Deliver hands-on network and security consulting across client environments, including infrastructure administration, firewall and ZTNA deployment, cloud security, hardening, vulnerability remediation, incident response support, backup and disaster recovery, and technical documentation. Serve as a client-facing technical contact, collaborate during high-pressure security incidents, participate in on-call rotations, and support service scoping and continuous improvement.
About MalleumMalleum is at the forefront of next-generation cyber defense, partnering with marquee clients across government, defense, financial services, and critical infrastructure. We're experiencing exceptional growth as demand accelerates for trusted advisors capable of delivering at the intersection of national security, allied intelligence cooperation, and enterprise resilience. Our consultants embed directly with clients to design, secure, and operate the networks and systems behind cutting-edge defensive technologies and programs with national and allied security impact.
If you take pride in being the trusted technical hands clients rely on to keep mission-critical environments running and to help them recover when things go wrong, Malleum is where your craft meets purpose.The OpportunityWe're seeking a client-facing Network & Security Consultant to deliver hands-on design, administration, hardening, and operational support across client network and security infrastructure, and to play a critical supporting role in active incident response (IR) engagements. In this role you'll work remotely and at times on-site, within client environments including sovereign, regulated, and cleared settings providing the technical expertise, composure, and professionalism that define the Malleum delivery experience.
This is a hands-on consulting role for a senior-level practitioner who blends deep technical skill with strong client presence, and who can step up when crises demand long, focused hours alongside our IR team.What You'll Do
Malleum is an equal opportunity employer. We welcome applications from all qualified candidates and are committed to building a team that reflects the communities and missions we serve.
We are committed to providing accommodations for individuals with disabilities throughout the recruitment process. Please let us know if you require accommodation at any stage.
If you take pride in being the trusted technical hands clients rely on to keep mission-critical environments running and to help them recover when things go wrong, Malleum is where your craft meets purpose.The OpportunityWe're seeking a client-facing Network & Security Consultant to deliver hands-on design, administration, hardening, and operational support across client network and security infrastructure, and to play a critical supporting role in active incident response (IR) engagements. In this role you'll work remotely and at times on-site, within client environments including sovereign, regulated, and cleared settings providing the technical expertise, composure, and professionalism that define the Malleum delivery experience.
This is a hands-on consulting role for a senior-level practitioner who blends deep technical skill with strong client presence, and who can step up when crises demand long, focused hours alongside our IR team.What You'll Do
- Administer, monitor, and maintain client network infrastructure including routers, switches, firewalls, VPNs, and wireless systems
- Operate and tune client security tooling such as EDR/XDR, SIEM, email security, vulnerability scanners, and identity platforms (Entra ID, Okta)
- Design, deploy, and operate Zero Trust Network Access (ZTNA) solutions, including Cloudflare edge, access, and tunnel services, to enable secure remote access, identity-aware policies, and modern perimeter strategies
- Support Microsoft 365, Azure, AWS, and hybrid environments within each client's security baseline and compliance posture
- Implement and enforce hardening standards aligned with CIS Benchmarks, NIST 800-53/171, ITSG-33, and client-specific frameworks
- Lead patch management, vulnerability remediation, and configuration management across client servers, endpoints, and network devices
- Support active incident response engagements — deploying and tuning tooling, isolating systems, preserving evidence, rebuilding infrastructure, and assisting with containment, eradication, and recovery activities
- Work odd hours, evenings, weekends, and extended shifts during active IR engagements, including rapid mobilization with little notice when clients are under attack
- Partner with Malleum's IR consultants, forensic analysts, and threat hunters to execute response playbooks under pressure
- Maintain client backup, disaster recovery, and business continuity systems with regular testing
- Produce high-quality client deliverables: network diagrams, configuration documentation, runbooks, SOPs, IR action logs, and status reports
- Standardize provisioning, onboarding/offboarding, and access control workflows within client environments
- Serve as a trusted technical point of contact, communicating clearly with client stakeholders ranging from end users to executive leadership during both steady-state and crisis operations
- Contribute to scoping, estimation, and continuous improvement of Malleum's managed, project-based, and IR service offerings
- Participate in an on-call rotation supporting critical client infrastructure and security events
- 7+ years of hands-on experience designing, deploying, troubleshooting, and optimizing enterprise network and security infrastructure across multi-vendor environments. Deep expertise in routing, switching, network segmentation, and firewall policy management, with strong proficiency in Fortinet, Palo Alto, and/or Cisco technologies.
- Demonstrated success working directly with clients - clear communication, professionalism, and stakeholder management, including explaining technical risk and decisions to non-technical leadership
- Significant progressive experience blending network and cybersecurity responsibilities, ideally in a consulting, MSP, MSSP, or IR setting
- Strong working knowledge of TCP/IP, routing, switching, VLANs, VPNs, DNS, DHCP, and segmentation
- Solid understanding of Zero Trust Network Access (ZTNA) fundamentals: identity-centric access, least privilege, micro-segmentation, device posture, and continuous verification
- Hands-on ZTNA delivery experience is a significant asset
- Hands-on experience with wireless controllers and NAC solutions
- Demonstrated ability to perform under pressure during incidents: calm, methodical, and effective during long, high-intensity engagements
- Willingness and availability to work odd hours, weekends, and extended shifts when supporting active IR matters
- Working knowledge of Windows Server, Active Directory, Group Policy, and Microsoft 365 / Azure administration
- Familiarity with Linux administration and scripting (PowerShell, Bash, or Python) for automation and rapid response
- Experience with SIEM/EDR platforms (e.g., Microsoft Sentinel, Defender, CrowdStrike, Splunk), including rapid deployment in IR scenarios
- Exposure to incident response frameworks such as NIST SP 800-61 and SANS PICERL is a strong asset
- Solid grasp of cybersecurity fundamentals: identity, encryption, logging, hardening, and zero-trust principles
- Comfort working across multiple client environments, tooling stacks, and change-management processes simultaneously
- Certifications such as CompTIA Security+, Network+, CCNA, CCNP Security, NSE, PCNSA, MS-102, AZ-104, or equivalent strongly preferred; CISSP Associate, SSCP, GCIH, or GCFA an asset
- Eligibility for Government of Canada security clearance (Secret or higher); existing clearance highly valued
- Bilingualism (English/French) considered a strong asset
- Work shoulder-to-shoulder with marquee clients on programs and incidents with genuine national and allied security impact
- Join a rapidly scaling firm with a flat, high-trust culture and direct access to senior IR and technical leaders
- Exposure to a wide variety of advanced security tooling, sectors, and cleared environments
- Competitive compensation, on-call and IR premiums, performance incentives, and comprehensive benefits
- Continuous learning budget, certification sponsorship, and clear paths into senior engineering, IR, architecture, or security specializations
Malleum is an equal opportunity employer. We welcome applications from all qualified candidates and are committed to building a team that reflects the communities and missions we serve.
We are committed to providing accommodations for individuals with disabilities throughout the recruitment process. Please let us know if you require accommodation at any stage.
Malleum Ottawa, Ontario, CAN Office
116 Albert St, Ottawa, ON, Canada, K1P 5G3
Similar Jobs
Fintech • Professional Services • Consulting • Energy • Financial Services • Cybersecurity • Generative AI
Design, implement, monitor, and enhance network security and DLP controls across enterprise networks, endpoints, email, cloud, and web environments. Investigate security events, incidents, vulnerabilities, data leakage, and policy violations; perform root-cause analysis; coordinate remediation; and advise clients on network resilience, data protection, and practical security improvements. Collaborate with infrastructure, cloud, IAM, risk, compliance, privacy, and business teams in complex financial services environments.
Top Skills:
AWSCcnaCcnpCiamCiscoData ClassificationData Loss Prevention (Dlp)DhcpDnsFirewallsFortinetGCPIdentity And Access Management (Iam)Information ProtectionJuniperAzureNetwork MonitoringNetwork SegmentationPalo Alto NetworksPrivileged AccessRoutingSwitchingTcp/IpVlansVpnsZero Trust
Cloud • Information Technology • Internet of Things • Machine Learning • Software • Cybersecurity • Infrastructure as a Service (IaaS)
Develop and evaluate signal processing and machine learning algorithms for next-generation radio systems. Build simulations, prototypes, and proof-of-concept solutions; analyze data; perform software and hardware verification; automate testing; and support troubleshooting and performance analysis. The role involves collaboration with system, hardware, and software engineers and exposure to computer vision, AI, wireless communications, and advanced radio technologies.
Top Skills:
5G6GCC++Computer VisionDspFpgaKerasLinuxMachine LearningMatlabPythonPyTorchScikit-LearnSignal ProcessingTensorFlowWireless Communications
eCommerce • Fintech • Hardware • Payments • Software • Financial Services
Design, build, scale, and operate high-volume payment APIs and distributed systems serving global traffic. Lead complex engineering projects from requirements through production, improve reliability, performance, observability, fault tolerance, and security, and participate in on-call and incident response. Collaborate across product and engineering teams, use AI-assisted development tools responsibly, and mentor engineers through technical reviews and documentation.
Top Skills:
AWSGoKafkaKotlinTypescript
What you need to know about the Ottawa Tech Scene
The capital city of Canada and the nation's fourth-largest urban area, Ottawa has proven a rapidly growing global tech hub. With over 1,800 tech companies, many of which are leaders in their sectors, the city's tech talent now makes up more than 13 percent of its total workforce. This growth is driven not only by the big players like UL Solutions and Dropbox, but also by a thriving startup ecosystem, as new businesses emerge to follow in the footsteps of those that came before them.



.png)