Talent.com
Acestack
Network Security Architect || Montreal, QC || Fulltime FTEAcestack • Montreal, QC, Canada
Search for other jobs
Network Security Architect || Montreal, QC || Fulltime FTE

Network Security Architect || Montreal, QC || Fulltime FTE

Acestack • Montreal, QC, Canada
4 hours ago
Job type
  • Full-time
  • Quick Apply
Job description

Job Title: Network Security Architect

Location: Montreal, QC

Work Arrangement: Onsite

Employment Type: Full-Time FTE

Experience: 15+ Years

Job Summary:

We are seeking an experienced Network Security Architect with 15+ years of IT experience in designing, implementing, and delivering enterprise-scale network security solutions. The ideal candidate will have deep expertise in Palo Alto, Fortinet FortiGate, firewall architecture, VPN, network segmentation, micro-segmentation, Zero Trust, enterprise networking, NAC, security governance, and network transformation.

The successful candidate will provide technical leadership for security architecture, firewall and VPN remediation, security assessments, migrations, network transformation initiatives, and security design validation across complex enterprise environments.

Key Responsibilities:

Design and deliver enterprise-scale Network Security architectures and solutions aligned with business, security, and infrastructure requirements.

Provide architecture and technical leadership for Palo Alto and Fortinet FortiGate firewall environments.

Define and review firewall architecture, security policies, segmentation strategies, deployment models, migration approaches, and governance standards.

Lead firewall migrations, technology transformations, remediation initiatives, upgrades, and architecture modernization.

Design and implement secure VPN, network segmentation, micro-segmentation, and Zero Trust architectures.

Conduct security architecture reviews and validate proposed network security designs against enterprise security standards and best practices.

Provide technical leadership for Firewall and VPN remediation activities, including identifying security gaps, developing remediation strategies, and validating implementation.

Design and review enterprise network security solutions across complex Routing, Switching, TCP/IP, DNS, BGP, OSPF, WAN, Load Balancing, and High Availability environments.

Provide architecture guidance for Network Access Control (NAC) solutions, particularly Cisco ISE.

Support the architecture and integration of IDS/IPS, Secure Web Gateways, Proxy Solutions, DDoS Protection, Email Security, and firewall governance platforms.

Define and enforce firewall governance, security policy standards, and rule lifecycle management using tools such as AlgoSec.

Work with network, infrastructure, cloud, security operations, and application teams to design secure and resilient enterprise solutions.

Lead threat assessments, security risk reviews, and network security design validation activities.

Evaluate existing network security architectures and recommend improvements to enhance security, resilience, performance, and operational efficiency.

Provide technical guidance during critical production incidents, security events, and complex network security troubleshooting activities.

Develop architecture documentation, technical standards, solution designs, migration plans, and security recommendations.

Provide technical leadership and mentoring to network security and infrastructure engineering teams.

Required Technical Skills:

15+ years of IT experience with strong enterprise Network Security Architecture experience.

Strong hands-on and architectural expertise with Palo Alto Networks firewalls.

Strong hands-on and architectural expertise with Fortinet FortiGate firewalls.

Extensive knowledge of Firewall Architecture, Firewall Policy Governance, Firewall Migration, Remediation, and Lifecycle Management.

Strong expertise in VPN technologies and enterprise remote-access solutions.

Deep understanding of Network Segmentation, Micro-Segmentation, and Zero Trust Architecture.

Strong enterprise networking knowledge, including:

  • Routing and Switching

  • TCP/IP

  • DNS

  • BGP

  • OSPF

  • WAN

  • Load Balancing

  • High Availability

Hands-on experience with Cisco ISE / Network Access Control (NAC).

Experience with Network and Security Observability Platforms.

Experience with IDS/IPS, Secure Web Gateway, Proxy, DDoS Protection, and Email Security technologies.

Experience with AlgoSec or equivalent Firewall Governance / Policy Management platforms.

Strong experience leading security architecture reviews, threat assessments, firewall/VPN remediation, migrations, network transformation, and security design validation.

Preferred Skills:

Palo Alto certifications such as PCNSE.

Fortinet certifications such as FCP / FCX.

Experience with Zero Trust Network Architecture (ZTNA).

Experience with cloud network security and hybrid enterprise environments.

Experience in large-scale banking, financial services, telecom, or other highly regulated environments.

Strong stakeholder management, technical leadership, architecture documentation, and communication skills.

Create a job alert for this search

Network Security Architect || Montreal, QC || Fulltime FTE • Montreal, QC, Canada