security platform engineer (India)

security platform engineer (India)

01 Oct
|
Andela
|
India

01 Oct

Andela

India

About Andela

Andela exists to connect brilliance and opportunity. Since 2014, we have been dedicated to breaking down global barriers and accelerating the future of work for both technologists and organizations around the world. For technologists, Andela offers competitive long-term career opportunities with leading organizations, access to a global community of professionals, and educational opportunities with leading technology providers.

At Andela, we’re deeply passionate about creating long-lasting and transformative growth opportunities for all - and doing it in an E.P.I.C. way! We’re excited to continue building our remote-first team with incredible people like you. After applying for this role, you will join our Andela Community of brilliant technologists by passing a technical screening and live interview.

As a community member, you’ll have access to many exclusive technologist roles. Join Andela today to access this opportunity and more in our global marketplace!

Our roles are typically filled at lightning speed, so if you’re considering applying, get your application in quickly!

Role Description

Client is seeking a hands-on Senior Web Application Firewall (WAF) & Security Platform Engineer for the Global Network Architecture & Security Team. This role designs and builds production-grade security services, Web APIs, automation SDKs, and Web Application & API Protection (WAAP) architectures. You will accelerate security engineering using AI-assisted development (e.g., GitHub Copilot) and modern LLM/RAG workflows, partnering closely with application, platform, and cloud teams to secure and ship reliable systems fast.

The ideal candidate is an expert Python developer and thought leader who pairs effectively with AI tools, has deep experience with Web APIs, SDK design, and cloud platforms (Azure and/or AWS), and brings practical expertise in Layer-7 WAF/WAAP protection, modern GenAI integrations, and Infrastructure-as-Code.

YOUR SKILLS & ATTRIBUTES

- Expert Python & Systems Builder: You build resilient, self-healing, scalable systems, security tools, and APIs with clean architecture and rigorous testing.
- Thought Leadership & Ownership: You take end-to-end ownership of outcomes in an agile, collaborative enterprise environment, mentoring peers and setting high standards.
- AI-Assisted Engineering: You pair-program effectively with AI tools (e.g., GitHub Copilot) to accelerate delivery while maintaining engineering rigor, security standards, code safety, and readability.
- Deep WAAP Domain Expertise: Strong mastery of Web Application and API Protection (WAAP), Layer-7 inspection, OWASP Top 10 mitigation, Bot Management, Rate Limiting, and DDoS defense.
- Bias for Action: You design, develop, test, validate, and deploy production code and security policies quickly using contemporary automated toolchains.
- Quality & Automation First: You write high-quality, well-tested code and automate everything you can (tests, builds, deployments, security checks, policy guardrails).
- Cloud-Fluent: Fluent in Azure and/or AWS, comfortable with serverless, containers, Private Link connectivity, and managed cloud networking services.




- GenAI Curiosity: You experiment thoughtfully with GenAI/LLMs and iterate rapidly based on telemetry, threat data, and developer feedback.
- Clear Communicator: You communicate clearly with technical and non-technical stakeholders, explaining complex architectural tradeoffs and security risks concisely.

ESSENTIAL DUTIES & RESPONSIBILITIES

- Secure API & Tooling Development: Architect and implement secure, scalable Web APIs (e.g., FastAPI) and internal security automation services, including authentication/authorization, rate limiting, and observability.
- Python SDK Design: Design, develop, test, version, and publish Python SDKs and automation tooling for WAF lifecycle management, including semantic versioning, documentation, and code samples.
- AI-Accelerated Engineering: Leverage AI-assisted development tools (e.g., GitHub Copilot) to accelerate coding, refactoring, test generation, and automated security reviews under strict quality gates.
- AI & RAG Solutions: Develop AI-driven operational and security solutions using LLMs and RAG (e.g., Azure OpenAI Service, Amazon Bedrock, vector stores, embeddings) to analyze Layer-7 traffic anomalies, automate rule recommendations, and enforce policy guardrails.
- Enterprise WAAP Architecture: Architect, deploy, and operate enterprise WAF / WAAP policies across global applications and APIs, securing multi-cloud ingress and origin connectivity (e.g., Azure Private Link, AWS PrivateLink).
- IaC & CI/CD Automation: Automate WAF provisioning, rule lifecycle, and certificate/TLS management using Infrastructure-as-Code (Terraform/Bicep) and CI/CD pipelines (GitHub Actions / Azure DevOps).
- Testing & Quality Assurance: Implement robust testing and validation (unit, integration, contract, security fuzzing, and load tests) ensuring high code coverage and strict quality gates.
- Observability & Telemetry: Instrument services and WAF policies with logging, metrics, tracing, and dashboards (e.g., OpenTelemetry, Azure Monitor, CloudWatch, SIEM integration); proactively identify and remediate bottlenecks and false positives.
- Cross-Functional Collaboration: Collaborate with product, platform, data, security, and application teams to define requirements, ship features, and meet SLAs/SLOs.
- Mentorship & Knowledge Sharing: Document architecture, APIs, SDKs, runbooks, and decision records to enable reusability and mentor engineers on Python best practices, application security, and AI-assisted engineering.

EXPERIENCE & SKILLS REQUIRED

- Core Software Experience: 7+ years of professional software development and infrastructure engineering experience, with 3+ years focusing on Python.
- Web APIs at Scale: 4+ years building and operating Web APIs (FastAPI, Django, or Flask),



including OpenAPI/Swagger specifications and contract-first design.
- Enterprise WAF / WAAP: 3+ years hands-on experience designing, implementing, and automating enterprise WAF / WAAP solutions (e.g., Cloudflare, Imperva, AWS WAF, Azure Front Door/WAF, or Akamai).
- Key Vendor Advantage (Plus): Hands-on experience with the Cloudflare WAAP / WAF platform, API protection, and Cloudflare Workers is a strong plus / highly advantageous.
- CloudFlare API & Configuration: Hands-on experience with CloudFlare API and its configuration as required.
- Protocol & Security Deep Dive: Deep technical knowledge of HTTP/HTTPS protocols, Layer-7 traffic inspection, TLS/SSL lifecycle, header manipulation, and OWASP Top 10 vulnerabilities.
- Cloud Networking & Ingress: 2+ years deploying to cloud platforms (Azure and/or AWS), utilizing services such as Azure Functions/App Service/AKS or AWS Lambda/ECS/EKS, Private Endpoints/PrivateLink, and Infrastructure-as-Code (Terraform/Bicep).
- Generative AI & LLM Practice: 1+ years of hands-on GenAI experience in production or pre-production (prompt engineering, LLM integration, RAG pipelines, response evaluation).
- AI Coding Tooling: Demonstrated active use of AI coding assistants (e.g., GitHub Copilot) to accelerate delivery while ensuring code quality and safety.
- SDK Design & Versioning: Strong experience designing, versioning, and distributing SDKs (packaging, semantic versioning, dependency management, internal PyPI).
- CI/CD & Quality Gates: Proficiency with CI/CD (GitHub Actions, Azure DevOps), automated testing (pytest), and quality tooling (ruff, black, mypy, coverage).
- Security & Secrets: Solid understanding of security and compliance for services and SDKs (OAuth2/OIDC, JWT, secrets management with Azure Key Vault/AWS Secrets Manager, dependency scanning).
- Observability & SIEM: Centralized logging, metrics, and tracing experience (OpenTelemetry, Azure Monitor, CloudWatch, SIEM/Splunk).

At Andela, we know our strengths lie in our diverse community whose talents, perspectives, backgrounds, and orientations we take pride in. Andela is committed to nurturing a work environment where all individuals are treated with respect and dignity. Everyone has the right to work in a professional atmosphere that promotes equal employment opportunities and prohibits discriminatory practices. Andela provides equal employment opportunities to all employees and applicants without regard to factors including but not limited to race, color, religion, gender, sexual orientation, gender identity, national origin, age, disability, pregnancy (including breastfeeding), genetic information, HIV/AIDS or any other medical status, family or parental status, marital status, amnesty or status as a covered veteran in accordance with applicable federal, state and local laws. This commitment applies to all terms and conditions of employment, including but not limited to hiring, placement, promotion, termination, layoff, recall, transfer, leaves of absence, compensation, and training. Our policies expressly prohibit any form of harassment and/or discrimination, as stated above

📌 security platform engineer (India)
🏢 Andela
📍 India

Reply to this offer

Impress this employer describing Your skills and abilities, fill out the form below and leave Your personal touch in the presentation letter.

Subscribe to this job alert:

Get the latest job offers by email for: security platform engineer (india) / india

Subscribe to this job alert:

Get the latest job offers by email for: security platform engineer (india) / india