What are the responsibilities and job description for the Senior Application Security Engineer position at Sibitalent Corp?
Hi,
Hope you are doing well,
IMMEDIATE INTERVIEW = Lead Application Security Engineer (WAF) IN Charlotte, NC • Chandler, AZ • Dallas/Irving, TX -HYBRID (NEED LOCAL CANDIDATE)- Rate: $80 /hr on W2
Please find the Job details below and kindly revert if you’re interested in learning more about this job.
Job Title: Lead Application Security Engineer (WAF)
Location: Charlotte, NC • Chandler, AZ • Dallas/Irving, TX -HYBRID (NEED LOCAL CANDIDATE)
Duration: 12–18 months
Overview
Client is seeking a Lead Application Security Engineer with deep, hands-on Web Application Firewall (WAF) expertise. This is a highly technical role focused on WAF configuration, tuning, monitoring, and Layer 7 attack protection. Candidates must demonstrate strong WAF experience — interviews will include a deep dive.
Responsibilities
- Lead WAF configuration, tuning, rule creation, event investigation, and policy optimization.
- Monitor WAF events and respond to L7 threats, including DDoS, bot attacks, and application-layer attacks.
- Implement and manage bot mitigation, API security, and rate limiting strategies.
- Configure and manage DNS, including A and CNAME records.
- Support and optimize global load balancing (GLB) and local load balancing (LLB) for high-availability applications.
- Apply security controls and threat-mitigation strategies to protect web applications and ensure compliance.
- Utilize WAF platforms such as: Imperva, ASM, Cloudflare, Akamai, F5 Advanced, FortiWeb, Barracuda.
- Partner with cross-functional teams including application owners, architecture, and security operations.
Required Qualifications
- 5 years of professional experience in Web Application Firewalls (WAF) and Layer 7 security.
- Hands-on experience configuring, tuning, and monitoring WAF technologies (Imperva, ASM, Cloudflare, Akamai, F5 Advanced, FortiWeb, Barracuda, etc.).
- Strong understanding of L7 DDoS attacks (L3 network-level DDoS not required).
- Experience implementing web attack protections, rate-limiting policies, and bot management tools.
- Proficiency with API security strategies and controls.
- Working knowledge of DNS, A/CNAME records, GLB and LLB.
- Experience with web application security, vulnerability mitigation, and compliance-driven controls.
Preferred Qualifications
- Experience with local load balancing and foundational network firewall concepts.
- Security certifications such as CISSP, GIAC GWEB, or vendor-specific WAF certifications.
Candidate Information Required for Submission
- Current Location:
- Work Authorization:
Candidate Experience Matrix (Required)
Skill Area
Years of Experience
WAF – Web Application Firewalls
– Configuration
– Tuning
– Monitoring
Layer 7 Security
Bot Management
Rate Limiting
Web Attacks / L7 DDoS Protection
DNS Management (A/CNAME)
API Security
GLB – Global Load Balancing
LLB – Local Load Balancing
Salary : $80