
Senior WAF Engineer
Cadmus Soluções em TI
full-time
Posted on:
Location Type: Remote
Location: Brazil
Visit company websiteExplore more
About the role
- Administer, tune, and optimize existing Imperva WAF policies, signatures, and rule sets
- Collaborate on the design, configuration, and deployment of Akamai Cloud WAF solutions
- Develop and maintain custom WAF rules aligned with OWASP Top 10 and emerging threats
- Monitor, analyze, and respond to WAF events, logs, and alerts
- Implement automation and scripting to streamline WAF configuration and governance
- Support the migration from Imperva to Akamai, including assessment, mapping, and cutover planning
- Develop migration runbooks, testing plans, validation procedures, and rollback strategies
- Provide guidance on secure application design, API protection, and edge-security best practices
- Participate in incident response activities and forensic analysis of web-based attacks
- Drive continuous improvement initiatives within the IT Security & Risk Management program
Requirements
- 5+ years of hands-on experience administering and engineering WAF solutions
- Expertise with Imperva Cloud WAF and Akamai WAF platforms
- Strong understanding of HTTP/HTTPS, TLS, DNS, CDN architectures, OWASP Top 10, and API security
- Experience with scripting and automation (Python, Bash, PowerShell) and IaC tools such as Terraform
- Knowledge of cloud platforms (AWS, Azure, GCP) and hybrid network architectures
- Experience with application security testing, vulnerability management, and secure SDLC
- 6+ years in IT with 5+ years in cybersecurity roles
- Bachelor’s degree in Information Security, Computer Science, Information Systems, or related field
- Preferred certifications: CISSP, CISA, CISM, GIAC (GWAPT, GWEB, GCWN)
Benefits
- health insurance
- retirement plans
- paid time off
- flexible work arrangements
- professional development
Applicant Tracking System Keywords
Tip: use these terms in your resume and cover letter to boost ATS matches.
Hard Skills & Tools
WAF administrationWAF engineeringscriptingautomationHTTPHTTPSTLSDNSAPI securityvulnerability management
Soft Skills
collaborationguidanceincident responseforensic analysiscontinuous improvement
Certifications
CISSPCISACISMGIACGWAPTGWEBGCWN