Key Responsibilities
- Translate business and application security requirements into enterprise-grade WAAP and network security architectures.
- Lead architecture, design, and deployment of Web Application and API Protection (WAAP) solutions across global environments.
- Develop and drive multi-year roadmap for application-layer security, including WAF, API security, bot protection, and DDoS mitigation.
WAAP Responsibilities (Primary Focus)
- Architect, implement, and manage WAAP platforms, including:
- Web Application Firewall (WAF)
- API Security (discovery, protection, runtime analysis)
- Bot Management
- DDoS Protection (L3-L7)
- Design and deploy WAAP solutions using platforms such as: Thales Imperva o Cloud-native WAFs (Azure, AWS WAF) or equivalent
- Develop and maintain custom WAF rules, security policies, and signatures to protect critical applications.
- Perform false positive tuning, policy optimization, and rule lifecycle management.
- Enable API discovery, schema enforcement, and protection against OWASP API Top 10 threats.
- Integrate WAAP with SIEM/SOAR platforms
- Integrate WAAP with Identity providers
- Integrate WAAP with Threat intelligence feeds
- Collaborate with application teams to onboard applications into WAAP platforms
- Perform security assessments and risk reviews
- Ensure minimal performance impact while enforcing strong security controls
- Implement protection against OWASP Top 10 vulnerabilities (SQLi, XSS, RCE, etc.).
- Lead WAAP incident response and root cause analysis for application-layer attacks.
- Define and track application security metrics and KPIs (attack trends, mitigation effectiveness).
- Ensure compliance with security frameworks (CIS, NIST, Zero Trust, data protection standards).
Core Network Security Responsibilities
- Architect and maintain secure network infrastructure across data center, campus, and cloud environments.
- Conduct security design reviews ensuring compliance with enterprise security standards.
- Provide risk reporting, control effectiveness, and security posture visibility.
- Support internal and external security audits.
- Manage and optimize Security Information and Event Management (SIEM) systems.
- Develop and maintain network security policies and procedures.
- Collaborate with cybersecurity, infrastructure, and application teams globally.
Technical Qualifications
- 10+ years of experience in network security architecture, engineering, and operations.
- WAAP Application Security Expertise (Mandatory)
- Robust experience with WAAP platforms (Akamai preferred; Cloud WAF or equivalent accepted).
- OWASP Top 10 (Web API)
- Application-layer threats and mitigation techniques
- WAF policy creation and tuning
- API security controls (schema validation, authentication enforcement)
- Bot mitigation strategies
- DDoS protection architecture (L3-L7)
- Traffic analysis (HTTP/HTTPS, TLS inspection)
- Behavioral-based threat detection
- Secure application architectures (monolith, microservices, APIs)
- DevSecOps integration and CI/CD security controls (nice to have)
Network Security Infrastructure
- Firewalls (Fortinet, Palo Alto, Juniper)
- Ids/ips, VPN, SIEM
- Firewall policy design, NAT, routing, inspection, and threat prevention
- Hybrid (on-prem + cloud + internet-facing) environments
- Proxy architectures (forward/reverse)
- Secure internet gateways
Networking Protocol Expertise
- Tcp/ip, DNS, http/https, tls/ssl
- Routing protocols (BGP, OSPF, MPLS)
- QoS, NetFlow, ACLs, NAT, IP traffic management
- Network monitoring and analysis tools
Cloud Integration
- AWS, Azure, GCP
- Cloud-native WAF and API security tools
- SIEM, EDR/XDR, IAM platforms
Disclaimer: This job posting has been aggregated from external source. Role details, content, and availability are subject to change. Applicants are advised to confirm the latest information directly on the company website before applying.
📌 Senior Network Security Engineer - WAAP (Bengaluru)
🏢 UST
📍 Bengaluru