DNV Certified Maritime Training Provider  |  CPG Group Provider  |  Online since 2018

Maritime Cyber Security – Advanced –

Advanced · Security

Advanced Maritime Cybersecurity
Afloat

Operational cyber risk management for the modern ship — from governance and asset visibility to incident response and recovery, taught through a single running vessel scenario.

IMO & IACS Aligned100% OnlineSelf-paced
20
Hours
10
Chapters
6
Months access
Advanced Maritime Cybersecurity Afloat — online course for shipboard officers
Get Your Advanced Maritime Cybersecurity Afloat Certificate
20 hours · 6 months of access
Advanced Maritime Cybersecurity Afloat
20 hours · 6 months of access
$ 200 USD $ 149 USD
Course Overview

Manage shipboard cyber risk as an operational-safety matter

This course treats cyber risk aboard ship as an operational-safety and continuity issue, not an IT problem bolted onto the vessel. It builds a working, defensible picture of the ship's digital and operational-technology systems, the risks that follow from them, and the controls that actually hold up under audit, vetting and inspection.

Navigation, communications and machinery systems each get dedicated treatment, so officers can recognise anomalies in their own area of responsibility and respond without compromising safety of life or the vessel.

The course closes on incident response, continuity and recovery — preserving evidence, sustaining operations through an event, and converting what happened into corrective action and stronger controls.

Course Information
Duration20 hours
DifficultyAdvanced
CategorySecurity
Delivery100% online, self-paced
Content10 chapters + final assessment
Why Choose Virtual Maritime Academy

Developed by experienced maritime professionals

Our courses are developed by experienced maritime professionals and are designed to provide practical knowledge and competency-based learning for today's maritime industry. On successful completion, participants receive a certificate issued by the Virtual Maritime Academy.

A digital certificate is delivered by email on successful completion.

Competencies achieved
Manage shipboard cyber risk as an operational-safety and continuity risk
Align shipboard practice with IMO and industry cyber guidance
Produce a defensible asset, dependency and risk picture for any vessel
Select, verify and evidence protective controls that withstand audit and inspection
Recognise navigation, communications and machinery anomalies and respond safely
Preserve evidence and investigate shipboard cyber events
Sustain operations through a cyber incident and recover with validated integrity
Convert incidents into corrective action and improved controls
Learning Outcomes

On successful completion, you will be able to:

These are the learning outcomes established in the course syllabus, Revision 1, 2026.

  • ✓Manage shipboard cyber risk as an operational-safety and continuity risk rather than an IT problem
  • ✓Satisfy flag, class, charterer and port-State expectations by aligning shipboard practice with IMO and industry cyber guidance
  • ✓Produce a defensible asset, dependency and risk picture for any vessel in the fleet
  • ✓Select, verify and evidence protective controls that withstand audit, vetting and inspection
  • ✓Recognise navigation, communications and machinery anomalies and respond without compromising safety
  • ✓Preserve evidence and investigate shipboard cyber events to a standard that survives later scrutiny
  • ✓Sustain operations through a cyber incident and recover with validated system integrity
  • ✓Strengthen fleet resilience by converting incidents into corrective action and improved controls
Course Content

Ten chapters and a final assessment

Each chapter closes with a short quiz drawn from its own content. Select a chapter to see what it covers.

—Introduction
Course orientation and how the course works
Course notices
Student identity verification
Downloadable course notes
01Orientation – Operating Safely in a Cyber Course
Course Navigation and Scope – What an Advanced Cyber Course Does and Does Not Teach
Baseline Diagnostic – Establishing Your Starting Competence
Shipboard Cyber-Lab Safety – The Rule Against Testing Live Systems
Evidence Handling – The Four Principles Applied at Sea
02Maritime Cyber Risk, Governance, and the Human Element
The Maritime Threat and Safety Landscape
Cyber Governance and the Safety Management System
The IMO, Industry and Flag-State Framework – Mandatory Requirement Against Guidance
Human Factors and Reporting Culture – Why People Are the Decisive Control
03Shipboard Digital Systems, IT/OT, and Asset Identification
The Shipboard Computer-Based System Landscape
IT Against OT – Technical Distinction and Cyber-Physical Dependency
Building an Asset Inventory – Fields, Sources and Defensible Method
Network, Data-Flow and Dependency Mapping Without Active Discovery
04Threats, Vulnerabilities, Attack Paths, and Risk Assessment
Threat and Vulnerability Fundamentals – Separating the Two Correctly
Maritime Attack Paths – From Initial Access to Operational Consequence
Risk Assessment – Deriving Likelihood, Consequence and Residual Risk
Vendor, Supply-Chain and Change Risk
The Risk-Register Decision Exercise
05Protecting the Ship – Preventive and Resilience Controls
Identity and Privilege – Unique Credentials and Least Privilege
Segmentation and Boundary Protection
Endpoints and Removable Media
Patch, Change and Backup Management
Vendor Remote Access – Authorising, Supervising and Closing the Session
Procedural and Physical Protections
06Navigation and Communications Cyber Resilience
Bridge-System Dependencies
GNSS Interference, Jamming and Spoofing
AIS, ECDIS and Radar Integrity – The Cross-Checking Method
SATCOM, GMDSS and Ship-Shore Communications
The Degraded-Navigation Decision Exercise
07Machinery, Power, Cargo, and OT Cyber Resilience
Integrated Automation, PLC, Engine and Power Systems
Cargo, Ballast and Bunkering Systems
OT Protocols and Passive Monitoring Concepts
Safe Maintenance and Change in Machinery Spaces
The OT Incident Tabletop
08Detecting, Triaging, and Investigating Shipboard Cyber Events
Logs and Baselines – Knowing Normal Before You Need To
Static Packet Analysis – Reading a Pre-Captured Trace Safely
Passive Monitoring and SIEM Concepts
Triage and Evidence – Observation Against Attribution
The Reporting Micro-Drill
09Incident Response, Continuity, and Recovery
Roles, Command Authority and Communications
Isolation Decisions – Why Isolation Is Not the Default
Continuity and Manual Fallback
Backup, Restoration and Integrity Verification
Reporting, SMS Integration and the After-Action Review
10Integrated Shipboard Cyber Capstone
The Scenario Brief
The Asset and Risk Artifact
The Escalating Incident Simulation
The After-Action and Corrective-Action Plan
Reflection and Attestation
FAFinal Assessment
Minimum passing score of 70%
Proctored final assessment
Photo identification required
Digital certificate delivered by email on successful completion

Course syllabus: Revision 1, 2026.

Who Should Attend

This course is designed for shipboard officers and personnel responsible for cyber risk, incident response and continuity aboard any vessel.

Prerequisite
There is no prerequisite for this course.
It is particularly relevant for
Masters and deck officers — connect cyber risk directly to navigational safety duties
Engineering officers and ETOs — extend asset and incident discipline to OT and machinery spaces
Ship security officers (SSOs) — align cyber watchkeeping with existing security duties
Designated Persons Ashore (DPAs) — oversee fleet-wide cyber risk within the Safety Management System
Fleet and technical superintendents — benchmark shipboard practice against IMO and class expectations
Any shipboard officer — builds a working, evidence-based understanding of maritime cyber risk
Assessment & Certification

A proctored final assessment with a minimum score of 70%

Each chapter closes with a short quiz drawn from its own content. The course ends with a proctored final assessment requiring a minimum score of 70% to pass, delivered entirely online.

Students must submit official photo identification before starting the course.

Certificate
On successful completion you receive a Virtual Maritime Academy Certificate of Completion, delivered digitally by email.
Final Assessment Technical Requirements
Device — a computer or tablet with a webcam.
Operating system — Windows 10 or later, macOS 11 or later.
Browser — Google Chrome or Mozilla Firefox, latest version recommended.
Internet — minimum 3 Mbps upload and download speed.
Hardware — minimum 8 GB RAM, functional webcam, microphone and speakers or headset.
Standards, Regulations and Guidance Covered

Grounded in the instruments that govern shipboard cyber risk

This course addresses the instruments that inform maritime cyber risk management, governance and incident-response obligations.

IMO MSC-FAL.1/Circ.3/Rev.4
IMO Resolution MSC.428(98), 2017
Guidelines on Cyber Security Onboard Ships, Version 5 (2024)
IACS UR E26 and UR E27 (2024)
SOLAS Chapter IX and the ISM Code
STCW Convention and Code, as amended
ACPO Good Practice Guide for Digital Evidence v5
NIST SP 800-61 and SP 800-63-4 (2025)
Get Certified

Build a defensible, ship-specific cyber risk practice

Good shipboard cyber risk management is deliberate, not improvised. That means an honest asset picture, controls that survive audit, and a crew that recognises trouble and responds without making it worse.

This course builds that competence — completed entirely online, in approximately 20 hours, at your own pace.

Govern · Protect · Detect · Respond · Recover
Course at a Glance
LevelAdvanced
Duration20 hours
Access6 months
AssessmentProctored, 70% to pass
$ 200 USD $ 149 USD
Enroll Now

Revision 1, 2026. Digital certificate delivered by email on successful completion.

Scroll to Top