Salary
💰 $110,000 - $140,000 per year
Tech Stack
AWSAzureCloudFirewallsGoogle Cloud PlatformPythonTerraform
About the role
- Contribute to endpoint security, threat intelligence, security monitoring, automation, web applications, SIEM, and SOC operations
- Configure, optimize, and maintain web application filtering technologies (specifically Cloudflare WAF)
- Develop and maintain detection rules across EDR, IDS/IPS, DLP, WAF, and XDR/SIEM platforms
- Automate detection and response workflows across security tools
- Monitor and analyze security events across endpoints, networks, and users
- Lead incident response efforts for web application threats, ensuring containment and remediation
- Design, deploy, and manage WAF policies, including custom and managed rulesets
- Investigate WAF alerts and logs and continuously optimize configurations to reduce false positives
- Collaborate with AppSec, DevOps, and Network Security teams to ensure secure and performant application delivery
- Configure, test, and optimize security tools to support prevention, detection, and response
- Design and implement security controls across SaaS, IaaS, and PaaS environments
- Conduct continuous testing and risk assessments; maintain security documentation and support audits and compliance
- Stay informed on emerging threats and integrate threat intelligence into security operations
Requirements
- At least one active security certification preferred: GCIH, GCIA, CISSP, CEH or related
- B.S. in Information Security, Computer Science, Computer Engineering or similar technical program or equivalent experience
- 3-5+ years in a hands-on technical role in information security supporting a large organization
- Hands-on experience managing Cloudflare WAF or similar web application firewalls
- Hands-on experience working with Google Chronicle/SecOps
- Experience with security tools including EDR, IDS/IPS, DLP, and SIEM/XDR
- Working knowledge of firewalls, proxies, network and host-based intrusion prevention, DLP, vulnerability assessment tools, network protocols, architecture
- Strong understanding of cloud platforms such as AWS, Azure, or GCP
- Familiarity with scripting or automation tools (e.g., Python, PowerShell, Power BI, Terraform)
- Experience with securing Microsoft Entra ID/Hybrid environments preferred
- Desire to learn new technologies and share best practices
- Ability to self-organize, prioritize independently, and create documentation and reporting