Lead Firewall Security Engineer

Lead Firewall Security Engineer

Posted 2 weeks ago by HOK Consulting - Technical Recruitment Consultancy

Negotiable
Undetermined
Remote
United Kingdom

Summary: The Lead Firewall Security Engineer role requires a seasoned professional with over 8 years of experience, focusing on enhancing security through automation for the F5 Web Application Firewall platform. The position emphasizes the need for expertise in SOC, Threat, Forensics, or CSIRT backgrounds, along with a solid understanding of web application security and the OWASP Top 10. Candidates should also possess skills in Infrastructure as Code and various automation tools to streamline DevOps processes. This is a long-term remote contract position with no visa sponsorship available.

Key Responsibilities:

  • Developing and delivering automation for the WAF platform.
  • Design, implement, and optimize automation solutions for the F5 Web Application Firewall (WAF) platform.
  • Develop and manage Terraform manifests for consistent and scalable infrastructure provisioning.
  • Utilize Jenkins, JIRA, GitHub, and Python to enhance automation and streamline DevOps processes.
  • Write and maintain scripts for infrastructure automation, minimizing manual intervention.

Key Skills:

  • Proven experience with WAF platforms: Akamai, F5, Azure WAF, AWS WAF, Imperva, Vultr, NexusGuard.
  • Strong understanding of CRS tuning, regex optimization, and transformation logic.
  • Expertise in IDS/IPS platforms: Snort, Cisco, Corero.
  • Hands-on experience in SIEM tools: ArcSight, Splunk.
  • Solid foundation in cloud security (AWS) including IAM, Shield, CloudWatch, CloudTrail.

Salary (Rate): undetermined

City: undetermined

Country: United Kingdom

Working Arrangements: remote

IR35 Status: undetermined

Seniority Level: undetermined

Industry: IT

Detailed Description From Employer:

Job Title: Lead Firewall Security Engineer (8+ Years of experience)

Duration: long-term contract

Location: Remote

Visa: No Student / No PSW Visa

We are looking for people with: SOC / Threat / Forensics or CSIRT backgrounds—very experienced with analyzing security logs to quickly ascertain TP/FP conviction and the techniques to except Ideally some AppSec/DevSecOps or ethical hacking experience—they need a good understanding of Web Application attacks and security; they must be familiar with the OWASP Top 10

Key Responsibilities

  • Developing and Delivering Automation for WAF Platform – Design, implement, and optimize automation solutions for the F5 Web Application Firewall (WAF) platform to enhance security, manageability, and efficiency.
  • Infrastructure as Code (IaC) – Develop and manage Terraform manifests for consistent and scalable infrastructure provisioning.
  • Tool Proficiency – Utilize Jenkins, JIRA, GitHub, and Python to enhance automation and streamline DevOps processes.
  • Scripting & Automation – Write and maintain scripts for infrastructure automation, minimizing manual intervention.

Skills Requirements:

  • Proven experience with WAF platforms : Akamai, F5, Azure WAF, AWS WAF, Imperva, Vultr, NexusGuard.
  • Strong understanding of CRS tuning , regex optimization, and transformation logic
  • Expertise in IDS/IPS platforms : Snort, Cisco, Corero
  • Hands-on experience in SIEM tools : ArcSight, Splunk
  • Solid foundation in cloud security (AWS) including IAM, Shield, CloudWatch, CloudTrail