Skip to main content
CC

Carnival Corporation & plc

Carnival Corporation & plc operates the world's largest cruise fleet - more than 90 ships spanning nine cruise line brands, including Carnival Cruise Line, the company's founding operation from 1972. Based in Miami, Florida, the company has welcomed over 100 million guests across routes covering the Caribbean, Alaska, Mexico, Europe, and beyond. That scale means a sprawling, complex attack surface: onboard OT systems, satellite communications, payment infrastructure at port and at sea, crew and guest data across global jurisdictions, and the IT backbone supporting nine distinct brand identities. The threat model here isn't theoretical. Maritime cybersecurity sits at the intersection of legacy industrial control systems, high-volume PII processing, PCI-heavy transaction environments, and the operational reality that a ship is a floating city with limited connectivity and high uptime requirements. Security teams working in this context deal with everything from network segmentation across vessel and shore-side infrastructure to incident response scenarios where physical isolation is both a constraint and a potential advantage. As the first cruise line to welcome 100 million guests, Carnival processes enormous volumes of personal and financial data - payment credentials, travel documents, health records - under regulations spanning multiple international jurisdictions. The company has publicly committed to sustainable cruising practices, and digital infrastructure security is inseparable from that operational continuity. Roles here would involve securing enterprise IT, shipboard networks, cloud platforms supporting nine brands, and the data pipelines that keep a global fleet moving.

Carnival Corporation & plc operates the world's largest cruise fleet - more than 90 ships spanning nine cruise line brands, including Carnival Cruise Line, the company's founding operation from 1972. Based in Miami, Florida, the company has welcomed over 100 million guests across routes covering the Caribbean, Alaska, Mexico, Europe, and beyond. That scale means a sprawling, complex attack surface: onboard OT systems, satellite communications, payment infrastructure at port and at sea, crew and guest data across global jurisdictions, and the IT backbone supporting nine distinct brand identities.

The threat model here isn't theoretical. Maritime cybersecurity sits at the intersection of legacy industrial control systems, high-volume PII processing, PCI-heavy transaction environments, and the operational reality that a ship is a floating city with limited connectivity and high uptime requirements. Security teams working in this context deal with everything from network segmentation across vessel and shore-side infrastructure to incident response scenarios where physical isolation is both a constraint and a potential advantage.

As the first cruise line to welcome 100 million guests, Carnival processes enormous volumes of personal and financial data - payment credentials, travel documents, health records - under regulations spanning multiple international jurisdictions. The company has publicly committed to sustainable cruising practices, and digital infrastructure security is inseparable from that operational continuity. Roles here would involve securing enterprise IT, shipboard networks, cloud platforms supporting nine brands, and the data pipelines that keep a global fleet moving.

1 Open job

We use cookies

We use cookies to understand how this board is used and to improve it. Analytics run only if you accept. Cookie Policy