1

Waf Jobs in Virginia (NOW HIRING)

Senior Network Security Engineer

Richmond, VA · Hybrid

$58 - $75.75/hr

Validates WAF and firewall placement and integration exposure/connectivity. Also leads implementation, review, and management of agency WAF(s). * Identifies and diagnoses system problems and threats ...

Senior Network Engineer

Richmond, VA · On-site

$102K - $141K/yr

Also leads implementation, review, and management of agency WAF(s). • Identifies and diagnoses system problems and threats by using system logs, line monitors, SIEM, diagnostic software, and test ...

Showing results 21-40

Waf information

See Virginia salary details

$15

$42

$74

How much do waf jobs pay per hour?

As of Aug 9, 2026, the average hourly pay for waf in Virginia is $42.29, according to ZipRecruiter salary data. Most workers in this role earn between $21.74 and $63.35 per hour, depending on experience, location, and employer.

What are the common challenges faced by professionals managing a Web Application Firewall (WAF) and how can they be addressed?

Professionals managing a Web Application Firewall (WAF) often encounter challenges such as keeping up with evolving security threats, ensuring minimal false positives that can disrupt legitimate user activity, and integrating the WAF with existing infrastructure. Regularly updating WAF rules and collaborating closely with development and IT teams can help address new vulnerabilities efficiently. Additionally, continuous monitoring and tuning of WAF policies are crucial for balancing security and usability, making strong communication and analytical skills essential for success in this role.

What are the key skills and qualifications needed to thrive as a Web Application Firewall (WAF) engineer?

To thrive as a WAF Engineer, you need a solid understanding of web application security, networking protocols, and experience with firewalls, typically supported by a degree in computer science or a related field. Familiarity with WAF solutions such as AWS WAF, F5, Imperva, or Cloudflare, and certifications like CEH or CISSP are often required. Analytical thinking, problem-solving, and effective communication are vital soft skills for identifying threats and collaborating with IT and development teams. These skills and qualifications are crucial to proactively protecting web applications from cyberattacks and ensuring organizational security.

What does a WAF engineer do?

A WAF (Web Application Firewall) engineer designs, implements, and manages web application security solutions to protect against cyber threats and attacks. They configure and maintain WAF systems, analyze security logs, and update rules to defend applications from vulnerabilities and malicious traffic. Knowledge of network security, scripting, and relevant tools like cloud platforms or security frameworks is essential for this role.

What is a WAF?

A WAF (Web Application Firewall) job typically involves protecting web applications from cyber threats by monitoring and filtering HTTP traffic. Professionals in this role configure, manage, and optimize WAF solutions to prevent attacks like SQL injection, cross-site scripting (XSS), and DDoS. They analyze security logs, fine-tune firewall rules, and collaborate with IT teams to strengthen application security. Strong knowledge of networking, cybersecurity principles, and WAF technologies is essential for success in this role.

What is the difference between Waf vs Network Security Specialist?

AspectWafNetwork Security Specialist
Primary RoleConfiguring and managing Web Application Firewalls to protect web appsImplementing and maintaining overall network security measures
CertificationsCertified Web Application Defender, CompTIA Security+CISSP, CompTIA Security+
Work EnvironmentPrimarily in IT/security teams focusing on web app securityBroader network infrastructure environments
Industry UsageWeb hosting, e-commerce, online servicesCorporate networks, data centers, enterprise IT

While both roles focus on security, a Waf specializes in protecting web applications through Web Application Firewalls, whereas a Network Security Specialist oversees overall network security infrastructure. The roles often overlap but serve different aspects of cybersecurity.

What are the most commonly searched types of Waf jobs in Virginia? The most popular types of Waf jobs in Virginia are:
What cities in Virginia are hiring for Waf jobs? Cities in Virginia with the most Waf job openings:
Infographic showing various Waf job openings in Virginia as of August 2026, with employment types broken down into 84% Full Time, 7% Part Time, and 9% Contract. Highlights an 78% Physical, 8% Hybrid, and 14% Remote job distribution, with an average salary of $87,959 per year, or $42.3 per hour.

Senior Network Security Engineer

Cyber Resource

Richmond, VA • Hybrid

$58 - $75.75/hr

Contractor

Posted 10 days ago


Job description

VDOT is seeking an experienced Sr Network Security Engineer (Sr NSE) to implement and support the agency’s IT network, cloud, and computing infrastructure. The Sr NSE performs day-to-day activities related to securing VDOTs infrastructure.

The Sr NSE performs day-to-day activities related to securing, documenting, performing research, analysis, design, and implementation of VDOT’s network and computing related infrastructure.

The Sr NSE will support a hybrid enterprise environment consisting of approximately 300 statewide locations, Palo Alto firewalls, Azure networking, ExpressRoute connectivity, WAF technologies, Splunk SIEM, SD-WAN, and mission-critical public-facing applications. The role partners closely with Infrastructure, Cloud Engineering, and the Information Security Office to maintain the confidentiality, integrity, and availability of VDOT’s network infrastructure.

Key Responsibilities:

• Ensures network security architecture aligns with operational security standards prior to and after deployment.

• Lead investigation and containment of network security incidents.

• Review firewall rule requests and ensure compliance with security standards.

• Design and maintain secure hybrid network architecture across on-premises and Azure environments.

• Monitor security events using SIEM technologies and coordinate incident response activities.

• Perform network security assessments and recommend remediation strategies.

• Develop and maintain network security standards, diagrams, and operational documentation.

• Support penetration testing and remediation efforts.

• Participate in on-call support during critical security incidents.

• Responsible for conducting proactive threat hunting and anomaly detection. 

• Validates WAF and firewall placement and integration exposure/connectivity. Also leads implementation, review, and management of agency WAF(s).

• Identifies and diagnoses system problems and threats by using system logs, line monitors, SIEM, diagnostic software, and test equipment. 

• Identifies, prioritizes, and remediates network security vulnerabilities.

• Must have the ability to provide documentation, network architecture topology diagrams, IP schemes, firewall rules, and access controls when required. 

• Must have the ability to work independently on assigned projects.

SkillRequired / DesiredAmountof ExperienceEnterprise NetworkingRequired8YearsEnterprise SecurityRequired5YearsAzure NetworkingRequired3YearsWAF/NGFWRequired3YearsSupporting environments with 300+ Network DevicesDesired3YearsCandidate must have experience in the following areas: Incident response, Security investigations, Log analysis, Threat intelligence, Security monitorRequired  Candidate must have experience with the SIEM products (e.g. Splunk, Microsoft Sentinel)Required  Candidate must have experience in vulnerability management and remediation tracking as well as vulnerability scanning tools (e.g. Nessus, Tenable, DefRequired  Candidate must have experience in the following areas: Active Directory, MFA, Conditional Access, CertificatesRequired  Candidate must have experience with; SEC530, CIS Benchmarks, NIST CSF, NIST 800-53, Zero Trust principlesRequired  Candidate must have experience with the following: Cisco ISE, NAC, 802.1X, RADIUS, TACACSRequired  Candidate must have experience with the following products: Palo Alto, F5 Distributed Cloud, Azure WAF, Cisco VPN, Global Protect, F5 BIG-IPRequired  Candidate must have experience working in highly regulated environments and leading technical troubleshooting during outagesRequired  Candidate must have ability to communicate technical issues to technical and executive audiences and an ability to mentor junior engineers.Required  Candidate should have achieved or ability to achieve the following certifications: Azure Security Engineer (AZ-500), Azure Network Engineer (AZ-700),Required