Experience
4 - 9 yrs
Job Location
Mumbai, India
Vacancy
1
Designation
Senior Security Engineer
Job Type
Not specified
Job Description
L2 Senior Security Engineer - WAF & DDoS (F5 | Radware)
Availability: Immediate Joiners to 30 Days Notice Period Only
Job Summary
We are seeking an expert L3 Senior Security Engineer to architect, lead, and manage enterprise-grade F5 WAF and Radware DDoS protection infrastructure. You will drive advanced threat mitigation, policy lifecycle management, architecture optimization, and serve as the final escalation point for complex security incidents.
- Position: L3 Senior Security Engineer
- Primary Expertise: F5 Web Application Firewall (WAF) & Radware DDoS Protection
- Preferred Technologies: Palo Alto, Cisco, or Fortinet Firewalls
- Experience Required: 3-5 years in Network/Cybersecurity (Minimum 4+ years hands-on with F5 WAF & Radware DDoS)
- Education: Bachelor s Degree in Computer Science, Information Security, or related discipline
Architecture, Operations & Engineering
- Lead the deployment, architecture, and optimization of F5 WAF (ASM/Advanced WAF) and Radware DDoS defense systems.
- Design, tune, and maintain high-security WAF policies, custom signatures, and threat intelligence feeds with minimal false positives.
- Architect and execute large-scale application onboarding and automated traffic-steering workflows.
- Lead end-to-end mitigation of complex, multi-vector DDoS attacks (Layer 3/4/7) using Radware solutions.
- Oversee enterprise SSL/TLS certificate lifecycles, cipher policies, and cryptographic standards.
- Drive routine capacity planning, software upgrades, firmware patching, and disaster recovery drills.
Incident Management & L3 Escalation
- Act as the technical L3 escalation point for critical security incidents, web application failures, and sophisticated cyber attacks.
- Perform advanced forensic log analysis, packet capture (PCAP) inspection, and event correlation.
- Collaborate closely with SOC, Threat Intel, and application teams for swift incident containment and root-cause analysis (RCA).
- Enforce stringent security governance, compliance benchmarks, and documentation standards.
Required Skills & Competencies
- Core Technologies: Expert-level hands-on experience with F5 WAF/ASM and Radware DefensePro/Emergency Response.
- Security Acumen: Deep understanding of OWASP Top 10, API security, bot mitigation, and advanced web threat vectors.
- Networking & Protocols: Mastery of HTTP/HTTPS, TLS 1.3, DNS, TCP/IP stack, BGP routing, and load balancing principles.
- Troubleshooting: Advanced packet-level troubleshooting capabilities (Wireshark, tcpdump) for complex traffic flows.
- OS & Automation: Strong proficiency in Linux/Unix environments; scripting skills in Python, Bash, or PowerShell for automation.
Added Advantage (Preferred Technologies)
- Firewalls: Hands-on architecture and policy management with Palo Alto, Cisco, or Fortinet Firewalls.
- Cloud & SIEM: Exposure to AWS/Azure/GCP cloud security and SIEM tools (Splunk, QRadar, Sentinel).
Preferred Certifications
- F5 Certified BIG-IP Administrator / F5 Certified Technology Specialist (ASM/WAF)
- Radware Certified Professional (RCP)
- CISSP, CISM, or relevant advanced security certifications