2

Remote Waf Jobs in Washington (NOW HIRING)

Cloud Architect - Network (REMOTE)

Washington, DC · On-site +1

$73.25 - $98.25/hr

The position is remote. This position requires the candidate to be able to obtain a Public Trust ... WAF, AWS Shield, AWS Network Firewall, segmentation, secure ingress and egress, and Zero Trust ...

Remote (U.S.) may be expected to visit site for meeting and stakeholder engagement when requested ... Web Application Firewalls (WAF) * File Integrity Monitoring (FIM) * Security testing tools ...

New

Senior DevOps Engineer

Washington, DC · Remote

$133K - $170K/yr

ECS, EKS, RDS, Lambda, Athena, Secrets Manager, WAF, Redis, Glue, AWS Landing Zone * Hands-on ... Remote * US-based -- US citizenship is required * Contract or B2B arrangement Our values We are a ...

Cloud Engineer Principal

Washington, DC · Remote

$160K - $200K/yr

Public Trust Potential for Remote Work: ORA_ON_SITE Description Job Summary SAIC is looking to hire ... WAF, CloudFront, and Route53 Note: Candidate must be a U.S. citizen and the ability to obtain a ...

... fully remote / work from home role. Description * This position is responsible for the full life ... Middleware Cloud technologies (S3, BLOB storage, Rotue 53, WAF, application gateways, etc) * Linux ...

Cisco switching, routing (OSPF, BGP), firewalls (access-lists, VPN tunnels, remote access), and wireless access. * F5 load balancing, Cisco ISE, WAF, and DNS/DHCP experience preferred. * Network ...

Senior DevSecOps Engineer

Washington, DC · On-site +1

$106K - $136K/yr

... WAF, and Secrets Manager * Experience producing security and compliance evidence for federal ... a remote (or hybrid depending on the role and program) work environment operating within the ...

next page

Showing results 1-20

Remote Waf information

What is a Remote WAF?

A Remote WAF, or Web Application Firewall, is a security solution that protects web applications from common cyber threats such as SQL injection, cross-site scripting (XSS), and other vulnerabilities. Unlike traditional WAFs that are installed directly on the application server, a Remote WAF is hosted offsite, often in the cloud, and works by filtering and monitoring traffic before it reaches the application. This allows businesses to secure their web applications without managing the infrastructure themselves. Remote WAFs offer flexibility, scalability, and simplified management, making them a popular choice for organizations with distributed or cloud-based applications.

How does a Remote WAF (Web Application Firewall) Engineer typically collaborate with other IT teams to maintain application security?

A Remote WAF Engineer works closely with development, operations, and security teams to ensure that web applications remain protected against threats. This often involves regular communication via virtual meetings, ticketing systems, and documentation platforms to discuss vulnerabilities, review logs, and coordinate on incident responses. The role may also include providing recommendations for secure coding practices and assisting with security patch deployments. Effective collaboration ensures timely identification and mitigation of potential risks across the application lifecycle.

What is the difference between Remote Waf vs Remote Web Application Firewall Specialist?

AspectRemote WafRemote Web Application Firewall Specialist
CertificationsTypically includes security certifications like CEH, CISSPOften requires certifications like CEH, OSCP, or vendor-specific WAF certifications
Work EnvironmentRemote, cybersecurity-focused teamsRemote, security and network-focused roles
Industry UsageUsed across various industries for web securitySpecialized role within cybersecurity teams
Job FocusImplementing and managing Web Application FirewallsConfiguring, tuning, and monitoring WAFs for security

Remote Waf refers broadly to roles involving Web Application Firewalls, while Remote Web Application Firewall Specialist is a specialized position focusing on configuring and managing WAFs. Both roles require cybersecurity knowledge, but the specialist role emphasizes hands-on management and tuning of WAF solutions.

What are the key skills and qualifications needed to thrive as a Remote Web Application Firewall (WAF) Engineer, and why are they important?

To thrive as a Remote WAF Engineer, you need a strong background in cybersecurity, network protocols, and web application security, typically supported by a degree in computer science or related certifications like CEH or CISSP. Familiarity with WAF platforms (such as AWS WAF, Imperva, or Cloudflare), scripting languages, and security monitoring tools is essential. Standout soft skills include analytical thinking, problem-solving, and effective remote communication for collaborating with distributed teams. These skills are crucial to proactively detect, mitigate, and communicate web security threats, ensuring robust protection for critical online assets.
What are the most commonly searched types of Waf jobs in Washington? The most popular types of Waf jobs in Washington are:
What job categories do people searching Remote Waf jobs in Washington look for? The top searched job categories for Remote Waf jobs in Washington are:
CLOUD SECURITY ENGINEER - AWS GOVCLOUD / MULTI-CLOUD

CLOUD SECURITY ENGINEER - AWS GOVCLOUD / MULTI-CLOUD

Zermount, Inc

Arlington, VA • Remote

$155K - $190K/yr

Full-time

Posted 11 days ago


Job description

Cloud Security Engineer – AWS GovCloud / Multi-Cloud

Position Overview

We are looking for a highly talented, technical, hands-on Cloud Security Engineer to help accelerate our growing Professional Services business within the Government Sector.You will build and operate the secure cloud foundation and security automation that produces continuous control evidence across AWS - and Azure/GCP as the environment expands - enforcing guardrails as code and remediating drift in near real time for a federal continuous Authorization to Operate (cATO) program.

Duties & Responsibilities

  • Cloud Infrastructure-as-Code: Build and maintain AWS GovCloud/Commercial IaC (Terraform, Ansible) across Production, Staging, Test, and Integration tiers.
  • Cloud-Native Security Services: Operate Security Hub, GuardDuty, and Config; run cloud security posture management (CSPM) across AWS plus Azure/GCP.
  • Security Automation: Architect event-driven alerting (identity event hooks to serverless functions and notifications), privileged-access monitoring, and drift auto-remediation.
  • Hardening & Compliance: Implement credentialed scanning, WAF/IP allowlisting, and least-privilege access; maintain a FedRAMP-aligned compliance posture.
  • Pipelines & Observability: Maintain CI/CD pipelines (Jenkins + Terraform + Ansible) and observability (Splunk, CloudWatch) for cloud control evidence.

Qualifications

  • High level of attention to detail, needs minimal guidance, effective verbal and written communication.
  • 8+ years delivering federal cloud infrastructure on AWS GovCloud, with hands-on Terraform/IaC across multiple environment tiers.
  • Multi-cloud breadth: architecture-level proficiency across AWS and at least one of Azure or GCP.
  • Cloud security automation: serverless/event-driven controls, identity-event integration, and drift remediation.
  • FedRAMP-aligned operations - credentialed scanning, WAF, and least-privilege access management.
  • Scripting in Python and Bash; CI/CD (Jenkins) and observability (Splunk/CloudWatch).
  • CSPM/CNAPP tooling (e.g., Prisma Cloud) and Okta/Entra ID integration a plus.

Education

  • Bachelor of Science (or higher) in computer engineering, computer science, information technology, cyber security, or a related field.
  • Another major will be considered, provided it clearly addresses at least one of the following: cyber security engineering, systems administration, information systems security, software development security, systems engineering, information systems, or information technology.

CERTIFICATION

  • None required.

Clearance Level

  • No Clerance required, but an active Secret Clearance is preferred.

Work Location

  • Primary location(s) are Arlington and Alexandria VA. Remote work is authorized, but the employee may have to report to one of the primary sites occasionally or as requested by management or the client.

Hours of Operation

  • 6:00 am ET – 6:00 pm ET

SALARY RANGE:

  • $155,000 - $190,000+

  • Ability to pass a minimum background investigation.