Senior Cybersecurity Engineer
Job Description
Senior Cybersecurity Engineer focusing on Web Application and Network Protection leads the design, implementation, administration, and ongoing support of enterprise web and network security solutions.
Role Overview
- Location: Columbus, OH (Hybrid)
- Employment Type: Temp-to-Hire
- Duration: 12 Month
- Hourly Salary: USD 60 - 67
Responsibilities
- Lead the setup, configuration, ongoing administration, and support of the F5 Distributed Cloud XC Web Application Firewall
- Tune and maintain WAF policies, signatures, and related security controls
- Deploy and oversee API protection measures
- Configure and manage bot mitigation capabilities
- Implement and supervise DDoS protection strategies
- Establish and enforce geolocation based access policies
- Configure rate limiting to regulate traffic flow
- Create and manage custom WAF challenges
- Optimize WAF policies to reduce false positives
- Assist onboarding of applications into WAF services
- Conduct policy reviews and pursue continual optimization
- Participate in incident response for web application attacks
- Protect enterprise applications against OWASP Top 10 vulnerabilities
- Guard against injection attacks targeting enterprise applications
- Mitigate credential stuffing threats
- Counter clickjacking risks
- Prevent Cross-Site Scripting (XSS) vulnerabilities
- Guard against Cross-Site Request Forgery (CSRF) attacks
- Review application architectures and recommend security improvements
- Collaborate with development teams during onboarding and troubleshooting of applications
- Support and manage Palo Alto Networks Next-Generation Firewalls (NGFW)
- Implement and maintain network segmentation
- Configure Site-to-Site and Remote Access VPNs
- Manage firewall rules and network security policies
- Implement security controls and perform network troubleshooting
- Respond to security incidents and participate in an on-call rotation
- Monitor and report on enterprise security posture
- Automate repetitive security operations where feasible
- Engage in Incident Response activities
- Conduct threat hunting and security assessments
- Remediate vulnerabilities and perform root cause analysis
- Perform security architecture reviews
Requirements
- Education: Bachelor's degree in Computer Science, Information Security, Cybersecurity, or related field, or equivalent experience
- Experience: 5+ years of cybersecurity or network security experience
- WAF: 3+ years of hands-on Web Application Firewall experience
Technologies
- F5 Distributed Cloud XC WAF
- Palo Alto Networks NGFW and Firewalls
- HTTP/HTTPS, TLS/SSL
- REST APIs, DNS
- Load Balancing, VPN Technologies
- WAF Policy Management, API Protection, Bot Defense, DDoS Protection
- Vulnerability Management