WAF Engineer

WAF Engineer

Posted 1 week ago by HOK Consulting - Technical Recruitment Consultancy

Negotiable
Undetermined
Remote
United Kingdom

Summary: The WAF Security Engineer role focuses on developing and delivering automation solutions for the F5 Web Application Firewall (WAF) platform, emphasizing CI/CD pipeline development and infrastructure automation. The position requires expertise in WAF tuning, threat detection, and incident response, with a strong emphasis on enhancing cloud perimeter security and compliance with security standards. The ideal candidate will collaborate with cross-functional teams to integrate security solutions and streamline operations. This is a long-term contract position based remotely in the United Kingdom.

Key Responsibilities:

  • Developing and Delivering Automation for F5 WAF Platform – Design, implement, and optimize automation solutions for the F5 Web Application Firewall (WAF) platform to enhance security, manageability, and efficiency.
  • CI/CD Pipeline Development & Maintenance – Create and maintain customized CI/CD pipelines, ensuring seamless deployment and operational workflows.
  • Infrastructure as Code (IaC) – Develop and manage Terraform manifests for consistent and scalable infrastructure provisioning.
  • Tool Proficiency – Utilize Jenkins, JIRA, GitHub, and Python to enhance automation and streamline DevOps processes.
  • Scripting & Automation – Write and maintain scripts for infrastructure automation, minimizing manual intervention.
  • Integration & Collaboration – Work closely with cross-functional teams to integrate solutions, improve workflows, and drive DevOps best practices.
  • Proactive Research & Problem-Solving – Leverage company resources, research unknowns, and collaborate with relevant teams to overcome challenges.

Key Skills:

  • Proven experience with WAF platforms: Akamai, F5, Azure WAF, AWS WAF, Imperva, Vultr, NexusGuard.
  • Strong understanding of CRS tuning, regex optimization, and transformation logic.
  • Expertise in IDS/IPS platforms: Snort, Cisco, Corero.
  • Hands-on experience in SIEM tools: ArcSight, Splunk.
  • Solid foundation in cloud security (AWS) including IAM, Shield, CloudWatch, CloudTrail.

Salary (Rate): undetermined

City: undetermined

Country: United Kingdom

Working Arrangements: remote

IR35 Status: undetermined

Seniority Level: undetermined

Industry: IT

Detailed Description From Employer:

Job Title: WAF Security Engineer

Duration: long-term contract

Location: Remote

We are seeking a skilled WAF Security Engineer to develop and deliver automation solutions for our F5 Web Application Firewall (WAF) platform . The role involves CI/CD pipeline development, infrastructure automation, and integration of security solutions to enhance efficiency and security. We are seeking a skilled Cloud Security Engineer with deep expertise in Web Application Firewall (WAF) tuning , threat detection , and incident response to join our growing team. The ideal candidate will have hands-on experience optimizing WAFs (AWS WAF, Imperva, Vultr), integrating IDS/IPS systems, and developing advanced SIEM logic for actionable alerting. This role will play a critical part in enhancing cloud perimeter security, streamlining SOC/NOC operations, and ensuring compliance with key security standards like ISO 27001 and PCI DSS.

Key Responsibilities

  • Developing and Delivering Automation for F5 WAF Platform – Design, implement, and optimize automation solutions for the F5 Web Application Firewall (WAF) platform to enhance security, manageability, and efficiency.
  • CI/CD Pipeline Development & Maintenance – Create and maintain customized CI/CD pipelines, ensuring seamless deployment and operational workflows.
  • Infrastructure as Code (IaC) – Develop and manage Terraform manifests for consistent and scalable infrastructure provisioning.
  • Tool Proficiency – Utilize Jenkins, JIRA, GitHub, and Python to enhance automation and streamline DevOps processes.
  • Scripting & Automation – Write and maintain scripts for infrastructure automation, minimizing manual intervention.
  • Integration & Collaboration – Work closely with cross-functional teams to integrate solutions, improve workflows, and drive DevOps best practices.
  • Proactive Research & Problem-Solving – Leverage company resources, research unknowns, and collaborate with relevant teams to overcome challenges.

Skills Requirements:

  • Proven experience with WAF platforms : Akamai, F5, Azure WAF, AWS WAF, Imperva, Vultr, NexusGuard.
  • Strong understanding of CRS tuning , regex optimization, and transformation logic
  • Expertise in IDS/IPS platforms : Snort, Cisco, Corero
  • Hands-on experience in SIEM tools : ArcSight, Splunk
  • Solid foundation in cloud security (AWS) including IAM, Shield, CloudWatch, CloudTrail