Lead Cybersecurity WAF Engineer
$122.6k - $204.4kCOX ENTERPRISES
Cybersecurity Lead Engineer
Company: Cox Automotive - USA
Job Family Group: Information Technology
Management Level: Manager - Non People Leader
Flexible Work Option: Hybrid - Ability to work remotely part of the week
Travel %
Yes, 5% of the time
Work Shift: Day
Compensation: Compensation includes a base salary of $122,600.00 - $204,400.00. The base salary may vary within the anticipated base pay range based on factors such as the ultimate location of the position and the selected candidate's knowledge, skills, and abilities. Position may be eligible for additional compensation that may include an incentive program.
Job Description
The Lead Cybersecurity Web Application Firewall (WAF) Engineer is the enterprise's foremost expert and strategic owner of WAF and application-edge security. This role sets the vision, strategy, and standards that govern how public-facing applications are protected across Cox Automotive.
The Lead Engineer drives the architecture of WAF implementations, leads complex threat response efforts, advances automation and logging capabilities, and partners with cross-functional engineering, cybersecurity, and business teams to ensure resilient, scalable, and modern WAF protections. Main responsibilities are tuning and improving security policies, implementing the WAF for new public websites based on established architecture patterns, and participating in security events to use the WAF as a protective and defensive measure against threat actors.
This role will use their technical knowledge in implementing and using a web application firewall as a protective and defensive cybersecurity control. They will use their experience with networking concepts such as DNS, and edge services to route website traffic, understand how web applications and mobile applications are designed to use client-server communication, and must be able to partner with cross-functional teams throughout the organization.
This role will report directly to the Senior Manager of Application Security at Cox Automotive.
What You'll Do:
- Own and champion the enterprise WAF, shaping its strategy, patterns, and standards in partnership with the architecture team. We're looking for someone who lives and breathes WAF and can elevate security for all public-facing sites and APIs.
- Analyze WAF rules to identify improvements and explain recommended changes to improve the protections the WAF provides.
- Collaborating with security architecture on long-term WAF strategy, including technology standards, architectural patterns, and security roadmaps.
- Author and maintain runbooks, playbooks, and threat specific WAF tuning strategies. Lead the creation and continuous improvement of runbooks, playbooks, and automated detection/triggers.
- Perform cyber engineering trend analysis and reporting, defining and recommending tool, infrastructure and other improvements.
- Proposes and helps review plans and policies to improve the overall security environment.
- Participate in security events and incident response (e.g., botnet traffic spikes, Layer 7 attacks) to identify gaps in current design and propose solutions to prevent threats from reoccurring.
- Research and evaluate emerging security trends, threats, and technologies, and recommend appropriate solutions and enhancements.
- Partnering closely with AppSec, Cyber Defense, and Engineering teams for secure-by-default adoption.
Who Are You:
Minimum Qualifications
- Bachelor's degree in a related discipline and 6 years' experience in a related field. The right candidate could also have a different combination, such as a master's degree and 4 years' experience; a Ph.D. and 1 year of experience; or 18 years' experience in a related field
- At least 4 years focused on cybersecurity with at least 2 years managing enterprise WAF.
- Demonstrated expert level experience architecting, implementing, and operating enterprise WAF solutions across multiple environments.
- Must have deep knowledge of how network traffic routes between clients and servers across the internet (e.g., DNS, CDN/edge routing).
- Clearly articulate the objective of specific cybersecurity policies and procedures to technical and non-technical stakeholders.
- Proven experience leading technical initiatives and mentoring engineering teams.
- Excellent customer service skills, writing, and presentation skills.
- Develop a strong and productive working environment with key stakeholders and collaborate closely with other Cox entities' cybersecurity teams to implement cybersecurity best practices.
- Consultative nature to work through controversial or complex topics to employees, leaders, and/or senior leadership.
- Proficient in Python and Terraform.
- Creatively solving complex cybersecurity challenges while exhibiting solid, pragmatic business acumen.
- Experience utilizing Agile methodologies and DevSecOps.
- Initiating change and deploying solutions in Fortune 1000 companies.
- Knowledge of cybersecurity frameworks (e.g., ISO 27000, NIST, FFIEC) and industry relevant regulations that will guide architectural requirements (e.g., GDPR, FFIEC, GLBA).
Preferred Qualifications
- Knowledge of current cybersecurity and technology architectures such as zero trust, IaaS, PaaS, SaaS, virtualization, and containerization.
- A strong understanding of cloud containers and/or serverless platforms (e.g., EKS, ECS, Lambda, Fargate).
- Experience with security testing tools such as Fortify, BurpSuite, and Wiz.
- Extensive technology knowledge and recognized expertise in several areas including.NET framework, Mono, Spring frameworks, Oracle, serverless, cloud patterns, cloud service and user authentication or similar.
- Experience with cloud infrastructure (AWS, GCP, or Azure) and services and on-premises infrastructure.
- Experience in the development and design of cybersecurity standard methodologies to all layers of the hosting and application stack in both cloud and on-premises environments.
- Knowledge of Identity and Access Management (IAM), cryptography / key management, secrets management, access controls and security protocols (e.g., multi-factor, SAML, OAuth, OIDC).
- Experience with firewall, web application firewalls, and other edge services as well as deep understanding of DMZ and other network architectures.
- AWS Well-Architected Framework.
- Experience in national critical infrastructure industries (telecommunications, financial services, defense, government, etc.).
- Big four consulting or Fortune 500 company experience.
- Relevant industry certification (e.g., CISSP, CEH, OSCP, Azure, AWS, CISM, CISA).
Drug Testing
To be employed in this role, you'll need to clear a pre-employment drug test. Cox Automotive does not currently administer a pre-employment drug test for marijuana for this position. However, we are a drug-free workplace, so the possession, use or being under the influence of drugs illegal under federal or state law during work hours, on company property and/or in company vehicles is prohibited.
Benefits
The Company offers eligible employees the flexibility to take as much vacation with pay as they deem consistent with their duties, the company's needs, and its obligations; seven paid holidays throughout the calendar year; and up to 160 hours of paid wellness annually for their own wellness or that of family members. Employees are also eligible for additional paid time off in the form of bereavement leave, time off to vote, jury duty leave, volunteer time off, military leave, and parental leave.
About Us
Through groundbreaking technology and a commitment to stellar experiences for drivers and dealers alike, Cox Automotive employees are transforming the way the world buys, owns, sells – or simply uses – cars. Cox Automotive employees get to work on iconic consumer brands like Autotrader and Kelley Blue Book and industry-leading dealer-facing companies like vAuto and Manheim, all while enjoying the people-centered atmosphere that is central to our life at Cox. Benefits of working at Cox may include health care insurance (medical, dental, vision), retirement planning (401(k)), and paid days off (sick leave, parental leave, flexible vacation/wellness days, and/or PTO). For more details on what benefits you may be offered, visit our benefits page. Cox is an Equal Employment Opportunity employer – All qualified applicants/employees will receive consideration for employment without regard to that individual's age, race, color, religion or creed, national origin or ancestry, sex (including pregnancy), sexual orientation, gender, gender identity, physical or mental disability, veteran status, genetic information, ethnicity, citizenship, or any other characteristic protected by law. Cox provides reasonable accommodations when requested by a qualified applicant or
- A financial services provider in Atlanta is seeking an Endpoint Engineer to enhance the user experience for employees. The role involves deploying and managing endpoints, ensuring compliance with security standards, and providing advanced support for endpoint issues. Ideal...Suggested
- A global consulting firm is seeking a CyberSecurity SIEM Engineer to deliver advanced security solutions and enhance clients' organizational resilience. This role demands a minimum of 4 years' experience in information security systems and a Bachelor's degree in a relevant...Suggested
- ...Role Summary We are seeking a Hands-On Technical Project Lead to provide end-to-end technical leadership on medium to large... ...documentation with clear, actionable detail. Review code, enforce engineering standards, mentor developers, and champion CI/CD, testing, and...Suggested
- Engineer Lead Location: Ideal candidates will be able to report to our Pulse Point location at 740 W. Peachtree St NW, Atlanta, GA 30308. This role requires associates to be in-office 3-4 days per week, fostering collaboration and connectivity, while providing flexibility...SuggestedWork at officeLocal areaMonday to Friday3 days per week
- A leading construction services provider is seeking a Senior VDC Engineer in Atlanta, GA. The ideal candidate will have a solid background in Virtual Design and Construction (VDC) and Building Information Modeling (BIM). Responsibilities include leading model coordination...Suggested
- Holder Construction seeks a MEP Preconstruction Senior Engineer for their Atlanta office. This full-time role involves leading MEP preconstruction activities, managing communication with various stakeholders, and preparing detailed analyses of bids. Required qualifications...Full timeWork at office
- A global packaging company is seeking a Lead IT IAM Engineer in Atlanta, GA, with the possibility of remote work. This role involves designing and implementing Identity Governance & Administration solutions while collaborating with various IT and business partners. The...Remote job
- Gilder Search Group is seeking a Virtual Design and Construction (VDC) Senior Engineer in Atlanta, Georgia. This position involves critical support in design-build projects, requiring expertise in BIM technologies like Autodesk Building Design Suite, strong MEP coordination...
- A leading construction company in Atlanta seeks a Senior M/E Engineer to manage complex mechanical and electrical activities in various large projects. The role involves responsibilities in estimating, scheduling, quality control, and mentoring within a diverse team. Candidates...
- A leading engineering firm is seeking a licensed Senior Mechanical Engineer (P.E.) to join their dynamic team in Atlanta, GA. This leadership role involves managing mechanical design projects, mentoring junior staff, and ensuring systems meet green building standards. The...
- An established industry player is seeking a Senior Civil Engineer to lead innovative projects in Atlanta. This role involves managing the entire project lifecycle, ensuring client satisfaction, and delivering sustainable engineering solutions. With a focus on mentorship...
$105k - $130k
Superior Rigging & Erecting Co. in Atlanta, Georgia, is seeking a Project Engineer III or Senior Project Engineer to lead technical planning for complex crane, rigging, and steel erection projects. The ideal candidate will have a Bachelor’s degree in engineering and over...$114.75k - $180k
A high-speed aircraft manufacturer in Atlanta seeks a Test Engineer to develop and analyze test assets for hypersonic vehicles. This role provides a unique opportunity to work on innovative technology and collaborate with cross-functional teams. Candidates should possess...- ...Discover Your Career at Emory University Emory University is a leading research university that fosters excellence and attracts world-... ...KEY RESPONSIBILITIES: The Lead Network Systems Engineer, Science and Research Networks is a central university office position...Full timeWork at officeRemote workWork from homeFlexible hours
- A leading engineering consulting firm located in Atlanta, GA is seeking a Supervising Mechanical Engineer. In this role, you will lead and coordinate project teams, oversee staff performance, and manage project budgets. Ideal candidates will have a Bachelor's in Mechanical...Remote jobFlexible hours
$113k - $180k
Senior Water Engineer Group Lead page is loaded## Senior Water Engineer Group Leadlocations: US.GA.Atlantatime type: Full timeposted on: Posted Todayjob requisition id: R-153007### **Job Description****Overview**We are seeking a **Senior Water Engineer Group Lead** to join...Temporary workWork at officeLocal areaFlexible hours- A leading engineering firm in Atlanta is seeking a licensed Mechanical Engineer with over 10 years of experience to support unique and complex projects. The ideal candidate will have a bachelor's degree in mechanical engineering and a Professional Engineering (PE) Registration...
- Milhouse Engineering and Construction, Inc. seeks a Construction Project Engineer in Atlanta, GA. The role includes overseeing major aspects of construction projects, coordinating with field personnel, and managing budgets. A Bachelor's degree in Engineering or related...
- A leading engineering firm in Atlanta seeks a Lead Civil Engineer for its Transportation team. The role involves leading design projects, collaborating with various disciplines, and mentoring junior staff. Candidates should possess a Bachelor's degree in Civil Engineering...
$125k - $135k
The Planet Group is seeking an Electric Transmission Engineer V based in Atlanta, GA, or remote for East Coast applicants. This role involves leading initiatives to strengthen grid reliability, and modernizing infrastructure, and supporting renewable energy integration...Remote work- Gpac is seeking an experienced Transportation Engineer to join their team in Atlanta, GA. The role involves overseeing transportation projects, managing reports, and coordinating with multiple stakeholders. Ideal candidates will have a Bachelor's degree in Civil Engineering...
- A technology firm specializing in industrial solutions is seeking a Field Engineer based in Atlanta, Georgia. The role involves on-site installations, providing support, and ensuring the success of their products at client locations. Ideal candidates should have extensive...
$130k - $140k
A leading engineering consulting firm in Atlanta seeks a Senior Electric Transmission Engineer to lead complex projects, resolve technical issues, and mentor junior staff. The ideal candidate holds a Bachelor's Degree in Engineering, has at least 10 years of experience,...Flexible hours- A leading engineering consulting firm located in Atlanta, Georgia, is seeking a Civil Engineer with at least 10 years of experience to manage complex projects. The role involves leading multidisciplinary teams, ensuring client satisfaction, and providing mentorship to junior...
$73.45k - $132.78k
Leidos is seeking a Senior Civil - Site Engineer to join their civil engineering team in Atlanta. The position involves handling various electric utility projects, conducting site visits, developing junior engineers, and collaborating with design teams. Candidates should...Remote work$134.55k - $205.56k
Sargent Lundy is looking for a Lead Transmission Line Engineer based in Atlanta, GA, offering a hybrid work schedule. The role includes designing transmission lines and mentoring junior engineers, with a significant focus on compliance with technical specifications. Candidates...- A leading technology company in Atlanta is seeking a Senior Hardware Design Engineer to lead the design and development of high-quality circuits. This role involves collaborating with multidisciplinary teams to ensure solutions meet rigorous standards. Candidates should...
- A leading research institute in Smyrna, Georgia, is seeking an experienced Aerospace Engineer to engage in the research, design, and development of aircraft and spacecraft systems. The role involves developing methods and performing research tasks to meet project objectives...
- A leading consulting firm in Atlanta, GA is seeking an experienced Project or Senior Engineer to manage innovative structural projects. The ideal candidate will have over 6 years of experience, a Bachelor's degree in Civil/Structural Engineering, and strong communication...Work at officeFlexible hours
- Insight Global is looking for a Telecom Engineer in Atlanta, Georgia. This role involves ensuring the daily stability and performance of telephony systems in a financial services environment. Responsibilities include designing and administering VoIP platforms, troubleshooting...
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Lead Cybersecurity WAF Engineer. Be the first to apply!
- lead engineer Atlanta, GA
- lead industrial engineer Atlanta, GA
- lead network engineer Atlanta, GA
- lead operating engineer Atlanta, GA
- lead web developer Atlanta, GA
- lead infrastructure engineer Atlanta, GA
- remote cyber security Atlanta, GA
- cybersecurity technical writer Atlanta, GA
- cyber security sales Atlanta, GA
- cyber security technician Atlanta, GA

