Technology Architect – Network Security & Cloud Security

Upstaff


Job Location:

Toronto - Canada

Monthly Salary: CAD 70 - 70
Experience Required: 9years
Posted on: 9 hours ago
Vacancies: 1 Vacancy

Job Summary

Technology Architect Network Security & Cloud Security

Location: 222 Jarvis St Toronto Ontario Onsite

Position Overview

The Technology Architect will provide senior-level architecture leadership and technical expertise to support Cloud Access Security Platforms and Proactive Risk Management initiatives as part of a broader Cyber Security Strategy. The role focuses on designing implementing and supporting Secure Service Edge (SSE) Secure Access Service Edge (SASE) and enterprise network security solutions within a large-scale complex government environment.

Key Responsibilities

Security Architecture & Strategy

  • Lead the architecture design and implementation of enterprise network security and SSE/SASE modernization initiatives.
  • Develop and maintain technical security architectures aligned with organizational cybersecurity strategies and business objectives.
  • Provide strategic guidance on cloud security network security and secure access technologies.
  • Design and document conceptual logical and physical security architectures for enterprise solutions.

Network Security & Cloud Security

  • Architect implement and support security platforms including:
    • Palo Alto Prisma Access
    • Radware Web Application Firewall (WAF)
    • Cloud Access Security Broker (CASB)
    • Firewall Policy Management solutions
    • Cloud-native network security controls
  • Design and manage cloud infrastructure security architectures including security groups network access control lists (ACLs) segmentation and secure connectivity.
  • Ensure secure integration of network and cloud security technologies across multiple environments.

Engineering & Operational Support

  • Provide engineering leadership and implementation support for security modernization projects.
  • Coordinate deployments change management activities upgrades and operational support initiatives.
  • Develop operational procedures standards and documentation to support ongoing platform management.
  • Collaborate with internal teams and external vendors to troubleshoot resolve and mitigate security platform issues.

Solution Design & Architecture Governance

  • Gather business and technical requirements from stakeholders.
  • Produce architecture deliverables including:
    • Solution Architecture Documents
    • High-Level and Detailed Designs
    • Security Standards and Guidelines
    • Technical Roadmaps
    • Implementation Plans
  • Apply TOGAF and enterprise architecture best practices throughout the solution lifecycle.
  • Ensure solutions meet security compliance operational and business requirements.

Agile Project Delivery

  • Participate in Agile delivery teams and support:
    • Backlog refinement
    • User story development
    • Sprint planning
    • Scrum ceremonies
    • Iterative solution delivery
  • Work closely with project managers product owners security teams and infrastructure teams to ensure successful project outcomes.

Required Qualifications

Network Security Expertise

  • Extensive experience with:
    • Palo Alto Prisma Access
    • Radware Web Application Firewall (WAF)
    • Cloud Access Security Broker (CASB)
    • Firewall Policy Management
    • Secure Service Edge (SSE)
    • Secure Access Service Edge (SASE)
    • Cloud Security Architecture
    • Network Security Engineering

Architecture & Design Experience

  • Strong experience developing enterprise architecture and solution design documentation.
  • Expertise with TOGAF Architectural Framework.
  • Experience producing conceptual logical and detailed technical designs.
  • Strong requirements gathering and stakeholder management skills.
  • Experience supporting engineering implementation and architecture governance.

Cloud & Security Technologies

  • Knowledge of Azure AWS and hybrid cloud environments.
  • Experience with cloud security controls network segmentation security groups and network access control lists.
  • Understanding of MITRE ATT&CK framework Zero Trust Architecture and cybersecurity best practices.

Agile & ITIL

  • Experience working within Agile environments using Scrum methodologies.
  • Knowledge of backlog management user stories sprint execution and iterative delivery.
  • Understanding of ITIL processes including Incident Management Change Management and Problem Management.

Soft Skills

  • Excellent leadership communication and stakeholder management skills.
  • Strong analytical troubleshooting and problem-solving abilities.
  • Ability to translate business requirements into secure technical solutions.
  • Experience working in large complex enterprise environments.

Preferred Qualifications

  • Previous Public Sector or Government experience.
  • Experience supporting enterprise cybersecurity modernization initiatives.
  • Familiarity with large-scale network transformation and cloud security programs.

Must-Have Skills

  • Palo Alto Prisma Access
  • Radware Web Application Firewall (WAF)
  • Cloud Access Security Broker (CASB)
  • Firewall Policy Management
  • Cloud Infrastructure Network Architecture
  • Cloud Security Groups and Network Access Control Lists (ACLs)
  • Security Architecture & Solution Design
  • TOGAF Framework
  • Agile Delivery Methodologies
  • Network Security Engineering





Required Skills:

Mandatory Skills & Experience Cloud & Infrastructure Engineering Proven experience designing deploying and maintaining hybrid infrastructure environments across: Microsoft Azure Amazon Web Services (AWS) Linux-based environments SaaS solutions COTS solutions On-premises systems Strong experience with Windows and Linux server administration including: CentOS Ubuntu CoreOS Experience supporting modern web technology stacks including: LAMP MEAN Drupal Elasticsearch Experience with virtualization platforms storage solutions networking and enterprise infrastructure services. Strong understanding of cloud architecture frameworks technology assessments and cloud solution strategies. Identity & Access Management Experience managing and supporting identity and access controls using: Active Directory Microsoft Entra ID Enterprise IAM solutions Experience implementing authentication authorization and access governance controls. DevOps & CI/CD Automation Strong experience designing building and administering CI/CD pipelines for continuous integration and deployment. Experience with development and collaboration tools including: Azure DevOps JIRA Confluence Maven Jenkins Experience with Infrastructure as Code (IaC) and version-controlled deployments. Strong knowledge of DevOps methodologies automation frameworks and release management best practices. Experience with containerization and orchestration technologies including: Docker Kubernetes AKS / EKS Experience automating operational and compliance-related activities using: PowerShell Bash Python Programming & Scripting Hands-on experience with scripting and programming languages including: Python Bash PHP Java JavaScript Experience with build and configuration management tools including: Git Ansible Chef Puppet API & Integration Experience Experience building and consuming APIs and integration endpoints. Experience integrating cloud platforms enterprise systems and deployment pipelines. Understanding of enterprise integration architectures and service-based deployments. Security Monitoring & Compliance Strong understanding of infrastructure security cloud security and DevOps security best practices including: Least privilege access Secure logging Secrets management Vulnerability remediation Experience with security and monitoring tools including: Radware Dynatrace Splunk Azure Monitor / Log Analytics AWS CloudTrail / CloudWatch ELK Stack / SIEM solutions Experience implementing centralized audit logging and monitoring across enterprise platforms. Ability to support internal and external audits through reporting evidence gathering and log analysis. Experience supporting forensic investigations audit remediation and incident reviews. Familiarity with Government of Ontario I&IT Directives Policies and Information Technology Standards. Release Management & Operational Support Experience coordinating infrastructure and application releases across technical and business teams. Knowledge of change management processes deployment approvals rollback planning and release governance. Experience with release readiness reviews deployment validation and post-release monitoring. Ability to maintain release documentation operational records and audit artifacts. Project Management & Communication Strong project planning coordination and resource management skills. Experience with roadmap planning modernization initiatives and infrastructure investment planning. Strong stakeholder communication and cross-functional collaboration skills. Ability to explain complex technical concepts to business users leadership teams and non-technical stakeholders. Strong documentation reporting presentation and technical writing skills. Mobile Device Management Experience supporting mobile device management for cellular devices and tablets across multiple platforms and operating systems. Desirable Skills Experience supporting Government of Ontario enterprise environments. Experience with enterprise modernization and cloud transformation initiatives. Familiarity with enterprise governance compliance frameworks and audit readiness programs. Experience mentoring and coaching junior DevOps and infrastructure resources. Strong understanding of operational resilience disaster recovery and enterprise monitoring strategies. Additional Information Strong hands-on DevOps cloud infrastructure automation CI/CD security and enterprise release management experience is mandatory for this role.

Technology Architect Network Security & Cloud SecurityLocation: 222 Jarvis St Toronto Ontario OnsitePosition OverviewThe Technology Architect will provide senior-level architecture leadership and technical expertise to support Cloud Access Security Platforms and Proactive Risk Management initiative...