Imperva SecureSphere WAF Consultant
100% Remote
3+ Months (10 Hours Per Week)
Job Description:
Imperva Web Application Firewall (WAF) Health Check, including a review, analysis, and assessment of the Imperva WAF environment. The purpose is to identify significant technical problems and opportunities for improvement. The engagement will result in a set of specific, actionable recommendations.
- Design and network diagrams
- Hardware and software specifications
- Configuration standards and settings
- Performance and run-state information
-
Review and Analysis
Client will review the Imperva WAF solution across the key areas below, document issues that are discovered, and make recommendations for suggested improvements.
Architecture Review
Client will review the existing design for functionality and optimization and will make recommendations, as needed, to meet Client s business drivers and objectives.
System Review
Client will review each in-scope Imperva appliance for system errors and misconfiguration. Client will also document the operating system and patch versions currently running on the in-scope Imperva appliances and make upgrade recommendations.
Web Application Review
Client will review each in-scope web application with Client's web application developer. This information is critical for the web application profile review.
Web Application Profile Review
Client will review each in-scope web application profile based on vendor, industry, and Client standards and leading practices for in-scope web applications.
Reports and Followed Actions Review
Client will review custom reports and followed actions to verify they meet Client s reporting requirements and will create a detailed report of the findings.
- Review in-scope Imperva appliances based on Client s standards and leading practices
- Review of SecureSphere Operations Manager(s)
- Review of SecureSphere Management Server(s)
- Review of Gateway(s)
- Review of configuration and profiles for in-scope web applications
- Review audit policies, reporting, system backup, and audit archiving.