Associate Director - F5 Engineer
Location: Pan India
Employment Type: C2H
Job Description
We are seeking an experienced Associate Director - F5 Engineer with strong expertise in Web Application Firewall (WAF) Engineering, Web Application Security, Security Log Analysis, and Cloud Security. The ideal candidate should come from a Cyber Security, SOC, or CSIRT background with extensive experience analyzing web security threats and managing enterprise-scale WAF platforms across cloud and on-premises environments.
This role provides an opportunity to become a subject matter expert in multi-vendor WAF technologies, including F5, Akamai, AWS WAF, Azure WAF, GCP WAF, and ModSecurity.
Key Responsibilities
- Design, implement, configure, and optimize WAF solutions across cloud and on-prem environments.
- Manage and tune security policies to enhance protection while minimizing false positives.
- Analyze web application security logs and investigate security incidents in collaboration with SOC/CSIRT teams.
- Develop custom WAF rules and security controls to address emerging threats.
- Implement rate limiting, bot mitigation, and application-layer security controls.
- Support HTTPS inspection, SSL/TLS termination, and certificate management.
- Work closely with DevSecOps teams to integrate security controls into CI/CD pipelines.
- Manage WAF logging, monitoring, reporting, and incident response activities.
- Collaborate with internal stakeholders and provide technical guidance on web security best practices.
- Create and maintain technical documentation, standards, and operational procedures.
Required Skills
- Strong experience with F5 Advanced WAF/ASM and other WAF platforms.
- Hands-on experience with AWS WAF, Azure WAF, GCP WAF, Akamai, or ModSecurity.
- Deep understanding of OWASP Top 10, web application attacks, and mitigation techniques.
- Experience in Security Operations (SOC), CSIRT, Incident Response, and Threat Analysis.
- Expertise in Security Log Analysis using SIEM platforms.
- Strong knowledge of HTTPS, SSL/TLS, Certificate Management, and Network Security.
- Experience with DevSecOps, Security Automation, and CI/CD environments.
- Understanding of IAM/IDAM concepts and access control management.
- Strong stakeholder management and communication skills.
Preferred Experience
- Experience delivering enterprise cybersecurity or infrastructure transformation projects.
- Exposure to Agile methodologies.
- Experience supporting large-scale globally distributed environments.
- Industry certifications in F5, Cloud Security, or Cyber Security are advantageous.