Our top client in the travel / transportation industry is searching for a WAF Security Engineer to join their team! This is a great opportunity to design and develop security solutions that support their Web Application Firewall technologies. Ideal candidates have 3+ years of experience with security analysis, have a strong understanding of DNS, networking, system administration, and common application frameworks.
100% remote
1+ year contract to hire position with benefits available on contract
Only able to hire from the following states at this time : MO, IL, VA, CO, KS, TX, NC, GA, TN, FL, MI, OK, IN, SC
Cannot work C2C
Required :
- Must be committed to incorporating security into all decisions and daily job responsibilities.
- 3 years of professional experience in information security or a related field.
- Ability to model API requests using tools such as Postman.
- Understanding of API and web application attack vectors
- Ability to interpret the different components of web requests and responses.
- Demonstrated experience writing and reviewing business, user, and non-functional / system level requirements.
- Strong knowledge of system architecture and network applications.
- Familiarity with OWASP & API OWASP Top 10.
- Ability to investigate security breaches and other cybersecurity incident.
- Monitor email and ticketing systems for security-related issues and follow through until resolution.
- Monitor events and triage alerts across various security platforms.
- 1+ years of experience using a SIEM (preferably Splunk)
- 1+ years hands-on experience with administration of Web Application Firewall (WAF / WAAP) technologies.
- 1+ years working with SSL certificates.
- In depth understanding of DNS
Preferred :
Bachelor’s degree in computer science, Computer Information Systems, Cybersecurity, or related field preferredExperience with Akamai or Imperva WAF / WAAP solutions.Understanding of scripting and content creation. (e.g., Splunk dashboards, threat signature creation, Python scripts, Powershell scripts.)Experience with automation tools such as Ansible and TerraformManaging cloud security operations, including identity & access control, secure configuration management, network security, Infrastructure as Code, data security, and logging.1+ year experience securing cloud applications (AWS / AZURE).Understanding of Version control and ability to work in Git.Ability to do Packet Captures (PCAPs) and interpret results.Experience with CSP (client-side protection) platforms.