Web Application Firewall / CDN Engineer

Hays Specialist Recruitment LLC
Atlanta, GA, United States
18 days ago
Apply on www.hays.com
Prepare application

Role details

Contract type
Permanent contract
Employment type
Full-time (> 32 hours)
Compensation
$124,800.0 - $145,600.0
Working hours
Regular working hours
Job source

Tech stack

Application Programming Interfaces (APIs) Amazon Web Services Amazon Cloudfront Amazon Elastic Compute Cloud Application Firewall Botnet Cloud Computing Cloud Engineering Continuous Integration DDoS Mitigation DevOps Python (Programming Language)
+20 more
Open Web Application Security Windows PowerShell Akamai Web Application Security Security Information and Event Management SQL Injection Transmission Control Protocol (TCP) Web Applications Web Traffics Scripting Load Balancing Software Security Rate Limiting Cloudformation Cross Site Scripting Cloudflare Route53 Restful APIs Ddos Devsecops

Job description

  • Our Client is looking for a hands-on Web Application Firewall Engineer to support enterprise web security, CDN, and load balancing environments.
  • This role sits at the intersection of application security, infrastructure, cloud, and networking, with a focus on protecting public-facing applications and APIs while maintaining performance and availability.
  • The ideal candidate will have strong experience with Web Application Firewall technologies, CDN platforms, and load balancing concepts.
  • This person should be comfortable operating independently, troubleshooting complex issues, tuning security rules, and working closely with cloud, infrastructure, security, and application teams.
  • Design, implement, tune, and support Web Application Firewall policies for public-facing applications and APIs
  • Work with WAF platforms such as Imperva, Incapsula, AWS WAF, or similar technologies
  • Support CDN and edge security environments, including AWS CloudFront or comparable platforms
  • Partner with networking, cloud, infrastructure, and application security teams to improve web application protection
  • Help configure and support load balancing, traffic routing, origin protection, and secure application delivery
  • Analyze WAF logs, security events, traffic patterns, and rule activity to identify issues and improve protection
  • Tune WAF policies to reduce false positives while maintaining a strong security posture
  • Support incident response and troubleshooting related to web application traffic, security events, and availability concerns
  • Create and maintain documentation around WAF standards, processes, configurations, and operational procedures
  • Provide recommendations to application and infrastructure teams on secure web delivery and edge security best practices

Requirements

The final salary or hourly wage, as applicable, paid to each candidate/applicant for this position is ultimately dependent on a variety of factors, including, but not limited to, the candidate’s/applicant’s qualifications, skills, and level of experience as well as the geographical location of the position.

Applicants must be legally authorized to work in the United States. Sponsorship not available., * Strong hands-on experience with Web Application Firewall technologies

  • Experience with Imperva / Incapsula WAF is highly preferred
  • Experience with AWS CloudFront, AWS WAF, CDN technologies, or edge-based security controls
  • Understanding of load balancing, traffic routing, SSL/TLS, HTTP/S, REST APIs, and web application architecture
  • Experience supporting public-facing, high-availability applications
  • Ability to analyze logs, troubleshoot production issues, and identify security or performance concerns
  • Strong understanding of common web application threats such as OWASP Top 10, SQL injection, cross-site scripting, bot activity, and DDoS-related concerns
  • Comfortable working in a hands-on engineering capacity with minimal direction
  • Experience with AWS services such as ALB, Route 53, Shield, EC2, ECS, or EKS
  • Experience with CDN load balancing, request routing, TCP/header rewrites, or traffic distribution
  • Familiarity with bot mitigation, rate limiting, DDoS protection, and application-layer security controls
  • Experience with other WAF/CDN platforms such as Cloudflare, Akamai, F5, or similar tools
  • Scripting or automation experience with Python, PowerShell, CloudFormation, or similar technologies
  • Experience working with DevOps, DevSecOps, CI/CD, or cloud engineering teams
  • Security certifications are a plus, but not required
  • Hands-on WAF experience, ideally Imperva / Incapsula
  • CDN experience, ideally AWS CloudFront
  • Strong understanding of load balancing and web traffic flows
  • Ability to operate independently in a production environment
  • Experience supporting public-facing applications or APIs
  • Strong troubleshooting skills across security, infrastructure, and application teams, You will be working with a professional recruiter who has intimate knowledge of the industry and market trends. Your Hays recruiter will lead you through a thorough screening process in order to understand your skills, experience, needs, and drivers. You will also get support on resume writing, interview tips, and career planning, so when there’s a position you really want, you’re fully prepared to get it.

About the company

Visit the Hays Career Advice section to learn top tips to help you stand out from the crowd when job hunting.

Hays is committed to building a thriving culture of diversity that embraces people with different backgrounds, perspectives, and experiences. We believe that the more inclusive we are, the better we serve our candidates, clients, and employees. We are an equal employment opportunity employer, and we comply with all applicable laws prohibiting discrimination based on race, color, creed, sex (including pregnancy, sexual orientation, or gender identity), age, national origin or ancestry, physical or mental disability, veteran status, marital status, genetic information, HIV-positive status, as well as any other characteristic protected by federal, state, or local law. One of Hays’ guiding principles is ‘do the right thing’. We also believe that actions speak louder than words. In that regard, we train our staff on ensuring inclusivity throughout the entire recruitment process and counsel our clients on these principles. If you have any questions about Hays or any of our processes, please contact us.

In accordance with applicable federal, state, and local law protecting qualified individuals with known disabilities, Hays will attempt to reasonably accommodate those individuals unless doing so would create an undue hardship on the company. Any qualified applicant or consultant with a disability who requires accommodation in order to perform the essential functions of the job should call or text 813.336.5570.

Apply for this position

This job is hosted externally. Click below to view the full posting and apply.

Apply on www.hays.com
Prepare application

Good distractions

Talks and stories from around this role — technically off-topic, practically not.

2:34 min

Leveraging Akamai edge workers for broad geographic scale

Austin Gil · LIVE

1:51 min

Rising DDoS attacks and evaluating CDN mitigation strategies

Chris Heilmann +2 · LIVE

1:34 min

Pivoting careers into specialized platform engineering roles

Xavier Portilla Edo · LIVE

2:32 min

Dependency risks in widespread NPM supply chain attacks

Chris Heilmann +2 · LIVE

1:58 min

Application performance and its direct business impact

Jérôme Vieilledent · LIVE

3:11 min

Surviving sudden scale events and malicious traffic

Justin Kitagawa · Coffee With Developers

Videos

See all

Related articles

See all