Overview
Specialized Infrastructure Engineer role focused on WAF configuration management and building automated DevSecOps security frameworks for hybrid cloud environments.
What you'll do
- Lead the lifecycle of WAF solutions, including automated rule tuning and signature lifecycle management.
- Build CI/CD workflows that apply WAF configurations as code across environments.
- Analyze WAF logs to remediate bot traffic and sophisticated attack patterns while maintaining availability and performance.
- Design security automation frameworks that integrate security controls into infrastructure provisioning.
- Configure SIEM forwarding and alerts for WAF and network logs, detecting anomalies from system logs.
- Integrate SAST/SCA/container scanning security gates into CI/CD pipelines and enforce “Security as Code”.
- Develop policy engines (e.g., OPA, Sentinel) to reject non-compliant infrastructure changes before production.
What you'll need
- 10+ years in infrastructure engineering or DevSecOps with experience in high-traffic environments.
- Experience with WAF configuration management (F5, Signal Sciences, CloudFront WAF) and Nginx/Kubernetes ingress controllers.
- Strong DevSecOps automation framework building skills.
- Expert skills in Infrastructure as Code (Terraform, Ansible) and scripting (Python or Go).
- Deep understanding of automated threat mitigation and policy-as-code principles.
- Ability to automate security policies across hybrid or multi-cloud (AWS, GCP, Azure).
Details
- Location: Bangalore, India.
Read the full description and apply on the company’s own careers page.