Vitol
Energy
CyberSecurityEngineer
Neural analysis suggests this role is
optimal for mid candidates.
“Cyber Security Engineer at Vitol. Skills: Offensive security, Incident response, Red teaming, Security architecture. Design security architecture. Implement security architecture”
What You'll Achieve.
Reduce mean time to detect; Reduce mean time to respond
Industry & Context.
Root cause analysis; Troubleshooting
Work extended hours, Work independently
What They're Looking For.
Must Have
3+ years cybersecurity experience, 3+ years offensive security, 3+ years incident response, Experience operating red team, Experience penetration testing, Experience with Burp Suite, Experience with BloodHound, Experience with C2 frameworks, Experience with CrowdStrike Falcon, Experience with Microsoft Defender, Experience with evasion techniques, Experience with Microsoft Sentinel, Experience with KQL rules, Experience with SOAR playbooks, Experience with AI/LLM tooling, Knowledge of Active Directory, Knowledge of Windows internals, Knowledge of Linux internals, Knowledge of enterprise network protocols, Experience with scripting, Experience with automation, Experience with cloud environments
Nice to Have
OSCP certification, OSEP certification, OSED certification, CRTO certification, Equivalent offensive certifications, Experience with Azure
What You'll Do.
Design security architecture
Implement security architecture
Maintain security architecture
Monitor security incidents
Detect security incidents
Triage security incidents
Respond to security incidents
Own incident lifecycle
Operate Microsoft Sentinel
Tune Microsoft Sentinel
Build detection rules
Build analytic queries
Build automated playbooks
Design Red Team engagements
Plan Red Team engagements
Execute Red Team engagements
Improve Red Team infrastructure
Maintain Red Team infrastructure
Operate AI/LLM tooling
Evaluate AI/LLM tooling
Conduct offensive assessments
Perform threat hunting
Refine threat hunt hypotheses
Implement IAM solutions
Develop security documentation
Maintain security documentation
How You'll Work.
Team & Collaboration
Work with product team
Communication Scope
Lessons-learned reports
Process & Methodology
Roadmap planning
Full Job Description
Vitol is an energy and commodities company with revenues of $331 billion in 2024; its primary business is the trading and distribution of energy products globally – it trades over seven million barrels per day of crude oil and products and, at any time, has 250 ships transporting its cargoes. Vitol’s clients include national oil companies, multinationals, leading industrial companies and utilities. Founded in Rotterdam in 1966, today Vitol serves clients from some 40 offices worldwide and is invested in energy assets globally including 24mM3 of storage, 850kbpd of refining capacity, and 10,000 service stations. To date, we have committed over $2.5 billion of capital to renewable projects and are identifying and developing low-carbon opportunities around the world. * Design, implement, and maintain security architecture for on-premises environments. * Monitor, detect, triage, and respond to security incidents and alerts end-to-end, providing L2 and L3 support; own the incident lifecycle from initial detection through containment, eradication, recovery, and post-incident review. * Operate and tune Microsoft Sentinel (SIEM/SOAR) — build detection rules, analytic queries, and automated playbooks to reduce mean time to detect and respond. * Leverage Varonis for data access governance, insider threat detection, and abnormal behaviour alerting across file systems and cloud storage. * Design, plan, and execute internal Red Team engagements — including scoping, rules of engagement, adversary simulation, and structured debrief — to validate defensive controls and identify gaps before real attackers do. Improve and maintain the Red Team Infrastructure aligned with the current threat landscape * Operate AI/LLM-powered penetration testing tooling against Vitol's own infrastructure as part of the Red Team program, evaluating its effectiveness and contributing findings to the wider security roadmap. * Conduct offensive security assessments using industry-standard tools including B
Applying for this Cyber Security Engineer role?
Most applicants get filtered before a human reads their resume. See if yours makes the cut.
How to Apply on SmartRecruiters
- SmartRecruiters often includes a video screening step — check camera and mic permissions.
- Link your GitHub or portfolio directly in the profile section for technical roles.
- Applications may be reviewed by AI scoring before reaching a recruiter — use keywords from the job description.
ANONYMOUS · UNFILTERED
What do employees actually say about Vitol?
Real rants from real employees. Read before you apply.