Rubicon Path logo
Rubicon PathPosted 1 month ago

RQ09515 - Technology Architect - Senior

On-siteToronto, Ontario, Canada

ContractSenior LevelSmall

Job Summary

Design and implement end-to-end security automation workflows using SOAR platforms, integrating bi-directional connections and orchestrating real-time response actions. Provide subject matter expertise on zero-trust architecture, cloud security, and AI-driven security operations, including the deployment of agentic AI for incident response and phishing mitigation. Lead hybrid security operations by overseeing MSSP integration, optimizing threat detection logic, and managing SIEM, SOAR, and EDR/XDR ecosystems. Execute continuous automated red teaming platforms and develop observability dashboards to measure automation effectiveness and operational maturity. Deliver technical training to IT and security staff while presenting strategic updates to senior executive management and external stakeholders. Collaborate with government departments, telecommunications providers, and vendors to align with federal and provincial legislative advancements.

Required Qualifications

  • 10+ years in cyber security solutions and next-generation network security, with a focus on hands-on implementation, configuration, and troubleshooting
  • 5+ years of experience in network security within advanced SDN environments preferably in Ontario K12 school boards
  • Proven hands-on experience deploying and implementing the following solutions and technologies, preferably for Ontario K-12 school boards: Cloud-based security (SSE/SASE including SWG, CASB, FWaaS, ZTNA)
  • Proven hands-on experience deploying and implementing the following solutions and technologies, preferably for Ontario K-12 school boards: Zero-trust architecture (ZTA)
  • Proven hands-on experience deploying and implementing the following solutions and technologies, preferably for Ontario K-12 school boards: Cloud security architecture (e.g. Azure, AWS, Google Cloud)
  • Proven hands-on experience deploying and implementing the following solutions and technologies, preferably for Ontario K-12 school boards: MITRE ATT&CK, D3FEND, and ATLAS frameworks
  • Proven hands-on experience deploying and implementing the following solutions and technologies, preferably for Ontario K-12 school boards: NIST Cybersecurity Framework (CSF) v2, CIS Controls v8
  • Proven hands-on experience deploying and implementing the following solutions and technologies, preferably for Ontario K-12 school boards: AI/ML-driven cyber security and agentic AI-based automation
  • Proven hands-on experience deploying and implementing the following solutions and technologies, preferably for Ontario K-12 school boards: Security automation (static and dynamic) and playbook development
  • Proven hands-on experience deploying and implementing the following solutions and technologies, preferably for Ontario K-12 school boards: Endpoint security solutions (EPP, EDR, XDR)
  • Proven hands-on experience deploying and implementing the following solutions and technologies, preferably for Ontario K-12 school boards: Advanced IPS/IDS, DDoS protection, and NAC
  • Proven hands-on experience deploying and implementing the following solutions and technologies, preferably for Ontario K-12 school boards: Identity security and authentication (passwordless, password-based, certificate-based, 2FA, MFA)
  • Proven hands-on experience deploying and implementing the following solutions and technologies, preferably for Ontario K-12 school boards: Incident response and incident management (IR/IM)
  • Proven hands-on experience deploying and implementing the following solutions and technologies, preferably for Ontario K-12 school boards: Automated vulnerability management and patching
  • Proven hands-on experience deploying and implementing the following solutions and technologies, preferably for Ontario K-12 school boards: User and Entity Behaviour Analytics (UEBA), OT security
  • Proven hands-on experience deploying and implementing the following solutions and technologies, preferably for Ontario K-12 school boards: Penetration testing and automated red teaming
  • Strong knowledge of layered security controls and risk-informed cyber security models (NIST CSF v2, CIS Controls v8)
  • Demonstrated ability to assess and evaluate emerging cyber security technologies through pilots and proof-of-concepts
  • 5+ years of experience deploying secure architectures and automation workflows, preferably within Ontario K12 school boards
  • Hands-on experience with SOAR playbook design, bi-directional integrations, and AIOps-driven incident response
  • Experience with Continuous Automated Red Teaming (CART) platforms (e.g., SCYTHE, Caldera, AttackIQ) and integrating red team outputs into detection tuning and MSSP metrics
  • Proficiency in applying data science and ML to cyber security telemetry, including anomaly detection, scoring algorithms, and observability dashboards
  • Familiarity with security data lakes and log analytics platforms (e.g., Azure Data Explorer, Splunk, ELK)
  • Understanding of AI governance, explainability, and ethical deployment of autonomous systems
  • Proven hands-on experience designing and implementing hybrid (internal and outsourced) security operations, including: Strategic oversight of MSSP integration and optimization
  • Proven hands-on experience designing and implementing hybrid (internal and outsourced) security operations, including: High-level threat detection and incident response planning
  • Proven hands-on experience designing and implementing hybrid (internal and outsourced) security operations, including: SIEM, SOAR, EDR/XDR, and threat intelligence platforms
  • Proven hands-on experience designing and implementing hybrid (internal and outsourced) security operations, including: Automation and orchestration workflows
  • Proven hands-on experience designing and implementing hybrid (internal and outsourced) security operations, including: Governance, risk, and compliance in hybrid environments
  • Strong knowledge of MSSP, MDR, and SOCaaS models
  • Experience guiding the integration of SecOps platforms into broader cyber security architecture and automation frameworks
  • Experience developing and tuning detection use cases across identity, endpoint, email, network, and cloud environments
  • Familiarity with telemetry ingestion, log normalization, and real-time correlation
  • 5+ years of experience presenting to senior and executive management and external stakeholders
  • 5+ years coordinating and leading complex technical work with multiple IT teams, internal and external stakeholders
  • 5+ years of experience preparing written materials (e.g., status reports, recommendations, briefing notes) and experience maintaining security content (rules, dashboards, playbooks) across shared platforms
  • 5+ years of experience delivering cyber security upskilling training to IT and security teams
  • Bachelors degree in computer science, cyber security, or a related field
  • Knowledge of Government of Ontario standards (e.g., GO-ITS) and relevant legislation (e.g., Bill 194 / EDSTA)
  • 5+ years hands-on experience working in the K-12 education sector, with Ontario K-12 school boards, in particular with school board network, network security and cyber security
  • Must be available to travel same day or overnight in Ontario, as needed

Desired Qualifications

  • Postgraduate degree (e.g., M.Sc. and/or Ph.D.) in computer science, cyber security or engineering
  • Relevant vendor certifications or equivalent work experience
  • Cyber security certification(s). Preference is Certified Information Systems Security Professional (CISSP), Certified Information Security Manager (CISM), Certified Cloud Security Professional (CCSP)
  • Other examples include Certified Ethical Hacker (CEH), Certified Information Systems Auditor (CISA), Certified in Risk and Information Systems Control (CRISC)

Hiring someone like this?

Get your role in front of qualified candidates on Sorce.

Get started

Apply to this job in one click with Sorce

Apply on Sorce