Your browser does not support javascript! Please enable it, otherwise web will not work for you.

Looking For Security Engineer - Contractual Role (1 year)- Naukri.com, @ Info Edge

Home > IT Security

 Looking For Security Engineer - Contractual Role (1 year)- Naukri.com,

Job Description

Job Title: Security Engineer - Contractual Role


Experience Required: 2-4 years.


Job Summary:

Seeking for a highly skilled and motivated Web Application Firewall (WAF) and Bot Operations Security Engineer who will play a crucial role in ensuring the security and resilience of our organisations systems, networks, and infrastructure. He will be responsible for deploying, configuring, and managing Web Application Firewalls (WAFs) and bot mitigation solutions to protect our web applications from various cyber threats and malicious activities. This role involves a deep understanding of web application security, bot management, and hands-on experience with WAF technologies and bot mitigation tools.


Required Skills:

The candidate should have minimum experience of 3 years in Vulnerability management to carry out WAF & BOT solutions.


Mandatory:

  • 3+ years of experience in web application security, including hands-on experience with WAF technologies and bot mitigation tools (e.g., Akamai, Cloudflare, Imperva, AWS WAF, Azure Application Gateway, F5 BIG-IP).
  • Strong understanding of web application vulnerabilities, attack vectors, and mitigation techniques.
  • Experience with security monitoring and incident response.

Good to have:

  • Proficiency in scripting languages (e.g., Python, Bash) for automation and custom rule creation.
  • Knowledge of web technologies, including HTTP/HTTPS, HTML, JavaScript, and APIs.
  • Familiarity with security frameworks and standards (e.g., OWASP, CIS).

Certification:

Mandatory:

Relevant security certifications such as CISSP, CISM, CEH, or other industry-recognized credentials.

Good to have:

Certifications such as CREST Practitioner Security Analyst (CPSA), Certified Expert Penetration Tester (CEPT) etc.


Qualifications:

1. Bachelors degree in Computer Science, Information Security, or related field (or equivalent experience).

2. Strong understanding of networking protocols, operating systems, and security technologies.

3. Excellent analytical and problem-solving skills.

4. Proficient in at least one scripting language.


Responsibilities:

  • WAF Management:
  • Deploy, configure, and maintain Web Application Firewalls to protect web applications from threats such as SQL injection, cross-site scripting (XSS), and other OWASP Top 10 vulnerabilities.
  • Develop and implement custom WAF rules and policies to address specific security requirements and threat landscapes.
  • Monitor WAF performance and fine-tune rules to minimize false positives and negatives.
  • Bot Mitigation:
  • Implement and manage bot detection and mitigation solutions (including advanced BOTs) to safeguard against automated attacks and scraping activities.
  • Analyze bot traffic patterns and behaviour to fine-tune detection and mitigation strategies.
  • Stay updated on emerging bot threats and mitigation techniques, and proactively adjust strategies to counteract new attack vectors.
  • Incident Response:
  • Investigate and respond to security incidents, attack scenarios related to web applications and bot activities.
  • Perform root cause analysis for security events and provide recommendations for improvements to prevent recurrence.
  • Must be willing to be available during off-hours and weekends for incident response and attack scenarios as needed.
  • Collaboration and Communication:
  • Work closely with application developers, system administrators, and other stakeholders to address security concerns and ensure secure application deployment.
  • Provide security guidance and best practices to teams across the organization to enhance overall security posture.

Job Classification

Industry: Internet (E-Commerce)
Functional Area / Department: IT & Information Security
Role Category: IT Security
Role: Application Security Engineer
Employement Type: Contract

Contact Details:

Company: Info Edge
Location(s): Noida, Gurugram

+ View Contactajax loader


Keyskills:   Vapt Web Application Security Application Security Penetration Testing OWASP Sast Network Penetration Testing Mobile Application Security

 Fraud Alert to job seekers!

₹ Not Disclosed

Similar positions

Technical Consultant-Security Intel & Operations Consulting Svcs

  • IBM
  • 3 - 5 years
  • Bengaluru
  • 1 day ago
₹ Not Disclosed

Technical Consultant-Application Security

  • IBM
  • 3 - 5 years
  • Pune
  • 1 day ago
₹ Not Disclosed

Senior Network Security Engineer

  • Locuz
  • 6 - 11 years
  • Hyderabad
  • 17 hours ago
₹ Not Disclosed

Network Security Engineer

  • Locuz
  • 4 - 9 years
  • Pune
  • 18 hours ago
₹ Not Disclosed

Info Edge

Please find below the brief synopsis about the company profile - Kredent InfoEdge is one of the most prominent names in the fintech and edutech market ecosystem. We want to be the major catalyst for financial inclusion in India by focusing on learning and analytics using technology. We have ...