WAF (Web Application Firewall) Administrator
Primary Skills – Expert level experience in Web Application Firewall (F5 or Cloudflare)
Secondary Skills-Firewall administration & Management (Palo alto, FortiGate, Checkpoint)
Experience required : 4 - 12 years.
Tools : Akamai, Barracuda, Cloudflare, F5 ( Any one is mandatory)
Certification : WAF certified associate
Activities to be performed.
- Provide Day to day operational support for WAF Mgmt
- Responsible for the design, planning, implementation, and operation of setups and management.
- Onboarding / Offboarding web applications
- Troubleshooting of operation issues reported by application teams.
- Firmware upgradation (stable versions)
- Closing of audit points / vulnerabilities by coordinating with internal and external teams
- Configuring virtual servers, nodes, pools and certificates
- Creation of security policies for web applications
- Fine-tuning of existing security policies in order to strengthen application security.
- Whitelisting attributes like URL parameters, file types based on the applications requirement.
- Event logs monitoring
- Configuration backups
- Hardening Policies
- OWASP top 10 compliance
- ACL configuration for Websites, Applications
- Event & Log monitoring
- Maintain Config backup.
- Knowledge on DNS technology for A record and CName
- Generating Daily & Weekly & Monthly reports on Application hosted on WAF.
- ITIL & ITSM Knowledge
- IPS / IDS signature creation / modification as per requirement of Application