
Lead Firewall Security Engineer
Posted 2 weeks ago by HOK Consulting - Technical Recruitment Consultancy
Negotiable
Undetermined
Remote
United Kingdom
Summary: The Lead Firewall Security Engineer role requires a seasoned professional with over 8 years of experience, focusing on enhancing security through automation for the F5 Web Application Firewall platform. The position emphasizes the need for expertise in SOC, Threat, Forensics, or CSIRT backgrounds, along with a solid understanding of web application security and the OWASP Top 10. Candidates should also possess skills in Infrastructure as Code and various automation tools to streamline DevOps processes. This is a long-term remote contract position with no visa sponsorship available.
Key Responsibilities:
- Developing and delivering automation for the WAF platform.
- Design, implement, and optimize automation solutions for the F5 Web Application Firewall (WAF) platform.
- Develop and manage Terraform manifests for consistent and scalable infrastructure provisioning.
- Utilize Jenkins, JIRA, GitHub, and Python to enhance automation and streamline DevOps processes.
- Write and maintain scripts for infrastructure automation, minimizing manual intervention.
Key Skills:
- Proven experience with WAF platforms: Akamai, F5, Azure WAF, AWS WAF, Imperva, Vultr, NexusGuard.
- Strong understanding of CRS tuning, regex optimization, and transformation logic.
- Expertise in IDS/IPS platforms: Snort, Cisco, Corero.
- Hands-on experience in SIEM tools: ArcSight, Splunk.
- Solid foundation in cloud security (AWS) including IAM, Shield, CloudWatch, CloudTrail.
Salary (Rate): undetermined
City: undetermined
Country: United Kingdom
Working Arrangements: remote
IR35 Status: undetermined
Seniority Level: undetermined
Industry: IT
Job Title: Lead Firewall Security Engineer (8+ Years of experience)
Duration: long-term contract
Location: Remote
Visa: No Student / No PSW Visa
We are looking for people with: SOC / Threat / Forensics or CSIRT backgrounds—very experienced with analyzing security logs to quickly ascertain TP/FP conviction and the techniques to except Ideally some AppSec/DevSecOps or ethical hacking experience—they need a good understanding of Web Application attacks and security; they must be familiar with the OWASP Top 10
Key Responsibilities
- Developing and Delivering Automation for WAF Platform – Design, implement, and optimize automation solutions for the F5 Web Application Firewall (WAF) platform to enhance security, manageability, and efficiency.
- Infrastructure as Code (IaC) – Develop and manage Terraform manifests for consistent and scalable infrastructure provisioning.
- Tool Proficiency – Utilize Jenkins, JIRA, GitHub, and Python to enhance automation and streamline DevOps processes.
- Scripting & Automation – Write and maintain scripts for infrastructure automation, minimizing manual intervention.
Skills Requirements:
- Proven experience with WAF platforms : Akamai, F5, Azure WAF, AWS WAF, Imperva, Vultr, NexusGuard.
- Strong understanding of CRS tuning , regex optimization, and transformation logic
- Expertise in IDS/IPS platforms : Snort, Cisco, Corero
- Hands-on experience in SIEM tools : ArcSight, Splunk
- Solid foundation in cloud security (AWS) including IAM, Shield, CloudWatch, CloudTrail