Title: Network Security Firewall and WAF analyst
Location: Houston, Texas Onsite 4 days a week-no remote- no exceptions
Type of Hire: Contract
JOB SUMMARY
We are seeking an experienced Network Security Engineer to help maintain a strong level of network security across Client environments through effective Next Gen Firewall and Web Application Firewall security engineering. This role is responsible for protecting an organization’s network infrastructure and web applications from cyber threats, application attacks and bot abuse. They design, implement, and troubleshoot security policies to ensure systems remain secure and compliant with policies and standards across a broad range of evolving network technologies and processes, as well as delivering related network security and web application security services. The analyst will work closely with Network Security Engineering, Security Architecture, DevOps teams to understand requirements and ensure adherence to established security standards.
ROLES & RESPONSIBILITIES
- Manage day-to-day Next Gen firewall administration, including policy management, rule tuning, and health monitoring.
- Manage day-to-day WAF operations across API security, and DNS.
- Manage day-to-day Cloud WAF operations.
- Monitor platform health and maintain KPI reporting on coverage, rule effectiveness, and incident trends.
- Coordinate WAF zone migration, including DNS cutover, testing, and validation.
- Ensures Next Gen Firewalls and web application firewall rules, standards, and architecture is adequate to safeguard the CNP network. Review system configurations.
- Implement automation scripting to improve WAF Operations and Services
- Develop dashboards and provide routine metrics data collection.
- Collaborate with Network Security, DevOps, and IT on changes, incidents, and project work.
- Maintain platform documentation, change records, and configuration baselines.
- Serves as the subject matter expert for web application firewall best practices, policies, and regulatory requirements.
- Provides support and assistance during internal and external audits.
- Interfaces with technical vendors regarding security issues and recommend solutions.
- Develops web application firewall security standards.
- Develops web application firewall security architecture designs.
- Ability to author technical documentation.
Preferred Qualifications:
Bachelor’s degree in Cybersecurity, Computer Science, Information Technology, or related field.
Preferred Certifications:
- CISSP or other relevant security certifications (Next Gen Firewall, Web Application Firewall, Cloud Security).
Qualifications:
- 12+ years’ experience in cybersecurity.
- Hands-on experience with Next Gen Firewalls and Web Application Firewalls.
- Hands-on experience with network, OS, and application security
- Experience tuning WAF rulesets, managing false positives, and maintaining policy hygiene.
- Experience with Azure cloud apps and services
- In depth knowledge and experience with OWASP Top 10
- Working knowledge of API security principles and web application threat landscape
- Experience collaborating cross-functionally with DevOps, IT, and Network Security teams.
- Familiarity with change management processes and maintaining configuration documentation.
- Experience implementing Zero Trust or similar modern security models.
- Strong analytical skills, attention to detail, and knowledge of networking protocols and cybersecurity frameworks.
- Ability to meet deadlines while working on multiple tasks.
- Ability to deal collaboratively, diplomatically, and successfully with customers, co-workers and other professional colleagues, managers, and staff.
- Ability to quickly learn new procedures, techniques, approaches, etc.
- Understanding of all aspects of Information Technology and its impact on the security of network environments.
- Strong written and verbal communication and excellent problem-solving and analytical skills.