Sr Network Security Engineer With WAAP

Birlasoft

Bengaluru

On-site

INR 3,500,000 - 6,000,000

Full time

4 days ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

Birlasoft is seeking an experienced WAAP security expert in Bangalore to architect, implement, and manage WAAP platforms including WAF, API security, and bot protection. The role focuses on design of cloud-native and on-prem WAAP solutions, with emphasis on OWASP Top 10 protections and DDoS defenses.

You will collaborate with application teams to onboard apps, perform risk reviews, and enforce strong security controls while maintaining performance.

Qualifications

  • Experience with WAAP platforms, preferably Akamai.
  • Knowledge of OWASP Top 10 (Web & API) security.
  • Hands-on with WAF policy creation and tuning.
  • API security controls and bot mitigation.
  • DDoS protection architecture (L3-L7).
  • Secure app architectures (monolith, microservices, APIs).
  • CI/CD security integration (nice to have).

Responsibilities

  • Architect, implement, and manage WAAP platforms.
  • Design and deploy WAAP solutions using Akamai Imperva and cloud WAFs.
  • Develop and maintain custom WAF rules and policies.
  • Tune false positives and manage rule lifecycles.
  • Enable API discovery and protect against OWASP API Top 10.
  • Integrate WAAP with SIEM/SOAR and identity providers.
  • Onboard applications and perform security assessments.
  • Lead WAAP incident response and root cause analysis.
  • Track security metrics and KPIs.
  • Ensure CIS/NIST/Zero Trust compliance.

Skills

WAAP Platforms
Akamai
WAF Policy
API Security
Bot Mitigation
DDoS Protection
Cloud WAFs
SIEM/SOAR
Threat Intelligence
OWASP Top 10
DevSecOps

Tools

Thales Imperva
Azure WAF
AWS WAF
Cloud-native WAFs

Job description

Job Description:

Area(s) of responsibility

Skills: Network Security-WAAP

Experience: 8-11 years

Location: Bangalore Only

Key Responsibilities
WAAP Responsibilities (Primary Focus)
  • Architect, implement, and manageWAAP platforms, including:
    • Web Application Firewall (WAF)
    • API Security (discovery, protection, runtime analysis)
    • Bot Management
    • DDoS Protection (L3-L7)
  • Design and deploy WAAP solutions using platforms such as:
    • Thales Imperva
    • Cloud-native WAFs (Azure, AWS WAF) or equivalent
  • Develop and maintaincustom WAF rules, security policies, and signaturesto protect critical applications.
  • Performfalse positive tuning, policy optimization, and rule lifecycle management.
  • EnableAPI discovery, schema enforcement, and protection against OWASP API Top 10 threats.
  • Integrate WAAP with:
    • SIEM/SOAR platforms
    • Identity providers
    • Threat intelligence feeds
  • Collaborate with application teams to:
    • Onboard applications into WAAP platforms
    • Performsecurity assessments and risk reviews
    • Ensure minimal performance impact while enforcing strong security controls
  • Implement protection againstOWASP Top 10 vulnerabilities(SQLi, XSS, RCE, etc.).
  • LeadWAAP incident responseand root cause analysis for application-layer attacks.
  • Define and trackapplication security metrics and KPIs(attack trends, mitigation effectiveness).
  • Ensure compliance with security frameworks (CIS, NIST, Zero Trust, data protection standards).
WAAP & Application Security Expertise (Mandatory)
  • Strong experience withWAAP platforms(Akamai preferred; Cloud WAF or equivalent accepted).
  • Deep understanding of:
    • OWASP Top 10 (Web & API)
    • Application-layer threats and mitigation techniques
  • Hands-on experience in:
    • WAF policy creation and tuning
    • API security controls (schema validation, authentication enforcement)
    • Bot mitigation strategies
    • DDoS protection architecture (L3-L7)
  • Experience in:
    • Traffic analysis (HTTP/HTTPS, TLS inspection)
    • Behavioral-based threat detection
  • Strong understanding of:
    • Secure application architectures (monolith, microservices, APIs)
    • DevSecOps integration and CI/CD security controls (nice to have)
Network Security & Infrastructure
  • Strong hands-on experience in:
    • Firewalls (Fortinet, Palo Alto, Juniper)
    • IDS/IPS, VPN, SIEM
  • Expertise in:
    • Firewall policy design, NAT, routing, inspection, and threat prevention
  • Experience in designing secure:
    • Hybrid (on-prem + cloud + internet-facing) environments
  • Experience in:
    • Proxy architectures (forward/reverse)
Requirements
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Network Security Architect With WAAP
Network Security Architect With WAAP

Birlasoft • Bengaluru

On-site
INR 2,500,000 - 4,000,000
Network Security Architect - WAAP Specialist
Network Security Architect - WAAP Specialist

Birlasoft Limited • Bengaluru

On-site
INR 2,500,000 - 4,200,000
Network Security Engineer - Web Application and API Protection
Network Security Engineer - Web Application and API Protection

Birlasoft Limited • Bengaluru

On-site
INR 1,800,000 - 2,400,000
Network Security Consultant - Mumbai
Network Security Consultant - Mumbai

Inspirisys • Mumbai

On-site
INR 1,400,000 - 2,100,000
Network Security Engineer
Network Security Engineer

LTM • Hyderabad, Pune District, Bengaluru

Hybrid
INR 1,200,000 - 1,800,000
Network Security Lead
Network Security Lead

Cynosure Corporate Solutions • Chennai District

On-site
INR 2,500,000 - 4,000,000
Security Architect
Security Architect

Accenture in India • Bengaluru

On-site
INR 1,000,000 - 1,500,000
Cloud Security Engineer (GCP & WAF)
Cloud Security Engineer (GCP & WAF)

Zettamine Labs • Bengaluru, Mumbai, Hyderabad

Hybrid
INR 2,500,000 - 4,000,000
Hiring GCP Cloud WAF Engineer
Hiring GCP Cloud WAF Engineer

2coms • Bengaluru

On-site
INR 1,800,000 - 2,800,000
Azure Cloud Workload Security WAF
Azure Cloud Workload Security WAF

Purview Services • Ernakulam

Hybrid
INR 2,500,000 - 4,000,000