Senior Network Security Engineer

Toronto, ON, CA

Apply now Apply later

Description

GlassHouse Systems (GHS) is an enterprise systems, and managed services solutions provider that develops, designs and deploys solutions for leading enterprises in Canada and the US. For almost 30 years, GHS has delivered an enterprise level of service and support to clients. Recognized with industry-leading awards each year, GHS translates this differentiation into positive client experiences. 

As a S. Network Security Engineer, you will be reporting to the Network Security Manager to implement and support a wide variety of network and security technologies, combining deep knowledge of technology infrastructure to support a seamless experience for internal and external customers. This will include participating in the design, deployment, configuration and troubleshooting of Network Security technologies such as NGFW, IPS/IDS, NAC, LAN, WAN, WLAN, Data Center, and Cloud networking technologies within Information Technology.

Responsibilities

  • Troubleshooting cloud network and security infrastructure solutions, including hybrid cloud connectivity, firewalls, load balancers, IPSEC VPN, etc.
  • Responsible for designing, deploying, configuring, maintaining and troubleshooting Palo Alto, FortiGate, Cisco Firepower and Juniper firewalls.
  • Responsible for designing, deploying, configuring, maintaining and troubleshooting IP Networking. Routing protocols (OSPF, BGP), Segment Routing, QoS, IP VPN, VPLS, EVPN, VxLAN, NAT, etc.
  • Responsible for troubleshooting, isolate and correct service-affecting issues on the network in areas including but not limited to: routing protocols, routers, switches, firewall administration, MPLS, BGP, VPN, load balancing.
  • Responsible for building, interconnecting, and supporting networks with one of the cloud providers - Regions and Availability Zones. Including working knowledge and hands-on experience of VPC connectivity, Transit Gateway, Direct link/connect methodologies.
  •  Conduct research, analyze, recommend, implement, troubleshoot for SDWAN infrastructure (implementation and troubleshooting) (Fortinet and Zscaler products)
  •  Perform the execution of day-to-day networking operations to guarantee network availability, stability, and serviceability with the least amount of downtime possible.
  • Design, maintain the network infrastructure services, including the installation, architecture, design, setup, troubleshooting, and maintenance of network and security software and hardware in a mixed vendor environment.
  • Review assigned service requests daily, follow up and provide status updates to clients; effectively maintain service delivery status and backlog.
  • Lead the technical delivery of projects, including design, configuration, and testing of technical solutions for enterprise-wide projects.
  • Work with vendors, customers, partners, providers, and peer technical staff on implementation, optimization, and security of Network and Security system. This includes, but is not limited to, troubleshooting infrastructure and services including routers, switches, access points, load balancers in both an on -premises environment and an Cloud environment, layer 7 firewalls, remote access solutions and site connectivity
  • Research, analyze, recommend, and implement new software, hardware, tools, systems, and processes to increase efficiency, lower total cost of ownership, and improve performance.
  • Perform infrastructure maintenance and upgrades to client environments.
  • Provide incident management and support to the critical issues escalated by Network Security Services Operations, including internal and external communications, team coordination of repair and then root cause analysis efforts.
  • Create and review the documentation of the current Network Architecture and develop Network solutions to enhance existing services.
  • Perform infrastructure maintenance and upgrades to client environments.
  • Perform technical assessments using industry standard toolsets for network, server, and security architectures.
  • Communicate effectively with internal and external audiences with varying levels of technical expertise.
  • Participate in the on-call rotation and be able to respond to critical or high severity alerts after hours and follow documented steps to address such issues.
  • Participate with on demand after hours change implementation for new initiatives and or in support of incident management.

Requirements

  • Bachelor’s degree or equivalent
  • Must have 10+ years experience working in large enterprises implementing hybrid cloud connectivity and enterprise security needs in the network context.
  • Extensive support of Routing Protocols/Technologies such BGP, OSPF, MPLS VPN, Multicast.
  • Demonstrated experience in LAN/WAN, MPLS, QoS, multicast and core networking discipline, including advance routing protocols like BGP and OSPF
  • Experience with technologies such as: Palo Alto, FortiGate, Cisco Firepower and Juniper vSRX
  • Ability to perform TCP/IP Network traces/packet captures with solid experience interpreting results.
  • Experience with Firewall environments, IDS/IPS, NAC Management, SD-WAN, VPN, Firewalls, etc.
  • Vendor certification –

o  Cisco (CCNA , CCNP)

o  Fortinet (FCA, FCP)

o  Palo Alto (PCNSA)

Nice to Have:

  • Experience in IT and Data Centre infrastructure strategies, solutions, and concepts
  • Knowledge of Virtualization techniques (VMWare, Hyper-V)
  • Scripting Languages: Python
  • Advanced Configuration of Juniper vSRX Firewall and Zscaler SDWAN
  • Experience in ITSM ticketing tool – Service Now
  • Vendor certification –

o  Cisco (CCIE)

o  Fortinet (FCSS)

o  Palo Alto (PCNSE)

o  Juniper (JNCIA-SEC/ JNCIS-SEC)

Personal attributes

  • Excellent verbal and written communications skills
  • In addition to network and security expertise, we expect the engineer to have a
  • Strong team player and enjoys working in a fast-paced team atmosphere
  • Ability to manage priorities, commitments and projects
  • Must be able to grasp highly technical concepts quickly
  • Passionate about cybersecurity concepts and technologies

Disclaimer

What you'll get: 

Competitive salary 

Health benefits (medical, vision, dental) 

Life insurance 

Pension plan 

Professional development 

Amazing company culture 

Free parking 

Gym on-site 

Join a team of professionals led by a diverse set of leaders from across the industry. 


GlassHouse Systems commitment: 

We believe that a diverse team is the key to innovation and growth. We are an equal opportunity employer that values diversity at our company and encourages all candidates to apply. We do not discriminate on the basis of race, religion, color, national origin, gender, sexual orientation, age, marital status, veteran status, or disability status. 

GlassHouse Systems will accommodate individuals with disabilities through each stage of the recruitment process. Please advise us of any needs when your interview is booked and we will do our best to meet your needs. 

Please note that all candidates have to be legally eligible to work in Canada. 

Any offer of employment will be conditional upon a criminal record check. 

GlassHouse Systems thanks all candidates for their interest, however only those selected to continue in the process will be contacted. 

Apply now Apply later

* Salary range is an estimate based on our InfoSec / Cybersecurity Salary Index 💰

Job stats:  1  0  0

Tags: CCIE CCNP Cloud EVPN Firewalls Hyper-V IDS IPS JNCIA-SEC JNCIS-SEC Network security NGFW PCNSA Python Scripting TCP/IP VMware VPN VXLAN

Perks/benefits: Career development Competitive pay Fitness / gym Health care Insurance Startup environment

Region: North America
Country: Canada

More jobs like this

Explore more career opportunities

Find even more open roles below ordered by popularity of job title or skills/products/technologies used.