- Location
- Cyberjaya
- Type
- Full-time
- Department
- Engineering
- Closing date
- Today
- Source
- CareersPage
Description
We are seeking an experienced Infrastructure Security Engineer to support, maintain, and enhance our Application Security Manager (ASM) / Web Application Firewall (WAF) environment. The ideal candidate will have hands-on experience with enterprise web security solutions, strong knowledge of web application security, and expertise in managing and fine-tuning WAF policies to protect critical applications against evolving cyber threats.
Key Responsibilities
- Support, administer, and maintain F5 ASM/WAF implementations to ensure optimal security and performance.
- Design, implement, configure, and maintain F5 ASM solutions to protect web applications from security threats and vulnerabilities.
- Deploy, fine-tune, and optimize WAF security policies based on business and security requirements.
- Monitor web application traffic and analyze potential security threats and attack patterns.
- Investigate, analyze, and respond to web application security incidents, providing timely mitigation and resolution.
- Configure and manage F5 LTM, including Virtual IPs (VIPs), load balancing, and SSL certificate management.
- Review and refine attack signatures and security policies to address emerging threats.
- Collaborate with infrastructure and application teams to ensure secure deployment of web applications.
- Support vulnerability management activities, including remediation and security validation.
- Handle incident management and ticket resolution following established operational processes.
Required Skills & Experience
- Hands-on experience with F5 ASM (Application Security Manager) and Web Application Firewall (WAF) implementation and management.
-
Experience with enterprise web security platforms such as:
- AppTrana
- AWS WAF
- Cloudflare
- Akamai
- F5 ASM/WAF
-
Strong working knowledge of F5 LTM, including:
- Virtual IPs (VIPs)
- Load Balancing
- SSL Certificate Management
- Solid understanding of web application security principles.
- Strong knowledge of OWASP Top 10 and common web application vulnerabilities.
- Experience analyzing and tuning WAF attack signatures and security policies.
- Familiarity with the Vulnerability Management Lifecycle.
- Experience in security incident response and incident management processes.
- Ability to troubleshoot, analyze, and resolve infrastructure security issues.
- Experience working within an enterprise infrastructure security environment.
Preferred Qualifications
- Experience with Akamai web security solutions.
- Experience managing cloud-based WAF platforms.
- Knowledge of enterprise security best practices and web application protection strategies.
- Strong analytical and problem-solving skills.
Technical Skills
- F5 ASM
- F5 LTM
- Web Application Firewall (WAF)
- Akamai
- Cloudflare
- AWS WAF
- AppTrana
- OWASP Top 10
- Vulnerability Management
- SSL Certificates
- Load Balancing
- Incident Management
- Infrastructure Security