Network Security Architect with WAAP

Birlasoft

Bengaluru

On-site

INR 1,800,000 - 3,600,000

Full time

12 days ago
Application generator

Don’t send a generic resume — generate a resume and cover letter tailored to this exact role.

Get past ATS filters

Job summary

Birlasoft is seeking an experienced WAAP and Application Security specialist in Bangalore to architect, implement, and manage WAAP platforms across WAF, API security, and bot management. You will design solutions using Thales Imperva and cloud-native WAFs, develop security policies, and lead incident response for application-layer attacks.

The role requires hands-on experience with OWASP Top 10, DDoS protection, and CI/CD security integration, while collaborating with application teams to

Qualifications

  • 8-11 years of WAAP and application security experience.
  • Strong knowledge of OWASP Top 10 Web & API threats.
  • Hands-on WAF policy creation and tuning.
  • Experience with cloud-native WAFs and security platforms.
  • Ability to lead incident response and provide root-cause analysis.
  • Experience in DevSecOps integration is a plus.

Responsibilities

  • Architect, implement, and manage WAAP platforms including: WAF, API security, Bot Management, and DDoS Protection (L3–L7).
  • Design WAAP solutions on platforms such as Thales Imperva and cloud-native WAFs (Azure, AWS).
  • Develop and maintain custom WAF rules, security policies, and signatures to protect critical applications.
  • Perform false positive tuning, policy optimization, and rule lifecycle management.
  • Enable API discovery, schema enforcement, and protection against OWASP API Top 10 threats.
  • Integrate WAAP with SIEM/SOAR platforms and identity providers.
  • Collaborate with application teams to onboard apps, perform security assessments and risk reviews, and ensure minimal performance impact.
  • Implement protection against OWASP Top 10 vulnerabilities (SQLi, XSS, RCE, etc.).
  • Lead WAAP incident response and root cause analysis for application-layer attacks.
  • Define and track application security metrics and KPIs (attack trends, mitigation effectiveness).
  • Ensure compliance with security frameworks (CIS, NIST, Zero Trust, data protection standards).

Skills

WAAP
WAF
APISecurity
Bot Management
DDoS Protection
OWASP Top10
Policy Tuning
DevSecOps
Threat Intel

Tools

Akamai
Imperva
Thales Imperva
Azure WAF
AWS WAF

Job description

  • Architect, implement, and manage WAAP platforms, including:
  • Web Application Firewall (WAF)
  • API Security (discovery, protection, runtime analysis)
  • Bot Management
  • Design and deploy WAAP solutions using platforms such as:
  • Thales Imperva
  • Cloud-native WAFs (Azure, AWS WAF) or equivalent
  • Develop and maintain custom WAF rules, security policies, and signatures to protect critical applications.
  • Perform false positive tuning, policy optimization, and rule lifecycle management.
  • Enable API discovery, schema enforcement, and protection against OWASP API Top 10 threats.
  • Integrate WAAP with:
  • SIEM/SOAR platforms
  • Identity providers
  • Collaborate with application teams to:
  • Onboard applications into WAAP platforms
  • Perform security assessments and risk reviews
  • Ensure minimal performance impact while enforcing strong security controls
  • Lead WAAP incident response and root cause analysis for application-layer attacks.
  • Define and track application security metrics and KPIs (attack trends, mitigation effectiveness).
  • Ensure compliance with security frameworks (CIS, NIST, Zero Trust, data protection standards).
Area(s) of responsibility
Skills: Network Security-WAAP
Experience: 8-11 years
Location: Bangalore Only
Key Responsibilities
WAAP Responsibilities (Primary Focus)
  • Architect, implement, and manage WAAP platforms, including:
    • Web Application Firewall (WAF)
    • API Security (discovery, protection, runtime analysis)
    • Bot Management
    • DDoS Protection (L3–L7)
  • Design and deploy WAAP solutions using platforms such as:
    • Thales Imperva
    • Cloud-native WAFs (Azure, AWS WAF) or equivalent
  • Develop and maintain custom WAF rules, security policies, and signatures to protect critical applications.
  • Perform false positive tuning, policy optimization, and rule lifecycle management.
  • Enable API discovery, schema enforcement, and protection against OWASP API Top 10 threats.
  • Integrate WAAP with:
    • SIEM/SOAR platforms
    • Identity providers
    • Threat intelligence feeds
  • Collaborate with application teams to:
    • Onboard applications into WAAP platforms
    • Perform security assessments and risk reviews
    • Ensure minimal performance impact while enforcing strong security controls
  • Implement protection against OWASP Top 10 vulnerabilities (SQLi, XSS, RCE, etc.).
  • Lead WAAP incident response and root cause analysis for application-layer attacks.
  • Define and track application security metrics and KPIs (attack trends, mitigation effectiveness).
  • Ensure compliance with security frameworks (CIS, NIST, Zero Trust, data protection standards).
WAAP & Application Security Expertise (Mandatory)
  • Strong experience with WAAP platforms (Akamai preferred; Cloud WAF or equivalent).
  • Deep understanding of:
    • OWASP Top 10 (Web & API)
    • Application-layer threats and mitigation techniques
  • Hands-on experience in:
    • WAF policy creation and tuning
    • API security controls (schema validation, authentication enforcement)
    • Bot mitigation strategies
    • DDoS protection architecture (L3–L7)
  • Experience in:
    • Traffic analysis (HTTP/HTTPS, TLS inspection)
    • Behavioral-based threat detection
  • Strong understanding of:
    • Secure application architectures (monolith, microservices, APIs)
    • DevSecOps integration and CI/CD security controls (nice to have)
Network Security & Infrastructure
  • Strong hands-on experience in:
    • Firewalls (Fortinet, Palo Alto, Juniper)
    • IDS/IPS, VPN, SIEM
  • Expertise in:
    • Firewall policy design, NAT, routing, inspection, and threat prevention
  • Experience in designing secure:
    • Hybrid (on-prem + cloud + internet-facing) environments
  • Experience in:
    • Proxy architectures (forward/reverse)
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Sr Network Security Engineer
Sr Network Security Engineer

Birlasoft • Bengaluru

On-site
INR 4,000,000 - 6,800,000
Network Security Consultant - Mumbai
Network Security Consultant - Mumbai

Inspirisys • Mumbai

On-site
INR 1,400,000 - 2,100,000
Cloud Native WAF Engineer
Cloud Native WAF Engineer

LTM • Dadri, Pune District, Bengaluru

Hybrid
INR 1,500,000 - 2,600,000
Senior WAF Engineer
Senior WAF Engineer

Codincity Digital Technologies • Hyderabad

Hybrid
INR 1,800,000 - 3,200,000
Network Security Engineer
Network Security Engineer

LTM • Hyderabad, Pune District, Bengaluru

Hybrid
INR 1,200,000 - 1,800,000
Sr WAF Engineer
Sr WAF Engineer

Zettamine Labs • Hyderabad

Hybrid
INR 2,500,000 - 4,000,000
Application Security Engineer
Application Security Engineer

Alignity Solutions • Hyderabad

Hybrid
INR 1,200,000 - 2,400,000
Security Architect
Security Architect

Accenture in India • Bengaluru

On-site
INR 1,000,000 - 1,500,000
Senior Technical Architect AWS CloudFront WAF Edge Architectur
Senior Technical Architect AWS CloudFront WAF Edge Architectur

Spadtek Solutions • Hyderabad

Hybrid
INR 400,000 - 700,000
Network Security Lead
Network Security Lead

Cynosure Corporate Solutions • Chennai District

On-site
INR 2,500,000 - 4,000,000