WAF Security Engineer

4 weeks ago


Hyderabad, India PURVIEW Full time

Role: WAF Security Engineer (SME)

Location: Any location in India (Hyd-pref)


Job Description :


Key Responsibilities


• Develop and refine complex custom WAF rules and features, ensuring mitigation of Minimum Viable Product (MVP) and security posture gaps.

• Coding expertise to create effective testing mechanisms for baseline and custom WAF rules, integrating these tests seamlessly into automation pipelines.

• Offer subject matter expert (SME) support in various security testing areas, including WAF Proofs of Concept (PoCs)

• Provide specialized WAF-focused advice on web and API attack methodologies, evasions, and mitigation techniques, leveraging your ethical hacking background.

• Contribute to DevSecOps / DevOps with security testing expertise to enhance the automation aspects of the project.


Key Accountabilities


• Utilize ethical hacking skills to safeguard the organization from web-based attacks, ensuring the protection of operations, reputation, and customer trust.

• Conduct in-depth technical evaluations of WAF solution rulesets, focusing on detection and prevention of web and API security threats.

• Develop custom WAF rules and features, addressing gaps and enhancing overall security measures.

• Identify and counter technical strategies that bypass WAF solutions.

• Design and implement testing protocols to evaluate the effectiveness of various security initiatives, including WAF rules and new features.

• Facilitate the integration of testing procedures into CI/CD pipelines

• Reverse-engineer attacker tactics to create effective mitigation rules.

• Maintain and secure essential documentation and reports, ensuring traceability and compliance.

• Inform the EPS Management team about emerging threats and vulnerabilities, recommending countermeasures.

• Communicate effectively with a range of stakeholders, providing updates on security-related matters


Ideal Candidate Profile


• Strong background in ethical hacking

• Extensive experience with web-based attack methodologies, including knowledge of tools, payloads, exploits, and countermeasures.

• Proficient in web application and API security.

• Skilled in identifying and mitigating WAF/IPS/CSPM security vulnerabilities.

• Expertise in developing custom WAF rules and security testing packages.

• Solid understanding of OWASP top 10 vulnerabilities.

• Proficiency in at least one programming language

• Ability to automate security testing within CI/CD pipelines.

• Knowledgeable in networking, cloud firewalls, and web technologies.

• Strong grasp of DevSecOps principles and practices.

• Awareness of Agile methodologies



  • Pune,Hyderabad,Chennai, India Notus Full time

    Job Description :- The Web Application Firewall Expert will be responsible for ensuring the security and smooth operation of the Checkpoint Firewall and WAF infrastructure.- Work closely with development and infrastructure teams to integrate the WAF seamlessly into existing and/or new web application environments.- Hands-on experience on deploying, managing...


  • Pune/Hyderabad/Chennai, IN Notus Full time

    Job Description :- The Web Application Firewall Expert will be responsible for ensuring the security and smooth operation of the Checkpoint Firewall and WAF infrastructure.- Work closely with development and infrastructure teams to integrate the WAF seamlessly into existing and/or new web application environments.- Hands-on experience on deploying, managing...


  • Hyderabad, India 2coms Full time

    Looking For Network Security Engineer Professionals For Global IT MNCAbout The Client:Our client is an Indian multinational corporation that provides information technology, consulting, and business process services.Job Description:Position: Senior Network Security EngineerLocation:Mumbai/HyderabadExperience:4 -8 YearsMust-Have: PaloAlto and Fortinet...


  • Hyderabad, India 2coms Full time

    Looking For Network Security Engineer Professionals For Global IT MNC About The Client:Our client is an Indian multinational corporation that provides information technology, consulting, and business process services.Job Description:Position: Senior Network Security EngineerLocation:Mumbai/Hyderabad Experience:4 -8 Years Must-Have: PaloAlto and Fortinet...


  • Hyderabad, India TechnoSphere, Inc. Full time

    Job Title: Network Ops - Checkpoint, Firewall, WAFLocation: Hyderabad, Chennai or PuneDuration: Permanent / Full TimeDetailed Job Description for Network Ops - Checkpoint, Firewall, WAFWeb Application Firewall Expert will be responsible for ensuring the security and smooth operation of the Checkpoint Firewall and WAF infrastructure.closely with development...


  • Hyderabad, India TechnoSphere, Inc. Full time

    Job Title: Network Ops - Checkpoint, Firewall, WAFLocation: Hyderabad, Chennai or PuneDuration: Permanent / Full TimeDetailed Job Description for Network Ops - Checkpoint, Firewall, WAFWeb Application Firewall Expert will be responsible for ensuring the security and smooth operation of the Checkpoint Firewall and WAF infrastructure.closely with development...


  • Hyderabad, India TechnoSphere, Inc. Full time

    Job Title: Network Ops - Checkpoint, Firewall, WAF Location: Hyderabad, Chennai or Pune Duration: Permanent / Full Time Detailed Job Description for Network Ops - Checkpoint, Firewall, WAF Web Application Firewall Expert will be responsible for ensuring the security and smooth operation of the Checkpoint Firewall and WAF infrastructure. closely with...


  • Hyderabad, India TechnoSphere, Inc. Full time

    Job Title: Network Ops - Checkpoint, Firewall, WAFLocation: Hyderabad, Chennai or PuneDuration: Permanent / Full TimeDetailed Job Description for Network Ops - Checkpoint, Firewall, WAFWeb Application Firewall Expert will be responsible for ensuring the security and smooth operation of the Checkpoint Firewall and WAF infrastructure.closely with development...

  • Java Security

    5 days ago


    Hyderabad/ Secunderabad, India timesjobs Full time

    - **Shifts:** 24/7 rotational shifts.- **WAF Device:** Imperva, Barracuda, Akamai, Fortinet/Fortiweb, Radware, BigIP F5, or others.- Understanding and prevention of OWASP 10 threats, DDOS, etc.- Supporting Web Application Firewalls Imperva, Barracuda, Akamai, Fortinet/Fortiweb, Radware, BigIP F5, or others.- Configuring WAF to prevent DDoS attacks, XSS,...

  • Java Security

    5 days ago


    Hyderabad/ Secunderabad, India timesjobs Full time

    - Shifts: 24/7 rotational shifts.- WAF Device: Imperva, Barracuda, Akamai, Fortinet/Fortiweb, Radware, BigIP F5, or others. Understanding and prevention of OWASP 10 threats, DDOS, etc. Supporting Web Application Firewalls Imperva, Barracuda, Akamai, Fortinet/Fortiweb, Radware, BigIP F5, or others. Configuring WAF to prevent DDoS attacks, XSS, SQLinjections,...

  • SecurityOps Engineer

    2 weeks ago


    Hyderabad, India YO HR CONSULTANCY Full time

    SecurityOps Engineer AWScloudSecurityLocations Bangalore / HyderabadExperience 2 to 7yearsMustHaveExperiencein AWS Cloud Security Indepthunderstanding of various AWS security services such as AWS Identityand Access Management (IAM) AWS KeyManagement Service (KMS) AWS CloudTrailAWS ConfigurationAmazon GuardDuty AWSWAF (Web Application...


  • hyderabad, India Tech Mahindra Full time

    Job Title: Application Security ConsultantExperience: 3 to 6 years.Must Skills: Security-F5, Irule, ASM, Signature, App Sec, Web AppsecLocation: Hyderabad, PuneTimings: UK ShiftNotice period: Immediate to 30days.Management of all security devices and primarily Checkpoint Firewall, Azure Firewall, Trend Micro Proxy, Cisco IPS - FTD devices, FMC, F5 Load...

  • SecurityOps Engineer

    2 weeks ago


    hyderabad, India YO HR CONSULTANCY Full time

    SecurityOps Engineer AWScloudSecurity Locations Bangalore / HyderabadExperience 2 to 7yearsMustHave Experiencein AWS Cloud Security Indepthunderstanding of various AWS security services such as AWS Identityand Access Management (IAM) AWS KeyManagement Service (KMS) AWS CloudTrailAWS ConfigurationAmazon GuardDuty AWSWAF (Web Application...

  • SecurityOps Engineer

    4 weeks ago


    Hyderabad, India YO HR CONSULTANCY Full time

    SecurityOps Engineer AWScloudSecurityLocationsBangalore / HyderabadExperience 2 to 7yearsMustHaveExperiencein AWS Cloud SecurityIndepthunderstanding of various AWS security services such as AWS Identityand Access Management (IAM) AWS KeyManagement Service (KMS) AWS CloudTrailAWS ConfigurationAmazon GuardDuty AWSWAF (Web Application...


  • Hyderabad, India Yo HR Consultancy Full time

    Responsibilities :1. AWS Services Knowledge: In-depth understanding of various AWS security services such as AWS Identity and Access Management (IAM), AWS Key Management Service (KMS), AWS CloudTrail, AWS Configuration, Amazon Guard Duty, AWS WAF (Web Application Firewall), etc.2. Identity and Access Management: Proficiency in designing and implementing IAM...

  • Sr. Security Engineer

    4 weeks ago


    Hyderabad, India Saaki Argus & Averil Consulting Full time

    Job Description: Positon: Sr.Security Engineer Location: Hyderabad Educaional: B.E, B.Tech, MCA Experience :4.8+Years Experience in FortiGate and Palo Alto Firewalls configuration and support Experience in F5 devices, i.e, LLB, SLB and WAF configuration and Support Good Knowledge in Configuration and Troubleshooting of Firewall devices. Good Knowledge in...

  • Sr. Security Engineer

    4 weeks ago


    hyderabad, India Saaki Argus & Averil Consulting Full time

    Job Description: Positon: Sr.Security Engineer Location: Hyderabad Educaional: B.E, B.Tech, MCA Experience :4.8+Years Experience in FortiGate and Palo Alto Firewall s configuration and support Experience in F5 devices, i.e, LLB, SLB and WAF configuration and Support Good Knowledge in Configuration and Troubleshooting of Firewall devices. Good...


  • hyderabad, India Tech Mahindra Full time

    Job Title: Application Security Consultant Experience: 3 to 6 years. Must Skills: Security-F5, Irule, ASM, Signature, App Sec, Web Appsec Location: Hyderabad, Pune Timings: UK Shift Notice period: Immediate to 30days. Management of all security devices and primarily Checkpoint Firewall, Azure Firewall, Trend Micro Proxy, Cisco IPS - FTD devices, FMC,...


  • Hyderabad, India Tech Mahindra Full time

    Job Title: Application Security ConsultantExperience: 3 to 6 years.Must Skills: Security-F5, Irule, ASM, Signature, App Sec, Web AppsecLocation: Hyderabad, PuneTimings: UK ShiftNotice period: Immediate to 30days.Management of all security devices and primarily Checkpoint Firewall, Azure Firewall, Trend Micro Proxy, Cisco IPS - FTD devices, FMC, F5 Load...


  • Hyderabad, India Tech Mahindra Full time

    Job Title: Application Security ConsultantExperience: 3 to 6 years.Must Skills: Security-F5, Irule, ASM, Signature, App Sec, Web AppsecLocation: Hyderabad, PuneTimings: UK ShiftNotice period: Immediate to 30days.Management of all security devices and primarily Checkpoint Firewall, Azure Firewall, Trend Micro Proxy, Cisco IPS - FTD devices, FMC, F5 Load...