1

Web Application Firewall Waf Engineer Jobs in Virginia

Design, deploy, and manage Cloudflare services, including Web Application Firewall (WAF), DDoS ... engineering and technology solutions. Founded on a legacy of excellence dating back to 1993 ...

Network Security

Herndon, VA · On-site

$107K - $147K/yr

Web Application Firewall such as Barracuda. Good hands on experience in configuring firewall policies, VPN access, Intrusion Prevention system (IPS), Intrusion detection system (IDS), Web application ...

... Web Application Firewalls (WAF) and implementing network-level protections against evolving cyber threats. • Skilled in analyzing and interpreting log data using security analytics tools to detect ...

Web Application Engineering * Demonstrated experience developing modern web applications using JavaScript/TypeScript frameworks (Angular, React, or Vue). * Demonstrated experience with Node.js web ...

Showing results 21-40

Web Application Firewall Waf Engineer information

See Virginia salary details

$29

$65

$95

How much do web application firewall waf engineer jobs pay per hour?

As of Aug 10, 2026, the average hourly pay for web application firewall waf engineer in Virginia is $65.83, according to ZipRecruiter salary data. Most workers in this role earn between $56.01 and $74.86 per hour, depending on experience, location, and employer.

What are some common challenges faced by Web Application Firewall (WAF) engineers, and how can they be addressed?

WAF Engineers often encounter challenges such as tuning firewall rules to minimize false positives while ensuring robust security, keeping up with rapidly evolving web application threats, and balancing security needs with application performance. Successfully addressing these issues requires continuous monitoring, regular updates to security policies, and close collaboration with development and DevOps teams to understand application changes. Adopting automation tools and participating in ongoing security training can also help WAF Engineers stay effective and proactive against new vulnerabilities.

What is a Web Application Firewall (WAF) engineer?

A Web Application Firewall (WAF) Engineer is a cybersecurity professional responsible for configuring, managing, and maintaining web application firewalls to protect web applications from threats such as SQL injection, cross-site scripting (XSS), and other common web exploits. They work to ensure that web applications are secure by designing WAF policies, monitoring traffic, and responding to security incidents. WAF Engineers also collaborate with development and operations teams to identify vulnerabilities and implement effective protection strategies. Their role is critical in safeguarding sensitive data and maintaining the integrity and availability of web-based services.

What are the key skills and qualifications needed to thrive as a Web Application Firewall (WAF) engineer?

To thrive as a Web Application Firewall (WAF) Engineer, you need a solid understanding of web security concepts, HTTP/HTTPS protocols, and experience with firewall configuration, often supported by a degree in computer science or a related field. Familiarity with WAF platforms (such as AWS WAF, F5, or Imperva), scripting languages, and certifications like CEH or CISSP are typically required. Attention to detail, strong problem-solving skills, and effective communication help you proactively identify threats and work closely with development and security teams. These skills are crucial to protect web applications against evolving cyber threats and ensure organizational security.
What job categories do people searching Web Application Firewall Waf Engineer jobs in Virginia look for? The top searched job categories for Web Application Firewall Waf Engineer jobs in Virginia are:
What cities in Virginia are hiring for Web Application Firewall Waf Engineer jobs? Cities in Virginia with the most Web Application Firewall Waf Engineer job openings:

Network Engineer - Firewall & Load Balancing

Peraton

Springfield, VA • On-site

$109K - $149K/yr

Full-time

Posted 21 days ago


Peraton rating

8.3

Company rating: 8.3 out of 10

Based on 56 frontline employees who took The Breakroom Quiz

50th of 223 rated it services


Job description

Responsibilities

Peraton is seeking an experienced Network Engineer to join our team of qualified and diverse individuals. The Network Engineer - Firewall & Load Balancing will support the DHS CBP Network Operations Center (NOC) by designing, implementing, securing, and maintaining enterprise network security infrastructure. This role will provide hands-on support for mission critical network environments with a focus on F5 BIG-IP load balancing solutions, Palo Alto Next Generation Firewalls (NGFW), and Cisco Firepower Threat Defense (FTD) managed through Firepower Management Center (FMC).

The ideal candidate will have experience managing complex enterprise security platforms, troubleshooting network security issues, implementing secure configurations, and supporting hybrid infrastructure environments. The Network Security Engineer will collaborate with network operations, cybersecurity teams, and government stakeholders to maintain secure, reliable, and compliant network services.

Location: Onsite based in either Ashburn, VA, Springfield, VA or Orlando, FL. Candidates must reside near one of these locations to be considered.

Day to Day Roles and Responsibilities:
  • Design, configure, maintain, and troubleshoot enterprise network security infrastructure, including firewalls, load balancers, VPN solutions, and network security platforms.
  • Administer and support F5 BIG-IP environments, including Local Traffic Manager (LTM), Global Traffic Manager (GTM/DNS), virtual servers, pools, iRules, SSL profiles, health monitors, and traffic policies.
  • Perform SSL/TLS certificate management, traffic optimization, application delivery troubleshooting, and load balancing configuration.
  • Support F5 Advanced Web Application Firewall (WAF) policies and security configurations.
  • Configure and manage Palo Alto Networks Next Generation Firewalls, including security policies, NAT, QoS, decryption, and VPN configurations.
  • Administer Palo Alto Panorama for centralized firewall management across enterprise environments.
  • Configure and maintain Palo Alto security capabilities, including App-ID, User-ID, Content-ID, Threat Prevention, URL Filtering, and WildFire.
  • Manage Cisco Firepower Threat Defense (FTD) devices using Firepower Management Center (FMC).
  • Develop and maintain Access Control Policies (ACP), IPS policies, malware inspection policies, and Snort rule tuning within Cisco FMC.
  • Perform firewall event analysis, security monitoring, incident investigation, and troubleshooting activities.
  • Support network engineering activities including VLANs, segmentation, routing protocols, VPN connectivity, and network performance optimization.
  • Develop and maintain network documentation including diagrams, standard operating procedures, and technical runbooks.
  • Support change management activities by ensuring network security changes are tested, documented, approved, and implemented in accordance with established processes.
  • Monitor network performance, troubleshoot incidents, perform root cause analysis, and support service level agreement (SLA) requirements.
  • Collaborate with cybersecurity teams to support Zero Trust architecture, defense in depth strategies, and security compliance requirements.
QualificationsBasic Qualifications:
  • Bachelor's degree with 8 years of experience, Master's degree and 6 years of experience, Associate's degree with 10 years of experience, or High School Diploma/equivalent with 12 years of experience.
  • U.S. Citizenship (Required for CBP and government positions)
  • Must have the ability to obtain a CBP Public Trust clearance. 
  • 5+ years of hands-on experience supporting enterprise network engineering or network security environments.
  • Experience administering and troubleshooting F5 BIG-IP solutions, including LTM, virtual servers, pools, SSL profiles, and traffic management configurations.
  • Experience configuring and managing Palo Alto Networks Next Generation Firewalls, including security policies, NAT, VPNs, and Panorama administration.
  • Experience supporting Cisco Firepower Threat Defense (FTD) devices using Firepower Management Center (FMC).
  • Strong understanding of network security concepts, TCP/IP networking, OSI model, routing protocols, VLANs, VPNs, and network segmentation.
  • Experience using network monitoring and troubleshooting tools such as SolarWinds, PRTG, Splunk, Wireshark, or similar platforms.
Desired Qualifications:
  • Active security clearance required; DHS clearance or prior DHS suitability preferred.
  • Experience supporting DHS, CBP, federal government, or other mission critical network environments.
  • Experience with DISA STIGs, NIST 800-53 security controls, or federal cybersecurity compliance requirements.
  • Experience supporting SD-WAN technologies such as Palo Alto Prisma SD-WAN or Cisco Viptela.
  • Experience supporting cloud networking environments, including AWS, Azure, and hybrid connectivity solutions.
  • Experience with network automation and scripting using Python, Ansible, Terraform, or similar technologies.
  • Experience using IT Service Management platforms such as ServiceNow or Remedy.
  • Experience supporting legacy Cisco ASA migration to Cisco Firepower Threat Defense.
  • Preferred Certifications:

    • F5 Certified BIG-IP Administrator (F5-CA)
    • Palo Alto Networks Certified Network Security Engineer (PCNSE)
    • Cisco Certified Network Professional (CCNP) Security or CCNP Enterprise
    • Cisco Certified Internetwork Expert (CCIE) Security
    • CompTIA Security+ or equivalent security certification
Peraton Overview

Peraton is a next-generation national security company that drives missions of consequence spanning the globe and extending to the farthest reaches of the galaxy. As the world's leading mission capability integrator and transformative enterprise IT provider, we deliver trusted, highly differentiated solutions and technologies to protect our nation and allies. Peraton operates at the critical nexus between traditional and nontraditional threats across all domains: land, sea, space, air, and cyberspace. The company serves as a valued partner to essential government agencies and supports every branch of the U.S. armed forces. Each day, our employees do the can't be done by solving the most daunting challenges facing our customers. Visit peraton.com to learn how we're keeping people around the world safe and secure.

Target Salary Range$104,000 - $166,000. This represents the typical salary range for this position. Salary is determined by various factors, including but not limited to, the scope and responsibilities of the position, the individual's experience, education, knowledge, skills, and competencies, as well as geographic location and business and contract considerations. Depending on the position, employees may be eligible for overtime, shift differential, and a discretionary bonus in addition to base pay.EEOEEO: Equal opportunity employer, including disability and protected veterans, or other characteristics protected by law.Employment Type: FULL_TIME

What Peraton employees say

Pay

Benefits

Hours and flexibility

Workplace

Get the full story on Breakroom


Peraton logo

About Peraton

Sourced by ZipRecruiter

At Peraton, we re at the forefront of delivering the next big thing every day. We re the partner of choice to help solve some of the world s most daunting challenges, delivering bold, new solutions to keep people around the world safer and more secure.

Industry

It services

Company size

10,000+ Employees

Headquarters location

Herndon, VA, US

Year founded

2017