Network Security Specialist

CMA CGM

$80K — $95K *
Information Technology
Less than 5 years of experience
Job Overview by Ladders

Qualifications

  • Bachelor's degree in IT, Computer Science, or related field.
  • 3-5 years of relevant experience in network security.
  • Proficient with firewall technologies (Cisco ASA, Palo Alto, Checkpoint).
  • Experience with VPN technologies (IPSEC S2S/Client SSL) and load balancers (F5 or Citrix ADC).
  • Knowledge of proxy solutions (open source and cloud-based like Zscaler).
  • Basic understanding of DNS management and PKI.

Responsibilities

  • Configure and maintain firewall platforms and policies.
  • Set up secure connectivity using VPN technologies.
  • Manage load balancers and their configurations and health checks.
  • Administer proxy solutions and related security policies.
  • Oversee DNS management and DDoS protection.
  • Collaborate with Cybersecurity on security incidents.
  • Conduct thorough log investigations and troubleshooting.

Benefits

  • Work in a dynamic, global team focused on cybersecurity.
  • Opportunities for professional development in cutting-edge technology.
  • Engage in exciting projects beyond daily operations.
  • Work in a diverse, inclusive environment with language support.
Full Job Description
CMA CGM Montreal is looking for Network Security Specialist as part of the GLOBAL CYBERSECURITY Team.

*CANDIDATES MUST BE LEGALLY AUTHORIZED TO WORK IN CANADA: valid work permit, permanent resident or citizen.*

POSITION SUMMARY

As a Network Security Specialist, you are responsible for all solutions that are owned by Network Security, performing operational tasks and following best industry practice.

KEY RESPONSIBILITIES

  • Configuration and maintenance of firewall platforms (Cisco ASA, Palo Alto, Checkpoint, Fortinet). The tasks include but not limited to:
    • Creation/Modification of firewall objects and policies.
    • Establishing secured external connectivity with VPN technologies.
    • Configuration and operation of firewall auxiliaries such as Panorama, User-ID agents, etc.
  • Configuration and maintenance of load balancers (Citrix ADC formerly known as Netscaler).
  • The tasks include but not limited to:
    • Creation/Modification and health checks of load balanced services, monitors, virtual servers, content switching, and ADC gateways.
    • Defining rewrites and responders.
    • SSL certificate installations and maintenance.
  • Configuration and maintenance of proxy solutions (local open source - Squid, SOCKS, FTP proxy; cloud - Zscaler). The tasks include but not limited to:
    • Creation/Modification of security policies (firewall and web-content filtering)
    • Whitelisting/blacklisting URL and IP addresses.
    • Maintenance of user internet access policies and troubleshooting proxy-related internet connectivity issues.
    • Zscaler Internet Access (ZIA) and Zscaler Private Access (ZPA) operations and producing web usage reports.
  • DNS management (zones, records, GeoDNS, etc.)
  • PKI / SSL certificates administration.
  • Distributed Denial of Service Protection (DDoS) management
  • Keeping up to date with information regarding firmware security vulnerabilities and bugs and ensuring firmware of security devices are secured and updated.
  • Working side by side with Cybersecurity to help with incidents.
  • Involvements in projects outside of daily operations to help with developments on technological solutions.
  • Log investigation, debugging, and packet captures.
  • Producing capacity planning reports.
  • Daily health checks for devices and services.
  • Making sure device inventory is updated and within standards.
  • Creating documents such as SOP or basic network diagram and ability to suggest improvements in the policies and processes.
  • License renewals and hardware refresh or replacements of devices.
  • Other responsibilities as required


QUALIFICATIONS

*CANDIDATES MUST BE LEGALLY AUTHORIZED TO WORK IN CANADA: valid work permit, permanent resident or citizen.*

Education:

Bachelor's degree in IT, Computer Science, Computer Engineering, or related field.

Knowledge & Experience:
  • At least 3-5 years of related experience.
  • Strong knowledge and experience on the FF technologies:
    • Firewalls (Cisco ASA, Palo Alto, Checkpoint)
    • VPN Technologies (IPSEC S2S/Client SSL)
    • Load balancers (F5 or Citrix ADC)
    • Proxies (open source such as Squid, SOCKS, and FTP proxies; Cloud based proxy solutions - Zscaler ZIA)
    • Zero Trust Network Access (ZTNA - Zscaler ZPA)
  • Strong foundation on Networking (routing and switching).
  • Basic knowledge and experience on DNS administration and PKI.
  • Basic knowledge of Distributed Denial of Service (DDoS) Protection
  • Preferred but not required:
    • Security management tools such as Firemon, AlgoSec, Tuffin, or Red Seal.
    • Linux administration.
    • Scripting tools such as shell or Python.
    • Relevant certifications (CCNP Sec, PCNSE, etc.)
    • Knowledge in NAC appliances (Cisco ISE)


Other:
  • Strong work ethic, professional integrity and the ability to apply the appropriate level of judgement and maturity.
  • Excellent interpersonal skills, and a strong ability to communicate, team player, and result oriented.
  • Willing to work on shifting schedule.
  • Fluent in English & French.


Come along on CMA CGM's adventure !

Similar Jobs

More Jobs at CMA CGM

More Information Technology Jobs

Find similar Network Security Specialist jobs: