Job Description:
The team is seeking an experienced Cloudflare Security SME to own and optimize Cloudflare security across 100+ business applications.
The role will focus on WAF rules, SQL injection protection, bot management, traffic security, and onboarding new applications to Cloudflare.
The SME will work closely with the Information Security providing security guidance, identifying gaps, and driving improvements to ensure Cloudflare is configured and leveraged to its full capabilities. The environment currently has offshore operational support for monitoring and reporting, but needs a senior onshore resource to provide technical leadership, establish best practices, and scale the security program.
This is a Senior SME-level position, requiring someone with substantial hands-on Cloudflare experience—5 years at least not a 1–2 year generalist—who can assess the current environment, identify opportunities, implement improvements, and ensure the organization is fully leveraging Cloudflare''s security features.
- Manage Cloudflare WAF, DDoS protection, and security policies.
- Configure and tune security rules to protect web applications and APIs.
- Implement Zero Trust, Access, and mTLS solutions.
- Monitor security events and investigate threats or attacks.
- Review and manage security exceptions and risk mitigation plans.
- Integrate Cloudflare logs with SIEM and monitoring tools.
- Automate Cloudflare configurations using APIs and Terraform.
- Work with application, infrastructure, and security teams on secure deployments.
- Troubleshoot application access, performance, and security issues.
- Drive best practices for web, network, and application security.
Skills: - Cloudflare Cybersecurity
- WAF
- DDoS
- OWASP
- Zero Trust
- API Security
- DNS
- mTLS
- SIEM
- Terraform