What are the responsibilities and job description for the Applications Security Contractor position at Crossfire Consulting?
Applications Security Consultant
Contract Length: September 1, 2025 - April 30, 2026
Location: Remote (U.S. - Eastern Time Zone)
Work Setup: Remote, EST business hours
A leading hospitality company is seeking an Applications Security Consultant to join its Cybersecurity team. This contractor role will be instrumental in advancing the application security program, with a focus on Akamai WAF and Bot Management, as part of a major Digital Replatforming initiative.
Applications Security Consultant Responsibilities
Contract Length: September 1, 2025 - April 30, 2026
Location: Remote (U.S. - Eastern Time Zone)
Work Setup: Remote, EST business hours
A leading hospitality company is seeking an Applications Security Consultant to join its Cybersecurity team. This contractor role will be instrumental in advancing the application security program, with a focus on Akamai WAF and Bot Management, as part of a major Digital Replatforming initiative.
Applications Security Consultant Responsibilities
- Design, build, and integrate new services using the Akamai WAF technology stack
- Manage and enhance day-to-day operations of Akamai WAF and Bot Management systems
- Tune policies, update detections, and adapt protections for evolving threats
- Collaborate with business application teams to deliver secure web and mobile applications
- Support additional application security tools such as code scanning solutions
- Ensure security controls are effective without impacting performance or customer experience
- Align security solutions with DevSecOps practices and CI/CD pipelines
- Provide expert guidance balancing security with business requirements
- Minimum 3 years of hands-on experience with Akamai WAF and Bot Manager
- Strong background in offense/defense application security
- Proficient in web/mobile app development methodologies
- Experience securing AWS environments, including APIs and serverless apps
- Working knowledge of Node.js, React Native, JavaScript, Java, and Python
- Deep understanding of application/API vulnerabilities and mitigation techniques
- Experience implementing cloud-delivered application security solutions
- Familiarity with agile, DevSecOps, and CI/CD workflows
- Mobile development experience required
- Must be able to work EST hours; availability for off-hours support as needed
- Hospitality industry experience - nice to have
- React Native experience - nice to have