1

Web Application Firewall Waf Engineer Jobs in Oregon

Application Security Engineer

$58.75 - $78.50/hr

Strong technical background with Web Application Firewall (WAF), Zero Trust Network Access, APIs ... Science, Engineering or equivalent years in experience Other Duties Please note this is not ...

The Network Engineer's responsibilities include planning, designing and implementing best practice ... Web Application Firewall * Network Access Control (NAC) * Data Loss Prevention (DLP) * Anti-virus ...

Our Technical Operations team is looking for a Network Engineer to be a part of our Technology ... Web Application Firewall * Network Access Control (NAC) * Data Loss Prevention (DLP) * Anti-virus ...

OR · Hybrid

$122K - $167K/yr

... engineering or a related cybersecurity discipline * 3+ years of hands-on experience managing ... Manage and optimize next-generation firewalls (NGFW), web application firewalls (WAF), and proxy ...

Sales Engineer (Application Security)

OR · Remote

$103K - $128K/yr

Sales Engineers are an integral part of Thales's sales organization and assist the sales team with ... DDoS Mitigation, Web application firewalls, API Management & Security, Bot Management or related ...

... firewall rules and system configuration checks. * Apply Web application and API security principles ... WAF and Zero Trust). * Adept at working with internal Product & Engineering, Legal, People ...

We are looking for contracted PHP/MySQL web developer familiar with PHP web frameworks like ... Skills/Qualifications: 3+ years experience focused on web application development Advanced ...

OR

$58.75 - $78.50/hr

A conceptual understanding of vulnerability categories and web application security standards. * An ... engineering and security. Benefits * Flexible work environment * Unlimited Vacation * 100% paid ...

OR · On-site

$58.75 - $78.50/hr

Broad knowledge of web, application, and cloud attack vectors and exploits * Comprehension in multiple programming languages (Python, Go, Scala, C/C++, Javascript/Typescript) * Working experience ...

next page

Showing results 1-20

Web Application Firewall Waf Engineer information

What are some common challenges faced by Web Application Firewall (WAF) engineers, and how can they be addressed?

WAF Engineers often encounter challenges such as tuning firewall rules to minimize false positives while ensuring robust security, keeping up with rapidly evolving web application threats, and balancing security needs with application performance. Successfully addressing these issues requires continuous monitoring, regular updates to security policies, and close collaboration with development and DevOps teams to understand application changes. Adopting automation tools and participating in ongoing security training can also help WAF Engineers stay effective and proactive against new vulnerabilities.

What is a Web Application Firewall (WAF) engineer?

A Web Application Firewall (WAF) Engineer is a cybersecurity professional responsible for configuring, managing, and maintaining web application firewalls to protect web applications from threats such as SQL injection, cross-site scripting (XSS), and other common web exploits. They work to ensure that web applications are secure by designing WAF policies, monitoring traffic, and responding to security incidents. WAF Engineers also collaborate with development and operations teams to identify vulnerabilities and implement effective protection strategies. Their role is critical in safeguarding sensitive data and maintaining the integrity and availability of web-based services.

What are the key skills and qualifications needed to thrive as a Web Application Firewall (WAF) engineer?

To thrive as a Web Application Firewall (WAF) Engineer, you need a solid understanding of web security concepts, HTTP/HTTPS protocols, and experience with firewall configuration, often supported by a degree in computer science or a related field. Familiarity with WAF platforms (such as AWS WAF, F5, or Imperva), scripting languages, and certifications like CEH or CISSP are typically required. Attention to detail, strong problem-solving skills, and effective communication help you proactively identify threats and work closely with development and security teams. These skills are crucial to protect web applications against evolving cyber threats and ensure organizational security.
What are popular job titles related to Web Application Firewall Waf Engineer jobs in Oregon? For Web Application Firewall Waf Engineer jobs in Oregon, the most frequently searched job titles are:
What job categories do people searching Web Application Firewall Waf Engineer jobs in Oregon look for? The top searched job categories for Web Application Firewall Waf Engineer jobs in Oregon are:
What cities in Oregon are hiring for Web Application Firewall Waf Engineer jobs? Cities in Oregon with the most Web Application Firewall Waf Engineer job openings:

$58.75 - $78.50/hr

Contractor

Re-posted 15 days ago


Job description

Overview

Application Security Engineer

Remote within the US

US Citizen

Approximately 8 Month Contract (w/ possible extensions)

Summary

The Application Security Engineer candidate will have a strong background in cybersecurity and understanding of web application and zero trust proxy security practices. The primary responsibility of the Engineer will be to ensure the effective deployment, configuration, and maintenance of our systems for Global customers. This role requires expertise in Web Application Firewalls, Zero Trust Proxy, Cloud security as well as experience with alerts and detections and data log analysis. This role will be part of the Application Edge Protection Service within the CyberSecurity pillar.

Responsibilities

  • Web Application Firewall Management: Deploy, configure, and maintain web application firewall systems to protect our web applications against potential threats and vulnerabilities.
  • Zero Trust Proxy: Deploy, configure, and Zero Trust Proxy systems to support identity gates to include defining and maintaining policies and connectors.
  • Security Incident Response: Monitor and analyze security events, alerts, and logs generated by the web application firewall systems. Investigate and respond to potential security incidents, working closely with the Security Operations Center (SOC) and other Cybersecurity teams.
  • Detection and Analysis: Develop and maintain detection rules, alerts, and reports to proactively identify and mitigate risks utilizing logs. Provides investigation findings to relevant business units to help improve information security posture.
  • CDN Integration: Collaborate with the infrastructure and application teams to integrate the web application firewall with CDNs such Akamai and Radware, ensuring seamless traffic management and content delivery.
  • Vulnerability Assessment: Utilize WAF data to identify potential vulnerabilities and recommend appropriate remediation measures to customers.
  • Documentation and Reporting: Maintain accurate documentation of WAF configurations, policies, and procedures. Prepare reports and metrics related to web application security, including trends, incident summaries, and mitigation strategies, as needed.
  • Collaboration: This role requires ability to explain security details to non- security teams such as application and engineering teams. Must be able to collaborate with cross-functional teams to ensure effective communication, knowledge sharing, and alignment of security objectives. Provide guidance to application teams on application security best practices and security awareness, as needed.
  • Automation: This role required individuals who are knowledgeable of automation processes, python terraform, use of AI and Cloud native concepts with AWS, Azure and Google cloud.

Requirements

Years of Experience: 4+ years with minimum 2 years in network security and 2 years in application security

Technical Skills

  • Strong knowledge of web application security concepts, OWASP Top 10 vulnerabilities, and related mitigation techniques.
  • Understanding of authentication and authorization flows (OAuth, SAMAL, OIDC)
  • Strong technical background with Web Application Firewall (WAF), Zero Trust Network Access, APIs, and Cloud security policies.
  • Understanding of API security issues and API authentication.
  • Previous experience in a Security Operations Center (SOC) or performing cybersecurity analysis, log analysis, and threat detection is highly desirable.
  • Good understanding of information security principles and policy enforcement.
  • Solid comprehension of HTTP protocol and demonstrated ability to troubleshoot using HTTP logs
  • Strong technical background in web development and familiarity with potential attack vectors/methods
  • Understanding of Authentication, DNS, Networks, Firewalls, SSL Certificates

Experience in the following areas are strongly preferred:

  • Knowledge of Web Application Firewall technologies (Akamai)
  • Knowledge of Zero Trust framework and technologies
  • Experience integrating zero trust with WAF
  • Familiarity with cloud security services, concepts, and best practices (AWS, Azure, GCP)
  • Infrastructure as code (Terraform) and automation using Python
  • Ethical hacking
  • ServiceNow experience
  • Technical documentation experience
  • CISSP, CISM, CISA, GIAC or other security certifications are desired
  • Familiarity and comfortability using AI tools

Soft Skills

  • High degree of personal integrity and ethics with a passion for protecting people and systems against cybersecyurity threats
  • Excellent written and oral communication and presentation skills for technical and business audiences
  • Advanced critical thinking, problem solving and technical troubleshooting abilities
  • Track record of getting things done quickly and with high levels of quality
  • Demonstrated ability to operate in a dynamic, evolving environment
  • Ability to coordinate completion of multiple tasks and meet aggressive time frames
  • Strong analytical skills with high attention to detail and accuracy
  • Experience with and the ability to thrive in a complex and fast-paced technology and/or information security organization, within a large enterprise environment
  • Bi-lingual a plus

Education/Certification Requirements

  • Education (degree): Bachelor's Degree/University Degree and/or Undergraduate Diploma in Information Security, Information Technology, Computer Science, Engineering or equivalent years in experience
 Other DutiesPlease note this job description is not designed to cover or contain a comprehensive listing of activities, duties, or responsibilities that are required of the employee for this job. Duties, responsibilities, and activities may change at any time with or without notice.  Qualifications:No Federal Clearances RequiredEmployment Type: OTHER