





Niche WAF/Imperva specialization reduces candidate density despite metro location.
WAF, SIEM, IaC and scripting skills transfer easily across industries, lowering sensitivity.
Mandatory 7+ years and specific WAF platform experience create strict technical filters.
Login to See Your Match Score
Create a free account or log in to unlock your CV match score across:
Design, implement, and manage WAF policies to secure web applications and APIs across development, staging, and production environments.
Tune WAF rules to mitigate OWASP Top 10 vulnerabilities, bot attacks, and Layer 7 DDoS while minimizing false positives and ensuring optimal performance.
Automate WAF deployments and integrate logs with SIEM platforms for real-time threat monitoring and incident response.
6–10 years of experience in web application security with 3+ years hands-on with Imperva or Cloudflare WAF.
Strong knowledge of HTTP/HTTPS, web app architecture, REST APIs, OWASP Top 10 vulnerabilities, and WAF rule tuning.
Experience with scripting/automation using PowerShell or Python, Infrastructure-as-Code tools like Terraform, and CI/CD pipelines.
Work Experience Required: 7+ years in WAF engineering and implementation explicitly stated.
Experienced in managing WAF in complex environments collaborating with DevOps, SRE, and app development teams to enhance security posture.
Demonstrated ability to balance security enforcement with false-positive reduction and operational efficiency using automation.
Proficient in integrating WAF logs into SIEM tools and responding to Layer 7 DDoS and active web attacks quickly and effectively.