This list contains only the countries for which job offers have been published in the selected language (e.g., in the French version, only job offers written in French are displayed, and in the English version, only those in English).
Responsible for contributing towards the build and maintenance of the organization's cyber security systems and infrastructure. Exercises solid knowledge of engineering skills and methodology with a working knowledge of applicable cyber security compliance standards. Conducts security assessments and audits to identify cybersecurity risks within the company's networks, applications and operating systems. Helps secure and protect the Network Infrastructure: Routers, Switches, Optical Devices, L2 Datacenter and cabling, Strand Mounted devices, Secure Routing protocols, DOCSIS plant (CMTS/vCMTS/PON), SDN, best practice device configuration, network automation, monitoring and troubleshooting. Tests company's internal systems to validate security and detect any computer and information security weaknesses. Performs a technical analysis of vulnerabilities and determines the impacts to the organization Reports, tracks and records findings in a comprehensive vulnerability assessment report. Identifies and recommends appropriate action to mitigate vulnerabilities and reduce potential impacts on cybersecurity resources. Applies long-term objectives and plans related to the company's technical vision to daily activity. Applies innovative solutions for cyber engineering developmental problems that are competitive with industry and company standards.
Job Responsibility:
Design, implement, and manage Akamai WAF policies for web and API protection
Tune WAF rules to reduce false positives while maintaining strong security posture
Configure protections for: OWASP Top 10
API abuse and schema violations
Bot attacks and credential stuffing
Layer 7 DDoS attacks
Perform advanced troubleshooting of complex production issues
Implement custom rules using Akamai App & API Protector and Kona Rule Sets
Support zero-day mitigation and virtual patching for critical CVEs
Integrate WAF signals with SOC workflows and SIEM platforms
Lead POCs and evaluate new Akamai security features
Automate WAF configuration and reporting using: Akamai APIs
Terraform / CI-CD pipelines
Collaborate with DevOps teams to embed WAF into application delivery pipelines
Enable logging and telemetry integrations for centralized visibility
Act as L3 escalation point for WAF-related incidents and outages
Perform root cause analysis (RCA) and post-incident reviews
Mentor L1/L2 engineers and provide technical guidance
Participate in on-call rotations and critical incident bridges
Requirements:
5–7.5 years of experience in Web Application Security
Strong hands-on expertise with Akamai WAF / App & API Protector
Deep understanding of: HTTP/HTTPS, TLS, cookies, headers
Web architectures and microservices
REST and GraphQL APIs
Strong knowledge of: OWASP Top 10
MITRE ATT&CK (application-layer focus)
Experience with SIEM tools (Splunk, Elastic, etc.)