Hybrid - Candidate must be able to work 3 days onsite and 2 days remoteMUST HAVES:
Cyber Security and Network Security
4+ years hands-on experience with cyber security, network security and network protection solutions and technologies \xe2\x80\x93 preferably for Ontario K-12 school boards, including:
Security Information and Event Management (SIEM) including Microsoft Sentinel, Splunk, AlienVault and FortiSiem
Endpoint protection (EPP), Endpoint detection and response (EDR), Extended Detection and Response (XDR) and other endpoint security solutions
Identity Management (IdM) and identity security
Incident Management (IM)
4+ years\xe2\x80\x99 hands-on experience with authentication solutions and technologies \xe2\x80\x93 preferably for Ontario K-12 school boards, including:
2+ years demonstrated hands-on experience providing security operations center (SOC) troubleshooting, support, industry research, products reviews and automation including SOC technologies, services, and equipment, but not limited to:
Network Technology
2+ years\xe2\x80\x99 hands-on experience with software-defined networking (SDN, SD-WAN), in particular, Fortinet, Meraki, Palo Alto, and Aruba \xe2\x80\x93 preferably for Ontario K-12 school boards
2+ years\xe2\x80\x99 hands-on experience in data monitoring and management systems, in particular, SolarWinds, FortiManager, and Panorama \xe2\x80\x93 preferably for Ontario K-12 school boards
Coordination Skills and Experience
Strong communication skills as demonstrated through:
3+ years\xe2\x80\x99 experience in preparing written materials (e.g., status reports, recommendations, briefing notes)
3+ years\xe2\x80\x99 coordinating complex technical work with multiple IT teams, internal and external to the Ministry
Industry Certifications / Relevant Degrees
Cyber security certification (e.g. CEH, CISSP or CISM)
Nice-to-have
Public Sector Experience
4+ years\xe2\x80\x99 hands-on experience working with Ontario K-12 school boards, in particular with school board networks and network security
Description: Providing subject matter expertise, configuration, troubleshooting, training, and implementation guidance with cyber security, network security and network protection solutions, including: Next-generation cyber security technologies leveraging automation, artificial intelligence (AI) and machine learning (Client) Endpoint security solutions - Endpoint protection (EPP), Endpoint detection and response (EDR), and Extended Detection and Response (XDR) Cloud-based cyber security solutions, Secure Service Edge (SSE) / Secure Access Service Edge (SASE) including Secure Web Gateway (SWG), Cloud Access Security Broker (CASB) and Zero-Trust Network Identity security solutions \xe2\x80\x93 such as Multi-Factor Authentication (MFA), Passkey, Identity Management (IdM), and Privileged Access Management (PAM) Advanced intrusion prevention systems (IPS) and intrusion detection systems (IDS) Network access control Incident Response and Incident Management (IR and IM) systems Automated vulnerability and patching Penetration testing and automated Red Teaming User and Entity Behaviour Analytics (UEBA) Distributed denial of service (DDoS) protection Operation Technology (OT) security Providing hands-on subject matter expertise troubleshooting and securing software-defined networking (SDN) technology including: Software-defined wide area network (SD-WAN) including Fortinet, Cisco Meraki, Palo Alto, Fat Pipe, etc. Emerging SD-Edge such as VMware VeloCloud, Silver Peak, etc Providing subject matter expertise in the development and delivery of technical training courses on next-generation cyber security solutions, secure networking solutions, and various security products to support boards\xe2\x80\x99 cyber resilience efforts Troubleshooting, providing analysis, and recommending solutions on complex cyber security and network security issues Performing vulnerability scanning and penetration testing including activities such as preparing test plans, completing the testing analysis, and risk assessments to ensure sound network and security architecture Staying abreast of the ever-evolving cyber threat landscape to provide subject matter expertise, guidance and advice on tactical and operational cyber security and network security practices Providing subject matter expertise, analysis, configuration, troubleshooting, and implementation guidance with security operations centre (SOC) technologies, including: Security Information and Event Management (SIEM) Security Orchestration, Automation and Response (SOAR) Threat Intelligence SASE SolarWinds NetFlow Traffic Analyzer Network Performance Monitor (NPM) and Network Configuration Management (NCM) Tools Providing subject matter expertise, analysis, configuration, troubleshooting, training, and implementation guidance with identity security and authentication solutions and technologies for: Password-based and passwordless authentication MFA Certificate-based authentication Creating/updating detailed system documentation and technical specifications various solutions and architecture, including cyber security, network security and network protection solutions, and SOC solutions Assessing new and emerging cyber security solutions and technology trends and industry analysis, including, but not limited to wireless network security practices including authentication and edge security Presenting to various stakeholders, as needed Provide status and project status reports on other deliverables assigned. Deliver on other duties as assigned. This work involves working in close partnership with various government departments, the K-12 education sector, telecommunications providers and network and cyber security technology vendors to develop tailored approaches and implementation plans. The manager may assign school board-related work for other initiatives, as required.