Skip to main content
Full-Time
On-Site

Senior Network Security Specialist (Global Security)

View on Map

Description

The Senior Network Security Specialist at Royal Bank of Canada is responsible for implementing, maintaining, and supporting critical network and security infrastructure services across RBC's global Intranet, Internet, and Extranet environments. This role involves leading the Infrastructure Security team for enterprise security appliances (Check Point, Palo Alto, Cisco IPS, Malware Prevention, Web Application Firewalls) and driving strategic initiatives for emerging security technologies like Secure Service Edge (SSE) and next-generation WAFs. The specialist will provide advanced technical support, troubleshoot, implement configuration changes across various vendor platforms, and work with internal and external partners to resolve incidents and deliver infrastructure changes.

What We're Looking For

Partner with Security Engineering and Security Solutions Architecture for Network Security transformation through SSE deployment.,Drive strategy, development, and lifecycle of network security software/services, aligning technical security with business goals.,Provide day-to-day Level 3 Support for cyber and network security infrastructure (firewalls, intrusion/malware prevention, WAF, cloud security) globally.,Responsible for deployment and life cycle maintenance of technologies like Palo Alto, Cisco ASA, AlgoSec, FireEye, Cisco FirePower.,Respond to network security event and incident escalations from the Service Desk, clients, and partners.,Collaborate with DevOps/Automation teams to identify automation opportunities, provide technical requirements, and validate functionality.,Proficiency in enterprise collaboration tools (SharePoint, ServiceNow, Confluence, Jira) for team productivity and project management.,Deliver high-impact presentations to key stakeholders.,Lead medium to large initiatives related to Network Security platforms and controls.,Participate in presentations on gap analysis, solutions, and business proposals.,Leverage instrumentation and automation tools to enhance operations.,Participate in 24 x 7 on-call rotational shifts including evenings and nights.,Participate in meetings and training sessions for new technology and service deployments.

Ideal Candidate

7+ years in network/security engineering or platform integration.,Strong experience with Firewalls (Palo Alto, Fortinet, Check Point).,Strong experience with WAF platforms (Cloudflare, F5, Akamai, Imperva).,Strong experience with IPS/IDS technologies.,Strong experience with Secure Service Edge (SSE) / Zero Trust platforms (Zscaler, Netskope, Prisma, Broadcom).,Cloud security experience (AWS, Azure, GCP).,Strong understanding of TCP/IP, VPNs, TLS, and modern perimeter less architectures.,Strong communication skills with a proven ability to communicate effectively with executives.,Extensive experience overseeing, implementing, and enforcing cybersecurity policies, framework, and risk posture.,Strong risk management and problem-solving skills.,Certification in at least one of the firewall platforms (Palo Alto, CheckPoint, Fortinet, Cisco ASA).,Expert working experience with Palo Alto, FireEye, Arbor, Algosec, Cisco Firepower, Cisco IOS & NX-OS based routers & switches.,Extensive experience with building and troubleshooting network security appliances.,Solid understanding and troubleshooting capability of L2/L3 protocols (ARP, HSRP, VRRP, STP, BGP, VRF, OSPF) in a Cisco environment.,Solid understanding and knowledge of security concepts such as NAT/PAT, IPSEC, SSL, DDoS, IP Spoofing etc.,Excellent understanding of the OSI model, application protocols such as DNS, DHCP, HTTP, FTP, Telnet, SSH, TCP/IP, including packet inspection/protocol analysis using packet analyzers for troubleshooting.,Nice-to-Have: Certifications like CISSP, CISM, CCSP, Palo Alto and Cloud.,Nice-to-Have: Understanding of Agile, Scrum, DevOps and Cloud practices.,Nice-to-Have: Coding experience in Python (or equivalent languages), SQL and NoSQL database programming languages.,Nice-to-Have: Experience developing, testing, and troubleshooting automation scripts using REST APIs.

Hard Skills

Network Security Engineering
Platform Integration
Firewalls (Palo Alto, Fortinet, Check Point, Cisco ASA)
WAF (Cloudflare, F5, Akamai, Imperva)
IPS/IDS
Secure Service Edge (SSE)
Zero Trust
Cloud Security (AWS, Azure, GCP)
TCP/IP
VPNs
TLS
Perimeter less Architectures
Automation (Python, APIs, Terraform, CI/CD)
Cybersecurity Policies
Framework & Risk Posture
Network Security Appliances
L2/L3 Protocols (ARP, HSRP, VRRP, STP, BGP, VRF, OSPF)
NAT/PAT
IPSEC
SSL
DDoS
IP Spoofing
OSI Model
DNS
DHCP
HTTP
FTP
Telnet
SSH
Packet Inspection/Protocol Analysis
SharePoint
ServiceNow
Confluence
Jira
Cyber Security Management
Information Security
Information Technology Security
Network Defense
SQL
NoSQL database programming

Soft Skills

Communication
Critical Thinking
Decision Making
Group Problem Solving
Long Term Planning
Risk Management
Problem-solving
Leadership
Collaboration
Presentations

Work Hours

37.5 hours/week

Benefits

Comprehensive Total Rewards Program (bonuses, flexible benefits, competitive compensation)
Leaders who support development through coaching and managing opportunities
Opportunities to work with the best in the field
Ability to make a difference and lasting impact
Work in a dynamic, collaborative, progressive, and high-performing team
World-class training program in financial services
Flexible work/life balance option

Special Commitments

Must be willing to participate in 24 x 7 on-call rotational shifts including evenings and nights.

About the Company

R

Royal Bank of Canada

Royal Bank of Canada is a global financial institution with a purpose-driven, principles-led approach to delivering leading performance. As Canada's largest bank, it provides personal and commercial banking, wealth management, and capital markets services to over 17 million clients worldwide.

Purpose-driven
Inclusive
Innovative
Collaborative
Professional
View all jobs at Royal Bank of Canada

    We respect your privacy

    BerryMap uses cookies to provide essential features, analyze usage, and improve your experience. You can customize your preferences below.