R

Cyber OT/Marine Engineer

RINA
Contract
On-site
Genova

Select how often (in days) to receive an alert:

Posting Date: 3 Jan 2025

City: Genova

Location:

Genova, Italy, 16129 Rozzano, Italy, 20089

Contract Type: Permanent

Division: Cyber Security and Management Consulting

Level of experience: Intermediate

RINA is currently recruiting for a Cyber OT/Marine Engineer to join its office in GENOA or MILAN within the Cyber Security and Management Consulting Division.

Mission

We are currently looking for a Cyber Security engineer to expand our technical team.

The person will be in charge of technical activities such as:

  • Identify security risks within organizations and complex systems/architectures, in particular onboard vessels;
  • Perform vulnerability assessments and penetration tests in IT/OT environment;
  • Design security measures and provide recommendations or suggestions to improve security postures;
  • Implement technical security measures also by means of hardening of target systems/devices based on identified security baselines or requirements;
  • Provide support to Customers in cybersecurity related activities;
  • Draft technical reports;
  • It is possible some SW Code/Script development and/or network devices configuration also by means of automated configuration tools;
  • Write technical documentation, regarding both descriptions and test procedures.

Key Accountabilities

  • Knowledge of security aspects of principal Operating Systems;
  • Previous experience in performing VA/PT activities (also for personal interest/passion, e.g. CTF challenges);
  • Adequate knowledge of programming languages (in particular Java, C/C++/C#, VB.Net, Python), their interfaces with principal DBMS, and their development environments;
  • Strong problem-solving ability;
  • Excellent verbal and written communication skills - Italian and English as a minimum;
  • Flexibility and ability to multi-task in a fast-paced atmosphere;
  • Availability to travel within the Country and abroad;
  • Adequate knowledge of networking models;
  • Adequate knowledge of cryptographic algorithms (e.g. SHA, AES, CBC, ECB).

Education

Bachelor’s Degree in Computer Engineering or Cyber Security

Master’s Degree

Qualifications

Desired Requirements:

  • Security Certifications: GIAC/GICSP or ISA62443 related certifications, CEH, OSCP, eJPT, PJPT, ISACA CISM/CISA/CRISC, ISC2 CISSP.
  • Knowledge of security tools/platforms such as: automated configuration tools (e.g. Ansible or Puppet), vulnerability assessment tools, penetration tests techniques and involved applications, cloud security, cyber threat intelligence, Mobile Threat Detection, Intrusion Prevention/Detection Systems (IPS/IDS), Endpoint Protection Platforms (EPP, but also EDR, MDR and XDR services), technologies related to code security analysis, Web Application Firewall (WAF), Security Orchestration Automation and Response (SOAR), Security Information and Event Management (SIEM) and Governance Risk Compliance (GRC).
  • Previous experiences in Red/Blue/Purple Teams will be considered as a plus.

Core Values

  • CLIENT INTIMACY - Embrace internal and external client needs, expectations, and requirements to ensure maximum satisfaction.
  • EARN TRUST - Take everyone's opinion into