WAF Engineer

Nemetschek Group

Hyderabad

On-site

INR 1,200,000 - 1,800,000

Full time

14 days+
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Job summary

Nemetschek Group is seeking a skilled Web Application Firewall (WAF) Engineer to safeguard web apps and APIs by deploying, configuring, and maintaining modern WAF solutions. The role covers cloud-native WAF services (AWS WAF, Azure WAF, GCP Cloud Armor) and edge WAFs like Cloudflare.

Responsibilities include deploying policies, creating custom rules, integrating with SIEM, and collaborating with DevOps to troubleshoot traffic and false positives.

Qualifications

  • Strong understanding of HTTP/S and web application security.
  • Experience managing WAF solutions (Cloudflare, AWS WAF, Azure WAF).
  • Experience with log management and SIEM integrations.

Responsibilities

  • Deploy, configure, and tune WAF policies across environments.
  • Implement custom rules to mitigate threats and API vulnerabilities.
  • Integrate WAF with SIEM or monitoring systems for real-time visibility.

Skills

HTTP/S protocols
Web API architecture
WAF troubleshooting
DevOps CI/CD
Python/JS scripting
Security analytics

Tools

Cloudflare
AWS WAF
Azure WAF

Job description

We are seeking a skilled Web Application Firewall (WAF) Engineer to join our security team. Candidate for this role is in charge for safeguarding our web applications and APIs by deploying, configuring, and maintaining modern WAF solutions. The ideal candidate must have theoretical and hands-on experience with both cloud-native WAF services (such as AWS WAF, Azure WAF, GCP Cloud Armor) and edge WAF solutions such as Cloudflare.

ROLES AND RESPONSIBILITY:
WAF Management & Configuration
  • Deploy, configure, and tune WAF policies and rules across multiple environments (different applications for different brands).
  • Implement custom rules to mitigate emerging security threats, bot attacks or API vulnerabilities.
  • Partner with developers/application teams to align WAF rules with business requirements.
  • Integrate WAF solutions with SIEM or other monitoring systems for real-time visibility and reporting.
  • Investigate and resolve issues related to WAF functionality, performance, and traffic flow and support developers and DevOps teams in troubleshooting blocked traffic and false positives.
Security Operations
  • Create meaningful alerts to trigger when a specific incident or changes in traffic pattern is happening.
  • Monitor WAF logs and alerts to detect and respond to suspicious activity.
  • Continuously update rule sets to adapt to emerging threats.
  • Conduct periodic audits to ensure WAF coverage and compliance with security policies.
Collaboration & Documentation
  • Maintain clear documentation of WAF policies, configurations, and troubleshooting guides.
  • Collaboration with other colleagues in Security Operation Center and Network Operation Centers.
WHO ARE WE LOOKING FOR:
  • Strong understanding of HTTP/S protocols, web application/API architecture, and common web application/API attack and defense mechanism.
  • Proven experience managing and troubleshooting WAF solutions (Cloudflare, AWS WAF, Azure WAF, or similar).
  • Familiarity with API security, CDN integrations, and bot management solutions.
  • Experience in log management solutions (e.g., Splunk, ELK, OpenSearch etc.) and integrating WAF logs into other platforms.
  • Working knowledge of DevOps best practices (CI/CD pipelines, Infrastructure as Code, Terraform/CloudFormation preferred).
  • Programming skills (Python, JavaScript etc.) for creating automation workflows or relevant applications to facilitate the day to day tasks.
  • Strong analytical and problem-solving skills with the ability to work in high-pressure environments.
SKILLS PREFERRED:
  • Security relevant certifications such as AWS Security Specialty, Cloudflare Certified Expert, CEH, or CISSP
Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Senior WAF Engineer
Senior WAF Engineer

Codincity Digital Technologies • Hyderabad

Hybrid
INR 1,800,000 - 3,200,000
Senior Web Application Firewall (WAF) Engineer
Senior Web Application Firewall (WAF) Engineer

TalentAmp • India

Remote
INR 1,000,000 - 1,500,000
Sr WAF Engineer
Sr WAF Engineer

Zettamine Labs • Hyderabad

Hybrid
INR 2,500,000 - 4,000,000
Cyber Security Engineer - WAF
Cyber Security Engineer - WAF

Meta Infotech • Mumbai

On-site
INR 1,400,000 - 2,100,000
network security
network security

Cloudxtreme • Hyderabad, Chennai District, Bengaluru

Hybrid
INR 1,500,000 - 2,100,000
Senior Network Engineer
Senior Network Engineer

CtrlS Datacenters • Hyderabad

On-site
INR 1,200,000 - 1,800,000
Senior Web Application Firewall Consultant
Senior Web Application Firewall Consultant

EY • Thiruvananthapuram

On-site
INR 1,200,000 - 1,700,000
F5 WAF & Ddos- L3 Security Engineer
F5 WAF & Ddos- L3 Security Engineer

Neev • Mumbai

On-site
INR 1,600,000 - 3,400,000
Network Security(Akamai WAF)
Network Security(Akamai WAF)

Cloudxtreme • Chennai District, Bengaluru

Hybrid
INR 900,000 - 1,200,000
Lead, Edge Security Ops- WAF and Email Security
Lead, Edge Security Ops- WAF and Email Security

Fidelity Investments • Bengaluru

On-site
INR 1,800,000 - 2,400,000