30 Jul
|
Cognizant
|
Telangana
30 Jul
Cognizant
Telangana
Cloud Security Operations Cloud WAF Cloud WAF Manager
Purpose
Lead the governance, strategy, and operations of Cloud Web Application Firewall (WAF) platforms across multi-cloud settings, ensuring secure application exposure, policy consistency, and protection against application-layer threats. Operate web application firewall services across 1,600+ cloud accounts and growing.
Key Responsibilities
Own end-to-end Cloud WAF platform governance (Azure WAF, AWS WAF, Cloudflare, Akamai, etc.)
Define WAF security standards, policy frameworks, and global baselines (aligned to OWASP Top 10)
Ensure consistent WAF policy deployment across all internet-facing applications
Govern WAF rule-policy lifecycle across SaaS and hyperscaler-native platforms for 1,600+ accounts.
Manage OWASP Core Rule Set and custom rules; tune to balance protection and false positives.
Ensure consistent WAF coverage across all web-application ingress paths.
Triage false positives and coordinate fixes with application owners.
Oversee WAF policy lifecycle including:
Rule creation, tuning, and optimization
False positive management and exception governance
Drive adoption of positive security models and advanced protection mechanisms
Lead incident response for application-layer attacks and WAF-related issues
Ensure timely RCA and preventive actions for security incidents
Oversee blocking of IoCs (IPs, domains, URLs) across WAF and integrated platforms
Ensure platform health, performance, latency, and scalability
Oversee troubleshooting of:
Block events
Application connectivity issues
False positives
Resource utilization
Qualifications & Experience
Experience
1015 years in Network / Application Security
5+ years in WAF or application security platforms
Experience in large-scale enterprise and multi-cloud environments
Technical Skills
Robust expertise in Cloud WAF platforms such as Azure WAF, AWS WAF, Cloudflare, Akamai, F5, and Imperva.
Solid expertise in reverse proxy and Layer 7 security controls.
Deep understanding of OWASP Top 10, attack signatures, bot protection, SSL / TLS inspection, HTTP headers, and API security.
📌 Security Operations Secops/ Vm, Cloud Waf Telangana
🏢 Cognizant
📍 Telangana