We're seeking an experienced Cloudflare WAF Engineer to join our team. As a Cloudflare Security and Operations Engineer, you will be responsible for managing and securing our customers' online presence on the Cloudflare platform.
Responsibilities
- Automate day to day and below activities using programming language like Python, API.
- Experience in configuring customer domains / domain moves, managing SSL/TLS Certificates while ensuring minimal disruption to services.
- Experience in managing Web Application Firewall (WAF) rules to ensure protection against emerging threats.
- Should be able to Identify, analyze, and remediate BFA/DDOS attempts to prevent unauthorized access to resources.
- Identify and resolve security issues across the cloudflare this includes IP, OFAC, GEO country, ASN, User agent whitelisting/blacklisting.
- Maintain and update Key-Value (KV) pair and Worker code to ensure security, compliance, and functionality.
- Good to have knowledge of OWASP rules and WAF managed ruleset
- Analyze and respond to security incidents, identifying root causes and implementing measures to prevent future occurrences.
- Configure and manage log push jobs to ensure timely and accurate logging of security events.
- Enforce Bring Your Own IP (BYOIP) policies to maintain IP address and ASN integrity.
- Decommission and remove domains from the Cloudflare platform, ensuring proper cleanup and resource deallocation.
- Migrate zones between Cloudflare accounts or environments, ensuring minimal disruption to services and maintaining DNS integrity.
- Collaborate with cross-functional teams to identify and prioritize security and operations projects.
- Develop and maintain technical documentation and knowledge base articles to support security and operations tasks
Requirements
- 3+ years of experience in a Cloudflare WAF Engineer role along with knowledge of Public Cloud Platforms like Azure/GCP/AWS.
- Operate in a 24x7 rotational shift environment
- Good hands on experience with API usage
- Programming language knowledge to automate tasks and Experience with Programming languages like Python, Terraform to Automate manual tasks.
- Experience with KV entries, Worker code, and Cloudflare's API.
- Excellent problem-solving skills, with the ability to troubleshoot complex security and P1 operations issues.
- Strong communication skills, with the ability to collaborate with cross-functional teams and communicate technical information to non-technical stakeholders.
- Experience with Cloudflare's security and operations features, including WAF, DNS, and TLS
- Experience with cloud security platforms, including AWS, Azure, and Google Cloud
- Good to have understanding of machine learning and Bot management.
- Experience with agile development methodologies, including Jira and Service Now
Bachelor's degree