Analyst - WAF and Zero Trust Engineer

Alignity

Hyderabad

On-site

INR 600,000 - 1,000,000

Part time

14 days+
Application generator

Turn this role into an interview — a resume and cover letter built around what this employer wants.

Get past ATS filters

Job summary

Alignity is seeking an Application Security Engineer to join our CyberSecurity team in Hyderabad on a hybrid contract-to-hire basis. You will protect web applications with WAFs, manage Zero Trust Proxy policies, and respond to security incidents in collaboration with SOC and engineering teams.

The role requires 4+ years in security, with 2+ years in network security and 2+ years in application security, plus strong knowledge of OWASP, cloud security, and automation using Python/Terraform.

Qualifications

  • Bachelor’s degree in Information Security, IT, CS, Engineering or equivalent.
  • 4+ years in security (2+ years in network security and 2+ years in application security).
  • Strong knowledge of web app security concepts and OWASP Top 10 mitigations.

Responsibilities

  • Deploy, configure, and maintain Web Application Firewall systems to protect web applications.
  • Deploy and manage Zero Trust Proxy and policy connectors.
  • Monitor, analyze security events and logs; respond with SOC teams.
  • Develop and maintain detection rules and alerts using logs.
  • Collaborate across teams to integrate WAF with CDNs like Akamai.
  • Provide guidance on security best practices to application teams.
  • Automate tasks using Python and Terraform; work with cloud platforms.

Skills

Web app security
Incident response
Threat detection
Automation with Python
Security architecture
Communication

Education

Bachelor's Degree

Tools

Akamai WAF
Terraform
Python
AWS
Azure
GCP
ServiceNow

Job description

Do you love a career where you Experience, Grow & Contribute at the same time, while earning at least 10% above the market? If so, we are excited to have bumped onto you. Learn how we are redefining the meaning of work, and be a part of the team raved by Clients, Job-seekers and Employees. Jobseeker Video Testimonials Employee Glassdoor Reviews If you are an Application Security Engineer looking for excitement, challenge and stability in your work, then you would be glad to come across this page. We are an IT Solutions Integrator/Consulting Firm helping our clients hire the right professional for an exciting long-term project. Here are a few details. The Application Security Engineer candidate will have a strong background in cybersecurity and understanding of web application and zero trust proxy security practices. The primary responsibility of the Engineer will be to ensure the effective deployment, configuration, and maintenance of our systems for Global customers. This role requires expertise in Web Application Firewalls, Zero Trust Proxy, Cloud security as well as experience with alerts and detections and data log analysis. This role will be part of the Application Edge Protection Service within the CyberSecurity pillar.

Role: Application Security Engineer

Location: Hyderabad

Experience: 4-8 Years

Work Mode: Hybrid

Type: Contract to Hire

Notice Period: Immdiate

Role Specific Responsibilities
  • Web Application Firewall Management: Deploy, configure, and maintain web application firewall systems to protect our web applications against potential threats and vulnerabilities.
  • Zero Trust Proxy: Deploy, configure, and Zero Trust Proxy systems to support identity gates to include defining and maintaining policies and connectors.
  • Security Incident Response: Monitor and analyze security events, alerts, and logs generated by the web application firewall systems. Investigate and respond to potential security incidents, working closely with the Security Operations Center (SOC) and other Cybersecurity teams.
  • Detection and Analysis: Develop and maintain detection rules, alerts, and reports to proactively identify and mitigate risks utilizing logs. Provides investigation findings to relevant business units to help improve information security posture.
  • CDN Integration: Collaborate with the infrastructure and application teams to integrate the web application firewall with CDNs such Akamai and Radware, ensuring seamless traffic management and content delivery.
  • Vulnerability Assessment: Utilize WAF data to identify potential vulnerabilities and recommend appropriate remediation measures to customers.
  • Documentation and Reporting: Maintain accurate documentation of WAF configurations, policies, and procedures. Prepare reports and metrics related to web application security, including trends, incident summaries, and mitigation strategies, as needed.
  • Collaboration: This role requires ability to explain security details to non- security teams such as application and engineering teams. Must be able to collaborate with cross-functional teams to ensure effective communication, knowledge sharing, and alignment of security objectives. Provide guidance to application teams on application security best practices and security awareness, as needed.
  • Automation: This role required individuals who are knowledgeable of automation processes, python terraform, use of AI and Cloud native concepts with AWS, Azure and Google cloud.
Education (degree)

Bachelor’s Degree or equivalent experience

Other (Explain): Bachelor's Degree/University Degree and/or Undergraduate Diploma in Information Security, Information Technology, Computer Science, Engineering or equivalent years in experience Years of Experience: 4+ years with minimum 2 years in network security and 2 years in application security

Technical Skills

Experience in the following areas are strongly preferred:

  • Strong knowledge of web application security concepts, OWASP Top 10 vulnerabilities, and related mitigation techniques.
  • Understanding of authentication and authorization flows (OAuth, SAMAL, OIDC)
  • Strong technical background with Web Application Firewall (WAF), Zero Trust Network Access, APIs, and Cloud security policies.
  • Understanding of API security issues and API authentication.
  • Previous experience in a Security Operations Center (SOC) or performing cybersecurity analysis, log analysis, and threat detection is highly desirable.
  • Good understanding of information security principles and policy enforcement.
  • Solid comprehension of HTTP protocol and demonstrated ability to troubleshoot using HTTP logs
  • Strong technical background in web development and familiarity with potential attack vectors/methods
  • Understanding of Authentication, DNS, Networks, Firewalls, SSL Certificates
  • Knowledge of Web Application Firewall technologies (Akamai)
  • Knowledge of Zero Trust framework and technologies
  • Experience integrating zero trust with WAF
  • Familiarity with cloud security services, concepts, and best practices (AWS, Azure, GCP)
  • Infrastructure as code (Terraform) and automation using Python
  • Ethical hacking
  • ServiceNow experience
  • Technical documentation experience
  • CISSP, CISM, CISA, GIAC or other security certifications are desired
  • Familiarity and comfortability using AI tools
Soft Skills
  • High degree of personal integrity and ethics with a passion for protecting people and systems against cybersecyurity threats
  • Excellent written and oral communication and presentation skills for technical and business audiences
  • Advanced critical thinking, problem solving and technical troubleshooting abilities
  • Track record of getting things done quickly and with high levels of quality
  • Demonstrated ability to operate in a dynamic, evolving environment
  • Ability to coordinate completion of multiple tasks and meet aggressive time frames
  • Strong analytical skills with high attention to detail and accuracy
  • Experience with and the ability to thrive in a complex and fast-paced technology and/or information security organization, within a large enterprise environment
  • Bi-lingual a plus
Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Network Security Consultant - Mumbai
Network Security Consultant - Mumbai

Inspirisys • Mumbai

On-site
INR 1,400,000 - 2,100,000
Security Researcher II (WAF)
Security Researcher II (WAF)

Lever, Inc. • Bengaluru

On-site
INR 1,200,000 - 1,800,000
Application security
Application security

Codincity Digital Technologies • Chennai District

On-site
INR 3,500,000 - 5,500,000
Staff Engineer - Application Security
Staff Engineer - Application Security

UST • Bengaluru

On-site
INR 2,400,000 - 4,200,000
Senior Network & Security Engineer - Hybrid - Bengaluru -contract role
Senior Network & Security Engineer - Hybrid - Bengaluru -contract role

World Wide Technology • Bengaluru

Hybrid
INR 900,000 - 1,500,000
Security Engineer
Security Engineer

Cloudxtreme • Hyderabad

On-site
INR 1,200,000 - 1,800,000
Security Researcher II (WAF)
Security Researcher II (WAF)

Safe • Bengaluru

On-site
INR 1,200,000 - 1,800,000
Application Security Engineer
Application Security Engineer

Omnissa • Bengaluru

On-site
INR 2,800,000 - 4,600,000
Sr. Security Engineer - Application and Data Security
Sr. Security Engineer - Application and Data Security

IFTAS - Indian Financial Technology & Allied Services • Mumbai

On-site
INR 1,800,000 - 2,800,000
SECURITY ARCHITECT L1
SECURITY ARCHITECT L1

Wipro Technologies • Bengaluru

On-site
INR 1,800,000 - 2,400,000