Sr. WAF Security Engineer
Core
Implement, configure, and maintain enterprise-grade Web Application Firewall (WAF) and DDoS protections across a large portfolio of properties.
Role type
Senior IC WAF Security Engineer (Edge/Perimeter)
Builds
Production security configurations and automated deployment pipelines for WAF/DDoS solutions
Domain
Cybersecurity, Cloud Infrastructure, Web Application Security
Deliverable
production ML models | product features | dashboards & analysis | research | client delivery | infrastructure | physical/clinical work
Required skills
WAF platform expertise (Akamai, Fastly, AWS WAF, Azure), DDoS mitigation, firewall rule tuning, log analysis, scripting (Python, Bash, PowerShell), cloud provider SDKs (BOTO3, Azure SDK, GCP Client Libraries), HTTP/S protocols, API security models, infrastructure as code
Preferred skills
Security certifications (CISSP, CISM, CISA, SANS), Terraform, CloudFormation, CDN integrations, large-scale DDoS mitigation
Technologies
AWS WAF, Azure WAF, Cloudflare, Akamai, Fastly NGWAF, Python, Bash, PowerShell, Terraform, CloudFormation, BOTO3, Azure SDK, GCP Client Libraries
Responsibilities
Implement and maintain WAF/DDoS solutions; develop and tune custom firewall rules and bot mitigation controls; perform log analysis to identify malicious traffic; contribute to automation efforts via infrastructure as code and CI/CD; identify security vulnerabilities and guide developers; participate in on-call rotation for incident response; partner with engineering teams to integrate security controls; research emerging attack vectors and recommend defense improvements
Seniority
Senior, hands-on IC