GlassHouse Systems (GHS) is an enterprise systems, and managed services solutions provider that develops, designs and deploys solutions for leading enterprises in Canada and the US. For almost 33 years, GHS has delivered an enterprise level of service and support to clients. Recognized with industry-leading awards each year, GHS translates this differentiation into positive client experiences.
We are looking for a Network Security Engineer to join our Toronto office. This is a full-time hybrid position.
The Network Security Engineer will support, implement, maintain, and troubleshoot network and security infrastructure across customer, data center, and cloud environments. The engineer will work closely with Senior Network Security Engineers on complex implementations, migrations, troubleshooting activities, and technical projects, while progressively developing the skills required to independently manage more complex network and security solutions. The role requires hands-on knowledge of enterprise networking and network security technologies, including routing, switching, firewalls, VPNs, and hybrid-cloud connectivity.
Responsibilities:
- Configure, implement, maintain, and troubleshoot network and security solutions.
- Support Palo Alto, FortiGate, Cisco Firepower, and other firewall platforms, including security policies, NAT, security profiles, and high-availability configurations.
- Configure, maintain, and troubleshoot site-to-site IPsec VPNs and remote-access VPN solutions.
- Support enterprise LAN/WAN and data center networking, including VLANs, trunk, LACP/port-channels, STP, HSRP/VRRP, routing, and switching.
- Support routing protocols such as BGP and OSPF and assist Senior Engineers with more complex routing and connectivity issues.
- Perform TCP/IP troubleshooting, packet captures, traffic analysis, and problem determination using tools such as Wireshark and vendor diagnostic tools.
- Support hybrid-cloud connectivity and cloud networking environments, including VPC connectivity, transit connectivity, routing, VPNs, and secure connectivity between cloud and on-premises environments.
- Work closely with Senior Network Security Engineers on implementations, migrations, upgrades, maintenance activities, and complex troubleshooting.
- Execute approved changes following GHS change-management procedures, including pre-change validation, implementation, testing, rollback readiness, and post-change verification.
- Review assigned incidents, service requests, and project tasks; provide timely status updates and maintain accurate technical records.
- Create and maintain network diagrams, implementation documents, configuration records, standard operating procedures, and knowledge-base documentation.
- Work with customers, vendors, carriers, cloud providers, and internal technical teams to troubleshoot and resolve network and security issues.
- Participate in technical assessments and contribute to solution design and implementation planning under the guidance of Senior Engineers.
- Participate in the on-call rotation and respond to critical/high-severity incidents and approved after-hours changes as required.
- Continuously develop technical skills through hands-on work, vendor training, certification, and mentoring from Senior Network Security Engineers.
Requirements:
- Bachelor’s degree in computer networking or computer science is preferred
- Certifications - Cisco CCNP Enterprise/Security.
- Minimum 5+ years of hands-on experience in enterprise networking and/or network security environments.
- Solid understanding of TCP/IP, subnetting, VLANs, routing, switching, NAT, DNS, DHCP, and common network services.
- Hands-on experience supporting enterprise firewall technologies; experience with Fortinet FortiGate, Firepower and/or Palo Alto.
- Practical experience configuring and troubleshooting firewall policies, NAT, IPsec VPNs, remote-access VPNs, and security profiles.
- Working knowledge of routing protocols, particularly BGP and OSPF.
- Experience troubleshooting network connectivity using packet captures, logs, CLI diagnostic tools, and Wireshark.
- Experience working with incident, request, problem, and change-management processes in production environments.
- Ability to follow technical procedures and change plans while recognizing when an issue requires escalation to a Senior Engineer.
- Strong written and verbal communication skills and ability to provide clear technical updates to internal teams and customers.
- Ability and willingness to participate in an on-call rotation and occasional after-hours implementation or incident activities.
Nice to Have:
- Experience in IT and Data Centre infrastructure strategies, solutions, and concepts
- Knowledge of Virtualization techniques (VMWare, Hyper-V)
- Exposure to SD-WAN/SASE or Zscaler technologies.
- Experience with IBM Cloud, Azure, AWS, or Google Cloud networking and hybrid-cloud connectivity.
- Experience applying ITIL best practices is an asset
- Experience in ITSM ticketing tool – Service Now
- Experience supporting multi-vendor environments and geographically distributed customers.
Personal attributes:
- Excellent verbal and written communications skills
- Ability to manage priorities, commitments and projects
- Passionate about cybersecurity concepts and technologies
- Strong team player who collaborates effectively with Senior Engineers and other technical teams.
- Motivated to learn, develop technical depth, and progressively take ownership of more complex responsibilities.
- Strong troubleshooting mindset with attention to detail and a structured approach to problem solving.
- Ability to grasp new technologies and technical concepts quickly.
- Passionate about networking, cybersecurity, cloud technologies, and continuous professional development.
Disclaimer:
The rate for this position is $90K-110K. The rate is subject to change and may be modified in the future.
What you'll get:
Competitive salary
Health benefits (medical, vision, dental)
Life insurance
Pension plan
Professional development
Amazing company culture
Free parking
Gym on-site
Join a team of professionals led by a diverse set of leaders from across the industry.
GlassHouse Systems commitment:
We believe that a diverse team is the key to innovation and growth. We are an equal opportunity employer that values diversity at our company and encourages all candidates to apply. We do not discriminate on the basis of race, religion, color, national origin, gender, sexual orientation, age, marital status, veteran status, or disability status.
GlassHouse Systems will accommodate individuals with disabilities through each stage of the recruitment process. Please advise us of any needs when your interview is booked and we will do our best to meet your needs.
Please note that all candidates have to be legally eligible to work in Canada.
Any offer of employment will be conditional upon a criminal record check.
GlassHouse Systems thanks all candidates for their interest, however only those selected to continue in the process will be contacted.