Tower Lead - Web App firewall, Cloud Security, Palo Alto Firewalls

Teknik, data och digitalt · IT-infrastruktur och säkerhet · Cybersäkerhet · Mjukvaruutveckling · Webbutveckling

I korthet

Hewlett Packard Enterprise seeks a Senior Network Security Engineer specializing in WAAP (Web Application & API Protection) in Bengaluru, India. This role involves translating security requirements into architectures, leading the design and deployment of WAAP solutions including WAF, API security, bot protection, and DDoS mitigation, and developing a multi-year roadmap for application-layer security.

Ansvarsområden

  • Translate business and application security requirements into enterprise-grade WAAP and network security architectures.
  • Develop and support solutions aligned with HPE’s application security and defense-in-depth strategy.
  • Lead architecture, design, and deployment of Web Application and API Protection (WAAP) solutions across global environments.
  • Develop and drive multi-year roadmap for application-layer security, including WAF, API security, bot protection, and DDoS mitigation.
  • Architect, implement, and manage WAAP platforms, including WAF, API Security, Bot Management, and DDoS Protection.
  • Design and deploy WAAP solutions using platforms such as Thales Imperva, Cloud-native WAFs (Azure, AWS WAF) or equivalent.
  • Develop and maintain custom WAF rules, security policies, and signatures.
  • Perform false positive tuning, policy optimization, and rule lifecycle management.
  • Enable API discovery, schema enforcement, and protection against OWASP API Top 10 threats.
  • Integrate WAAP with SIEM/SOAR platforms, identity providers, and threat intelligence feeds.
  • Collaborate with application teams to onboard applications, perform security assessments, and ensure minimal performance impact.
  • Implement protection against OWASP Top 10 vulnerabilities (SQLi, XSS, RCE, etc.).
  • Lead WAAP incident response and root cause analysis.
  • Define and track application security metrics and KPIs.
  • Ensure compliance with security frameworks (CIS, NIST, Zero Trust, data protection standards).
  • Architect and maintain secure network infrastructure across data center, campus, and cloud environments.
  • Conduct security design reviews ensuring compliance with enterprise security standards.
  • Provide risk reporting, control effectiveness, and security posture visibility.
  • Support internal and external security audits.
  • Manage and optimize Security Information and Event Management (SIEM) systems.
  • Develop and maintain network security policies and procedures.
  • Collaborate with cybersecurity, infrastructure, and application teams globally.
  • Lead onboarding and lifecycle management of applications into WAAP platform.

Krav

  • 10+ years of experience in network security architecture, engineering, and operations.
  • Strong experience with WAAP platforms (Akamai preferred; Cloud WAF or equivalent accepted).
  • Deep understanding of OWASP Top 10 (Web & API) and application-layer threats and mitigation techniques.
  • Hands-on experience in WAF policy creation and tuning, API security controls, bot mitigation strategies, and DDoS protection architecture (L3–L7).
  • Experience in traffic analysis (HTTP/HTTPS, TLS inspection) and behavioral-based threat detection.
  • Strong understanding of secure application architectures (monolith, microservices, APIs).
  • Strong hands-on experience in Firewalls (Fortinet, Palo Alto, Juniper), IDS/IPS, VPN, SIEM.
  • Expertise in Firewall policy design, NAT, routing, inspection, and threat prevention.
  • Experience in designing secure hybrid (on-prem + cloud + internet-facing) environments.
  • Experience in Proxy architectures (forward/reverse) and secure internet gateways.
  • Strong knowledge of TCP/IP, DNS, HTTP/HTTPS, TLS/SSL.
  • Experience with QoS, NetFlow, ACLs, NAT, IP traffic management.
  • Experience securing applications in AWS, Azure, GCP.
  • Familiarity with cloud-native WAF and API security tools.
  • Integration experience with SIEM, EDR/XDR, IAM platforms.
  • Experience managing enterprise environments with Aruba, Arista, Juniper switches, Firewalls, load balancers, WAN optimization tools.
  • Understanding of High availability and performance optimization for application traffic.
  • 24/7 availability

Önskade kvalifikationer

  • DevSecOps integration and CI/CD security controls (nice to have).

Förmåner

  • You'll supercharge your potential.
  • You'll find your career.
  • You'll find your spark.
  • A place that knows that helping its customers stay on top starts by putting its people first.
#WAAP#Web Application Firewall#Cloud Security#Palo Alto Firewalls#API Security#Bot Management#DDoS Protection#Network Security
HCLTech Logo

Företag

HCLTech

Publicerade jobb

för 1 månad sedan

Anställningstyp

Heltid

Arbetsform

På plats

Erfarenhetsnivå

Senior

Platser

Bengaluru, India

Sökande

Ansök tidigt