Work in a dynamic and challenging environment where your focus is on reducing the potential impact of threats to Internet facing web application systems.
Frequently interact with Security Assessment, Security Operations and Cyber Security Incident Response Teams working together to identify ongoing threats to the application.
Develop protections for web applications utilizing state of the art cyber technologies (Web Application Firewalls, Network Firewalls, Intrusion Prevention, Network Traffic Scrubbing) protecting operational applications in real-time.
Maintain and operate Web Application Firewall Configurations.
Perform false positive analysis on WAF events.
Be comfortable driving work efforts outside business-hours, when necessary, as part of on-call rotation schedule.
Act as a front-line and escalation interface to the business, reviewing trouble tickets and executing the required actions.
Be Self-motivated to identify requirements for projects and process improvements.
Requirements
10+ years related IT and cyber protection experience.
Strong understanding of cyber threats as related to Internet facing web applications.
Experience with utilizing NIST CVE data relating to web application vulnerabilities to develop threat response actions utilizing OSI Layer 4 through 7 deep inspections.
Experience with threat analysis of web application network traffic protocols and patterns.
Experience using scripting or automation to reduce team workload on repetitive tasks and communicating with CISO/CIO/CTO level leadership.
CISSP or other professional cyber certification desirable.
Bachelor’s degree in cyber security, Computer Science, Engineering, Mathematics or an equivalent combination of education, work, or military experience.
Expert knowledge of and experience with maintaining cyber technologies that can protect operational web application systems, such as: Signal Sciences WAF / F5 Big IP Application Security Manager. F5 Local Traffic Manager / F5 Silverline WAF & Denial of Service (DDOS) Scrubbing systems. F5 Distributed Cloud WAF / Radware WAF.
Benefits
Annual incentive opportunity (mix of cash bonus and equity awards)
Senior Defensive Security Advisor at Desjardins identifying and mitigating threats across systems and networks. Leading complex initiatives and collaborating with stakeholders for effective security posture.
Life and health insurance financial security advisor serving clients by providing advice and maintaining business relationships. Focused on sales of insurance products and services based on client needs.
Director of Security overseeing all safety and security operations for Women & Infants Hospital. Responsible for deterring crime, protecting premises, and managing transport services.
Responsable Pôle Sécurité Médiation Fraude managing security operations for public transport services in Metz. Ensuring safety and compliance while optimizing fraud prevention strategies.
Cyber Security Engineer at Regions focusing on cloud and infrastructure security. Designs and implements cybersecurity solutions while providing technical support and guidance.
IAM Security Engineer focusing on identity and access management automation in a dynamic digital assets company. Contributing to scaling IAM infrastructure through automated solutions and secure user lifecycle management.
Data Analyst joining Ford's team to focus on security technologies and data integration. Responsible for improving data operations across global infrastructure and complex requests.
Digital Product Manager at Ford creating connected vehicle experiences through integrated hardware and software solutions. Collaborating with teams to enhance customer experience through new digital products.
Cybersecurity Engineer implementing Zero Trust Reference Architecture solutions at Mythics. Deploying and maintaining Forescout platform within secure environments.
Security Governance Manager at WEBTOON responsible for IT and Security governance framework. Collaborating with Legal, Product, and Engineering teams in Los Angeles headquarters.