
Application Security Engineer
Precision Solutions1 month ago
Remote, United StatesMid Level
Responsibilities
- Deploy, configure, and maintain Web Application Firewall systems to protect web applications.
- Deploy and configure Zero Trust Proxy systems, including identity gates, policies, and connectors.
- Monitor and analyze security events, alerts, and logs; investigate and respond to potential incidents with SOC and cybersecurity teams.
- Develop and maintain detection rules, alerts, and reports using security logs.
- Integrate WAF systems with CDNs such as Akamai and Radware in collaboration with infrastructure and application teams.
- Use WAF data to identify vulnerabilities and recommend remediation measures to customers.
- Document WAF configurations, policies, and procedures and prepare web application security reports and metrics.
- Explain security details to non-security teams and provide application security guidance and awareness support.
- Automate security processes using Python and Terraform across cloud-native environments.
- Coordinate with cross-functional teams to support security objectives, knowledge sharing, and delivery timelines.
Requirements
- 4+ years of experience, including a minimum of 2 years in network security and 2 years in application security.
- Bachelor's degree or undergraduate diploma in information security, information technology, computer science, engineering, or equivalent years of experience.
- Strong knowledge of web application security, OWASP Top 10 vulnerabilities, mitigation techniques, and web development attack vectors.
- Experience with Web Application Firewalls, Zero Trust Network Access, APIs, API security, and cloud security policies.
- Understanding of authentication and authorization flows including OAuth, SAML, and OIDC.
- Experience with cybersecurity analysis, log analysis, threat detection, or Security Operations Center work is highly desirable.
- Understanding of information security principles, policy enforcement, HTTP, DNS, networks, firewalls, and SSL certificates.
- Preferred experience with Akamai WAF technologies, Zero Trust frameworks, WAF integration, AWS, Azure, GCP, Terraform, Python, ethical hacking, and ServiceNow.
- Security certifications such as CISSP, CISM, CISA, or GIAC are desired.
- Strong communication, presentation, analytical, troubleshooting, critical-thinking, documentation, and task-coordination skills.
- Ability to work effectively in a complex, fast-paced enterprise technology or information security organization.
- US citizenship is required; bilingual ability is a plus.
Benefits
- Remote within the United States.
- Approximately 8-month contract with possible extensions.