Remote Sr. WAF Security Engineer

Genesis10

Cleveland Ohio

United States

Information Technology
(No Timezone Provided)

Genesis10 is seeking a Remote Sr. WAF Security Engineer for a leading company in Cleveland, OH. This is a remote 6-month contract to hire role that must be able to work EST hours.

Job Summary:

Applicant will design, build, configuration, deployment and support of Web Application Firewall (WAF) and BOT mitigation policies for on premise and in the cloud WAF deployments. The successful candidate must have working experience with F5 WAF, versed in cybersecurity concepts and possess the ability to work on various complex security engineering solutions.

Job Duties:
  • Conduct a comprehensive assessment of the management, operational, and technical security controls and control enhancements employed within or inherited by a system to determine the effectiveness of the controls.
  • Engineer, configure, deploy, and maintain Web Application Firewall solutions on premise and in the cloud (GCP, Azure, etc.).
  • Configure new sites and applications for WAF protection, analysis of traffic to remove false positives.
  • Create WAF rules/signatures to mitigate threats and implements best practices.
  • Create and update documentation including security diagrams, policies, procedures, playbooks, and run books
  • Develop automation for security tools management and workflow integration.
  • Perform root cause analysis on incidents, issues, and determines the proper course of action.
  • Update threat models based on WAF event patterns.
  • Develop, maintain, test, and troubleshoot on prem & cloud web application firewalls and rulesets.
  • Analyze WAFtraffic and tuning rules or creating remediation action plans for the Lines of business and respond to WAF events.
  • Configure deploys and maintains WAF solutions on-prem and in the cloud
  • Supports and ensures stability of the WAF platforms
  • Evaluate applications and determine if applications are in-scope for WAF
  • Should have experience with web-based attacks, OWASP Top 10 web vulnerabilities, web application testing with tools like Zed Attack Proxy, and extensive knowledge of networking protocols.
Requirements:
  • Equivalent years (5-8+) as a WAF Security Engineer.
  • Working experience with F5 WAF, Bot Defense and with cloud web application firewalls with major cloud service providers including Google and Azure.
  • Designing and implementing functional network infrastructure.
  • Oversee changes to the network and?system deployment (HW/SW) to ensure security protection.
  • Configuring and optimizing software for on-premise or cloud solutions.
  • Conducting system/server planning, management, and maintenance.
  • Installing system and component upgrades. (i.e., servers, appliances, network devices).
  • Configuration Management experience such as Ansible, Chef, Puppet, or similar.
  • Working experience with Regular Expression, JSON, Python and other scripting familiarity.
  • F5/ASM
  • Cloud platform knowledge Google, Azure & AWS
  • Linux, Unix , Windows
  • Containerization, Automation & Orchestration tools Docker, Kubernetes,
  • Scripting tools bash, ansible, powershell API, Json, yaml, git, Python
If you have the described qualifications and are interested in this exciting opportunity, please apply!

About Genesis10:
Genesis10 is a leading U.S. business and technology consulting firm with hundreds of clients needing proven talent and solutions to power their strategic initiatives. If you are a high performing business or IT professional with solid, referenced experience, we want to meet you. Genesis10 recruiters and delivery professionals are highly accomplished career advocates, who get to know you beyond your resume to position you with the opportunities that fit your skills, experience and aspirations. We have benefit options to fit your needs and a support staff that works with you from placement throughout your engagement - project after project. To learn more about Genesis10 and to view all our available career opportunities, please visit us at .
"Genesis10 is an Equal Opportunity Employer, M/F/D/V"

Remote Sr. WAF Security Engineer

Genesis10

Cleveland Ohio

United States

Information Technology

(No Timezone Provided)

Genesis10 is seeking a Remote Sr. WAF Security Engineer for a leading company in Cleveland, OH. This is a remote 6-month contract to hire role that must be able to work EST hours.

Job Summary:

Applicant will design, build, configuration, deployment and support of Web Application Firewall (WAF) and BOT mitigation policies for on premise and in the cloud WAF deployments. The successful candidate must have working experience with F5 WAF, versed in cybersecurity concepts and possess the ability to work on various complex security engineering solutions.

Job Duties:
  • Conduct a comprehensive assessment of the management, operational, and technical security controls and control enhancements employed within or inherited by a system to determine the effectiveness of the controls.
  • Engineer, configure, deploy, and maintain Web Application Firewall solutions on premise and in the cloud (GCP, Azure, etc.).
  • Configure new sites and applications for WAF protection, analysis of traffic to remove false positives.
  • Create WAF rules/signatures to mitigate threats and implements best practices.
  • Create and update documentation including security diagrams, policies, procedures, playbooks, and run books
  • Develop automation for security tools management and workflow integration.
  • Perform root cause analysis on incidents, issues, and determines the proper course of action.
  • Update threat models based on WAF event patterns.
  • Develop, maintain, test, and troubleshoot on prem & cloud web application firewalls and rulesets.
  • Analyze WAFtraffic and tuning rules or creating remediation action plans for the Lines of business and respond to WAF events.
  • Configure deploys and maintains WAF solutions on-prem and in the cloud
  • Supports and ensures stability of the WAF platforms
  • Evaluate applications and determine if applications are in-scope for WAF
  • Should have experience with web-based attacks, OWASP Top 10 web vulnerabilities, web application testing with tools like Zed Attack Proxy, and extensive knowledge of networking protocols.
Requirements:
  • Equivalent years (5-8+) as a WAF Security Engineer.
  • Working experience with F5 WAF, Bot Defense and with cloud web application firewalls with major cloud service providers including Google and Azure.
  • Designing and implementing functional network infrastructure.
  • Oversee changes to the network and?system deployment (HW/SW) to ensure security protection.
  • Configuring and optimizing software for on-premise or cloud solutions.
  • Conducting system/server planning, management, and maintenance.
  • Installing system and component upgrades. (i.e., servers, appliances, network devices).
  • Configuration Management experience such as Ansible, Chef, Puppet, or similar.
  • Working experience with Regular Expression, JSON, Python and other scripting familiarity.
  • F5/ASM
  • Cloud platform knowledge Google, Azure & AWS
  • Linux, Unix , Windows
  • Containerization, Automation & Orchestration tools Docker, Kubernetes,
  • Scripting tools bash, ansible, powershell API, Json, yaml, git, Python
If you have the described qualifications and are interested in this exciting opportunity, please apply!

About Genesis10:
Genesis10 is a leading U.S. business and technology consulting firm with hundreds of clients needing proven talent and solutions to power their strategic initiatives. If you are a high performing business or IT professional with solid, referenced experience, we want to meet you. Genesis10 recruiters and delivery professionals are highly accomplished career advocates, who get to know you beyond your resume to position you with the opportunities that fit your skills, experience and aspirations. We have benefit options to fit your needs and a support staff that works with you from placement throughout your engagement - project after project. To learn more about Genesis10 and to view all our available career opportunities, please visit us at .
"Genesis10 is an Equal Opportunity Employer, M/F/D/V"