Web Application Firewall

10 hours ago


Mumbai Maharashtra India, Maharashtra ITC Infotech Full time

L3 – Web Application Firewall Lead (Cloudflare WAF)


Location: Mumbai

Mode: Hybrid


Job Summary:

ITCI Cyber Security team is looking for the role who is operational excellence and strategic configuration of Cloudflare WAF, focused on protecting public-facing web assets. The individual will ensure accurate ruleset deployment, threat intelligence tuning, and real-time attack mitigation. Additionally, the role requires extensive engagement with application owners and dev teams to fine-tune security without compromising performance.


Key Responsibilities:

  • Manage Cloudflare WAF policies and rulesets to protect financial web apps from OWASP Top 10 threats and zero-day exploits.
  • Oversee rule tuning, false positive management, and configuration of Bot Mitigation, Rate Limiting, and DDoS Protection.
  • Participate in vulnerability remediation cycles, ensuring virtual patching through WAF policies.
  • Conduct monthly policy reviews, perform simulated attacks for resilience validation, and apply version updates as needed.
  • Document all policy configurations, rationales, and threat detection results for audit and governance.
  • Work with developers and AppSec teams to align WAF policies with application behaviour and threat models.
  • Troubleshoot web traffic issues, SSL certificate renewals, and secure CDN operations.
  • Provide architectural input on securing new applications and APIs through Cloudflare WAF.
  • Support incident response activities, forensic analysis, and ensure high availability of WAF configurations.


Key Skills & Certifications:

  • 8+ years in application or network security; 3+ years Cloudflare WAF experience.
  • Strong hands-on with OWASP, HTTP/HTTPS protocols, TLS configurations, and Cloudflare dashboards.
  • Cloudflare Certified, CEH, or OSWE preferred.
  • In-depth understanding of RBI and SEBI appsec controls and web access compliance.



  • Mumbai, Maharashtra, India STRIVE BUSINESS SOLUTION Full time ₹ 6,00,000 - ₹ 12,00,000 per year

    Company DescriptionSTRIVE BUSINESS SOLUTION provides a comprehensive range of career services, including resume and cover letter writing, career coaching, job search assistance, interview preparation, and skills development workshops. We cater to recent graduates, professionals seeking advancement, individuals re-entering the workforce, and executives...


  • Navi Mumbai, Maharashtra, India Techf Solutions Full time ₹ 4,00,000 - ₹ 12,00,000 per year

    We are seeking a skilled WAF L2 Engineer to manage & support Web Application Firewalls(WAF) with a strong focus on Akamai Kona Site Defender and related Akamai securitysolutions. The candidate will provide operational support & incident response.


  • Mumbai, Maharashtra, India ITC Infotech Full time ₹ 12,00,000 - ₹ 36,00,000 per year

    Hi, We have 5 open positions for the below role in Mumbai, Secondary location is Pune. Interested candidates can email their updated profiles to alongwith the following details: Current CTC, Expected CTC, Notice period, Preferred location: Mumbai / PuneL3 – Web Application Firewall Lead (Cloudflare WAF)Job Summary:ITCI Cyber Security team is looking for...


  • Mumbai, Maharashtra, India NMS Consultant Full time ₹ 1,04,000 - ₹ 1,30,878 per year

    Job Purpose/Summary:We are seeking a skilled individual to join our Cybersecurity Protect team. The ideal candidate will possess a strong knowledge of cybersecurity tools and technologies, alongside a solid foundation in scripting and automation.Key Responsibilities:Key Responsibilities:Tool Proficiency:Demonstrate expertise in security tools, including:•...


  • Mumbai, Maharashtra, India NMS Consultant Full time

    Job Purpose/Summary :We are seeking a skilled individual to join our Cybersecurity Protect team.The ideal candidate will possess a strong knowledge of cybersecurity tools and technologies, alongside a solid foundation in scripting and Responsibilities :Tool Proficiency : Demonstrate expertise in security tools, including : - Imperva WAFHaving knowledge on...


  • Mumbai, Maharashtra, India Acharyaconsulting Services Full time

    Key Responsibilities :- Manage Cloudflare WAF policies and rulesets to protect financial web apps from OWASP Top 10 threats and zero-day exploits.- Oversee rule tuning, false positive management, and configuration of Bot Mitigation, Rate Limiting, and DDoS Protection.- Participate in vulnerability remediation cycles, ensuring virtual patching through WAF...

  • Firewall Engineer

    5 days ago


    Mumbai, Maharashtra, India Essen Vision Software Full time ₹ 4,00,000 - ₹ 12,00,000 per year

    Engineer Firewall (L3& L4) Required Skills: Firewalls, Checkpoint, Palo Alto, Fortinet, cisco, Web ATP, Algo Sec, Network Intrusion Prevention System, Malicious IP Blocking, Firewall Policy Management, Monitoring network security devices, Analyzing triggered alarms, Daily ticket management, Handling incidents, Taking backup for SOC devices, Firewall...


  • Pune, Maharashtra, India, Maharashtra ITC Infotech Full time

    Job Summary: ITCI Cyber Security team is looking for the role who is operational excellence and strategic configuration of Cloudflare WAF, focused on protecting public-facing web assets. The individual will ensure accurate ruleset deployment, threat intelligence tuning, and real-time attack mitigation. Additionally, the role requires extensive engagement...


  • Mumbai, Maharashtra, India K & R Enterprises Full time

    Job Description :- Develop quality software and Web Applications- Analyze and maintain existing web applications- Design highly scalable, testable codes- Discover and fix programming bugs- Experience with REST and SOAP API development and consumptionQualifications :- Bachelor's degree or equivalent experience in Computer Science or related field- Working...


  • Mumbai, Maharashtra, India eSec Forte® Technologies Full time ₹ 1,20,000 - ₹ 1,80,000 per year

    Company DescriptioneSec Forte Technologies is a CMMi Level 3 certified global consulting and IT security services company. We specialize in Cloud Security, Cyber Forensics, Malware Detection, Security Audits, and more. We are empaneled with CERT-INDIA to provide Information Security Auditing Services and are PCI DSS QSA certified to validate adherence to PCI...