WAF Engineer

WTW

Greater London

Hybrid

GBP 70,000 - 110,000

Full time

8 hours ago
Be an early applicant
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Benefits offered by this job

Hybrid working options
Private healthcare
Life insurance
Group income protection
Pension scheme (defined contribution)

Job summary

WTW is seeking a WAF Engineer to optimise and secure web applications across multi-cloud environments. The role focuses on tuning WAF policies, implementing custom rules, and leading incident response to protect customer data and services.

The candidate will collaborate with application teams and security stakeholders, and support change activities while ensuring strong security posture in a hybrid London setup.

Qualifications

  • Proven expertise in investigating, analysing, and resolving WAF false positives/negatives.
  • Strong expertise in implementing WAF solutions in Detection mode and transitioning to Prevention/Block mode.
  • Proven ability to develop and maintain custom WAF rules and bot protection controls.
  • Extensive knowledge of OWASP Top 10 and web attack vectors.

Responsibilities

  • Perform analysis and tuning of WAF policies to minimise false positives/negatives while maintaining security posture.
  • Design, implement, maintain and optimise WAF policies across multi-cloud environments.
  • Lead investigation and mitigation of web application attacks (OWASP Top 10, bot attacks, credential stuffing, scraping, Layer 7 DDoS).
  • Develop and enhance custom WAF rules, exclusions, rate-limiting policies, and bot protection controls.
  • Support transition of WAF policies from Detection to Prevention/Block mode with testing and stakeholder engagement.
  • Analyse attack patterns and telemetry to identify emerging threats and mitigations.
  • Collaborate with application owners and security teams for secure onboarding of internet-facing apps.

Skills

WAF tuning
Azure WAF
Terraform IaC
Multi-cloud
Incident response
Threat analysis
Policy tuning
Web app security

Education

Bachelor's degree in CS/Engineering/IT or related field

Tools

Azure Front Door WAF
Azure Application Gateway WAF
Terraform
Palo Alto Firewall
Cisco solutions

Job description

The Network Operations Centre is a critical enterprise technology capability to ensure that we provide the level of service required to meet the needs of our business and ensure we protect WTW and our customers. This service is provided 24/7/365 and encompasses office & data centre networks, network security appliances & perimeter control. The WAF Engineer role is intended to maximise the operational performance of WTW services and maintain a strong secure posture. The role is accountable for BAU support of issues, controlling policy & compliance and supporting change activities. This role ensures the technical success of WAF services within the WTW environment in a Tier 3 capacity. The role is London based with a hybrid work style.

The Role
  • Perform analysis and tuning of WAF policies to minimise false positives and false negatives while maintaining an appropriate security posture.
  • Design, implement, maintain and optimise WAF policies across multi-cloud environments.
  • Lead the investigation and mitigation of web application attacks, including OWASP Top 10 threats, bot attacks, credential stuffing, scraping, Layer 7 DDoS attacks and other web-based threats.
  • Develop, maintain and enhance custom WAF rules, managed rule exclusions, rate-limiting policies and bot protection controls.
  • Support transition of WAF policies from Detection mode to Prevention/Block mode through structured analysis, tuning, testing and stakeholder engagement.
  • Analyse attack patterns, logs and telemetry to identify emerging threats and implement effective mitigations.
  • Work closely with application owners, development teams and security stakeholders to ensure secure onboarding and operation of internet-facing applications.
  • Provide subject matter expertise for web application security, secure application delivery and WAF best practices.
  • Provide technical support to Audit & Compliance, Capacity Management, Lifecycle Management, Vulnerability Management and Risk Management Functions.
  • Provide technical leadership during major incidents and drive to quick resolutions.
  • Coach team members on a proactive basis, raising the team’s overall technical acumen.
  • Restore service and complete root cause analysis of all incidents, driving actions to mitigate the root cause and remove risk of reoccurrence.
  • Participate on the Technical Design Authority forum
  • Implement changes/POCs to the environment in a controlled manner, with implementation and test plans.
What you'll bring:
  • Demonstrable expertise in investigating, analysing, and resolving WAF false positives and false negatives.
  • Strong expertise in implementing WAF solutions in Detection mode and transitioning policies to Prevention/Block mode through appropriate tuning and validation.
  • Proven expertise in developing and maintaining custom WAF rules, rule exclusions, rate limiting controls, and attack mitigation policies, rather than solely relying on out-of-the-box managed rules.
  • Extensive knowledge of web application attack vectors, including OWASP Top 10 vulnerabilities, SQL Injection, Cross-Site Scripting (XSS), Remote Code Execution (RCE), bot attacks, credential stuffing, and API abuse.
  • Advanced hands-on expertise in attack mitigation, threat analysis, and the creation of bespoke security controls based on observed attack patterns.
  • Strong understanding of bot protection technologies, managed rule sets, policy tuning, and broader web application security best practices.
  • Demonstrated expertise with Azure Front Door WAF and Azure Application Gateway WAF in enterprise-scale environments.
  • Experience working across multi-cloud environments and/or vendor-agnostic WAF platforms.
  • Expertise in deploying and managing WAF infrastructure using Terraform or other Infrastructure as Code (IaC) technologies.
  • Proven ability to support large-scale production environments, with responsibility for change implementation, incident response, and threat mitigation.
  • Bachelor's degree in Computer Science, Engineering, Information Technology, or a related field preferred, or equivalent industry experience.
  • Strong industry expertise within IT or Telecommunications environments. Financial Services experience preferred.
  • Advanced expertise in Azure WAF and network management within complex enterprise environments.
  • Deep technical expertise in Network Security, with exposure to technologies such as Azure Firewall, Palo Alto Firewall/VPN, and Cisco solutions considered advantageous.
  • Ability to blend creativity, problem solving, and technical expertise to refine existing concepts and develop innovative approaches.
  • Ability to drive business process improvements and collaborate effectively with stakeholders and peers.
  • Ability to work under pressure and resolve complex technical issues effectively.
  • Excellent interpersonal, stakeholder management, and communication skills.
What We Offer

Enjoy a benefits package designed to help you thrive, both professionally and personally. You'll receive 25 days of annual leave plus an extra WTW day to relax and recharge. Our comprehensive health and wellbeing offering includes private healthcare, life insurance, group income protection, and regular health assessments, all giving you peace of mind. Secure your future with our defined contribution pension scheme, featuring matched contributions up to 10% from the company.

We support your growth and balance with hybrid working options, access to an employee assistance programme, and a fully paid volunteer day to make a difference in your community. On top of these, you can opt into a variety of additional perks including an electric vehicle car scheme, share scheme, cycle-to-work programme, dental and optical cover, critical illness protection, and much more. Start making the most of your career and wellbeing with a range of benefits tailored for you.

Equal Opportunity Employer

We’re committed to equal employment opportunity and provide application, interview and workplace adjustments and accommodations to all applicants. If you foresee any barriers, from the application process through to joining WTW, please email candidatehelpdesk@wtwco.com

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Software Engineer
Senior Software Engineer

Willis Towers Watson • Reigate

Hybrid
GBP 90,000 - 130,000
25 days annual leave
Private healthcare
Life insurance
+9
Associate Manager - Cyber Security Incident Response
Associate Manager - Cyber Security Incident Response

WTW • Greater London

Hybrid
GBP 90,000 - 130,000
25 days annual leave
Private healthcare
Group pension with company match
+3
WAF Security Engineer
WAF Security Engineer

Lloyds Banking Group • City of Edinburgh

On-site
GBP 49,000 - 55,000
Pension up to 15%
Annual bonus
Share schemes
+3
Senior Associate – Information Security
Senior Associate – Information Security

Willis Towers Watson • Ipswich

Hybrid
GBP 55,000 - 75,000
25 days annual leave
Private healthcare
Life insurance
+3
Senior Director- Technology Governance and Regulatory Strategy
Senior Director- Technology Governance and Regulatory Strategy

Willis Towers Watson • Greater London

On-site
GBP 140,000 - 190,000
25 days annual leave
Private healthcare
Life insurance
+9
DevOps Engineer
DevOps Engineer

Willis Towers Watson • Reigate

Hybrid
GBP 90,000 - 130,000
Hybrid working options
25 days annual leave
Private healthcare
Forward Deployed AI Engineer
Forward Deployed AI Engineer

Willis Towers Watson • Greater London

Hybrid
GBP 120,000 - 150,000
Hybrid working
Private healthcare
Pension scheme matched up to 10%
+3
Full Stack Engineer
Full Stack Engineer

WTW • Reigate

On-site
GBP 60,000 - 90,000
Hybrid working options
Private healthcare
Life insurance
+7
WAF Security Engineer
WAF Security Engineer

Lloyds Bank plc • United Kingdom

Hybrid
GBP 49,000 - 55,000
Pension contribution up to 15%
Annual bonus
Share schemes
+4
WAF Security Engineer
WAF Security Engineer

Lloyds Bank plc • Manchester

Hybrid
GBP 49,000 - 55,000
Pension up to 15%
Annual bonus
Share schemes
+2