Sr. Network Security Engineer – WAAP (Onsite) :: Houston, TX (Local Only)


DMS Vision Inc.
Dice Job Match Score™
⭐ Evaluating experience...
Job Details
Skills
- AWS
- SIEM
- Azure
- GCP
- API
- CI/CD
- VPN
- BGP
- Palo Alto
- network security
- MPLS
- OSPF
- Juniper
- Akamai
- TLS
- OWASP
- FORTINET
- WAAP
- Cloud WAF
- Bot mitigation
- HTTP/HTTPS
- IDS/IPS
Summary
Hi,
Hope you are doing well,
Please find the job description given below and let me know your interest.
Position: Sr. Network Security Engineer – WAAP (Web Application & API Protection) (Onsite)
Location: Houston, TX (Local Only)
Duration : 6+ months
Job Description:
Key Responsibilities
Translate business and application security requirements into enterprise-grade WAAP and network security architectures.
Develop and support solutions aligned with HPE’s application security and defense-in-depth strategy.
Lead architecture, design, and deployment of Web Application and API Protection (WAAP) solutions across global environments.
Develop and drive multi-year roadmap for application-layer security, including WAF, API security, bot protection, and DDoS mitigation.
WAAP Responsibilities (Primary Focus)
Architect, implement, and manage WAAP platforms, including:
o Web Application Firewall (WAF)
o API Security (discovery, protection, runtime analysis)
o Bot Management
o DDoS Protection (L3–L7)
Design and deploy WAAP solutions using platforms such as:
o Thales Imperva
o Cloud-native WAFs (Azure, AWS WAF) or equivalent
Develop and maintain custom WAF rules, security policies, and signatures to protect critical applications.
Perform false positive tuning, policy optimization, and rule lifecycle management.
Enable API discovery, schema enforcement, and protection against OWASP
API Top 10 threats.
Integrate WAAP with:
o SIEM/SOAR platforms
o Identity providers
o Threat intelligence feeds
Collaborate with application teams to:
o Onboard applications into WAAP platforms
o Perform security assessments and risk reviews
o Ensure minimal performance impact while enforcing strong security controls
Implement protection against OWASP Top 10 vulnerabilities (SQLi, XSS, RCE, etc.).
Lead WAAP incident response and root cause analysis for application-layer attacks.
Define and track application security metrics and KPIs (attack trends, mitigation effectiveness).
Ensure compliance with security frameworks (CIS, NIST, Zero Trust, data protection standards).
Core Network Security Responsibilities
Architect and maintain secure network infrastructure across data center, campus, and cloud environments.
Conduct security design reviews ensuring compliance with enterprise security standards.
Provide risk reporting, control effectiveness, and security posture visibility.
Support internal and external security audits.
Manage and optimize Security Information and Event Management (SIEM) systems.
Develop and maintain network security policies and procedures.
Collaborate with cybersecurity, infrastructure, and application teams globally.
Technical Qualifications
10+ years of experience in network security architecture, engineering, and operations.
WAAP & Application Security Expertise (Mandatory)
Strong experience with WAAP platforms (Akamai preferred; Cloud WAF or equivalent accepted).
Deep understanding of:
o OWASP Top 10 (Web & API)
o Application-layer threats and mitigation techniques
Hands-on experience in:
o WAF policy creation and tuning
o API security controls (schema validation, authentication enforcement)
o Bot mitigation strategies
o DDoS protection architecture (L3–L7)
Experience in:
o Traffic analysis (HTTP/HTTPS, TLS inspection)
o Behavioral-based threat detection
Strong understanding of:
o Secure application architectures (monolith, microservices, APIs)
o DevSecOps integration and CI/CD security controls (nice to have)
Network Security & Infrastructure
Strong hands-on experience in:
o Firewalls (Fortinet, Palo Alto, Juniper)
o IDS/IPS, VPN, SIEM
Expertise in:
o Firewall policy design, NAT, routing, inspection, and threat prevention
Experience in designing secure:
o Hybrid (on-prem + cloud + internet-facing) environments
Experience in:
o Proxy architectures (forward/reverse)
o Secure internet gateways
Networking & Protocol Expertise
Strong knowledge of:
o TCP/IP, DNS, HTTP/HTTPS, TLS/SSL
o Routing protocols (BGP, OSPF, MPLS)
Experience with:
o QoS, NetFlow, ACLs, NAT, IP traffic management
o Network monitoring and analysis tools
Cloud & Integration
Experience securing applications in:
o AWS, Azure, Google Cloud Platform
Familiarity with:
o Cloud-native WAF and API security tools
Integration experience with:
o SIEM, EDR/XDR, IAM platforms
Data Center & Enterprise Networking
Experience managing enterprise environments with:
o Aruba, Arista, Juniper switches
o Firewalls, load balancers, WAN optimization tools
Understanding of:
o High availability and performance optimization for application traffic
Operations & Lifecycle Management
Lead onboarding and lifecycle management of applications into WAAP platforms.
Perform security tuning, upgrades, and optimization activities.
Support incident response and threat mitigation at application layer.
Work within ITIL frameworks (incident, problem, change management).
Education & Certifications
Bachelor’s Degree in Computer Science, IT, or related field (or equivalent
experience).
10+ years of experience in enterprise network security and application security.
Preferred certifications:
o CCNP / CCIE / JNCIE
o Security certifications (CISSP, CISM)
o Vendor certifications (Akamai, AWS Security, Azure Security)
Key Differentiators (What This JD Targets)
Positions WAAP as a primary security control layer, not an add-on
Strong alignment with:
o Application security + Network security convergence
o Defense-in-depth strategy
Emphasizes:
o API security (modern requirement)
o Bot/DDoS protection (critical for internet-facing apps)
Keeps strong foundation in:
o Firewalls, SIEM, network architecture
If you are interested, please share your updated resume and suggest the best number & time to connect with you.
|
|||||||
- Dice Id: 91133942
- Position Id: 2946-35330-1785864398
- Posted 19 hours ago
Company Info
About DMS Vision Inc.
At DMS Vision, our main goal is to be an integral part of our customer’s success. With ambition to be a Global Premier Provider of innovative, value-based technology solutions, our team has the drive and determination to do whatever it takes to meet the needs of our clients. Through our services, we strive to save our client’s money, time and hassle in every way possible.
At DMS Vision, we provide IT Staffing, Software Development, Cybersecurity and IoT Development and Services.
Whenever we take on a new project, we take extensive measures to learn all that we can take care about our client’s business. This allows us to better understand their goals and become familiar with the company’s philosophy.
We combine the insights obtained from this unique perspective with our professional strategic processes to develop a detailed plan for achieving the client’s ultimate vision of accomplishment. Our collaborative approach to problem solving and our technological expertise enables us to tackle even the most complex of our customer’s problems.
Similar Jobs
It looks like there aren't any Similar Jobs for this job yet.
Search all similar jobs