Maintain enterprise best practice configurations guidelines for WAF usage across TR
Develop maintain baseline WAF security rulesets based on vendor TR best practices
Support application team WAF onboarding with rule deployments, log enrichment analysis, and rule recommendations based on analysis
Consult with Cyber Defense (SOC, CIRT, Threat Detection) stakeholders to assist with operationalizing WAF alerting to SOC supporting runbook development
Effectively communicate technical concepts to business lines and stakeholders
Collaborate with other security and network engineers to support other network security related projects such as network IDS / IPS, network DLP, and SSL inspection
Collaborate with ISRM stakeholders such as security architecture, product security, incident response, and threat detection to ensure services are meeting stakeholder expectations
Consult with application teams on supporting development of rate limiting bot management rules
About you :
Bachelor s degree preferred and / or 7+ years of relevant professional Network Security / Network Engineering experience
Minimum of 5 years in network security with a strong focus on application layer security, with at least 2 years of working experience with WAF solutions
Solid understanding of OWASP Top 10 and experience testing the most common injection vulnerabilities : Cross-site Scripting (XSS), XML External Entities (XXE), SQL Injection (SQLi), OS Command Injection.
Understanding of Denial of Service (DoS) and Distributed DoS attacks at the Network, Transport and Application layer.
Strong scripting and automation skills using languages such as Python and additionally Powershell
Proven experience with maintaining enterprise WAF capabilities with providers such as Cloudflare, Mod Security or cloud native WAF services such as AWS WAF
In-depth knowledge of security principles, protocols, and best practices.
Proficient in analyzing large datasets using tools like Splunk, Datadog, or other SIEM / logging technologies
Experience with cloud platforms such as AWS, Azure, Google Cloud, and / or OCI.
Ability to work independently while driving projects to conclusion
Preferred Qualifications
Experience testing less common injection vulnerabilities : Server-side Request Forgery (SSRF), Server Side Template Injection (SSTI), Insecure Deserialization, LDAP Injection, NoSQL Injection, Expression Language Injection.
Experience with configuration management through git based source control
Experience with Infrastructure as Code (IaC) such as Terraform, CloudFormation, ARM or Bicep.
Experience with other network security technologies such as IDS / IPS, NextGen Firewalls, network DLP, and SSL inspection capabilities.
Understanding of network transport protocols and services (TCP / IP, syslog, DNS, VLANs, VRF, SFTP, SSH, PKI, etc )
Unix / Linux knowledge, can operate in a Linux environment
Skills Required
Azure, Google Cloud, Aws
Create a job alert for this search
Senior Security Engineer • Bengaluru / Bangalore
Related jobs
Promoted
Senior Software Security Engineer
TalkdeskBengaluru, Karnataka, India
At Talkdesk, we are courageous innovators focused on redefining customer experience, making the impossible possible for companies globally.
We champion an inclusive and diverse culture representativ...Show moreLast updated: 18 days ago
Promoted
Senior DevOps Security Engineer
JRD SystemsBengaluru, IN
We are seeking a highly skilled Senior DevOps / Platform Engineer to join our dynamic team.The ideal candidate will have extensive experience in managing and automating infrastructure, improving depl...Show moreLast updated: 4 days ago
Promoted
Cyber Security Engineer
YASH Technologieshosur, tamil nadu, in
The AppSec Engineer is a specialized cybersecurity role focused on DevOps engineering principles.While the expectation of their sibling role – SAE – is to have practical working security knowledge,...Show moreLast updated: 24 days ago
Promoted
Senior Engineer - Perimeter Security Platforms
OptivBangalore
At Optiv, were on a mission to help our clients make their businesses more secure.Were one of the fastest growing companies in a truly essential industry.
In your role at Optiv, youll be inspired by...Show moreLast updated: 30+ days ago
Promoted
Security Trust Engineer
RingCentralBengaluru, India
It’s not every day that you consider starting a new career challenge.NYSE : RNG) is a global leader in cloud-based communications and collaboration software.
We are fundamentally changing the nature ...Show moreLast updated: 6 days ago
Promoted
Senior Security Consultant
Claranet Indiahosur, tamil nadu, in
Founded at the beginning of the dot.CEO Charles Nasser had a light bulb moment to develop a truly customer-focused IT business.
Since then, Claranet has grown from an Internet Service Provider (ISP)...Show moreLast updated: 23 days ago
Promoted
Cloud Security Engineer
Aquanowhosur, tamil nadu, in
Aquanow, a leading infrastructure and liquidity provider that provides institutional and enterprise application platforms for digital assets, is looking for a Cloud Security Engineer to join our te...Show moreLast updated: 26 days ago
Promoted
Cyber Security Engineer with Splunk
IntraEdgehosur, tamil nadu, in
This role will lead the development and implementation of intelligent security solutions using SIEM, SOAR, and machine learning to enhance detection, response, and operational efficiency across the...Show moreLast updated: 8 days ago
Promoted
Senior Engineer - Security Research
Indus face Private LimitedBangalore
Job Description : - Create signatures for Indusface WAS & WAF product to detect & protect Web applications vulnerabilities.
Research evolving web attacks, CVEs...Show moreLast updated: 30+ days ago
Promoted
New!
Security Engineer (Remote)
DigiHelic Solutions Pvt. Ltd.hosur, tamil nadu, in
Remote
We are looking for a proactive and experienced.In this role, you will design, implement, and maintain.The ideal candidate will have deep.
Monitor cloud environments for.AWS-native and third-party to...Show moreLast updated: 11 hours ago
Promoted
Cyber Security Engineer
Vista Applied Solutions Group Inchosur, tamil nadu, in
Hiring Sr Cyber Security Engineer | Long Term Contract | Remote.Job Title : Sr Cyber Security Engineer – Product Security.
Location : Mostly Indian business hours, some cross over with US and EU teams...Show moreLast updated: 8 days ago
Promoted
DevSecOps / AppSecOps Staff Engineer
First American (India)hosur, tamil nadu, in
Our people-first culture empowers bold thinkers and passionate technologists to solve real-world challenges through scalable architecture and innovative design.
If you're driven by impact, thrive in...Show moreLast updated: 8 days ago
Promoted
Senior Product Security Engineer
sliceBengaluru, Karnataka, India
We’ve all felt how slow, confusing, and complicated banking can be.We’re building every product from scratch to be fast, transparent, and feel good, because we believe that the best products transc...Show moreLast updated: 30+ days ago
Promoted
Cyber Security Engineer
CUS Techhosur, tamil nadu, in
We are seeking a highly skilled and detail-oriented.The ideal candidate will have strong technical expertise in security tools, frameworks, and compliance standards, along with a proactive approach...Show moreLast updated: 25 days ago
Promoted
Senior Security Engineer - Product Security
People Gamut HR SolutionsBangalore
As a part of the world-class engineering team, that is focused on solving some unique problems in the space (and one that has been delivering to commitments, as per our customer testimonials) we ar...Show moreLast updated: 30+ days ago
Promoted
Senior Product Security Engineer
Pocket FMBengaluru, Karnataka, India
Pocket FM is the world’s largest audio entertainment platform, revolutionizing the way stories are told and consumed.We bring together storytelling, technology, and creativity to deliver an immersi...Show moreLast updated: 30+ days ago
Promoted
Lead Security Engineer
ArcanaBengaluru, Karnataka, India
Arcana is on a mission to revolutionize the investing landscape,.Our cutting-edge software and data platform processes millions of data points every minute, delivering lightning-fast computations a...Show moreLast updated: 30+ days ago
Promoted
Security Technology Lifecycle Analyst
HR PLACEMENT CONSULTANTS (HRPC)Bangalore Rural, Karnataka, India
Position - Analyst - Security Technology Lifecycle Analyst.Job Type - Full-time (Third party payroll •).The Security Technology Lifecycle Analyst plays a critical role in supporting the Corporate Se...Show moreLast updated: 20 days ago
Promoted
Lead Security Engineer
interface.aiBengaluru, IN
Our cutting-edge Generative AI-powered platform serves over 100 banks and credit unions, delivering hyper-personalized customer interactions across voice, chat, and employee-assisting solutions.To ...Show moreLast updated: 26 days ago
Promoted
New!
Engineer
Nextbridge IT Solutionshosur, tamil nadu, in
We are seeking an experienced subject matter expertise in the Fortinet.This critical role is centered on high-severity incident management, complex security troubleshooting, and architectural impro...Show moreLast updated: 11 hours ago