Information Security Administrator

Maersk•Norfolk, VA
•Onsite

About The Position

The Information Security Administrator is responsible for the implementation, operation, and maintenance of cybersecurity controls across enterprise IT, vessel IT, and regulated systems. This role translates cybersecurity policy, standards, and risk decisions defined by the Head of Cybersecurity into day‑to‑day operational execution. The Information Security Administrator focuses on hands‑on technical and operational security work, including vulnerability management, security tooling, incident response support, audit evidence collection, and continuous compliance activities. The role does not have authority to accept risk, but is responsible for identifying, documenting, and escalating risks and control gaps. This position serves as the execution engine of the cybersecurity program.

Requirements

  • Bachelor's degree in Information Technology, Cybersecurity, Computer Science, or a related field and a minimum of 5 years of experience in cybersecurity, information security, or systems administration with a security focus; or, in lieu of a degree, a minimum 9 years of directly related experience in cybersecurity, information security, or systems administration with a security focus.
  • Hands on experience implementing and operating security controls in enterprise environments
  • Working knowledge of cybersecurity principles, controls, and best practices
  • Familiarity with frameworks and standards such as NIST SP 800‑171 or related cybersecurity frameworks and Cybersecurity Maturity Model Certification (CMMC)
  • Experience with Azure Government and GCC High environments or other secure government cloud environments
  • Experience with vulnerability management tools, endpoint security solutions, log management or SIEM (Security Information and Event Management) platforms, and identity and access management concepts
  • Strong documentation, tracking, and organizational skills
  • Ability to communicate clearly with technical and non‑technical stakeholders
  • Possessing or the ability to obtain one of the following certifications: Certified Information System Security Professional (CISSP), Certified Information Security Auditor (CISA), Microsoft Security, Compliance, and Identity certifications (e.g., SC-200, SC-300, or AZ-500), Other relevant industry certifications
  • Must be a U.S. citizen capable of obtaining a security clearance from the Defense Counterintelligence and Security Agency (DCSA).
  • Requires a Transportation Worker Identification Credential (“TWIC”).

Nice To Haves

  • Develop capability in communicating cybersecurity risks, security posture, and mitigation strategies to leadership, stakeholders, and cross-functional teams.
  • Expand knowledge of emerging cyber threats, industry best practices, and evolving technologies impacting the maritime transportation sector.
  • Develop expertise in maritime cybersecurity risk assessment, including identifying vulnerabilities in vessel, operational technology (OT), and information technology (IT) environments.

Responsibilities

  • Implement and operate cybersecurity controls in accordance with approved policies, standards, and frameworks.
  • Administer and maintain security tools such as endpoint protection, vulnerability scanning, logging, and monitoring systems.
  • Monitor security alerts and events; triage, document, and escalate suspected security incidents.
  • Support incident response activities, including evidence collection, system containment actions, and post‑incident documentation.
  • Coordinate across IT teams to support identity and access management processes, including onboarding, offboarding, and access changes.
  • Conduct regular vulnerability scans and assessments across enterprise, vessels, and application environments.
  • Track vulnerabilities, remediation actions, and closure status.
  • Coordinate with IT, infrastructure, and application teams to ensure timely remediation.
  • Monitor emerging threats and elevate relevant risks to the Head of Cybersecurity.
  • Collect, maintain, and organize audit and compliance evidence.
  • Support internal assessments, external audits, and regulatory inspections.
  • Maintain accurate security documentation, processes, and control artifacts.
  • Assist with cybersecurity awareness training and communications.
  • Support tabletop exercises, phishing simulations, and incident response drills.
  • Promote secure practices across IT and operational teams.
  • Maintain operational security metrics and dashboards.
  • Report control status, issues, and trends to the Head of Cybersecurity and Head of IT.
  • Escalate unresolved risks, control failures, or repeated non‑compliance.
  • Supports commitment to safety and other selected company standards and certifications.
  • Performs other position related duties as specified by management.

Benefits

  • Medical
  • Dental
  • Vision
  • 401k + Company Match
  • Employee Assistance Program
  • Paid Time Off
  • Flexible Work Schedules (when possible)
© 2026 Teal Labs, Inc
Privacy PolicyTerms of Service