Full-Time

WAF Security Engineer

Confirmed live in the last 24 hours

College Board

College Board

Compensation Overview

$120k - $131kAnnually

+ Bonus + Salary Growth + Merit Raises + Promotions

Mid, Senior

Remote in USA

100% Remote, working core EST hours.

Category
Cybersecurity
IT & Security
Required Skills
Linux/Unix
Requirements
  • 3+ years’ experience as a Security Engineer with strong focus on Akamai WAF platforms
  • Understanding of OWASP risks, vulnerabilities and mitigation mechanisms
  • Experience managing Web Application Firewalls and rules
  • Expertise in exploiting web apps and web services security vulnerabilities (XSS, CSRF, SQL injection, DoS, XML/SOAP, API attacks)
  • Proficiency in system exploits (Buffer Overflows, PTH attacks, Windows authentication framework, etc.)
  • Understanding of common network and web protocols
  • Knowledge of DDoS techniques and mitigation
  • Familiarity of event logs and alerts from various data sources (Windows/Unix systems, IDS/IPS, AV, HIDS/HIPS, WAFs, firewalls, web proxies)
  • Willingness and ability to provide 24/7 support, rotating primary and secondary support roles within the team
  • Authorization to work in the United States
Responsibilities
  • Engineer, configure, deploy, and maintain Web Application Firewall solutions
  • Develop advanced scripts for manipulation of multiple data repositories to support analyst requirements
  • Develop advanced alerts/reports to meet the requirements of key stakeholders
  • Develop scalable security management tools and processes
  • Develop automation for security tools management and workflow integration
  • Collaborate with key stakeholders within Cybersecurity and Engineering teams to develop use cases to address specific business needs
  • Create WAF rules to mitigate threats and implement best practices
  • Develop new SIEM (Security Information and Event Management) content for Cybersecurity teams, including correlations, enrichments, dashboards, reports, and alerts that appropriately characterize web application attacks and mitigation mechanisms
  • Provide rotating 24/7 support for security-related issues

Company Stage

N/A

Total Funding

N/A

Headquarters

N/A

Founded

N/A