Jobs and Careers
EM

Senior Security WAF Engineer

Empower
Overland Park, United Statesfull_timeVerifiedPosted 4 Apr 2025
💰 $178,350/yr($123,000/yr$178,350/yr)

About the role

Our vision for the future is based on the idea that transforming financial lives starts by giving our people the freedom to transform their own. We have a flexible work environment, and fluid career paths. We not only encourage but celebrate internal mobility. We also recognize the importance of purpose, well-being, and work-life balance. Within Empower and our communities, we work hard to create a welcoming and inclusive environment, and our associates dedicate thousands of hours to volunteering for causes that matter most to them.

Chart your own path and grow your career while helping more customers achieve financial freedom. Empower Yourself.

What you will do:

WAF & Firewall Security Engineering

  • Deploy, configure, and optimize WAF policies using Cloudflare WAF, AWS WAF, and Palo Alto Networks firewalls.
  • Fine-tune security rules, signatures, and bot mitigation policies to block OWASP Top 10 threats, API abuse, and zero-day vulnerabilities.
  • Manage Palo Alto Networks firewalls, including:
    • Threat Prevention, URL Filtering, Application-Based Filtering, SSL Decryption, and Advanced Threat Protection.
    • NGFW policies and rule tuning to block L7 attacks, botnets, and advanced persistent threats (APTs).
    • Logging, alerting, and correlation of firewall events within SIEM
  • Integrate WAF and firewall security policies with SIEM (Splunk, ELK) and SOAR solutions for improved threat intelligence sharing and automated response.

Layer 7 Application DDoS Protection & Remediation

  • Detect, analyze, and mitigate Layer 7 DDoS attacks, including:
  • Slowloris, HTTP Floods, Recursive GET/POST attacks, API abuse, and bot-driven volumetric attacks.
  • Malicious bot traffic, headless browsers, and scraping attacks targeting web applications.
  • Remediate Layer 7 DDoS attacks by:
  • Implementing Palo Alto Auto-Blocking Rules and Cloudflare Advanced Rate Limiting.
  • Deploying traffic anomaly detection and automated WAF rule adjustments.
  • Enforcing CAPTCHA challenges, JavaScript challenges, and behavioral-based bot detection.
  • Geo-blocking malicious IPs and ASN-based filtering for high-risk traffic sources.
  • Automate DDoS remediation playbooks using Terraform, Python, and API-based integrations for dynamic WAF/firewall adjustments.
  • Perform post-attack forensic analysis to improve future detection and prevention capabilities.

Infrastructure as Code (IaC) & Security Automation

  • Automate WAF and firewall rule deployment using Terraform to standardize security enforcement.
  • Develop Terraform modules for Cloudflare WAF and Palo Alto Networks firewalls to manage security configurations at scale.
  • Integrate security policies with CI/CD pipelines to enforce security best practices in DevSecOps workflows.
  • Create self-healing security automation that dynamically adjusts WAF and firewall rules in response to active threats.

Indicators of Compromise (IoC) & Threat Detection

  • Analyze IoCs from WAF logs, Palo Alto firewalls, SIEM alerts, and external threat intelligence sources to detect advanced threats.
  • Investigate malicious Layer 7 traffic behaviors, API exploitation, bot-driven attacks, and application-layer intrusions.
  • Develop and deploy custom security signatures for real-time threat prevention on Cloudflare WAF and Palo Alto Firewalls.
  • Correlate IoCs across WAF, firewall, and cloud security tools to build a proactive threat defense model.

Incident Response & Risk Mitigation

  • Act as a Tier 3 escalation point for complex WAF, firewall, and Layer 7 DDoS security incidents.
  • Implement real-time DDoS mitigation strategies to minimize service disruption and protect critical web applications.
  • Work closely with Red Team / Blue Team exercises to validate WAF and firewall security controls against simulated attack scenarios.
  • Compliance & Governance
  • Ensure WAF and firewall configurations comply with PCI-DSS, NIST 800-53, ISO 27001, GDPR, and CIS security standards.
  • Conduct security audits and ensure that all security policies are version-controlled using Terraform and Git.
  • Maintain audit logs and security policies as code to support compliance and operational resilience.
  • Participate in 24x7 on-call rotation
  • Perform related duties as requested

What you will bring:

  • 5+ years of experience in WAF security engineering, Layer 7 DDoS mitigation, and network security.
  • 5+ years of expertise in Cloudflare WAF, AWS WAF, and Palo Alto Networks firewalls.
  • Hands-on experience in Layer 7 DDoS detection, remediation, and real-time security automation.
  • Experience with Infr

Apply for this role

Generate a tailored application kit with a matched cover letter, interview prep, and CV highlights — in under 60 seconds.

Apply Now →Generate Application Kit

Free account required — sign up in 30s

Company

Empower

View company profile →