WAF Engineer

WTW

Philippines

On-site

PHP 600,000 - 1,000,000

Full time

8 days ago

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

WTW is seeking an expert in web application security to analyse and tune WAF policies across multi-cloud environments. The role involves leading investigations into web attacks, developing custom WAF rules, and guiding transitions from detection to prevention modes.

You will collaborate with application owners and security stakeholders to ensure secure onboarding of internet-facing apps and provide SME guidance on WAF best practices. Extensive Azure WAF experience is highly valued.

Qualifications

  • Demonstrated experience investigating, analysing and resolving WAF false positives and false negatives.
  • Strong experience implementing WAF solutions in Detection mode and transitioning policies to Prevention/Block mode through tuning and validation.
  • Proven experience developing and maintaining custom WAF rules, rule exclusions, rate limiting controls and attack mitigation policies.

Responsibilities

  • Perform analysis and tuning of WAF policies to minimise false positives/negatives while maintaining security posture.
  • Design, implement, maintain and optimise WAF policies across multi-cloud environments.
  • Lead investigation and mitigation of web application attacks including OWASP Top 10, bot attacks and API abuse.
  • Develop and enhance custom WAF rules, exclusions, rate-limiting policies and bot protection controls.
  • Support transition of WAF policies from Detection to Prevention/Block mode through structured analysis and testing.

Education

Bachelor’s degree in Computer Science, Engineering, Information Technology

Tools

Terraform
Azure Front Door WAF
Azure Application Gateway WAF

Job description

  • Perform analysis and tuning of WAF policies to minimise false positives and false negatives while maintaining an appropriate security posture.
  • Design, implement, maintain and optimise WAF policies across multi-cloud environments.
  • Lead the investigation and mitigation of web application attacks, including OWASP Top 10 threats, bot attacks, credential stuffing, scraping, Layer 7 DDoS attacks and other web-based threats.
  • Develop, maintain and enhance custom WAF rules, managed rule exclusions, rate-limiting policies and bot protection controls.
  • Support transition of WAF policies from Detection mode to Prevention/Block mode through structured analysis, tuning, testing and stakeholder engagement.
  • Analyse attack patterns, logs and telemetry to identify emerging threats and implement effective mitigations.
  • Work closely with application owners, development teams and security stakeholders to ensure secure onboarding and operation of internet-facing applications.
  • Provide subject matter expertise for web application security, secure application delivery and WAF best practices.
  • Provide technical support to Audit & Compliance, Capacity Management, Lifecycle Management, Vulnerability Management and Risk Management Functions.
  • Provide technical leadership during major incidents and drive to quick resolutions.
  • Coach team members on a proactive basis, raising the team’s overall technical acumen.
  • Restore service and complete root cause analysis of all incidents, driving actions to mitigate the root cause and remove risk of reoccurrence.
  • Participate on the Technical Design Authority forum
  • Implement changes/POCs to the environment in a controlled manner, with implementation and test plans.
Description
Duties and Responsibilities
  • Perform analysis and tuning of WAF policies to minimise false positives and false negatives while maintaining an appropriate security posture.
  • Design, implement, maintain and optimise WAF policies across multi-cloud environments.
  • Lead the investigation and mitigation of web application attacks, including OWASP Top 10 threats, bot attacks, credential stuffing, scraping, Layer 7 DDoS attacks and other web-based threats.
  • Develop, maintain and enhance custom WAF rules, managed rule exclusions, rate-limiting policies and bot protection controls.
  • Support transition of WAF policies from Detection mode to Prevention/Block mode through structured analysis, tuning, testing and stakeholder engagement.
  • Analyse attack patterns, logs and telemetry to identify emerging threats and implement effective mitigations.
  • Work closely with application owners, development teams and security stakeholders to ensure secure onboarding and operation of internet-facing applications.
  • Provide subject matter expertise for web application security, secure application delivery and WAF best practices.
  • Provide technical support to Audit & Compliance, Capacity Management, Lifecycle Management, Vulnerability Management and Risk Management Functions.
  • Provide technical leadership during major incidents and drive to quick resolutions.
  • Coach team members on a proactive basis, raising the team’s overall technical acumen.
  • Restore service and complete root cause analysis of all incidents, driving actions to mitigate the root cause and remove risk of reoccurrence.
  • Participate on the Technical Design Authority forum
  • Implement changes/POCs to the environment in a controlled manner, with implementation and test plans.
Qualifications
  • Demonstrable experience investigating, analysing and resolving WAF false positives and false negatives.
  • Strong experience implementing WAF solutions in Detection mode and transitioning policies to Prevention/Block mode through appropriate tuning and validation.
  • Proven experience developing and maintaining custom WAF rules, rule exclusions, rate limiting controls and attack mitigation policies, rather than solely relying on out-of-the-box managed rules.
  • Extensive knowledge of web application attack vectors, including OWASP Top 10 vulnerabilities, SQL Injection, Cross-Site Scripting (XSS), Remote Code Execution (RCE), bot attacks, credential stuffing and API abuse.
  • Hands-on experience with attack mitigation, threat analysis and creation of bespoke security controls based on observed attack patterns.
  • Strong understanding of bot protection technologies, managed rule sets, policy tuning and wider web application security best practices.
  • Experience with Azure Front Door WAF and Azure Application Gateway WAF in enterprise-scale environments.
  • Experience working across multi-cloud environments and/or vendor-agnostic WAF platforms.
  • Experience deploying and managing WAF infrastructure using Terraform or other Infrastructure as Code (IaC) technologies.
  • Experience supporting large-scale production environments with responsibility for change implementation, incident response and threat mitigation.
  • Bachelor’s degree in Computer Science, Engineering, Information Technology strongly preferred, or relevant industry experience in related field.
  • Minimum 5 years’ experience in IT or Telecoms industry. Financial Services experience preferred.

WTW is an Equal Opportunity Employer

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

WAF Security Engineer: Policy Tuning & Attack Mitigation
WAF Security Engineer: Policy Tuning & Attack Mitigation

WTW • Philippines

On-site
PHP 600,000 - 1,000,000
Lead DevOps
Lead DevOps

Satellite Office • Pasig

On-site
Cyber Security Incident Response - Assistant Manager
Cyber Security Incident Response - Assistant Manager

Willis Towers Watson • España

On-site
PHP 3,690,000 - 4,921,000
Firewall Security Management
Firewall Security Management

Tata Consultancy Services • Philippines

On-site
PHP 900,000 - 1,300,000
Application Security Manager
Application Security Manager

PwC • Makati

On-site
PHP 1,200,000 - 1,600,000
IT Security Analyst
IT Security Analyst

CallTek • Cebu City

On-site
PHP 200,000 - 360,000
Web Application Firewall (WAF) Engineer
Web Application Firewall (WAF) Engineer

Bravissimo Resourcing Inc. • Manila

On-site
PHP 700,000 - 1,200,000
Performance Bonus
Incentives
13th Month Pay
+2
Application Security Engineer
Application Security Engineer

Interact Software • Metro Manila

On-site
PHP 1,200,000 - 1,800,000
IT Security Analyst
IT Security Analyst

CallTek, Inc. • Cebu City

On-site
Senior Security Consultant
Senior Security Consultant

Hunter's Hub Inc. • Taguig

On-site