Overview
Skills
Job Details
WAF Security Engineer
6+ months extendable/CTH
Hybrid - Atlanta, GA 30318 (3 days/week onsite)
Top Skills' Details
- WAF technology: AWS WAF (Preferred), AWS shield advance, Akamai, or similar tools
- Proficient in programing (doesn t need to be an expert) with Python, Go, JavaScript. Specifically wants someone who can run scripts and automate WAF rules to avoid manual work
- General understanding cloud security
Job Description
We re looking for a hands-on Security Engineer focused on Web Application Firewall (WAF) operations. You ll manage and tune WAF protections, analyze traffic and logs, reduce false positives, and partner with product/engineering to safely launch features. This role is ideal for someone with security experience who enjoys practical WAF rule tuning and incident support.
Need to have experience working with programming languages and scripting automation. This team supports all web applications across organization, so they need to have competency (not expert) in web applications.
What You'll Do
- Implement and maintain WAF protections across web/API properties.
- Write and tune WAF rules (e.g., custom rules, bot controls, rate limits).
- Analyze logs/alerts to identify malicious patterns and false positives; adjust policies.
- Collaborate with product/engineering to integrate WAF in the SDLC and CI/CD.
- Build automation and capabilities via code to support WAF program
- Document runbooks, change procedures, and playbooks for common scenarios.
Participate in on call rotation