Role: WAF & Application Security Engineer
Type: Subcon (12 Months)
Location: Sheffield, UK
...
Working Model: Hybrid (2 or 3 days per week in office)
The Role: We need a defender who thinks like a hacker. You will act as the WAF Subject Matter Expert for a global banking leader, utilizing your offensive security skills to build robust defenses. You will be responsible for crafting, testing, and automating advanced Web Application Firewall (WAF) solutions to protect critical infrastructure from complex web and API attacks.
Key Responsibilities:
- Develop and refine complex, custom WAF rules to mitigate vulnerabilities and close security gaps.
- Reverse-engineer attacker tactics to proactively counter evasions.
- Write code to build testing mechanisms and seamlessly integrate them into CI/CD pipelines.
- Advise engineering teams on OWASP Top 10, emerging threats, and DevSecOps best practices.
What You Need:
- 7-11 years of Cyber Security experience.
- Mandatory Skills: Deep knowledge of Web Security (OWASP), and CI/CD Architecture.
- Strong background in Ethical Hacking / Penetration Testing.
- Proven ability to write custom WAF rules and automate security testing.
- Proficiency in at least one programming language and strong DevSecOps principles.
This is an urgent vacancy with a deadline where the hiring manager is shortlisting for an interview immediately. Please apply with a copy of your CV or send it praveen. sukkala2 @ randstaddigital. Com
Randstad Technologies is acting as an Employment Business in relation to this vacancy.