Security Tools Engineer Azure Web Applications Firewall

Oakland, CA, US • Posted 17 hours ago • Updated 15 hours ago
Contract W2
No Travel Required
On-site
$70 - $80/hr
Fitment

Dice Job Match Score™

🔗 Matching skills to job...

Job Details

Skills

  • Cyber Security
  • Application Service Management
  • Cloud Security
  • Bash
  • Agile
  • API
  • Continuous Integration
  • Continuous Delivery
  • Firewall
  • F5
  • GitHub
  • DevOps
  • DevSecOps
  • Automated Testing
  • Email Security
  • Microsoft Azure
  • WAF
  • Web Application Security
  • Security Controls
  • Software Security
  • Terraform
  • Web Applications
  • Security Engineering
  • OWASP
  • Nexpose
  • Network

Summary

Title: Azure Web Applications Firewall & Cyber
Security Tools Engineer

Location: Oakland, CA



The Azure Web Application Firewall & Security Tools Engineer will support
the Technical Security Solutions Operations (TSSO) service by managing and
optimizing critical web application security firewalls and associated security
tools. This role is divided approximately 70/30 between (1) administering and
enhancing WAF solutions and related security technologies, and (2) supporting
additional enterprise security controls.

Key Responsibilities

Azure WAF Operations


  • Administer and maintain Azure Front Door WAF and Azure Application Gateway WAF

policies, rulesets, exclusions, and custom signatures to protect web
applications against OWASP Top 10 and emerging threats.

  • Coordinate with application teams to design protection profiles per app and/or per

path, align rules with business requirements, and ensure safe rollouts.

  • Monitor WAF efficacy, coverage, and performance; analyze events and false

positives; tune policies to reduce friction while maintaining strong
protection.


Automation, Deployments & Configuration-as-Code


  • Build and maintain Terraform modules for Azure Front Door and Application

Gateway WAF resources, ensuring version-controlled deployments.

  • Operate CI/CD pipelines for GitHub-based deployments, including branching

strategies, environment promotion, and rollback procedures.

  • Use Terraform code to define, validate, and deploy WAF configurations.



Stakeholder Support & Incident Response


  • Respond to WAF-related tickets and inquiries using established TSSO processes;

assist teams in interpreting WAF logs, diagnosing blocks, and resolving
configuration challenges.

  • Provide clear guidance during incidents/outages, including rapid policy tuning,

targeted rule adjustments, and coordination with application owners and
Infrastructure & Operations.

  • Document operational standards, deployment runbooks, troubleshooting guides, and

best practices.


Security Tools Support


  • Provide operational support for additional security tools, including Proofpoint,

Digital Guardian, Windows Certificate Services, Silverfort, Calico, F5
ASM, Rapid7 Nexpose, and Qualys.

  • Assist in troubleshooting, performance tuning, and implementing updates or

enhancements across supported platforms.


Required Skills & Experience


  • Hands-on administration of Azure Front Door WAF and Azure Application Gateway WAF

(policy authoring, tuning, exclusions, custom rules).

  • Terraform expertise for Azure resources and GitHub deployments.
  • Proven ability to use code to configure Azure firewalls/WAFs.
  • Scripting skills to automate configuration, validations, and operational tasks

(PowerShell, Bash, or Python).

  • Strong understanding of web application security (OWASP Top 10, bot protection,

API protection, TLS, header-based controls) and secure DevOps practices.


Desired Skills


  • Experience with F5 ASM Web application Firewall and ASM policy tuning.
  • Exposure to Calico, Proofpoint email security, Netskope, Digital Guardian,

Silverfort, and vulnerability management tools.

  • PKIb fundamentals and certificate lifecycle management (Windows Certificate

Services, CA hierarchies).

  • Agile delivery experience (scrum/kanban, backlog grooming, story writing).
  • Practical DevSecOps experience integrating security controls into CI/CD,

policy-as-code, and automated testing.


Qualifications


  • 5+  years in application security, cloud security, or network security

engineering roles.

  • Demonstrated success operating Azure WAF(Azure Front Door and/or Application Gateway).
  • Track record of building infrastructure-as-code for security controls and

running Git-based deployment pipelines.

  • Excellent documentation, communication, and stakeholder collaboration skills.
  • Ability to manage shifting priorities and deliver secure, reliable outcomes in a

dynamic environment.

Employers have access to artificial intelligence language tools (“AI”) that help generate and enhance job descriptions and AI may have been used to create this description. The position description has been reviewed for accuracy and Dice believes it to correctly reflect the job opportunity.
  • Dice Id: 10519030
  • Position Id: 8919909
  • Posted 17 hours ago
Create job alert
Set job alertNever miss an opportunity! Create an alert based on the job you applied for.

Similar Jobs

Remote

3d ago

Easy Apply

Contract, Third Party

$60 - $80

Remote

5d ago

Easy Apply

Contract

Depends on Experience

Remote

5d ago

Easy Apply

Contract, Third Party

Depends on Experience

Remote

5d ago

Easy Apply

Contract

Depends on Experience

Search all similar jobs