Cloud Engineer-AWS , WAF (W2 Only)
Role summary
Seeking an experienced AWS WAF Engineer to design, implement, and maintain secure web application firewall solutions. This hybrid role requires hands-on expertise in AWS Web Application Firewall (WAF) and other AWS security services, with a strong background in application security, threat mitigation, and cloud environments. Responsibilities include deploying WAF solutions, configuring rules, integrating with other AWS services, conducting vulnerability assessments, responding to incidents, and collaborating with development teams. A Bachelor's degree in computer science or IT, or equivalent experience, is required, along with proven experience managing AWS WAF and proficiency in AWS security services.
Position: AWS WAF Engineer
Location: Atlanta, GA(Hybrid)
Employment Type
Contract
About the Role
We are seeking an experienced
AWS WAF Engineer
to design, implement, and maintain secure web application firewall solutions to protect our digital assets. The ideal candidate will have hands-on expertise in managing AWS Web Application Firewall (WAF) and other AWS security services, with a strong background in application security, threat mitigation, and cloud environments.
Key Responsibilities
- Design and deploy
AWS WAF
solutions to safeguard web applications against vulnerabilities such as SQL injection, cross-site scripting (XSS), and distributed denial of service (DDoS) attacks.
- Configure, optimize, and monitor AWS WAF rules, rate-based rules, and managed rule sets to align with business security policies.
- Integrate AWS WAF with other AWS services like
CloudFront
,
ALB (Application Load Balancer)
, and
API Gateway
for comprehensive application protection.
- Conduct periodic vulnerability assessments and update WAF rules to mitigate new and emerging threats.
- Collaborate with DevOps, cloud engineering, and application development teams to ensure security best practices during the software development lifecycle (SDLC).
- Respond to security incidents, investigate WAF-related events, and implement necessary countermeasures.
- Develop and maintain documentation for WAF configurations, security policies, and operational procedures.
- Provide training and guidance to internal teams on AWS WAF usage and web application security.
Required Qualifications
- Bachelor’s degree in
computer science
,
Information Technology
, or related field, or equivalent experience.
- Proven experience managing and configuring
AWS WAF
in enterprise environments.
- Proficiency in
AWS security services
, including but not limited to
AWS WAF, AWS Firewall Manager, AWS Common Bot Control and AWS Shield Advanced protection
.
- Solid understanding of
OWASP Top 10 vulnerabilities, bot traffic patterns
and web application security principles.
- Experience with security monitoring and incident response in AWS environments.
- Proficiency in scripting languages such as
Python
,
Bash
, or
Terraform
for automation.
- Hands-on experience with CI/CD pipelines and cloud infrastructure-as-code (IaC).
- Strong analytical, troubleshooting, and problem-solving skills.
Preferred Qualifications
- AWS certifications such as
AWS Certified Security - Specialty
or
AWS Certified Solutions Architect
.
- Terraform (IaC), Splunk, ServiceNow and Wiz
- Familiarity with other web application firewalls and security tools (e.g., Fortinet, Imperva, Akamai).
- Knowledge of network security protocols and technologies, such as HTTPS, SSL/TLS, DNS, and DDoS protection.
- Experience in multi-cloud environments or hybrid cloud setups.