This page was automatically translated and may contain errors. View in English.
malomatia

Application Delivery and WAF Content Security Engineer

malomatia

Doha, Doha Municipality, Qatar · 全职

抢先申请

经验
8岁以上
薪水
职位空缺
1
发布
6小时前
工作模式
在办公室
学历
学士学位
恢复
需要申请

你的工作地点

职位描述

Position Overview

This role is responsible for end-to-end management of application delivery systems, global traffic routing, Web Application Firewall (WAF) administration, and file/content threat protection leveraging F5 BIG-IP (LTM & Advanced WAF), F5 GTM, FortiWeb WAF, and OPSWAT platforms. The engineer will undertake tasks involving traffic steering, SSL/TLS lifecycle management, high availability solutions, API and bot defenses, file threat triage, and orchestrate automation for infrastructure delivery.

Key Responsibilities

  • Set up and administer F5 BIG-IP LTM components including virtual servers, service pools, health checks, persistence setups, and steering of traffic flow.
  • Manage F5 GTM for DNS-based global load balancing, controlling north-south traffic direction, private DNS services integration, and pool and health monitor configuration.
  • Oversee SSL/TLS lifecycle operations spanning offloading, certificate governance, SSL profile management, and TLS security tightening on F5 and FortiWeb systems.
  • Establish and maintain high availability through clustering devices, synchronization of configurations, failover mechanisms, and resilience strategies on F5 solutions.
  • Direct Web Application Security measures including applying OWASP Top 10 security profiles, customizing policies, managing signatures, protecting APIs, mitigating bots, and enforcing rate limits and IP intelligence on F5 Advanced WAF and FortiWeb.
  • Adjust attack detection rules, update signatures while minimizing false positives, and develop tailored attack signatures when necessary.
  • Lead deployment and upgrades of BIG-IP and FortiWeb appliances or virtual editions, including firmware/TMOS updates, hotfix application, backups, restoration, and configuration lifecycle management.
  • Integrate FortiWeb with Oracle Cloud Infrastructure Load Balancer and other cloud load balancers for Layer 7 traffic inspection.
  • Operate the OPSWAT file scanning platform to inspect data-in-transit and data-at-rest, analyzing results, managing false positives, and enforcing secure file handling workflows.
  • Maintain scanning rules and procedures that support secure organization-wide file transfer and management.
  • Drive automation of infrastructure deployment through tools and APIs such as REST API, AS3, Terraform, and Ansible.
  • Conduct health and performance monitoring, analyze logs and metrics, perform root cause investigations, and manage vulnerability assessments, hardening measures, and patch compliance for all application delivery and content security components.

Required Qualifications and Experience

  • Bachelor’s degree in Computer Science, Information Security, or a related discipline.
  • At least 8 years of hands-on experience working with F5 BIG-IP modules (LTM, GTM, and Advanced WAF) and/or FortiWeb appliances in enterprise-grade environments.
  • Experience with content disarm and reconstruction (CDR) or multi-scanning platforms like OPSWAT is highly favorable.
  • Familiarity with infrastructure as code and automation frameworks such as Terraform, Ansible, and REST API/AS3 is essential.
  • Professional certifications are advantageous including F5 Certified BIG-IP Administrator (F5-CA), F5 301a/302 (Advanced WAF), and Fortinet NSE 6 (FortiWeb).
  • In-depth understanding of DNS systems, SSL/TLS protocols, traffic management across Layer 4 to Layer 7, and comprehensive file-based threat inspection techniques.

如果您希望收到回复,请留下您的信息——我们不会将您的信息用于其他用途。

点击浏览拖放,或 粘贴 截图

PNG、JPG、GIF、MP4、WebM、MOV 格式 · 每个文件最大 20MB · 最多 5 个文件

🤖
在线·即时人工智能帮助