Entra ID, AWS) and operating system internals.
  • Strong understanding of phishing and social engineering vectors, as well as network exploitation techniques.
  • Strategic thinking combined with technical precision.
  • Ability to mentor team members and foster a culture of excellence and integrity.
  • Strong communication and executive reporting skills.
  • Advanced offensive certifications such as OSEP, OSCE3, CRTO, CRTL, or GXPN (OSCP or equivalent baseline expected).

 

 

Agency and Third-Party Submissions: Please note this is a direct search by the Company, and applications through agencies and other third parties will not be accepted, nor will fees be paid for unsolicited resumes. Any unsolicited resumes will be considered the Company's property.

 

We know there's a lot to consider. As you go through the application process, our recruiters will be glad to provide guidance, and more relevant details to answer any additional questions. Thank you again for your interest in Royal Caribbean Group. We'll hope to see you onboard soon!

 

It is the policy of the Company to ensure equal employment and promotion opportunity to qualified candidates without discrimination or harassment on the basis of race, color, religion, sex, age, national origin, disability, sexual orientation, sexuality, gender identity or expression, marital status, or any other characteristic protected by law. Royal Caribbean Group and each of its subsidiaries prohibit and will not tolerate discrimination or harassment.


Nearest Major Market: Miami

Apply now »