Middleware Specialist (RQ09955)

  • Contract
  • Toronto
  • Applications have closed

Ministry of Public and Business Service Delivery and Procurement

Description

The Community Services I&IT Cluster supports multiple ministries (Education, Colleges & Universities, Municipal Affairs & Housing, Heritage, Sport, Tourism & Culture). This role focuses on vulnerability management, including:

    • Identify and assess vulnerabilities using tools like Qualys, or similar.
    • Apply security patches and updates promptly to mitigate risks.
    • Perform configuration hardening based on benchmarks and best practices.
    • Align middleware configurations with security frameworks
    • Work closely with application, infrastructure, and security teams to ensure secure deployments.
    • Prepare vulnerability reports and remediation status updates for stakeholders.

Experience Requirements

Skills Required: (50%)

  • Install, configure, and maintain middleware technologies. (e.g., IBM WebSphere, JBoss, Oracle WebLogic, Apache Tomcat)
  • Perform regular vulnerability scans and assessments using tools such as Qualys.
  • Analyze CVEs and vendor advisories to determine impact on middleware components.
  • Apply security patches and updates for middleware and .NET environments in accordance with organizational policies.
  • Implement hardening standards and compliance frameworks.
  • Ability to Coordinate and Collaborate with project teams to respond to incidents and remediate vulnerabilities..
  • Automate patching and configuration management
  • Maintain documentation for middleware configurations, security baselines, and vulnerability reports

 

Experience (50%)

  • Strong experience with middleware platforms (IBM WebSphere, JBoss, Oracle WebLogic, Apache Tomcat)
  • Knowledge of vulnerability management processes and tools
  • Ability to analyze CVEs, assess risk, and recommend mitigation strategies.
  • Proficiency in applying security patches and updates for middleware and .NET components.
  • Experience with tools like Qualys, or similar.
  • Strong knowledge of Linux/Unix and Windows environments and system hardening.
  • Experience with .NET application deployment and security, including IIS hardening
  • Experience with Azure Security Center and Defender for Cloud for vulnerability management.
  • Experience working with ITS and Cyber Security within the OPS

Supplier Comments

Closing Date – 2025-12-10, 11:00 a.m.

Assignment Type – Candidate must work 5 days ONSITE

Maximum Number of Submissions – 3 (three)

MUST HAVES:

  • Strong experience with middleware platforms (IBM WebSphere, JBoss, Oracle WebLogic, Apache Tomcat)
  • Proficiency in applying security patches and updates for middleware and .NET components.
  • Strong knowledge of Linux/Unix and Windows environments and system hardening
  • Ability to analyze CVEs, assess risk, and recommend mitigation strategies.
  • Ability to Coordinate and Collaborate with project teams to respond to incidents and remediate vulnerabilities.

Nice to Have – OPS experience

This entry was posted in . Bookmark the permalink.