About the role
class="jobdescription"> Journey with us! Combine your career goals and sense of adventure by joining our exciting team of employees. Royal Caribbean Group is pleased to offer a competitive compensation and benefits package, and excellent career development opportunities, each offering unique ways to explore the world.
We are proud to be the vacation-industry leader with global brands — including Royal Caribbean International, Celebrity Cruises and Silversea Cruises — the most innovative fleet and private destinations, and the best people. Together, we are dedicated to turning the vacation of a lifetime into a lifetime of vacations for our guests.
The Royal Caribbean Group’s Global Information Security Team has an exciting career opportunity for a full time Senior Engineer, Cyber Security Threat Management reporting to the Senior Director, Cybersecurity Business Enablement Engineering .
The position is onsite and based in Miramar, Florida.
The position is also not eligible for work authorization sponsorship.
Position Summary
The Senior Engineer, Cyber Security Counter Threat Management will serve as a technical authority in red teaming and adversary emulation, leading engagements that stress-test our defenses against sophisticated attack scenarios. This role requires deep offensive security expertise across cloud, identity, network, and endpoint layers, using advanced tradecraft to uncover gaps and convert findings into actionable risk reduction. Acting as the subject matter expert, this individual will mentor team members, shape detection engineering, and influence enterprise defense strategy through hands-on execution and strategic guidance.
Essential Duties and Responsibilities
Lead end-to-end red team and adversary emulation campaigns — including scoping, objective definition, execution, and reporting — aligned with threat intelligence and MITRE ATT&CK.
Design and deliver advanced attack paths targeting Azure, AWS, Active Directory, endpoints, and networks, chaining techniques to achieve defined objectives under stealth conditions.
Develop custom offensive tooling, payloads, and C2 infrastructure; innovate techniques to evade mature detection and response controls.
Execute phishing, social engineering, and initial-access methodologies against hardened environments.
Act as the offensive-security subject matter expert for leadership, detection, and engineering teams; advise on realistic attacker behaviors and defensive priorities.
Conduct purple team exercises to enhance detection coverage while strengthening incident detection and response processes.
Produce high-impact reports and executive briefings translating findings into clear technical actions and strategic risk insights.
Mentor junior operators, provide technical reviews, and codify operational methodologies and tooling standards.
Research emerging threats, develop new techniques, and ensure the team remains ahead of evolving adversaries.
Promote ethical judgment, operational security discipline, and compliance within engagement rules.
Qualifications, Knowledge and Skills
Bachelor’s degree in Cybersecurity, Computer Science, or a related field; equivalent experience considered.
7+ years in offensive security, focusing extensively on red teaming and operating within well-defended, enterprise-scale environments.
Proven ability to lead red team engagements independently and communicate findings effectively to technical and executive audiences.
Expertise in adversary tradecraft across the full kill chain, with operational fluency in MITRE ATT&CK.
Skilled in developing custom offensive tools, payloads, and obfuscation techniques for defeating EDR/XDR.
Proficiency with C2 frameworks (Cobalt Strike, Mythic, Sliver) and offensive toolsets (BloodHound, Impacket).
Strong scripting/programming skills (Python, PowerShell, C#, or Go).
Deep command of cloud and identity attack techniques (Azure, Entra ID, AWS) and operating system internals.
Strong understanding of phishing and social engineering vectors, as well as network exploitation techniques.
Strategic thinking combined with technical precision.
Ability to mentor team members and foster a culture of excellence and integrity.
Strong communication and executive reporting skills.
Advanced offensive certifications such as OSEP, OSCE3, CRTO, CRTL, or GXPN (OSCP or equivalent baseline expected).
Agency and Third-Party Submissions: Please note this is a direct search by the Company, and applications through agencies and other third parties will not be accepted, nor will fees be paid for unsolicited resumes. Any unsolicited resumes will be considered the Company's property.
We know there's a lot to consider. As you go through the application process, our recruiters will be glad to provide guidance, and more relevant details to answer any additional questions. Thank you again for your interest in Royal Caribbean Group. We'll hope to see you onboard soon!
It is the policy of the Company to ensure equal employment and promotion opportunity to qualified candidates without discrimination or harassment on the basis of race, color, religion, sex, age, national origin, disability, sexual orientation, sexuality, gender identity or expression, marital status, or any other characteristic protected by law. Royal Caribbean Group and each of its subsidiaries prohibit and will not tolerate discrimination or harassment.
Nearest Major Market: Miami
Apply now »
Apply now
Apply Now
Start applying with LinkedIn
Start
Please wait...
Find similar jobs:
Careers Home
Top Jobs
View All Jobs
Royal Caribbean Corporate Site
Applicants with Disabilities
Opens in a new tab.
Opens in a new tab.
Opens in a new tab.
Copyright © 2021 Royal Caribbean Group. All rights reserved.
×
Cookie Consent Manager
When you visit any website, it may store or retrieve information on your browser, mostly in the form of cookies. Because we respect your right to privacy, you can choose not to allow some types of cookies. However, blocking some types of cookies may impact your experience of the site and the services we are able to offer.
Required Cookies
These cookies are required to use this website and can't be turned off.
Required Cookies
Show More Details
Required Cookies
Provider
Description
Enabled
SAP as service provider
We use the following session cookies, which are all required to enable the website to function:
"route" is used for session stickiness
"careerSiteCompanyId" is used to send the request to the correct data center
"JSESSIONID" is placed on the visitor's device during the session so the server can identify the visitor
"Load balancer cookie" (actual cookie name may vary) prevents a visitor from bouncing from one instance to another
Cookies from provider SAPasserviceprovider are required and cannot be turned off
Advertising Cookies
These cookies serve ads that are relevant to your interests. You may freely choose to accept or decline these cookies at any time. Note that certain functionality that these third parties make available may be impacted if you do not accept these cookies.
Consent to all Advertising Cookies
Show More Details
Advertising Cookies
Provider
Description
Enabled
LinkedIn
LinkedIn is an employment-oriented social networking service. We use the Apply with LinkedIn feature to allow you to apply for jobs using your LinkedIn profile. Opting out of LinkedIn cookies will disable your ability to use Apply with LinkedIn.
Cookie Policy
Cookie Table
Privacy Policy
Terms and Conditions
<input type="checkbox" role="switch" class="cookiech
