1

Web Application Firewall Waf Engineer Jobs in Ohio

Managing Web Application Firewall (WAF) policies and associated rules to protect application ... Engineer youmustsatisfy HIPAA, PCI-adjacent concerns, and SOC 2 simultaneously -- across every ...

Senior Security Engineer - Web App.

Columbus, OH · On-site

$107K - $146K/yr

  • Medical

  • Dental

  • Vision

  • Retirement

... Application & Edge Security Edge Protection: Lead the administration of enterprise WAF and CDN ... Administer and support Next-Generation Firewall (NGFW) environments, secure remote access/ZTNA ...

DevOps Engineer (Hybrid)

Cincinnati, OH · On-site

$50.75 - $69.50/hr

Managing Web Application Firewall (WAF) policies and associated rules to protect application ... Engineer you must satisfy HIPAA, PCI-adjacent concerns, and SOC 2 simultaneously - across every ...

DevOps Engineer (Hybrid)

Cincinnati, OH · On-site

$50.75 - $69.50/hr

Managing Web Application Firewall (WAF) policies and associated rules to protect application ... Engineer you must satisfy HIPAA, PCI-adjacent concerns, and SOC 2 simultaneously -- across every ...

$68.28 - $102.41/hr

Als System Engineer / IT-Consultant Citrix NetScaler (m/w/d) sind Sie Teil unseres Teams ... Idealerweise Erfahrung mit Web Application Firewall (WAF) sowie angrenzenden Technologien im Modern ...

Network Security Engineer

Cincinnati, OH · Hybrid

$100K - $137K/yr

This is a hands-on engineering role focused primarily on web application firewalls, edge security ... Our core platforms include Akamai and Cloudflare technologies, including WAF policies, managed and ...

Web Developer

Union City, OH · On-site

  • Medical

  • Dental

  • Life

  • Retirement

  • PTO

Write web application code using Adobe ColdFusion, Oracle PL/SQL, HTML, CSS, JavaScript, and jQuery ... Web developers who are new to HPWS shall be required to complete a two to four-week orientation ...

$120 - $180/hr

  • PTO

Build, deploy, and manage security tools such as WAF, IDS/IPS, workload protection, GCP Command ... web application firewalls (WAFs), intrusion detection/prevention systems (IDS/IPS), and endpoint ...

New

The effort requires the maintenance and enhancement of an application and underlying services ... The Software/Web Developer applies concepts, develops, tests, maintains, and supports high ...

Showing results 21-40

Web Application Firewall Waf Engineer information

See Ohio salary details

$28

$63

$91

How much do web application firewall waf engineer jobs pay per hour?

As of Aug 20, 2026, the average hourly pay for web application firewall waf engineer in Ohio is $63.13, according to ZipRecruiter salary data. Most workers in this role earn between $53.70 and $71.78 per hour, depending on experience, location, and employer.

What is a Web Application Firewall (WAF) engineer?

A Web Application Firewall (WAF) Engineer is a cybersecurity professional responsible for configuring, managing, and maintaining web application firewalls to protect web applications from threats such as SQL injection, cross-site scripting (XSS), and other common web exploits. They work to ensure that web applications are secure by designing WAF policies, monitoring traffic, and responding to security incidents. WAF Engineers also collaborate with development and operations teams to identify vulnerabilities and implement effective protection strategies. Their role is critical in safeguarding sensitive data and maintaining the integrity and availability of web-based services.

What are the key skills and qualifications needed to thrive as a Web Application Firewall (WAF) engineer?

To thrive as a Web Application Firewall (WAF) Engineer, you need a solid understanding of web security concepts, HTTP/HTTPS protocols, and experience with firewall configuration, often supported by a degree in computer science or a related field. Familiarity with WAF platforms (such as AWS WAF, F5, or Imperva), scripting languages, and certifications like CEH or CISSP are typically required. Attention to detail, strong problem-solving skills, and effective communication help you proactively identify threats and work closely with development and security teams. These skills are crucial to protect web applications against evolving cyber threats and ensure organizational security.

What are some common challenges faced by Web Application Firewall (WAF) engineers, and how can they be addressed?

WAF Engineers often encounter challenges such as tuning firewall rules to minimize false positives while ensuring robust security, keeping up with rapidly evolving web application threats, and balancing security needs with application performance. Successfully addressing these issues requires continuous monitoring, regular updates to security policies, and close collaboration with development and DevOps teams to understand application changes. Adopting automation tools and participating in ongoing security training can also help WAF Engineers stay effective and proactive against new vulnerabilities.

What are popular job titles related to Web Application Firewall Waf Engineer jobs in Ohio?

For Web Application Firewall Waf Engineer jobs in Ohio, the most frequently searched job titles are:

What job categories do people searching Web Application Firewall Waf Engineer jobs in Ohio look for?

The top searched job categories for Web Application Firewall Waf Engineer jobs in Ohio are:

What cities in Ohio are hiring for Web Application Firewall Waf Engineer jobs?

Cities in Ohio with the most Web Application Firewall Waf Engineer job openings:

Senior Cybersecurity Engineer

Rogue Fitness

Columbus, OH • On-site

$120 - $180/hr

Other

Posted 20 days ago


Rogue Fitness rating

7.9

Company rating: 7.9 out of 10

Based on 5 frontline employees who took The Breakroom Quiz

202nd of 491 rated machine equipment manufacturers


Job description

## Senior Cybersecurity EngineerApplyremote type: On-Sitelocations: Columbus, Ohiotime type: Full timeposted on: Posted 9 Days Agojob requisition id: R-102835**Job Description:**We're looking for a hands-on Senior Cybersecurity Engineer with strong experience in web application firewalls, cloud security, security operations, and infrastructure security. This is an implementation and operations role, not a pure architecture or policy position — you'll configure, troubleshoot, and run security systems daily, moving fluidly between WAF tuning, cloud controls, SIEM investigations, endpoint incidents, and network troubleshooting. The ideal candidate is a self-starter who spots gaps, proposes practical fixes, and owns them through implementation, while partnering closely with developers, infrastructure teams, auditors, and leadership.The Senior Cybersecurity Engineer is a fully onsite role in Columbus, Ohio. Remote work is not available. Applicants must be authorized to work in the United States for any employer.**Responsibilities*** Administer and improve WAF platforms — managed/custom rules, rate limiting, bot and API protections, and DDoS controls; investigate blocked requests, attacks, and false positives* Implement and maintain security controls across GCP, Azure, and other cloud platforms, including identity, network, storage, and logging configurations; identify and remediate misconfigurations and excessive permissions* Support application security and DevSecOps practices across the development and deployment lifecycle, including risk review of APIs, SaaS, and AI-enabled applications* Manage EDR (CrowdStrike) and anti-ransomware (Halcyon) protections; operate SIEM/SOAR (Google SecOps), building alerts, detections, dashboards, and response automation* Lead incident investigation, containment, remediation, and recovery; maintain IR playbooks; perform threat hunting, forensics, and root cause analysis; manage threat intel via Recorded Future* Run automated penetration testing and attack path analysis (NodeZero); validate findings and drive remediation across web apps, APIs, cloud, and internal/external infrastructure* Administer Zscaler in support of the zero trust model; configure and troubleshoot firewalls, segmentation, VPN, and remote access; co-manage VMware and Linux server environments; monitor via Zabbix* Maintain compliance with PCI DSS, GDPR, and related frameworks; support audit prep and evidence gathering; own the Risk Register; translate compliance requirements into technical controls; run security awareness training via KnowBe4* Administer and secure Google Workspace identity — MFA, access controls, account lifecycle, least privilege — and investigate suspicious sign-ins and identity-related alerts****Qualifications***** Hands-on experience administering a web application firewall (e.g., Cloudflare or similar enterprise platform)* Strong understanding of web security fundamentals: HTTP/HTTPS, DNS, TLS, APIs, OWASP risks, bot activity, rate limiting, and DDoS* Experience implementing security controls in GCP, Azure, or another public cloud, including identity, network, storage, and logging* Experience with EDR/XDR platforms (e.g., CrowdStrike) and operating SIEM/SOAR tools for security investigations* Experience with vulnerability management, penetration testing, threat hunting, and incident response* Working knowledge of Linux and Windows administration, networking, firewalls, and zero trust/hybrid infrastructure* Experience supporting PCI DSS, GDPR, or similar compliance and privacy frameworks* Strong communicator who can work independently and partner effectively with technical and business stakeholders****Preferred Experience***** Direct experience with Cloudflare, CrowdStrike, Halcyon, Google SecOps, NodeZero, Recorded Future, Zscaler, Zabbix, KnowBe4, or VMware* Python or other scripting experience for security automation, detections, and SIEM workflow development* Background in ethical hacking, application security, digital forensics, or OSINT* Familiarity with DevSecOps, IaC, containers, and cloud-native services* Awareness of AI security risks and secure use of generative AI* Security or cloud certifications are a plus but not requiredBy applying to Rogue, regardless of the platform you choose to use, you are agreeing to Rogue's preferred methods of communication (i.e. text message). Submitting an application, through whatever online forum is ultimately used, constitutes a knowing and voluntary agreement to send and receive text messages during the recruitment process.### About UsRogue Fitness is the leading manufacturer of strength and conditioning equipment, including barbells, power racks, sleds, and accessories. Founded in a garage in 2006, the company has grown to over 1400 team members globally. Rogue is the official equipment supplier of the CrossFit Games, USA Weightlifting, the Arnold Strongman Classic, and the World’s Strongest Man competition. The company remains dedicated to serving the needs of serious athletes at every level, from the garage to the arena. #J-18808-Ljbffr

What Rogue Fitness employees say

Pay

Hours and flexibility

Workplace

Get the full story on Breakroom