Lead Cybersecurity WAF Engineer
$122.6k - $204.4kCox Automotive
The Lead Cybersecurity Web Application Firewall (WAF) Engineer is the enterprise's foremost expert and strategic owner of WAF and application-edge security. This role sets the vision, strategy, and standards that govern how public-facing applications are protected across Cox Automotive. The Lead Engineer drives the architecture of WAF implementations, leads complex threat response efforts, advances automation and logging capabilities, and partners with cross-functional engineering, cybersecurity, and business teams to ensure resilient, scalable, and modern WAF protections. Main responsibilities are tuning and improving security policies, implementing the WAF for new public websites based on established architecture patterns, and participating in security events to use the WAF as a protective and defensive measure against threat actors. This role will use their technical knowledge in implementing and using a web application firewall as a protective and defensive cybersecurity control. They will use their experience with networking concepts such as DNS, and edge services to route website traffic, understand how web applications and mobile applications are designed to use client-server communication, and must be able to partner with cross-functional teams throughout the organization. This role will report directly to the Senior Manager of Application Security at Cox Automotive. What You'll Do:
- Own and champion the enterprise WAF, shaping its strategy, patterns, and standards in partnership with the architecture team. We're looking for someone who lives and breathes WAF and can elevate security for all public-facing sites and APIs.
- Analyze WAF rules to identify improvements and explain recommended changes to improve the protections the WAF provides.
- Collaborating with security architecture on long-term WAF strategy, including technology standards, architectural patterns, and security roadmaps.
- Author and maintain runbooks, playbooks, and threat specific WAF tuning strategies. Lead the creation and continuous improvement of runbooks, playbooks, and automated detection/triggers.
- Perform cyber engineering trend analysis and reporting, defining and recommending tool, infrastructure and other improvements.
- Proposes and helps review plans and policies to improve the overall security environment.
- Participate in security events and incident response (e.g., botnet traffic spikes, Layer 7 attacks) to identify gaps in current design and propose solutions to prevent threats from reoccurring.
- Research and evaluate emerging security trends, threats, and technologies, and recommend appropriate solutions and enhancements.
- Partnering closely with AppSec, Cyber Defense, and Engineering teams for secure-by-default adoption.
- Bachelor's degree in a related discipline and 6 years' experience in a related field. The right candidate could also have a different combination, such as a master's degree and 4 years' experience; a Ph.D. and 1 year of experience; or 18 years' experience in a related field
- At least 4 years focused on cybersecurity with at least 2 years managing enterprise WAF.
- Demonstrated expert level experience architecting, implementing, and operating enterprise WAF solutions across multiple environments.
- Must have deep knowledge of how network traffic routes between clients and servers across the internet (e.g., DNS, CDN/edge routing).
- Clearly articulate the objective of specific cybersecurity policies and procedures to technical and non-technical stakeholders.
- Proven experience leading technical initiatives and mentoring engineering teams.
- Excellent customer service skills, writing, and presentation skills.
- Develop a strong and productive working environment with key stakeholders and collaborate closely with other Cox entities' cybersecurity teams to implement cybersecurity best practices.
- Consultative nature to work through controversial or complex topics to employees, leaders, and/or senior leadership.
- Proficient in Python and Terraform.
- Creatively solving complex cybersecurity challenges while exhibiting solid, pragmatic business acumen.
- Experience utilizing Agile methodologies and DevSecOps.
- Initiating change and deploying solutions in Fortune 1000 companies.
- Knowledge of cybersecurity frameworks (e.g., ISO 27000, NIST, FFIEC) and industry relevant regulations that will guide architectural requirements (e.g., GDPR, FFIEC, GLBA).
- Knowledge of current cybersecurity and technology architectures such as zero trust, IaaS, PaaS, SaaS, virtualization, and containerization.
- A strong understanding of cloud containers and/or serverless platforms (e.g., EKS, ECS, Lambda, Fargate).
- Experience with security testing tools such as Fortify, BurpSuite, and Wiz.
- Extensive technology knowledge and recognized expertise in several areas including .NET framework, Mono, Spring frameworks, Oracle, serverless, cloud patterns, cloud service and user authentication or similar.
- Experience with cloud infrastructure (AWS, GCP, or Azure) and services and on-premises infrastructure.
- Experience in the development and design of cybersecurity standard methodologies to all layers of the hosting and application stack in both cloud and on-premises environments.
- Knowledge of Identity and Access Management (IAM), cryptography / key management, secrets management, access controls and security protocols (e.g., multi-factor, SAML, OAuth, OIDC).
- Experience with firewall, web application firewalls, and other edge services as well as deep understanding of DMZ and other network architectures.
- AWS Well-Architected Framework.
- Experience in national critical infrastructure industries (telecommunications, financial services, defense, government, etc.).
- Big four consulting or Fortune 500 company experience.
- Relevant industry certification (e.g., CISSP, CEH, OSCP, Azure, AWS, CISM, CISA).
Vacancy posted 10 hours ago
Similar jobs that could be interesting for youBased on the Lead Cybersecurity WAF Engineer in Peachtree Corners, GA vacancy
$106.8k - $194.8k
...Join EY and help to build a better working world. WAF Operations Solution Engineer PRACTICE DESCRIPTION: As a WAF Operations Solution... ...from cyber threats. You will work within a team of cybersecurity professionals to establish effective security measures...SuggestedSummer holidayFlexible hours- Slip Robotics in Norcross, GA is seeking a Staff Mechanical Engineer to drive mechanical architecture for their autonomous mobile robots. In this role, you will take complex systems from concept through high-volume production, ensuring seamless integration across various...Suggested
- ...A leading construction firm in Johns Creek is seeking a dedicated VDC Engineer to join their team. This role involves developing 3D/4D BIM models, managing project workflows, and collaborating with various teams to ensure project success. The ideal candidate is proficient...SuggestedFull time
- ...Honeywell is seeking a Lead Software Architect to help define and drive the technical... .... You will work closely with senior engineers, data scientists, and product teams to design... ...-based architectures Exposure to cybersecurity concepts or secure system design Prior...SuggestedPermanent employment
- ...Lead Analyst, Cybersecurity Date: May 27, 2026 Req ID: 104075 Location: Duluth, GA, US Workplace Type: Remote Not everyone can... ...endpoint, network, and identity environments. Strong detection engineering mindset with the ability to translate threats into high-...SuggestedRemote workHome officeFlexible hours
- A leading educational institution in Norcross is seeking a Technical Rotational Engineer for a rotational program focused on developing manufacturing and engineering leaders. Participants will gain hands-on experience in fiber production, tackle real engineering challenges...Rotational program
- ...customer-focused US Senior Product Sales Engineer who thrives at the intersection of... ...architecture, and program management organizations Lead technical discovery discussions to... ...software, networking, display management, cybersecurity, and open architectures Support...For contractors
- ...Workstream is looking for a Chief Engineer for The Lawrence Hotel, set to open soon in Lawrenceville, Georgia. This leadership role involves overseeing all engineering operations, maintenance, and safety protocols to ensure high standards from day one. The ideal candidate...
- ...Flatiron Construction Corp is looking for a Construction Engineering Coordinator in Alpharetta, GA. This role involves supporting construction activities by coordinating engineering designs for both temporary and permanent works on the SR400 Express Lanes Project. Candidates...Permanent employmentTemporary work
- ...Airgas is seeking a Project Engineer to manage and support large-scale projects in Lawrenceville, GA. The ideal candidate will coordinate engineering activities, prepare proposals, and provide project management expertise. Successful applicants will have an engineering...Remote work
- ...Selectek is looking for an Electrical Studies Engineer in Alpharetta, Georgia. The ideal candidate will have a Bachelor's degree in Electrical... ...systems studies. This role includes conducting field surveys, leading engineering projects, and mentoring junior staff. Candidates...
- ...worldwide. The opportunity below is with one of our clients, a leading global medical technology company. This organization... ...empowering healthcare providers worldwide. Job Title: OT Cybersecurity Engineer Location: Alpharetta, GA 30005 Duration: 6...Temporary workFor contractorsRemote workWorldwide
$77.5k - $140.9k
...Join EY and help to build a better working world. Job Title: CyberSecurity SIEM Engineer (Senior SDC) About the job At EY, you’ll have the chance... ...development of your skills throughout your career. As a leading global service provider in this field, you will collaborate...Work experience placementSummer holidayFlexible hours- ...Cybersecurity Engineer Barracuda is a leading cybersecurity company providing complete protection against complex threats. Our platform protects email, data, applications, and networks with innovative solutions, and a managed XDR service, to strengthen cyber resilience...Remote workWorldwideFlexible hours
- JDC Power Systems, LLC in Roswell, Georgia is seeking a Project Manager to lead projects through to completion across multiple product lines including Medium Voltage Equipment and Power Transformers. Responsibilities include managing teams, ensuring financial and quality...
$16 per hour
Mammoth Holdings LLC in Duluth, Georgia, is looking for a dedicated Car Wash Supervisor to oversee daily operations and ensure the highest level of customer service. The ideal candidate should possess strong leadership qualities and have experience in a fast-paced environment...Hourly pay$179.6k - $299.4k
...well as a full suite of Private Cloud and Cybersecurity solutions, RapidScale enables companies... ...a strategic and hands-on Director to lead our Modern Digital Workplace practice.... ...Enablement Partner with Sales, Product, and Engineering to create AI aligned digital workplace...Remote work- ...Lead Field Service Tech For Fire Systems As a Lead Field Service Tech for Fire Systems... ...Systems solutions by installing pre-engineered software, performing system checkouts, and... ...building systems, predictive maintenance, energy management, and cybersecurity protection....Temporary workFor contractorsLocal areaRemote workRelocationMonday to FridayFlexible hours
- ...A Lead of Integrated Cybersecurity Architecture is responsible for evangelizing the agreed upon cybersecurity architectural principles, standards, and design patterns, and advising engineering teams on how to build secure products and enterprise tools for multi-cloud...
- ...Position: Middleware/DevOps Engineer Location: Bay Area, CA/Alpharetta, GA Duration: 12+ Monhs Position Summary Seeking a Senior DevOps Engineer with strong hands-on experience in DevOps tools, CI/CD automation, and scripting, along with solid expertise in middleware...
- ...Piworld in Norcross, GA, is seeking an Experienced Large Format Prepress Supervisor to lead prepress production operations. This hands-on role requires strong technical knowledge of prepress workflows and the ability to work in a fast-paced environment. The ideal candidate...
- Gasoc is seeking experienced Cybersecurity professionals to manage and oversee cybersecurity tools and strategies, focusing on cloud security specifically with Microsoft Azure and Microsoft 365. Candidates must have substantial experience in endpoint security, incident...
- ...Security Operations Engineer This Engineer role, part of GSOC's Security Operations department... ...systems along with experience in cybersecurity and NERC CIP compliance. Performs... ...s physical and cyber security programs. Leads major Power Technology projects associated...Local area
- ...Job Description Job Description MURZAN INC. A food processing and pharmaceutical and engineering and equipment manufacturer is seeking for a Graduated Electrical Engineer for our plant in Norcross, Georgia. Company Description MURZAN INC. IS A PHARMACEUTICAL...
- ...Acara Solutions Internal is seeking a Cybersecurity Consultant in Alpharetta, Georgia. This contractor role involves executing industrial security assessments, designing network security controls, and supporting remote operations enablement within industrial environments...For contractorsRemote work
- Gasoc in Tucker, GA is looking for a Security Operations Engineer to safeguard cyber assets and ensure compliance with NERC CIP standards... ...Engineering and have at least 6 years of experience in cybersecurity. The role offers a competitive salary and a full-time position...Full time
- ...Job Description Job Description Weiser Engineering, P.C. is currently seeking an Electrical Engineer for our office in Peachtree Corners, GA. This is an exciting opportunity for a self-motivated Electrical Engineer to join our team. Candidates should be experienced...Permanent employmentFull timeWork at office
- ...Description Concord Hospitality is seeking a skilled and proactive Chief Engineer to lead our property engineering team and ensure the safety, functionality, and quality of the hotel’s infrastructure and systems. This is a key leadership role responsible for all maintenance...Full timeTemporary workLocal areaFlexible hours
- ...A technology and advisory solutions provider in Norcross, GA is seeking a Systems Engineer to lead projects and mentor an engineering team. The ideal candidate will design and implement complex solutions, collaborating closely with Solution Architects. An emphasis on...Full time
$151.2k - $168k
...401(k). Primary Purpose of Position Performs advanced engineering problem solving in support of nuclear plant operations. Responsible... .... One of the following: (A) Site/Corporate leadership (leads HITs, project manages outage or on-line work, lead for issue termination...
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Lead Cybersecurity WAF Engineer. Be the first to apply!



