Location
Pune | India
Job description
Job Position: F5 AWAF Security Engineer
Job Type: Full-Time
Location: Pune, IN
Experience: - 8 to 10+ Years
Domain: Domain knowledge of Internet protocol concepts (IP, TCP, DNS, SSL/TLS).
Must Have: F5 LTM and ASM/AWAF, AWAF, Bot and DOS/DDos protection, AWS/Google/Azure, web-based Attacks, OWASP, Cybersecurity Policy, Agile methodologies
Skills
- The F5 Advanced Web Application Firewall Engineer would need to have at least 7 to 10-+ years of experience in this domain. For this role, you must be a dynamic and highly-motivated individual that is seeking a position with the global leader in commercial real estate services.
- Troubleshoots and resolves system service failures by identifying and analyzing the situation and provides corrective actions.
- Develops, installs, and tests new network hardware and software releases, system upgrades, evaluates and installs patches and resolves software related problems.
- Monitors systems activities and fine tunes system parameters and configuration to optimize performance and ensure security of systems.
- Raise Change Requests in detail and drives Change to complete approval. Performs 4 eyes check on other Changes for their colleagues
- False positive analysis, reviewing threat logs in AWAF .
- Utilize automation for configuration deployments
- Provides senior level expertise on decisions and priorities regarding systems architecture.
- Engages with application development teams on current infrastructure projects.
- Evaluates existing solutions and infrastructure and provides recommendations.
- Approves system designs and functions as a project lead as required.
- Facilitates the establishment and implementation of standards and guidelines that guide the design of technology solutions including architecting and implementing solutions.
- Manages and maintains the hardware, software, security, and connectivity to the Internet as well as middleware components.
- Performs other duties as assigned. Decisions made with thorough understanding of procedures, company policies, and business practices to achieve general results and deadlines.
- Provides informal assistance such as technical guidance, and/or training to co-workers.
Following requirements:
- Expertise in F5 LTM and ASM/AWAF deployment, tuning and troubleshooting experience.
- Understanding of Web application Technologies, Protocols and Security ( API, TLS, DNS, CDN etc)
- Experience of implemented Bot and DOS/DDos protection plus domain understanding
- Experience of implementing WAF in one or more cloud environments (AWS, Google, Azure...)
- Experience with web-based attacks, OWASP Top 10 web vulnerabilities, web application testing with tools like.
- Self-motivated and pro-active when working remotely
Additionally, below are good to have requirement:
- Deploy, configure and maintain cloud native web application firewalls including: Logging of all WAF events.
- Good knowledge of scripting languages ( Bash, Python, Ansible, Terraform, JavaScript ect .) and automation experience
- Experience in engaging with cybersecurity policy makers
- Responding to WAF events and Developing WAF incident response plans.
- Updating threat models based on WAF event patterns.
- Change Request experience
- DDoS, WAF and Bot protection expertise (Akamai), IDS/IPS, Firewalls, VPNs, SSL/TLS
- CI/CD – GitHub, Bitbucket, Jenkins, Teamcity, Bamboo, Octopusdeploy, MSRM
- Domain knowledge of Internet protocol concepts (IP, TCP, DNS, SSL/TLS ).
- Strong understanding of Agile methodologies
Job tags
Salary