We are seeking a highly technical, expert-level Network LAN/Security Specialist to design and execute Data Center Server Access Layer upgrades and support critical infrastructure modernization. This role focuses heavily on Industrial Control Systems (ICS) and Operational Technology (OT) within the Water and Wastewater sectors.
...
As a senior technical authority, you will manage network equipment replacement projects, secure critical infrastructure using advanced firewall/IPS systems, and ensure absolute compliance with cyber security standards. The ideal candidate holds an active CCIE designation and combines elite Cisco enterprise routing/switching capabilities with strong cybersecurity architecture experience in utility or manufacturing environments.
Location: Toronto, ON (Onsite / Field Work within the GTA)
Contract Duration: 6-month contract with a 6-month potential extension
Work Schedule: 5 days per week, 7 hours per day (Occasional after-hours, weekends, and holiday change windows required)
Advantages
Elite Technical Scope: Drive high-visibility architecture upgrades utilizing cutting-edge Nexus Spine-Leaf and Cisco ACI designs.
Critical Infrastructure Impact: Directly protect and stabilize essential public utility networks against emerging cyber threats.
Autonomy & Leadership: Own the technical lifecycle of deployments from field verification to final execution and validation testing.
Professional Continuity: A solid initial 6-month engagement with a structured pathway for extension.
Responsibilities
1. Network Operations & Proactive Management
Provide day-to-day operations support, remote or on-site, acting as a primary or backfill infrastructure resource.
Perform ongoing network performance analysis, health assessments, traffic pattern monitoring, and behavioral trend analysis to detect malicious traffic.
Install, configure, administer, and support monitoring toolsets including SolarWinds NPM, Splunk SIEM, Cisco Firepower, ISE, and Cisco Prime.
Author and maintain high-quality network documentation, including technical standards, operational processes, security baselines, topologies, and inventory records.
2. Architecture, Projects & Design Planning
Lead the architectural planning, design, and deployment of Cisco Nexus platforms using Spine-Leaf / VXLAN topologies for Data Center Disaster Recovery.
Review, evaluate, and provide engineering recommendations for VPLS and IPVPN WAN designs.
Gather business constraints, evaluate existing field conditions, and generate technical requirements, design drawings, implementation pathways, and validation test suites.
Prepare comprehensive network design reports, technical memos, budgetary figures, and business case analyses to secure project funding.
3. OT & Cyber Security Posture Enforcement
Continuously monitor, design, and harden the cybersecurity posture protecting critical Water/Wastewater ICS/OT infrastructure.
Integrate, configure, and support Cisco ASA/Firepower Firewalls (Active/Active and Active/Standby configurations), IPS tools, and Firepower Management Center (FMC).
Execute penetration testing methodologies and utilize SIEM log aggregation to defend infrastructure components.
Develop automated scripts to conduct wireless security assessments on localized WLAN/WWAN networks.
4. Field Commissioning & Administration
Perform field verification, hands-on installation, hardware mounting, and end-to-end commissioning of network devices across diverse facilities.
Serve as an organizational representative when interfacing directly with various plant facilities and project stakeholders.
Qualifications
Mandatory Certifications & Designations
Cisco Certified Internetwork Expert (CCIE) in good standing (Verification via Cisco Certification Tracking System required).
Must also possess at least one of the following valid designations: CCNP Security, CCIE Routing & Switching, CCIE Wireless, or ISC2 CISSP in good standing.
Core Experience
10+ years of hands-on Cisco Enterprise network design, configuration, deployment, and validation testing.
Direct technical experience operating within an Industrial Control Systems (ICS) / Operational Technology (OT) environment (Water/Wastewater, utilities, or heavy manufacturing sectors preferred).
Expert-level experience implementing Cisco Nexus switches, Spine-Leaf architectures, Cisco ACI, and Cisco Nexus Dashboard.
Post-secondary education in Computer Science, Information Technology, Engineering, or a related discipline.
Technical Proficiencies
Deep knowledge of advanced protocols: OSPF, EIGRP, BGP, VXLAN, MPLS, VRFs, Spanning Tree, EtherChannel, NAT, IPSec, GETVPN, QoS/CoS, 802.1x, and Radius/TACACS+.
Proven deployment capabilities with security gateways, network management utilities, and integration protocols (JWT, OAuth2.0, SSL).
Physical & Logistical Requirements
Transportation: Must possess a valid Province of Ontario Class "G" Driver’s License and have daily access to a reliable personal vehicle for travel across the GTA.
Physical Capability: Must be physically capable of performing fieldwork outside in industrial environments under varying weather conditions.
PPE: Must provide personal protective equipment (including hard hat, safety shoes, ear protection, high-visibility vest, and safety glasses).
Tools: Must provide personal technical and mechanical tools required for installation (including wireless survey equipment, drills, screwdriver sets, etc.).
Summary
If you are an active CCIE professional with a passion for securing enterprise networks and operational technology systems, we encourage you to apply online at www.randstad.ca. Only qualified candidates will be contacted for the next steps. We look forward to hearing from you!
Randstad Canada is committed to fostering a workforce reflective of all peoples of Canada. As a result, we are committed to developing and implementing strategies to increase the equity, diversity and inclusion within the workplace by examining our internal policies, practices, and systems throughout the entire lifecycle of our workforce, including its recruitment, retention and advancement for all employees. In addition to our deep commitment to respecting human rights, we are dedicated to positive actions to affect change to ensure everyone has full participation in the workforce free from any barriers, systemic or otherwise, especially equity-seeking groups who are usually underrepresented in Canada's workforce, including those who identify as women or non-binary/gender non-conforming; Indigenous or Aboriginal Peoples; persons with disabilities (visible or invisible) and; members of visible minorities, racialized groups and the LGBTQ2+ community.
Randstad Canada is committed to creating and maintaining an inclusive and accessible workplace for all its candidates and employees by supporting their accessibility and accommodation needs throughout the employment lifecycle. We ask that all job applications please identify any accommodation requirements by sending an email to accessibility@randstad.ca to ensure their ability to fully participate in the interview process.
This posting is for existing and upcoming vacancies.
show more
We are seeking a highly technical, expert-level Network LAN/Security Specialist to design and execute Data Center Server Access Layer upgrades and support critical infrastructure modernization. This role focuses heavily on Industrial Control Systems (ICS) and Operational Technology (OT) within the Water and Wastewater sectors.
As a senior technical authority, you will manage network equipment replacement projects, secure critical infrastructure using advanced firewall/IPS systems, and ensure absolute compliance with cyber security standards. The ideal candidate holds an active CCIE designation and combines elite Cisco enterprise routing/switching capabilities with strong cybersecurity architecture experience in utility or manufacturing environments.
Location: Toronto, ON (Onsite / Field Work within the GTA)
Contract Duration: 6-month contract with a 6-month potential extension
Work Schedule: 5 days per week, 7 hours per day (Occasional after-hours, weekends, and holiday change windows required)
Advantages
Elite Technical Scope: Drive high-visibility architecture upgrades utilizing cutting-edge Nexus Spine-Leaf and Cisco ACI designs.
...
Critical Infrastructure Impact: Directly protect and stabilize essential public utility networks against emerging cyber threats.
Autonomy & Leadership: Own the technical lifecycle of deployments from field verification to final execution and validation testing.
Professional Continuity: A solid initial 6-month engagement with a structured pathway for extension.
Responsibilities
1. Network Operations & Proactive Management
Provide day-to-day operations support, remote or on-site, acting as a primary or backfill infrastructure resource.
Perform ongoing network performance analysis, health assessments, traffic pattern monitoring, and behavioral trend analysis to detect malicious traffic.
Install, configure, administer, and support monitoring toolsets including SolarWinds NPM, Splunk SIEM, Cisco Firepower, ISE, and Cisco Prime.
Author and maintain high-quality network documentation, including technical standards, operational processes, security baselines, topologies, and inventory records.
2. Architecture, Projects & Design Planning
Lead the architectural planning, design, and deployment of Cisco Nexus platforms using Spine-Leaf / VXLAN topologies for Data Center Disaster Recovery.
Review, evaluate, and provide engineering recommendations for VPLS and IPVPN WAN designs.
Gather business constraints, evaluate existing field conditions, and generate technical requirements, design drawings, implementation pathways, and validation test suites.
Prepare comprehensive network design reports, technical memos, budgetary figures, and business case analyses to secure project funding.
3. OT & Cyber Security Posture Enforcement
Continuously monitor, design, and harden the cybersecurity posture protecting critical Water/Wastewater ICS/OT infrastructure.
Integrate, configure, and support Cisco ASA/Firepower Firewalls (Active/Active and Active/Standby configurations), IPS tools, and Firepower Management Center (FMC).
Execute penetration testing methodologies and utilize SIEM log aggregation to defend infrastructure components.
Develop automated scripts to conduct wireless security assessments on localized WLAN/WWAN networks.
4. Field Commissioning & Administration
Perform field verification, hands-on installation, hardware mounting, and end-to-end commissioning of network devices across diverse facilities.
Serve as an organizational representative when interfacing directly with various plant facilities and project stakeholders.
Qualifications
Mandatory Certifications & Designations
Cisco Certified Internetwork Expert (CCIE) in good standing (Verification via Cisco Certification Tracking System required).
Must also possess at least one of the following valid designations: CCNP Security, CCIE Routing & Switching, CCIE Wireless, or ISC2 CISSP in good standing.
Core Experience
10+ years of hands-on Cisco Enterprise network design, configuration, deployment, and validation testing.
Direct technical experience operating within an Industrial Control Systems (ICS) / Operational Technology (OT) environment (Water/Wastewater, utilities, or heavy manufacturing sectors preferred).
Expert-level experience implementing Cisco Nexus switches, Spine-Leaf architectures, Cisco ACI, and Cisco Nexus Dashboard.
Post-secondary education in Computer Science, Information Technology, Engineering, or a related discipline.
Technical Proficiencies
Deep knowledge of advanced protocols: OSPF, EIGRP, BGP, VXLAN, MPLS, VRFs, Spanning Tree, EtherChannel, NAT, IPSec, GETVPN, QoS/CoS, 802.1x, and Radius/TACACS+.
Proven deployment capabilities with security gateways, network management utilities, and integration protocols (JWT, OAuth2.0, SSL).
Physical & Logistical Requirements
Transportation: Must possess a valid Province of Ontario Class "G" Driver’s License and have daily access to a reliable personal vehicle for travel across the GTA.
Physical Capability: Must be physically capable of performing fieldwork outside in industrial environments under varying weather conditions.
PPE: Must provide personal protective equipment (including hard hat, safety shoes, ear protection, high-visibility vest, and safety glasses).
Tools: Must provide personal technical and mechanical tools required for installation (including wireless survey equipment, drills, screwdriver sets, etc.).
Summary
If you are an active CCIE professional with a passion for securing enterprise networks and operational technology systems, we encourage you to apply online at www.randstad.ca. Only qualified candidates will be contacted for the next steps. We look forward to hearing from you!
Randstad Canada is committed to fostering a workforce reflective of all peoples of Canada. As a result, we are committed to developing and implementing strategies to increase the equity, diversity and inclusion within the workplace by examining our internal policies, practices, and systems throughout the entire lifecycle of our workforce, including its recruitment, retention and advancement for all employees. In addition to our deep commitment to respecting human rights, we are dedicated to positive actions to affect change to ensure everyone has full participation in the workforce free from any barriers, systemic or otherwise, especially equity-seeking groups who are usually underrepresented in Canada's workforce, including those who identify as women or non-binary/gender non-conforming; Indigenous or Aboriginal Peoples; persons with disabilities (visible or invisible) and; members of visible minorities, racialized groups and the LGBTQ2+ community.
Randstad Canada is committed to creating and maintaining an inclusive and accessible workplace for all its candidates and employees by supporting their accessibility and accommodation needs throughout the employment lifecycle. We ask that all job applications please identify any accommodation requirements by sending an email to accessibility@randstad.ca to ensure their ability to fully participate in the interview process.
This posting is for existing and upcoming vacancies.
show more