





Senior role with niche WAF and DevSecOps specialization lowers applicant competition density.
Highly specialized WAF, policy-as-code and hybrid cloud DevSecOps skills limit cross-industry transferability.
Explicit 10+ years requirement plus mandatory WAF, IaC, scripting, and multi-cloud DevSecOps skills increases strictness.
Login to See Your Match Score
Create a free account or log in to unlock your CV match score across:
Lead WAF configuration lifecycle management including automated rule tuning and threat policy optimization to reduce false positives.
Develop and maintain DevSecOps automation frameworks integrating security controls into infrastructure provisioning using tools like Terraform and Ansible.
Implement security observability by configuring SIEM alerts and automate security gates in CI/CD pipelines ensuring policy as code enforcement across hybrid cloud environments.
10+ years in Infrastructure Engineering or DevSecOps with experience in high-traffic environments.
Expertise in WAF configuration management (F5, Signal Sciences, CloudFront WAF) and Nginx/Kubernetes Ingress Controllers.
Proficient in Infrastructure as Code (Terraform, Ansible) and scripting languages such as Python or Go.
Experience managing and automating security policies across hybrid/multi-cloud platforms (AWS, GCP, Azure).
Experienced in advanced WAF engineering including custom rule development and automated policy enforcement in hybrid cloud contexts.
Skilled at building and integrating automated security frameworks within CI/CD pipelines following policy-as-code principles.
Familiar with security observability tools (SIEM), GitOps workflows, and holds or pursues security automation certifications such as CKS.