Rightship

Cloud & Systems Engineer

Melbourne, Australia Full Time

The Company 

RightShip is the world’s biggest third party maritime due diligence organization, providing expertise in global safety, sustainability and social responsibility best practices. 

We bring together years of industry expertise with the output from analytics and large data sets to provide our safety and environmental scoring systems, recommendations and consultancy services. 

Using leading data and technology, we aim to set new benchmarks in environmental protection. We support global initiatives and action influencing practical and impactful change, enabling “win-win” for business and the environment. 

To find out more visit RightShip.com. 

What we offer 

We offer a place where you know you are contributing to an organization who are constantly working to ensure ships are safe as possible so that crew and cargo are protected. We are passionate about maritime efficiency, safety and sustainability practices. 

We offer generous rewards. Our base salary is competitive, we support employee wellbeing and provide our employees with a Healthy Living Allowance and our annual incentive scheme is awesome. We have some great talent who are happy to share their experience and skills to help you on your way and we are committed to professional development to make sure your career keeps growing while you’re working with us.

 

What makes RightShip a great place to work at:

RightShip is an equal opportunity employer, and we champion diversity. Our teams are composed of individuals from different geographies, cultures, religions, ethnicities, races, genders, sexual orientations, abilities, and generations. We believe that a diversity of experiences makes us stronger—as individuals, as communities and as an organization.

Don’t meet every single requirement of this role? Still apply! Research tells us that that women and underrepresented groups are less likely to apply unless they meet every single requirement.  At RightShip we believe that the right hire is someone who makes an addition to our culture, rather than someone who fits in and conforms to our status quo. We want to add team members who not only value RightShip standards and workplace culture, but also bring an aspect of diversity that positively contributes to our work environment. If you are excited about this role, or about our company in general, we would love to hear from you!

Working with the Head of IT and Cybersecurity, IT service providers, and the broader business, the Cloud & Systems Engineer is responsible for ensuring a stable, secure, and compliant cloud-based IT environment for our staff across the globe. The role is pivotal in meeting our SOC 2, ISO/IEC 27001:2022, and Essential Eight obligations while enabling a modern Microsoft 365 and Azure-first workplace.

Major Responsibilities 

TECHNICAL SUPPORT

  • Plan, document, migrate, and deliver change management and post-implementation support for IT projects across cloud and on-prem services.
  • Advise on secure configuration of the Microsoft 365 stack (Entra ID/Azure AD, Exchange Online, Defender, Intune, SharePoint/OneDrive, Teams).
  • Coordinate and manage activities of local and overseas IT Service Providers to agreed SLAs/OLAs.
  • Champion adoption of digital workplace practices, automation, and self-service.
  • Partner with the business on cloud provider technology reviews and cost-optimization (FinOps basics). 

SECURITY & COMPLIANCE 

  • Backups & Recovery: Policy-based backups for cloud and on-prem workloads; quarterly restore tests; maintain RPO/RTO targets and documented BC/DR playbooks.
  • Vulnerability & Patch Management: Intune/Defender-anchored cadence for OS, apps, and firmware; SLAs by severity; application allow-listing where feasible.
  • Hardening & Configuration: Apply CIS/Microsoft baselines for endpoints, browsers, and Office; restrict macros and legacy auth.
  • Identity & Access: Enforce MFA and conditional access; least-privilege, JIT/JEA admin; quarterly access reviews; automated JML controls.
  • Network Security: Zero-trust principles, segmentation, VPN/ZTNA, DNS filtering; periodic rule reviews and architecture diagrams kept current.
  • Threat Protection & Monitoring: Operate Microsoft Defender XDR/Sentinel analytics, tune detections, triage alerts, and coordinate response with providers.
  • Change & Release: Run change control with risk assessment, approvals, back-out plans, and post-change validation; retain records as documented information.
  • Incident Management: Triage and remediate security events; maintain playbooks, evidence capture, legal/contractual notification paths, and PIRs.
  • Asset & Vendor Management: Maintain asset inventory/SBOM; support supplier due-diligence, onboarding, and security clauses; monitor critical supplier controls.
  • Cryptography & Data Protection: Enforce encryption in transit/at rest, DLP policies, sensitivity labels, and key-management practices.
  • Compliance Evidence & Audits: Produce/maintain artefacts (policies, diagrams, SoA mappings, tickets, logs, test results) to support SOC 2, ISO 27001 internal/external audits, and Essential Eight assessments.

INFORMATION SECURITY MANAGEMENT SYSTEM SUPPORT (ISMS)

  • Support the ISMS lifecycle: risk identification, assessment, and treatment planning; maintain risk register items relevant to infrastructure and SaaS platforms.
  • Contribute to the Statement of Applicability (SoA) and keep control ownership, scope, and rationale current for technical controls (Annex A.5–A.8).
  • Maintain and improve documented information (policies, standards, procedures, guidelines, records) in line with control A.5.32–A.5.36.
  • Participate in internal audits and management reviews; track and close non-conformities and corrective actions.
  • Ensure alignment of operational metrics and logs with audit sampling needs (traceability from policy → control → evidence).

OTHER

  • Drive continuous improvement across technology, security, and service processes, document standards and playbooks.
  • Contribute to monthly service and security reporting (SLAs, incidents, vulnerabilities, patch compliance, costs).
  • Support business continuity and disaster recovery exercises; maintain DR playbooks and dependencies.

 

Qualifications, Skills and Experience

  • Tertiary qualification in Information Systems, Computer Science, or related discipline (or equivalent experience).
  • Demonstrable experience with:
    • Operating Systems & Platforms: Windows client/server, Azure, Azure AD/Entra ID.
    • Microsoft 365 & Security: Exchange Online, SharePoint/OneDrive, Teams, Intune, Defender (Endpoint/Identity/Office), Purview fundamentals.
    • Directory & Identity: Active Directory, Group Policy, SSO/SAML/OIDC, conditional access, MFA.
    • Networking: WAN/LAN, firewalls, VPN/ZTNA, DNS, DHCP, SD-WAN fundamentals.
  • Strong troubleshooting skills; excellent prioritization and customer focus.
  • Clear communication—translating technical concepts for non-technical audiences.
  • Planning and time management to meet deadlines; high attention to detail.
  • Proactive, responsive, flexible, and solution-focused; effective autonomously.
  • Collaboration across cross-functional and geographically distributed teams.

Beneficial (non-mandatory) exposure:

Microsoft 365 Security, Sentinel/SIEM, MS Secure Score, DR, scripting/automation (PowerShell), Netskope, MDM for macOS/iOS/Android, experience supporting SOC 2 / ISO 27001 audits.

Demonstrable experience with:

  • Operating Systems & Platforms: Windows client/server, Azure, Azure AD/Entra ID.
  • Microsoft 365 & Security: Exchange Online, SharePoint/OneDrive, Teams, Intune, Defender (Endpoint/Identity/Office), Purview fundamentals.
  • Directory & Identity: Active Directory, Group Policy, SSO/SAML/OIDC, conditional access, MFA.
  • Networking: WAN/LAN, firewalls, VPN/ZTNA, DNS, DHCP, SD-WAN fundamentals.

Soft skills and ways of working:

  • Strong troubleshooting skills; excellent prioritization and customer focus.
  • Clear communication—translating technical concepts for non-technical audiences.
  • Planning and time management to meet deadlines; high attention to detail.
  • Proactive, responsive, flexible, and solution-focused; effective autonomously.
  • Collaboration across cross-functional and geographically distributed teams.

RightShip is an Equal Opportunity Employer and values diversity, enables access and promotes inclusion in our workplace. You must have the right to live and work in this location to apply for this job.