Job descriptionMonitor WAF alerts and logs for suspicious activity.Triage and respond to incidents escalated from L1 teams.Perform root cause analysis and recommend mitigation actions.Escalate complex issues to L2.5 or L3 teams as neededImplement and fine-tune WAF rules and policies to reduce false positives.Manage IP / URL blocking, bot score tuning, and rate limiting.Coordinate SSL / TLS certificate renewals and origin certificate issuesSupport onboarding / offboarding of applications to WAF.Conduct cache purging, country blocking, and API definition updates.Maintain documentation and SOPs for WAF operationsWork closely with WAF SMEs, SOC analysts, and security architects.Participate in knowledge transfer (KT) sessions and training during transition phasesContribute to the development of playbooks and automation scripts