Description:
The Senior Technology Architect role requires deep knowledge expertise and experience in next-generation network security cyber security solutions security operations (SecOps) automation and artificial intelligence (AI) in cyber security and managed / shared security services (MSS) models. The resource must have hands-on experience in designing developing and implementing cyber security architectures and solutions particularly within the education sector preferably in the Ontario K 12 school board environment.
This resource is responsible for but not limited to:
- Cyber security solutions to protect detect and respond to cyber threats
- Zero-trust architecture (ZTA)
- Cloud security architecture
- MITRE ATT&CK D3FEND and ATLAS framework
- Various vendor specific cyber security and network architectures (e.g. Microsoft Azure Google AWS)
- NIST Cybersecurity Framework (CSF) v2 CIS Controls v8
- Security operation (SecOps) and AI-Operations (AIOps) practices
- Designing delivering solution and architecture guidance training and implementation support for next-generation networks network protection and cyber security technologies including:
- Security service edge (SSE) / secure access service edge (SASE) including integration of network and security functions including secure web gateway (SWG) cloud access security broker (CASB) and zero-trust network architecture firewall-as-a-service (FWaaS)
- SD-WAN (software-defined wide area network) and software-defined networking (SDN)
- AI and machine learning (ML)-driven network and security technologies
- Endpoint protection platforms (EPP) endpoint detection and response (EDR) and extended detection and response (XDR) solutions
- Advanced intrusion prevention systems (IPS) intrusion detection systems (IDS) network access control and distributed denial of service (DDoS) protection
- Identity security and authentication solutions (passwordless password-based certificate-based multi-factor authentication (MFA))
- Incident Response and Incident Management (IR and IM) solutions
- Automated vulnerability and patching
- User and Entity Behaviour Analytics (UEBA)
- Penetration testing and automated red teaming
- Operation technology (OT) security
- Designing and implementing hybrid cyber security operating models involving both in-house and outsourced MSSP (managed security services provider) capabilities including:
- MSSP integration and optimization
- Security operations functions and architecture
- Threat detection and incident response
- Security Information and Event Management (SIEM) Security Orchestration Automation and Response (SOAR) EDR/XDR and threat intelligence platforms in a hybrid implementation
- Automation and orchestration workflows
- Governance risk and compliance in a hybrid (in-house and outsourced) security operations environment
- Leading the design and implementation of automated and autonomous solutions such as SOAR and Agentic AI-based solutions for threat and incident response phishing mitigation access control and exposure management across complex distributed environments.
- Providing subject matter expertise in network operations centre (NOC) and security operations centre (SOC) technologies services and tools including but not limited to:
- Security Information and Event Management (SIEM)
- Security Orchestration Automation and Response (SOAR)
- Network Traffic Analyzer Network Performance Monitoring and Network Configuration Management Tools
- Guiding and supporting boards with their transition from a primarily internal SecOps model to a hybrid (internal and outsourced) managed security services (MSS) model including:
- Providing strategic advice and implementation guidance and support
- Designing secure solutions including telemetry and metrics management
- Internal security operations optimization
- MSS integration and optimization
- Advising on modernization strategies including cloud adoption network segmentation data residency and distributed identity models ensuring alignment with provincial and educational compliance requirements.
- Leading critical architecture and capability assessments across school boardsAA3 and MSSP boundaries to inform secure solution design and effective telemetry management.
- Developing strategic technology roadmaps based on new and emerging cyber security and network security architecture solutions technology trends and industry analysis.
- Creating/updating documentation and technical specifications for various solutions and architecture including options analysis costing analysis on cyber security network security and network architectures.
- Staying abreast of the evolving cyber threat landscape as applicable to the K-12 education sector to provide subject matter expertise guidance and advice on tactical and operational cyber security and network security practices and assessing new and emerging cyber security solutions technology trends and industry analysis.
- Presenting to senior and executive management and external senior stakeholders as needed.
- Providing status and project status reports on all deliverables assigned.
- Taking a collaborative approach to solution definition development and implementation with multiple stakeholder groups with differing needs and expectations.
- Aligning with industry and legislative advancements at the federal provincial/local level (e.g. Bill 194 / Enhancing Digital Security and Trust Act 2024 (EDSTA)).
- Delivering on other duties as assigned.
- This work involves working in close partnership with sector technical IT leads (e.g. school board IT leads) to develop tailored approaches and implementation plans. To support various stakeholders the resource must be available to perform hands-on configuration troubleshooting and training at the client site. Therefore the resource must be available to travel same day or overnight in Ontario as needed.
- The unit manager may assign other related board work for other unit or branch initiatives as required.
Requirements
Experience and Skill Set Requirements:
Skill Set Requirements:
Cyber security network security and architecture expertise:
- 10 years in cyber security solutions and next generation network security with a focus on architecture design strategic planning and implementation.
- 5 years of experience designing and implementing secure architectures preferably within Ontario K 12 school boards.
- 5 years of experience in network security within advanced SDN environments preferably in Ontario K 12 school boards.
- Proven hands-on experience deploying and implementing the following solutions and technologies preferably for Ontario K-12 school boards:
- Cloud-based security (SSE/SASE including SWG CASB FWaaS ZTNA)
- Zero-trust architecture (ZTA)
- Cloud security architecture (e.g. Azure AWS Google Cloud)
- MITRE ATT&CK D3FEND and ATLAS frameworks
- NIST Cybersecurity Framework (CSF) v2 CIS Controls v8
- AI/ML-driven cyber security and agentic AI-based automation
- Security automation (static and dynamic) and playbook development
- Endpoint security solutions (EPP EDR XDR)
- Advanced IPS/IDS DDoS protection and network access control
- Identity security and authentication (passwordless password-based certificate-based 2FA MFA)
- Incident response and incident management (IR/IM)
- Automated vulnerability management and patching
- User and Entity Behaviour Analytics (UEBA)
- Penetration testing and automated red teaming
- OT security
- Proven hands-on experience designing and implementing hybrid (internal and outsourced) security operations solutions and practices including:
- Integrating and optimizing security solutions and operations practices between internal security team and outsourced managed security services provider
- Security solutions and practices in a hybrid (internal and outsourced) security operation model
- Threat detection and incident response practices in a hybrid model
- SIEM SOAR EDR/XDR and threat intelligence platforms in a hybrid implementation
- Automation and orchestration workflows in a hybrid model
- Governance risk and compliance in a hybrid (in-house and outsourced) security operations environment
- Strong knowledge of different managed security services models such as managed security service provider (MSSP) managed detection and response (MDR) security operations center as a service (SOCaaS).
- Strong knowledge of federated or multi-tenant cyber security architectures.
- Demonstrated ability to assess and evaluate emerging cyber security technologies through pilots and proof-of-concepts.
- Strong knowledge of IoT cyber security and data capture mechanisms.
Network Technology:
- 5 years of experience with network infrastructure (LAN/WAN VPN VLAN) and its components (e.g. switches routers firewalls).
- 5 years of experience with SDN/SD-WAN technologies (e.g. Fortinet Meraki Palo Alto etc.).
- 3 years of experience with SSE/SASE technologies (e.g. Netskope Zscaler Prisma SASE Cato SASE etc.).
- 5 years of experience implementing WAN and LAN/WLAN network solutions in Ontario s K 12 education sector school boards.
- 5 years of experience with network monitoring traffic analysis and management tools (e.g. SolarWinds FortiManager PRTG Panorama Wireshark).
- 3 years of experience with data logging formats (e.g. Syslog IPFix NetFlow).
- 5 years of experience configuring and troubleshooting network protocols (e.g. MPLS VPLS VLAN Trunking Protocol).
- Experience evaluating emerging network technologies through pilots and proof-of-concepts.
Strategic Advisory and Architecture Leadership:
- 5 years of experience presenting to senior and executive management and external stakeholders.
- 5 years coordinating and leading complex technical work with multiple diverse IT teams internal and external stakeholders.
- 5 years of experience preparing written materials for different audiences (e.g. technical documentation status reports recommendations briefing notes).
- 5 years of experience delivering cyber security upskilling training to IT and security teams.
- Experience developing strategic network and cyber security technology roadmaps and modernization strategies.
- Experience aligning network and security strategies with federal provincial/local and K-12 sector compliance requirements.
- Strong knowledge on secure solution design telemetry / metrics management.
- 5 years of experience advising organizations on the adoption of different managed security services models (from fully outsourced to co-managed) in a hybrid security operations approach.
- Experience with governance models and performance evaluation of managed security service providers.
Industry Certifications / Relevant Degrees:
- Relevant vendor certifications or equivalent work experience.
- Postgraduate degree (e.g. . and/or Ph.D.) in computer science cyber security or engineering is preferred.
- Cyber security certification(s). Preference is Certified Information Systems Security Professional (CISSP) Certified Information Security Manager (CISM) Certified Cloud Security Professional (CCSP). Other examples include Certified Ethical Hacker (CEH) Certified Information Systems Auditor (CISA) Certified in Risk and Information Systems Control (CRISC).
Public Sector Experience:
- Knowledge of Government of Ontario standards (e.g. GO-ITS) and relevant policies and legislation.
- 5 years hands-on experience working in the K-12 education sector with Ontario K-12 school boards in particular with school board network network security and cyber security.
Experience and Skill Set Requirements: Skill Set Requirements: Cyber security, network security and architecture expertise: 10+ years in cyber security solutions and next generation network security, with a focus on architecture design, strategic planning and implementation. 5+ years of experience designing and implementing secure architectures, preferably within Ontario K 12 school boards. 5+ years of experience in network security within advanced SDN environments preferably in Ontario K 12 school boards. Proven hands-on experience deploying and implementing the following solutions and technologies, preferably for Ontario K-12 school boards: Cloud-based security (SSE/SASE including SWG, CASB, FWaaS, ZTNA) Zero-trust architecture (ZTA) Cloud security architecture (e.g. Azure, AWS, Google Cloud) MITRE ATT&CK, D3FEND, and ATLAS frameworks NIST Cybersecurity Framework (CSF) v2, CIS Controls v8 AI/ML-driven cyber security and agentic AI-based automation Security automation (static and dynamic) and playbook development Endpoint security solutions (EPP, EDR, XDR) Advanced IPS/IDS, DDoS protection, and network access control Identity security and authentication (passwordless, password-based, certificate-based, 2FA, MFA) Incident response and incident management (IR/IM) Automated vulnerability management and patching User and Entity Behaviour Analytics (UEBA) Penetration testing and automated red teaming OT security Proven hands-on experience designing and implementing hybrid (internal and outsourced) security operations solutions and practices, including: Integrating and optimizing security solutions and operations practices between internal security team and outsourced managed security services provider Security solutions and practices in a hybrid (internal and outsourced) security operation model Threat detection and incident response practices in a hybrid model SIEM, SOAR, EDR/XDR, and threat intelligence platforms in a hybrid implementation Automation and orchestration workflows in a hybrid model Governance, risk, and compliance in a hybrid (in-house and outsourced) security operations environment Strong knowledge of different managed security services models, such as managed security service provider (MSSP), managed detection and response (MDR), security operations center as a service (SOCaaS). Strong knowledge of federated or multi-tenant cyber security architectures. Demonstrated ability to assess and evaluate emerging cyber security technologies through pilots and proof-of-concepts. Strong knowledge of IoT cyber security and data capture mechanisms. Network Technology: 5+ years of experience with network infrastructure (LAN/WAN, VPN, VLAN) and its components (e.g., switches, routers, firewalls). 5+ years of experience with SDN/SD-WAN technologies (e.g., Fortinet, Meraki, Palo Alto, etc.). 3+ years of experience with SSE/SASE technologies (e.g., Netskope, Zscaler, Prisma SASE, Cato SASE, etc.). 5+ years of experience implementing WAN and LAN/WLAN network solutions in Ontario s K 12 education sector, school boards. 5+ years of experience with network monitoring, traffic analysis and management tools (e.g., SolarWinds, FortiManager, PRTG, Panorama, Wireshark). 3+ years of experience with data logging formats (e.g., Syslog, IPFix, NetFlow). 5+ years of experience configuring and troubleshooting network protocols (e.g., MPLS, VPLS, VLAN Trunking Protocol). Experience evaluating emerging network technologies through pilots and proof-of-concepts. Strategic Advisory and Architecture Leadership: 5+ years of experience presenting to senior and executive management and external stakeholders. 5+ years coordinating and leading complex technical work with multiple diverse IT teams, internal and external stakeholders. 5+ years of experience preparing written materials for different audiences (e.g., technical documentation, status reports, recommendations, briefing notes). 5+ years of experience delivering cyber security upskilling training to IT and security teams. Experience developing strategic network and cyber security technology roadmaps and modernization strategies. Experience aligning network and security strategies with federal, provincial/local and K-12 sector compliance requirements. Strong knowledge on secure solution design, telemetry / metrics management. 5+ years of experience advising organizations on the adoption of different managed security services models (from fully outsourced to co-managed) in a hybrid security operations approach. Experience with governance models and performance evaluation of managed security service providers. Industry Certifications / Relevant Degrees: Relevant vendor certifications or equivalent work experience. Postgraduate degree (e.g., . and/or Ph.D.) in computer science, cyber security or engineering is preferred. Cyber security certification(s). Preference is Certified Information Systems Security Professional (CISSP), Certified Information Security Manager (CISM), Certified Cloud Security Professional (CCSP). Other examples include Certified Ethical Hacker (CEH), Certified Information Systems Auditor (CISA), Certified in Risk and Information Systems Control (CRISC). Public Sector Experience: Knowledge of Government of Ontario standards (e.g., GO-ITS) and relevant policies and legislation. 5+ years hands-on experience working in the K-12 education sector, with Ontario K-12 school boards, in particular with school board network, network security and cyber security.