Dev Sec Ops Engineer Senior- WAAF Specialist
Core
Lead AWS WAF/API security and expand layer‑7 inspection across a large, high‑traffic environment, focusing on policy strategy, tuning, and incident response.
Role type
Senior IC DevSecOps Engineer (AWS Cloud Security)
Builds
AWS L7 inspection & network protection (WAF, firewall, IPS, proxy patterns), AI/agentic integration security, and edge performance solutions.
Domain
Cloud Security, AWS Networking, API Security, AI Security
Deliverable
production ML models | product features | infrastructure
Required skills
AWS networking at production scale, Zero Trust network design, DevSecOps automation (Python, Tines), Web application and API security, AI security literacy (GenAI risks/mitigations), Incident response engineering, Cloud security posture awareness (CSPM, SASE/SSE)
Preferred skills
Experience with virtual patching, false-positive reduction, safe rollouts, cross-team influence, audit and evidence-driven control design
Technologies
AWS, WAF, Python, Tines, CDN, CSPM, SASE, SSE
Responsibilities
Tune WAF and API security policies to reduce false positives and implement emergency mitigations; Develop and maintain incident response plans and telemetry strategies; Automate guardrails and reduce toil using Python and Tines; Partner with SRE/TOC/SecOps to ensure logging availability during incidents; Implement AI security controls including least-privilege gateways and rate controls; Improve edge performance via CDN, caching, and compression troubleshooting.
Seniority
Senior, hands-on IC