1

Web Application Firewall Waf Engineer Jobs in Wisconsin

WI ยท On-site

$120 - $180/hr

Digital & Web Application Security * Define authentication, authorization, session management, and ... Partner with the team that owns F5 WAF to ensure policies and configurations meet application and ...

WI ยท On-site

$90 - $130/hr

Nightwing is currently seeking a Full Stack Web Application Developer SME in Herndon VA to work on a suite of services that will supply users with tools to automate a wide range of enterprise-wide ...

New

WI ยท On-site

$110 - $140/hr

Build and maintain serverless architectures using AWS Lambda, Application Load Balancers, DynamoDB ... At least 4 years of professional software engineering experience (Internship experience does not ...

Senior Software Engineer

Madison, WI ยท On-site +1

$123K - $162K/yr

The Senior Software Engineer designs, builds, and maintains the technical systems and application ... Architect, build, and maintain web application infrastructure and the data systems that support ...

Senior Software Engineer

Madison, WI ยท On-site +1

$123K - $162K/yr

  • Medical

  • Dental

  • Life

  • Retirement

  • PTO

The Senior Software Engineer designs, builds, and maintains the technical systems and application ... Architect, build, and maintain web application infrastructure and the data systems that support ...

Senior Software Engineer

Milwaukee, WI ยท On-site +1

$120K - $158K/yr

  • Medical

  • Dental

  • Life

  • Retirement

  • PTO

The Senior Software Engineer designs, builds, and maintains the technical systems and application ... Architect, build, and maintain web application infrastructure and the data systems that support ...

Senior Software Engineer

Milwaukee, WI ยท On-site +1

$120K - $158K/yr

The Senior Software Engineer designs, builds, and maintains the technical systems and application ... Architect, build, and maintain web application infrastructure and the data systems that support ...

Understanding of web application architecture (frontend, backend, APIs) * Familiarity with Azure ... Strong collaboration across engineering, product, and support teams

Understanding of web application architecture (frontend, backend, APIs) * Familiarity with Azure ... Strong collaboration across engineering, product, and support teams Employment Type: FULL_TIME

Understanding of web application architecture (frontend, backend, APIs) * Familiarity with Azure ... Strong collaboration across engineering, product, and support teams

NET Developer to support multiple high-profile web application initiatives. The developer will join an existing team working on enterprise modernization projects, including: * Migration to a unified ...

Security Engineer (AppSec)

Brookfield, WI ยท On-site

$55.50 - $74.25/hr

  • Medical

  • Dental

  • Vision

  • Life

  • Retirement

  • PTO

As a Security Engineer (Software Focus) at SysLogic , you will be responsible for identifying and ... Strong knowledge of web application security vulnerabilities and best practices. * Direct knowledge ...

senior .net developer

Madison, WI ยท On-site

$55.50 - $70.50/hr

  • Medical

  • Dental

  • Vision

  • Life

  • Retirement

As a full stack engineer your contribution will have a direct impact on our customer experience and ... Recent 1+ years of developing web application in open source stack (MEAN, MERN) * 2+ years of ...

Showing results 21-40

Web Application Firewall Waf Engineer information

What is a Web Application Firewall (WAF) engineer?

A Web Application Firewall (WAF) Engineer is a cybersecurity professional responsible for configuring, managing, and maintaining web application firewalls to protect web applications from threats such as SQL injection, cross-site scripting (XSS), and other common web exploits. They work to ensure that web applications are secure by designing WAF policies, monitoring traffic, and responding to security incidents. WAF Engineers also collaborate with development and operations teams to identify vulnerabilities and implement effective protection strategies. Their role is critical in safeguarding sensitive data and maintaining the integrity and availability of web-based services.

What are the key skills and qualifications needed to thrive as a Web Application Firewall (WAF) engineer?

To thrive as a Web Application Firewall (WAF) Engineer, you need a solid understanding of web security concepts, HTTP/HTTPS protocols, and experience with firewall configuration, often supported by a degree in computer science or a related field. Familiarity with WAF platforms (such as AWS WAF, F5, or Imperva), scripting languages, and certifications like CEH or CISSP are typically required. Attention to detail, strong problem-solving skills, and effective communication help you proactively identify threats and work closely with development and security teams. These skills are crucial to protect web applications against evolving cyber threats and ensure organizational security.

What are some common challenges faced by Web Application Firewall (WAF) engineers, and how can they be addressed?

WAF Engineers often encounter challenges such as tuning firewall rules to minimize false positives while ensuring robust security, keeping up with rapidly evolving web application threats, and balancing security needs with application performance. Successfully addressing these issues requires continuous monitoring, regular updates to security policies, and close collaboration with development and DevOps teams to understand application changes. Adopting automation tools and participating in ongoing security training can also help WAF Engineers stay effective and proactive against new vulnerabilities.

What are popular job titles related to Web Application Firewall Waf Engineer jobs in Wisconsin?

For Web Application Firewall Waf Engineer jobs in Wisconsin, the most frequently searched job titles are:

What job categories do people searching Web Application Firewall Waf Engineer jobs in Wisconsin look for?

The top searched job categories for Web Application Firewall Waf Engineer jobs in Wisconsin are:

What cities in Wisconsin are hiring for Web Application Firewall Waf Engineer jobs?

Cities in Wisconsin with the most Web Application Firewall Waf Engineer job openings:

Senior Security Engineer

Nrg Bluewater Wind

WI โ€ข On-site

$120 - $180/hr

Other

Posted 14 days ago


Job description

As an NRG employee, we encourage you to take charge of your career and development journey. We invite you to explore exciting opportunities across our businesses. Youโ€™ll find that our dynamic work environment provides variety and challenge. Your growth is key to our ongoing successโ€”take the lead in shaping your career development, goals and future!

Senior Security Engineer About the Role

The Security Engineer is a strategic, architecture-focused role responsible for defining, governing, and advancing security across our modern platforms, cloud ecosystems, AI and agent-driven capabilities, integrations, and digital experiences. This role drives the secure foundations that enable the organization to scale Power Platform, Dynamics 365 F&O, cloud-native solutions, cross-domain MCP capabilities, API ecosystems, and enterprise AI/LLM agents with confidence. The Security Engineer acts as a critical partner across Architecture, Engineering, Cloud, Cyber Security, and Data & AI to ensure that every platform, agent, automation, and application is designed with the right guardrails, governance, controls, and operational readiness to keep the business safe while accelerating transformation.

Key Responsibilities Security Architecture & Design
  • Define and maintain security architecture standards for Power Platform, Dataverse, Dynamics 365 F&O, Azure, AWS, GCP, custom applications, and enterprise integrations.
  • Apply Zero Trust and least-privilege principles to identity, access, API, MCP, connector, and automation patterns.
  • Lead threat modeling and secure design reviews for applications, integrations, AI systems, and agent-based orchestration.
  • Establish secure patterns for workload isolation, identity propagation, capability routing, and service segmentation.
  • Govern APIM zero-trust enforcement across Power Apps, digital applications, orchestrator agents, API consumers, and MCP domain services.
  • Define secure patterns for deterministic vs AI-driven capability invocation, ensuring uniform authorization and policy enforcement.
Data Protection & Encryption
  • Define standards for encrypting data in transit and at rest across Azure, AWS, GCP, Dataverse, Dynamics 365 F&O, and AI pipelines.
  • Drive data classification, PII/PHI protection, masking, tokenization, and synthetic data usage standards.
  • Ensure secure handling, auditability, and retention of financial and SOX-relevant data.
  • Govern secure data pathways for MCP orchestration and Power Platform integration flows.
AI, Agent & Automation Security
  • Lead security risk assessments for LLMs, copilots, MCP domain agents, orchestrators, and AI-driven automation.
  • Implement controls that prevent prompt injection, data leakage, unauthorized outputs, and unsafe system actions.
  • Define safe tool/action boundaries for agents including permission scoping, output validation, and complete traceability of agent decisions.
  • Establish secure RAG retrieval and document governance patterns including sanitization, access filtering, encryption, and contextual authorization.
  • Ensure alignment with Responsible AI, AI governance policies, evaluation and redโ€‘teaming standards, and behavioral monitoring requirements.
  • Govern security for solutionโ€‘aware orchestration agents within Power Apps, including safe routing to domain MCPs and strict context boundaries.
  • Ensure integrity of AI and agent telemetry, including structured riskโ€‘event logging, behavior traces, and auditable evaluation histories.
  • Implement agent governance controls including agent quarantine, riskโ€‘event containment, and unsafe behavior mitigation.
Platform & Application Security
  • Define secure design patterns for Dataverse environment separation, roleโ€‘based access, and fieldโ€‘level protection.
  • Oversee security architecture for Dynamics 365 F&O, including role design, segregation of duties, and SOXโ€‘aligned access governance.
  • Define MCP/API security patterns covering token enforcement, schema validation, throttling, identity propagation, and request boundary controls.
  • Establish secure connector patterns for Power Platform including authentication flows, certificate handling, and data boundary enforcement.
  • Ensure application security controls align to OWASP Top 10 and modern threat prevention requirements.
Cloud Security Architecture (Azure + AWS + GCP)
  • Define cloud security patterns for Azure, AWS and including workload isolation and identityโ€‘based access boundaries.
  • Establish logging and telemetry requirements for cloud workloads, AI systems, and agentโ€‘driven interactions.
  • Ensure cloud and platform designs align with Cyber Security, Cloud Architecture, and Data & AI governance frameworks.
  • Support secure authentication patterns including Amazon Cognito for digital identity and user access.
Digital & Web Application Security
  • Define authentication, authorization, session management, and API protection for digitalโ€‘facing applications.
  • Partner with the team that owns F5 WAF to ensure policies and configurations meet application and threatโ€‘prevention requirements.
  • Validate secure request handling, input validation, and crossโ€‘domain protections across web workloads.
Governance, Compliance & SOX
  • Ensure alignment with enterprise cybersecurity standards, cloud governance, Data & AI governance, and SOX ITGC controls.
  • Support access certification, segregation of duties, change management evidence, audit documentation, and control testing.
  • Participate in architecture reviews, penetration testing, risk assessments, and remediation planning.
  • Develop reusable security standards, reference architectures, guardrails, and implementation guidelines.
  • Govern secure Dynamics 365 F&O API interaction patterns including identity propagation, token management, and financial transaction protections.
  • Ensure consistent enforcement of enterprise AI guardrails and governance controls across copilots, MCP agents, and automation workflows.
Required Skills & Experience Minimum Requirements
  • Bachelorโ€™s degree in Information Systems, Computer Science, Cybersecurity, or a related field, or equivalent work experience.
  • 8โ€“10+ years of experience in security engineering, application/platform security, or cloud security in a missionโ€‘critical enterprise environment.
  • Handsโ€‘on experience with Azure, AWS and GCP security architecture, including identity, access, workload security, and cloud governance alignment.
  • Experience designing and implementing security controls across API ecosystems, application architectures, and integration patterns.
  • Demonstrated experience securing AI/LLM systems, agentโ€‘based workflows, and automation platforms (including MCP domain agents and orchestrator agents).
  • Experience with enterprise authentication and identity platforms, including Amazon Cognito.
  • Strong knowledge of encryption standards, data protection, and secure data handling for regulated and SOXโ€‘sensitive environments.
  • Applied knowledge of cybersecurity frameworks, including Zero Trust, OWASP Top 10, and secure SDLC practices.
  • Experience supporting governance and compliance requirements, including SOX ITGC controls, segregation of duties, and audit evidence.
Preferred Experience
  • Power Platform and Dataverse security architecture.
  • Dynamics 365 F&O security model and SOXโ€‘aligned access controls.
  • MCP/API security patterns and agentโ€‘oriented architecture.
  • Familiarity with F5 WAF threat analysis and policy behavior.
  • Certifications such as Azure Security Engineer, AWS Security Specialty, CISSP, CCSP, or CISA.

NRG Energy is committed to a drug and alcoholโ€‘free workplace. To the extent permitted by law and any applicable collective bargaining agreement, employees are subject to periodic random drug testing, and postโ€‘accident and reasonable suspicion drug and alcohol testing. EOE AA M/F/Vet/Disability. Level, Title and/or Salary may be adjusted based on the applicantโ€™s experience or skills.

#J-18808-Ljbffr