Lead Cybersecurity WAF Engineer
$122.6k - $204.4kCox
The Lead Cybersecurity Web Application Firewall (WAF) Engineer is the enterprise's foremost expert and strategic owner of WAF and application-edge security. This role sets the vision, strategy, and standards that govern how public-facing applications are protected across Cox Automotive.
The Lead Engineer drives the architecture of WAF implementations, leads complex threat response efforts, advances automation and logging capabilities, and partners with cross-functional engineering, cybersecurity, and business teams to ensure resilient, scalable, and modern WAF protections. Main responsibilities are tuning and improving security policies, implementing the WAF for new public websites based on established architecture patterns, and participating in security events to use the WAF as a protective and defensive measure against threat actors. This role will use their technical knowledge in implementing and using a web application firewall as a protective and defensive cybersecurity control. They will use their experience with networking concepts such as DNS, and edge services to route website traffic, understand how web applications and mobile applications are designed to use client-server communication, and must be able to partner with cross-functional teams throughout the organization. This role will report directly to the Senior Manager of Application Security at Cox Automotive. What You'll Do:- Own and champion the enterprise WAF, shaping its strategy, patterns, and standards in partnership with the architecture team. We're looking for someone who lives and breathes WAF and can elevate security for all public-facing sites and APIs.
- Analyze WAF rules to identify improvements and explain recommended changes to improve the protections the WAF provides.
- Collaborating with security architecture on long-term WAF strategy, including technology standards, architectural patterns, and security roadmaps.
- Author and maintain runbooks, playbooks, and threat specific WAF tuning strategies. Lead the creation and continuous improvement of runbooks, playbooks, and automated detection/triggers.
- Perform cyber engineering trend analysis and reporting, defining and recommending tool, infrastructure and other improvements.
- Proposes and helps review plans and policies to improve the overall security environment.
- Participate in security events and incident response (e.g., botnet traffic spikes, Layer 7 attacks) to identify gaps in current design and propose solutions to prevent threats from reoccurring.
- Research and evaluate emerging security trends, threats, and technologies, and recommend appropriate solutions and enhancements.
- Partnering closely with AppSec, Cyber Defense, and Engineering teams for secure-by-default adoption.
- Bachelor's degree in a related discipline and 6 years' experience in a related field. The right candidate could also have a different combination, such as a master's degree and 4 years' experience; a Ph.D. and 1 year of experience; or 18 years' experience in a related field
- At least 4 years focused on cybersecurity with at least 2 years managing enterprise WAF.
- Demonstrated expert level experience architecting, implementing, and operating enterprise WAF solutions across multiple environments.
- Must have deep knowledge of how network traffic routes between clients and servers across the internet (e.g., DNS, CDN/edge routing).
- Clearly articulate the objective of specific cybersecurity policies and procedures to technical and non-technical stakeholders.
- Proven experience leading technical initiatives and mentoring engineering teams.
- Excellent customer service skills, writing, and presentation skills.
- Develop a strong and productive working environment with key stakeholders and collaborate closely with other Cox entities' cybersecurity teams to implement cybersecurity best practices.
- Consultative nature to work through controversial or complex topics to employees, leaders, and/or senior leadership.
- Proficient in Python and Terraform.
- Creatively solving complex cybersecurity challenges while exhibiting solid, pragmatic business acumen.
- Experience utilizing Agile methodologies and DevSecOps.
- Initiating change and deploying solutions in Fortune 1000 companies.
- Knowledge of cybersecurity frameworks (e.g., ISO 27000, NIST, FFIEC) and industry relevant regulations that will guide architectural requirements (e.g., GDPR, FFIEC, GLBA).
- Knowledge of current cybersecurity and technology architectures such as zero trust, IaaS, PaaS, SaaS, virtualization, and containerization.
- A strong understanding of cloud containers and/or serverless platforms (e.g., EKS, ECS, Lambda, Fargate).
- Experience with security testing tools such as Fortify, BurpSuite, and Wiz.
- Extensive technology knowledge and recognized expertise in several areas including .NET framework, Mono, Spring frameworks, Oracle, serverless, cloud patterns, cloud service and user authentication or similar.
- Experience with cloud infrastructure (AWS, GCP, or Azure) and services and on-premises infrastructure.
- Experience in the development and design of cybersecurity standard methodologies to all layers of the hosting and application stack in both cloud and on-premises environments.
- Knowledge of Identity and Access Management (IAM), cryptography / key management, secrets management, access controls and security protocols (e.g., multi-factor, SAML, OAuth, OIDC).
- Experience with firewall, web application firewalls, and other edge services as well as deep understanding of DMZ and other network architectures.
- AWS Well-Architected Framework.
- Experience in national critical infrastructure industries (telecommunications, financial services, defense, government, etc.).
- Big four consulting or Fortune 500 company experience.
- Relevant industry certification (e.g., CISSP, CEH, OSCP, Azure, AWS, CISM, CISA).
USD 122,600.00 - 204,400.00 per year Compensation: Compensation includes a base salary in the range of $122,600.00 - $204,400.00. The base salary may vary within the anticipated base pay range based on factors such as the ultimate location of the position and the selected candidate's knowledge, skills, and abilities. Position may be eligible for additional compensation that may include an incentive program. Benefits: The Company offers eligible employees the flexibility to take as much vacation with pay as they deem consistent with their duties, the company's needs, and its obligations; seven paid holidays throughout the calendar year; and up to 160 hours of paid wellness annually for their own wellness or that of family members. Employees are also eligible for additional paid time off in the form of bereavement leave, time off to vote, jury duty leave, volunteer time off, military leave, and parental leave. EOE, including disability/vets.
Vacancy posted 22 days ago
Similar jobs that could be interesting for youBased on the Lead Cybersecurity WAF Engineer in Pine Lake, GA vacancy
$106.8k - $194.8k
...Join EY and help to build a better working world. WAF Operations Solution Engineer PRACTICE DESCRIPTION: As a WAF Operations Solution... ...from cyber threats. You will work within a team of cybersecurity professionals to establish effective security measures...SuggestedSummer holidayFlexible hours$139.74k - $209.62k
...Engineer Lead (AWS | CI/CD | Terraform | GitLab/Bitbucket) PLEASE NOTE: This position is not eligible for current or future visa sponsorship Location : This role requires associates to be in-office 1 - 2 days per week, fostering collaboration and connectivity, while...SuggestedTemporary workWork experience placementWork at officeLocal area2 days per week1 day per week- ...operational technology (OT) systems. Summary The Systems Engineer will support and maintain enterprise infrastructure... ...performance, availability, and operational reliability Support cybersecurity and compliance initiatives across infrastructure systems Participate...Suggested
- ...Job Description Job Description This Engineer role, part of GSOC's Security Operations... ...systems along with experience in cybersecurity and NERC CIP compliance. Performs duties... ...s physical and cyber security programs. Leads major Power Technology projects associated...SuggestedCasual workLocal areaAfternoon shift
$115.1k - $165.45k
...Presales Enablement and Innovation seeks an energetic, sales‑focused Lead Presales Demo Solutions Technologist to support how UKG brings... ...The team partners closely with Presales, Sales, Product, and Engineering to build, maintain, and evolve demo datasets and demo stories...SuggestedLocal area- ...Discover Your Career at Emory University Emory University is a leading research university that fosters excellence and attracts world-... ...KEY RESPONSIBILITIES: The Lead Network Systems Engineer, Science and Research Networks is a central university office position...Work at officeRemote workWork from homeFlexible hours
$131k - $174k
...applications' database and platforms. Aligning technology initiatives with business goals and enterprise architecture standards. Lead, coach, and develop database teams to drive performance, accountability, and continuous professional growth. Oversee planning and...Permanent employmentContract workFor contractorsRemote workVisa sponsorshipWork visaRelocation packageWeekend work- ...Design, plan, test and implement phases of cybersecurity technology projects. Essential... ...testing (DAST), and penetration testing. Lead efforts related to designing, planning,... ...eight years of experience in systems engineering or administration or an equivalent...Work experience placementWork at office
$91k - $169k
...Cybersecurity Engineer Welcome to Warner Bros. Discovery… the stuff dreams are made of. When we say, "the stuff dreams are made of," we're not just referring to the world of wizards, dragons and superheroes, or even to the wonders of Planet Earth. Behind WBD's vast...Temporary workWork at officeLocal area$75k
...OT/ICS Cybersecurity Engineer – Mid At Jacobs, we're challenging today to reinvent tomorrow by solving the world's most critical problems for thriving cities, resilient environments, mission-critical outcomes, operational advancement, scientific discovery and cutting...Contract workRemote work$121.1k - $224.9k
...Atlanta office. The WBD Security Engineering team empowers the WBD Global Information... ...intelligent security platforms. The Sr. Cybersecurity Engineer plays a key role in advancing... ...Areas EDR & Endpoint Security Lead the design, deployment, and...Temporary workWork at officeLocal areaRemote work$100k - $125k
...Senior Cybersecurity Engineer Join Aprio's Information Technology team and you will help clients maximize their opportunities. Aprio is a progressive... ...up with them. This is a hands-on engineering role that also leads cross-team initiatives. This position supports U.S....Permanent employmentFull timeRemote workFlexible hours- ...Cybersecurity Engineer IV Birmingham, AL / Charlotte, NC/ Atlanta, Georgia (hybrid- onsite 3 days per week) 6- month contract to hire Required Skills ~ :High School Diploma or GED and ten (10) years of related post-secondary education and/or experience in...Contract work3 days per week
$66.9k - $82.1k
...Position Overview The Cybersecurity Incident Response Engineer, Mid supports the detection, containment, and recovery of cybersecurity incidents across enterprise networks and mission-critical systems in a highly regulated government environment. This role contributes...Contract workWork experience placementWork at office$100k - $110k
...safer future. Department OverviewDepartment Overview: The Cybersecurity Maturity Model Certification (CMMC) program was designed by the... ...evidence for assessments and provide "met/not met" inputs to the lead assessor for consideration. Applied experience in...For contractorsRemote workRelocation- ...Cybersecurity Engineer This role is responsible for securing enterprise infrastructure, responding to cyber threats, administering Microsoft... ...Provide escalation support for security-related help desk issues. Lead response efforts during security incidents and outages....Remote work
$55.7k - $82.1k
...The Cybersecurity Incident Response Engineer, Jr. monitors enterprise security tools and logs to detect, analyze, and triage potential cybersecurity threats targeting mission-critical systems and data. The role performs initial investigations, distinguishes false positives...Contract workWork at officeShift work$130k - $175k
...Senior Cybersecurity Engineer Atlanta, GA | New York, NY Job Title: Senior Cybersecurity Engineer Location: Atlanta, GA | New York,... ...of HCPs, their insights, and clinical expertise, we are the leading provider of AI technology and real-time channels that life...Full timeTemporary workWork at officeLocal areaFlexible hours$111k - $138.7k
...We are seeking an Incident Commander to lead our response capabilities through a... ...an Incident Commander during critical Cybersecurity incidents, simultaneously building the... ...streams to minimize business downtime. Engineering Resilience: Pivot from reactive "fire-...Full timeContract workTemporary workPart timeLocal areaShift work$80k - $90k
...Cybersecurity Engineer Join Aprio's Information Technology team and you will help clients maximize their opportunities. Aprio is a progressive... ...will be rewarded with competitive compensation, industry-leading benefits and a flexible work environment to enjoy work/life...Permanent employmentFull timeRemote workFlexible hours$77.5k - $140.9k
...EY and help to build a better working world. Job Title: CyberSecurity SIEM Engineer (Senior SDC) About the job At EY, you’ll have the... ...the development of your skills throughout your career. As a leading global service provider in this field, you will...Work experience placementSummer holidayFlexible hours- ...Job Description Job Description As a Lead Field Service Tech for Fire Systems, a... ...Fire Systems solutions by installing pre-engineered software, performing system checkouts, and... ...maintenance, energy management, and cybersecurity protection. The application period for...Temporary workFor contractorsLocal areaRemote workRelocationMonday to FridayFlexible hours
$53.08k - $100k
...Job Description Job Description The Intensive Family Intervention (IFI) Team Lead – Floater is a leadership role responsible for launching and stabilizing new IFI teams and providing interim coverage for existing teams during Team Lead absences or vacancies....Full timeInterim roleImmediate startFlexible hoursWeekend workDay shiftAfternoon shift- ...Job Description Job Description About the Role: Join Lily Smiles Center Inc as a Dental Lead Assistant, where you will play a crucial role in delivering exceptional patient care in a friendly and professional environment. We are seeking a motivated individual who...Work at officeFlexible hoursAfternoon shift
$80.2k - $111.3k
...Position Overview The Cybersecurity Incident Response Engineer, Senior leads complex incident response efforts for enterprise networks and mission-critical systems, owning the technical direction and coordination of high-impact events in a highly regulated environment...Contract workWork experience placementWork at office- ...seeking a highly skilled and experienced Lead Software Architect to join our dynamic... ...report directly to our Sr. Director, Engineering and you’ll work out of our Atlanta, GA... ..., UX, firmware / controls, QA, DevOps, cybersecurity, and customer-facing teams to convert EPMS...Permanent employmentTemporary workRelocation packageFlexible hours
$240k - $260k
...architecture. Role Overview We are looking for a Channel Sales Engineer to serve as a technical resource for Cato Networks' Channel... ...sales professional. ~ Experience selling or assisting with Cybersecurity SaaS solutions, preferably in enterprise or partner-based...WorldwideFlexible hours$97k - $164.9k
...Position Overview The Systems Administrator Lead provides technical and leadership oversight for the administration of servers... ...vulnerability remediation, and logging, in collaboration with cybersecurity teams. Oversee monitoring and alerting for system-level events...Permanent employmentContract workWork experience placementWork at office- ...infrastructure environments. This position collaborates closely with engineering, cybersecurity, and cloud teams to ensure scalable, secure, and highly... ...layouts, power distribution, and hardware placement. 3. Lead capacity planning and performance engineering to ensure...Contract workWork at officeImmediate start
- ...affiliated brands include Cancos, UMI/Opustone, and Bell Cabinetry. POSITION OVERVIEW The Senior System Administrator will lead the administration and optimization of our IT infrastructure, ensuring high availability, security, and scalability across on-premises...Full timeTemporary workFlexible hoursShift work
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Lead Cybersecurity WAF Engineer. Be the first to apply!




