Web Application Firewall Engineer @ Deloitte

vor 2 Wochen


Sydney, Österreich Cyber Crime Vollzeit
  • Work in a highly innovative and transformative business
  • Mentoring, growth and training – receive support and coaching to progress your career
  • Preventive and supportive mental health initiatives

Deloitte Global is the engine of the Deloitte network. Our professionals reach across disciplines and borders to develop and lead global initiatives. We deliver strategic programs and services that unite our organization.

What will your typical day look like?

The Web Application Engineer candidate will have a strong background in cybersecurity and understanding of web application security practices. The primary responsibility of the WAF Engineer will be to ensure the effective deployment, configuration, and maintenance of our web application firewall systems for Global customers. This role requires expertise in Web Application Firewalls as well as experience with alerts and detections and data log analysis.

Key Role Responsibilities:

  • Web Application Firewall Management: Deploy, configure, and maintain web application firewall systems to protect our web applications against potential threats and vulnerabilities.
  • WAF Security Incident Response : Monitor and analyze security events, alerts, and logs generated by the web application firewall systems. Investigate and respond to potential security incidents, working closely with the Security Operations Center (SOC) and Cybersecurity teams.
  • Detection and Analysis: Develop and maintain detection rules, alerts, and reports to proactively identify and mitigate risks within the WAF. Provides investigation findings to relevant business units to help improve information security posture.
  • CDN Integration: Collaborate with the infrastructure and application teams to integrate the web application firewall with CDNs such Akamai and Radware, ensuring seamless traffic management and content delivery.
  • Vulnerability Assessment: Utilize WAF data to identify potential vulnerabilities and recommend appropriate remediation measures to customers.
  • Documentation and Reporting: Maintain accurate documentation of WAF configurations, policies, and procedures. Prepare reports and metrics related to web application security, including trends, incident summaries, and mitigation strategies, as needed.
  • Collaboration and Training: Collaborate with cross-functional teams to ensure effective communication, knowledge sharing, and alignment of security objectives. Provide training and guidance to other team members on WAF best practices and security awareness, as needed.
  • Collaborate with key stakeholders within Cybersecurity, Engineering, and Development teams to create specific use cases to address business needs and security requirements.

About the team
Deloitte Technology works at the forefront of technology development and processes to support and protect Deloitte around the world. In this truly global environment, we operate not in "what is" but rather "what can be" to help Deloitte deliver and connect with its clients, its communities, and one another in ways not previously conceived.

Enough about us, let’s talk about you.
You are someone with:

  • Bachelor's Degree/University Degree and/or Undergraduate Diploma in Information Security, Information Technology, Computer Science, Engineering or equivalent years in experience
  • 4+ years experience with minimum 2 years into network security and 2 years in WAF
  • Strong knowledge of web application security concepts, OWASP Top 10 vulnerabilities, and related mitigation techniques.
  • Strong technical background with Akamai or Radware Web Application Firewall (WAF) technologies and bot mitigation security policies.
  • Proficiency in deploying and managing web application firewalls, preferably with experience in AKAMAI and RADWARE or similar tools.
  • Understanding of API security issues and API authentication.
  • Previous experience in a Security Operations Center (SOC) or performing cybersecurity analysis is highly desirable. Prior experience working with Splunk for security event management, log analysis, and threat detection.
  • Good understanding of information security principles and policy enforcement.
  • Solid comprehension of HTTP protocol and demonstrated ability to troubleshoot using HTTP logs
  • Strong technical background in web development and familiarity with potential attack vectors/methods
  • Understanding of DNS, Networks, Firewalls, SSL Certificates

Preferred:

  • Knowledge of Web Application Firewall technologies (Akamai and Radware)
  • Ethical hacking
  • ServiceNow experience
  • Technical documentation experience
  • Familiarity with cloud security services, concepts, and best practices
  • CISSP, CISM, CISA, GIAC or other security certifications

At Deloitte, we focus our energy on interesting and impactful work.We’re always learning, innovating and setting the standard; making a positive difference to our clients and our society. We putcoaching at the heart of what we do, helping our people grow their careers in any direction – whether it be up, moving into something new, or even moving across the world.

We embrace diversity, equity and inclusion. We have a diverse collection of people from differentbackgrounds, with different experiences, gender identities, abilitiesandthinking styles. What binds us together is a shared commitment tovalueeveryone’sperspectiveand to cultivate inclusion; so that our work environment is a safe space we can all belong.

We prioritise flexibility and choice.At Deloitte, you get trust on Day 1.We know our people get their best work done when they’re in control of where and how they work, designing their work week around their client, team and personal commitments.

We help you live and work well.To support your personal and professional life, we offer a range ofperks and benefits , including retail discounts, wellbeingleave, paid volunteering days, twelveflexible working options, market-leading parental leave and return to work support package.

Next Steps

Sound like the sort of role for you? Apply now.

Explore more InfoSec / Cybersecurity career opportunities

Find even more open roles in Ethical Hacking, Pen Testing, Security Engineering, Threat Research, Vulnerability Management, Cryptography, Digital Forensics and Cyber Security in general - ordered by popularity of job title or skills, toolset and products used - below.

#J-18808-Ljbffr

  • Sydney, Österreich CloudFlare Vollzeit

    Available Location: Remote, Australia, or Sydney, Australia About the role: Cloudflare provides advisory and hands-on-keyboard implementation and migration services for enterprise customers. As a Professional Services Consultant for Application Security and Performance, you are an individual contributor working in the post-sales landscape, responsible for...


  • Sydney, Österreich CloudFlare Vollzeit

    Available Location: Remote, Australia, or Sydney, Australia About the role: Cloudflare provides advisory and hands-on-keyboard implementation and migration services for enterprise customers. As a Professional Services Consultant for Application Security and Performance, you are an individual contributor working in the post-sales landscape, responsible for...


  • Sydney, Österreich HPR Vollzeit

    HPR is a leading provider of high-performance and ultra-low latency electronic trading and capital markets infrastructure solutions offered as a managed service. Our cutting-edge technology is used by tier-1 financial institutions to monitor and execute trades rapidly and efficiently. Due to our exciting and rapid growth, HPR is searching for a Senior...

  • DevOps Engineer Apps Mav

    vor 2 Monaten


    Sydney, Österreich Apps Mav Vollzeit

    Location: Sydney We are looking for a talented and passionate AWS certified DevOps Engineer to help build and manage a world-class SaaS apps infrastructure. You’ll use your knowledge of Linux and software development as you help ensure the reliability and performance of a large and diverse tech stack. You will directly engage with development teams to...


  • Sydney, Österreich Apps Mav Vollzeit

    Location: Sydney We are looking for a talented and passionate AWS certified DevOps Engineer to help build and manage a world-class SaaS apps infrastructure. You’ll use your knowledge of Linux and software development as you help ensure the reliability and performance of a large and diverse tech stack. You will directly engage with development teams to...


  • Sydney, Österreich ClearCompany Vollzeit

    The Client:One of the fastest growing superannuation and investment management companies. ASX Listed.Committed to an inclusive, equitable, and forward-thinking workplace culture.The Role:Working on a website, variety of systems and platforms including maintenance, integrations, change, and enhancementsUtilise C#.Net to design, develop, and test code in line...


  • Sydney, Österreich TAL Vollzeit

    TAL We offer flexibility by letting you tailor your cover to suit your individual needs. Quick and easy to apply. Get An Online Quote. View company page From the millions of Australians we protect, to those that make it happen every day at TAL, people really are what we’re all about.We want to grow with you. Achieve with you. And support you to do your...


  • Sydney, Österreich TAL Vollzeit

    TAL We offer flexibility by letting you tailor your cover to suit your individual needs. Quick and easy to apply. Get An Online Quote. View company page From the millions of Australians we protect, to those that make it happen every day at TAL, people really are what we’re all about.We want to grow with you. Achieve with you. And support you to do your...


  • Sydney, Österreich Web99 Vollzeit

    Emerging Trends in Web App Development Sydney :A Look at Sydney's Tech SceneOverviewIn the ever-evolving digital landscape, businesses in Sydney are harnessing the power of web applications to streamline operations, enhance user experiences, and drive growth.In the last two decades, organisations have become increasingly crucial to have a web application...


  • Sydney, Österreich Web99 Vollzeit

    Emerging Trends in Web App Development Sydney :A Look at Sydney's Tech SceneOverviewIn the ever-evolving digital landscape, businesses in Sydney are harnessing the power of web applications to streamline operations, enhance user experiences, and drive growth.In the last two decades, organisations have become increasingly crucial to have a web application...


  • Sydney, Österreich Amazon Web Services Vollzeit

    Consultants (Information & Communication Technology) Full time Add expected salary to your profile for insights As a Technical Account Manager (TAM) at Amazon Web Services, you will be a valued member of the Enterprise Support team leading the success of enterprise support customers for software industries in building applications and services on...


  • Sydney, Österreich Cloudflare Vollzeit

    About UsAt Cloudflare, we are on a mission to help build a better Internet. Today the company runs one of the world’s largest networks that powers millions of websites and other Internet properties for customers ranging from individual bloggers to SMBs to Fortune 500 companies. Cloudflare protects and accelerates any Internet application online without...

  • Network Engineer

    Vor 3 Tagen


    Sydney, Österreich iQ Consult Pty Ltd Vollzeit

    Company DescriptioniQ Consult Pty Ltd is a leading provider of design, deployment, and support for Public and Private Cloud solutions. Our organisation is based in Sydney, NSW and supports multiple vendors and their technology partners. We specialise in end-to-end architecture, operationalisation, and transformation for these solutions, with expertise in...

  • Web Developer Intern

    vor 14 Stunden


    Sydney, Österreich Acetalent Vollzeit

    Join to apply for the Web Developer Intern role at Ace Talent Recruitment 2 days ago Be among the first 25 applicants Join to apply for the Web Developer Intern role at Ace Talent RecruitmentSave this job with your existing LinkedIn profile, or create a new one. Save this job with your existing LinkedIn profile, or create a new one. Your job seeking...


  • Sydney, Österreich Cyber Crime Vollzeit

    TAL Tailor your cover to suit your needs. Life, Income, TPD, Critical Illness. Get a Quote for flexible insurance products built by you, for you. View company page From the millions of Australians we protect, to those that make it happen every day at TAL, people really are what we’re all about.We want to grow with you. Achieve with you. And support you...


  • Sydney, Österreich Amazon Vollzeit

    Support Engineer, Amazon Web Services (AWS) Security Operations Center (SOC)Job ID: 2684734 | Amazon Corporate Services Pty LtdThe Amazon Web Services (AWS) Security Operations Center (SOC) Support Engineer works across IT Systems and provides technical support; security response for logical services and physical data center systems and signals to support...


  • Sydney, Österreich Amazon Vollzeit

    Support Engineer, Amazon Web Services (AWS) Security Operations Center (SOC)Job ID: 2684734 | Amazon Corporate Services Pty LtdThe Amazon Web Services (AWS) Security Operations Center (SOC) Support Engineer works across IT Systems and provides technical support; security response for logical services and physical data center systems and signals to support...

  • Software Engineer

    Vor 5 Tagen


    Sydney, Österreich Career Success Australia Vollzeit

    Software Engineers are in high demand, so an Internship in this particular stream of Information Technology is a good choice to start your career as a Graduate Software Engineer. Through this Software Engineer Internship, you will learn a wide range of skills in software development, creating software solutions, and monitoring software systems and programs....


  • Sydney, Österreich Allura Partners Vollzeit

    Major critical infrastructure service provider is looking for an experienced Senior Network Engineer to join their team. 24th June, 2024 Senior Network Engineer - 6-month contract - $900/day - HybridExciting opportunity for an experienced and highly skilled Senior Network Engineer to join the networking team. The ideal candidate will be responsible for...


  • Sydney, Österreich Com Hub Vollzeit

    Freelancer.com is seeking a Senior Software Engineer with proficiency in AI to work on diverse, global, internet-scale challenges. The role involves developing core revenue-generating products, architecting web applications at scale, and working with technologies like Angular, TypeScript, and RxJS. Required skills include programming languages such as...