Description : Job Summary :
This WAF L2 Analyst position is a crucial role within the security operations center, focusing on the defense and maintenance of web applications against various cyber threats.
The ideal candidate will have expertise in managing WAF platforms (like Imperva, Akamai, Cloudflare, or similar) and collaborating closely with SOC and architecture teams to ensure robust application security.
Key Responsibilities :
- Monitor WAF alerts and logs for suspicious activity.
- Triage and respond to incidents escalated from L1 teams.
- Perform root cause analysis and recommend mitigation actions.
- Escalate complex issues to L2.5 or L3 teams as needed
- Implement and fine-tune WAF rules and policies to reduce false positives.
- Manage IP / URL blocking, bot score tuning, and rate limiting.
- Coordinate SSL / TLS certificate renewals and origin certificate issues
- Support onboarding / offboarding of applications to WAF.
- Conduct cache purging, country blocking, and API definition updates.
- Maintain documentation and SOPs for WAF operations
- Work closely with WAF SMEs, SOC analysts, and security architects.
- Participate in knowledge transfer (KT) sessions and training during transition phases
- Contribute to the development of playbooks and automation scripts
(ref : hirist.tech)