🎁 Before you apply, rehearse this interview. Create your free WorkMundi account and get an Interview Training on HelpsYouSpeak — no cost, no card. I want my training →
Role Description Key Responsibilities Translate business and application security requirements into enterprise-grade WAAP and network security architectures. Lead architecture, design, and deployment of Web Application and API Protection (WAAP) solutions across global environments. Develop and drive multi-year roadmap for application-layer security, including WAF, API security, bot protection, and DDoS mitigation. WAAP Responsibilities (Primary Focus) Architect, implement, and manage WAAP platforms, including: Web Application Firewall (WAF) API Security (discovery, protection, runtime analysis) Bot Management o DDoS Protection (L3L7) Design and deploy WAAP solutions using platforms such as: Thales Imperva o Cloud-native WAFs (Azure, AWS WAF) or equivalent Develop and maintain custom WAF rules, security policies, and signatures to protect critical applications. Perform false positive tuning, policy optimization, and rule lifecycle management. Enable API discovery, schema enforcement, and protection against OWASP API Top 10 threats. Integrate WAAP with: SIEM/SOAR platforms Identity providers Threat intelligence feeds Collaborate with application teams to: Onboard applications into WAAP platforms Perform security assessments and risk reviews Ensure minimal performance impact while enforcing strong security controls Implement protection against OWASP Top 10 vulnerabilities (SQLi, XSS, RCE, etc.). Lead WAAP incident response and root cause analysis for application-layer attacks. Define and track application security metrics and KPIs (attack trends, mitigation effectiveness). Ensure compliance with security frameworks (CIS, NIST, Zero Trust, data protection standards). Core Network Security Responsibilities Architect and maintain secure network infrastructure across data center, campus, and cloud environments. Conduct security design reviews ensuring compliance with enterprise security standards. Provide risk reporting, control effectiveness, and security posture visibility. Support internal and external security audits. Manage and optimize Security Information and Event Management (SIEM) systems. Develop and maintain network security policies and procedures. Collaborate with cybersecurity, infrastructure, and application teams globally. Technical Qualifications 10+ years of experience in network security architecture, engineering, and operations. WAAP & Application Security Expertise (Mandatory) Strong experience with WAAP platforms (Akamai preferred Cloud WAF or equivalent accepted). Deep understanding of: OWASP Top 10 (Web &API) Application-layer threats and mitigation techniques Hands-on experience in: WAF policy creation and tuning API security controls (schema validation, authentication enforcement) Bot mitigation strategies o DDoS protection architecture (L3L7) Experience in: Traffic analysis (HTTP/HTTPS, TLS inspection) Behavioral-based threat detection Strong understanding of: Secure application architectures (monolith, microservices, APIs) DevSecOps integration and CI/CD security controls (nice to have) Network Security & Infrastructure Strong hands-on experience in: Firewalls (Fortinet, Palo Alto, Juniper) IDS/IPS, VPN, SIEM Expertise in: Firewall policy design, NAT, routing, inspection, and threat prevention Experience in designing secure: Hybrid (on-prem + cloud + internet-facing) environments Experience in: Proxy architectures (forward/reverse) Secure internet gateways Networking & Protocol Expertise Strong knowledge of TCP/IP, DNS, HTTP/HTTPS, TLS/SSL Routing protocols (BGP, OSPF, MPLS) Experience with: QoS, NetFlow, ACLs, NAT, IP traffic management Network monitoring and analysis tools Cloud & Integration Experience securing applications in AWS, Azure, GCP Familiarity with: Cloud-native WAF and API security tools Integration experience with: SIEM, EDR/XDR, IAM platforms Data Center & Enterprise Networking Experience managing enterprise environments with: Aruba, Arista, Juniper switches Firewalls, load balancers, WAN optimization tools Understanding of: High availability and performance optimization for application traffic Operations & Lifecycle Management Lead onboarding and lifecycle management of applications into WAAP platforms. Perform security tuning, upgrades, and optimization activities. Support incident response and threat mitigation at application layer. Work within ITIL frameworks (incident, problem, change management). Education & Certifications Bachelors degree in computer science, IT, or related field (or equivalent experience). 10+ years of experience in enterprise network security and application security. Preferred certifications: CCNP / CCIE / JNCIE Security certifications (CISSP, CISM) Vendor certifications (Akamai, AWS Security, Azure Security) Key Differentiators (What This JD Targets) Positions WAAP as a primary security control layer, not an add-on Strong alignment .
Here's how to pick the right one and stand out in your application.
144.883Jobs
31.687IN
81%EN
That number is real. WorkMundi's database shows 144,883 open engineer roles across the world. India has the most with 31,687 jobs, followed by the United States with 30,084. If you just finished reading one job ad and felt paralyzed by choice, you're not alone—but this scale is actually an advantage. It means you can afford to be selective.
Start by geography and language. The majority of engineer ads—117,837 of them—have the job posting text written in English. Use that as one filter, but remember: the ad text language tells you nothing about whether the role actually requires you to speak English day-to-day. Read the job description carefully. Then check which countries have the volume you're targeting. Singapore, Poland, and Australia round out the top five after India and the US.
Next, learn who's hiring. Accenture has posted 2,801 engineer roles. andurilindustries, speechify, and jobgether are also actively recruiting. If you're applying to one of these names, research their hiring patterns and interview style before you apply. That homework pays off.
When you interview, expect the question every engineer hears: 'Tell me about a time you had to debug a problem that wasn't in your job description.' Have a specific story ready—not a general one. Name the tools, the deadline pressure, and what you learned. Hiring managers listen for whether you see problem-solving as part of the role itself, not a favour.