Subject Matter Expert (Support&Ops;)
Noida, Uttar Pradesh
Job Summary
Job Summary : Cloud Edge & Application Security Engineer (WAF / Cloud Security) Experience Level: Mid–Senior (3–6+ Years) Location: Role Overview We are looking for a Cloud Edge & Application Security Engineer with deep hands-on expertise in Web Application Firewalls (WAF) and Content Delivery Networks (CDN). In this role, you will design, implement, and maintain edge security controls across major cloud platforms, protect web applications and APIs against Layer 7 attacks, mitigate DDoS threats, and enforce robust cloud security configurations.
Key Responsibilities
ob Responsibilities : WAF & Edge Security Management: Configure, tune, and maintain enterprise WAF and CDN platforms (e.g., Cloudflare WAF, AWS CloudFront + AWS WAF, Akamai). Design and deploy custom WAF rules, rate limiting, bot management policies, and IP/Geo-blocking mechanisms. Continuously tune rule sets (including OWASP Core Rule Sets) to reduce false positives while ensuring strong detection and blocking. Monitor and respond to real-time Layer 7 application attacks, DDoS incidents, credential stuffing, and scraping activities. Cloud Infrastructure & Security Operations: Implement and maintain baseline security controls across cloud environments (AWS / Azure / GCP). Secure edge-to-origin routing, SSL/TLS certificate lifecycle management (mTLS, cipher suites), and DNS security (DNSSEC, record routing). Collaborate with DevOps and Infrastructure teams to integrate security policies into CI/CD pipelines and Infrastructure as Code (Terraform / CloudFormation). Monitor traffic patterns, access logs, and security telemetry via SIEM / observability tools to detect emerging anomalies. Incident Triage & Collaboration: Lead technical troubleshooting for edge traffic anomalies,
origin-drop issues, and false-positive blocks. Partner with application and development teams to ensure secure architecture and edge protection for new services and APIs.
Skill Requirements
Skill Requirement : Core Technical Expertise: Hands-on experience administering Cloudflare (WAF, Rulesets, Workers, Page Rules) and/or AWS Edge Services (CloudFront, AWS WAF, Route 53, AWS Shield). Strong understanding of cloud architecture and native networking/security services in AWS, Azure, or GCP (VPCs, Security Groups, IAM, Load Balancers). Deep knowledge of HTTP/HTTPS protocols, headers, status codes, WebSockets, DNS, and TLS handshakes. Practical understanding of web application vulnerabilities (OWASP Top 10) and Layer 3/4 vs. Layer 7 DDoS mitigation techniques. Experience analyzing edge/WAF logs, writing log queries (e.g., in Splunk, Datadog, CloudWatch, or Athena), and creating alert rules. Familiarity with scripting/automation (Bash, Python, or Terraform) is a strong plus. Preferred Certifications: Cloud: AWS Certified Security - Specialty, AWS Solutions Architect, or Azure Security Engineer Associate (AZ-500). Edge & Security: Cloudflare certifications, CCSK, CCSP, or CEH. Soft Skills: Strong incident management and analytical troubleshooting skills. Ability to communicate edge security requirements and incident impact clearly to development and engineering teams.
Other Requirements
Other Requirement : Preferred Certifications: Cloud: AWS Certified Security - Specialty, AWS Solutions Architect, or Azure Security Engineer Associate (AZ-500). Edge & Security: Cloudflare certifications, CCSK, CCSP, or CEH. Soft Skills: Solid incident management and analytical troubleshooting skills. Ability to communicate edge security requirements and incident impact clearly to development and engineering teams
📌 Subject Matter Expert (Support&Ops) (India)
🏢 HCLTech
📍 India