Expoint - all jobs in one place

מציאת משרת הייטק בחברות הטובות ביותר מעולם לא הייתה קלה יותר

Limitless High-tech career opportunities - Expoint

Truist Web Application Firewall/DDOS Engineer 
United States, Georgia, Atlanta 
158745912

20.11.2024

Regular or Temporary:

English (Required)

1st shift (United States of America)Responsible for developing and maintaining the technical IT / cyber security capabilities necessary for safeguarding the firm's information systems and applications (software development lifecycle), including every phase of the SDLC and software stack. Design, plan, test and implement phases of cybersecurity technology projects.

ESSENTIAL DUTIES AND RESPONSIBILITIES

Following is a summary of the essential functions for this job. Other duties may be performed, both major and minor, which are not mentioned below. Specific activities may change from time to time.

  • Develop andmaintaintechnical and non-technicaldocumentation for the(WAF)WebApplicationFirewall system and related processes.

  • Develop andmaintaintechnical and non-technicaldocumentation for the(DDoS)Distributed Denial of Servicesystemsand related processes.

  • Monitor and analyze web traffic for potential security threats(both layers 3,4, and 7)andrecommendappropriate actionto mitigate

  • Provenexpertisein Akamai Kona Site Defender, Akamai Bot Manager, and AWS WAF

  • Familiarity with automation and scripting tools (e.g., Python, Terraform) for WAF policy deployment.

  • In-depth understanding of network protocols (BGP, TCP/IP, DNS, HTTP/S) and their role in DDoS mitigation.

  • Good understanding of BGP, routing, and network traffic management techniques used during DDoS attacks.

  • Experience with DDoS mitigation technologies and vendors (e.g.AWS Shield, AkamaiProlexic, AT&T Arbor

  • Serve as the primary escalation point for DDoS incidents, work closely with network operations,security operation and incident response teams to respond to active threats; analyze attack patterns, generate incident reports, and provide recommendations for post-attack improvements.

  • Participate in efforts related to designing, planning, enhancing, and testing all cybersecurity technologies used throughout the enterprise including base-lining current systems, trend analysis, andcapacityplanning asrequiredfor future systems requirements andnew technologies

  • Participate in the analysis of information todetermine, recommend, and plan the use ofnew technologies, or modifications to existing equipment and systems that will provide capability for proposed project orworkload, efficientoperation,and effective use of allotted

  • Participate in the implementation ofnew informationsecurity technologies or integration of existing technologies including initial configuration, installation, change management, and operational

  • Take a new perspective on existing solutions to solve complex problems and exercisejudgment based on the analysis (e.g.modeling, testing, etc.) of multiple sources of information.

  • Provide technical support of information security technologies, providing problem analysis and resolutionin a timely mannerand explain and interpret complex, difficult, or sensitive information.

  • Leadsmallcybersecurityprojects with manageable risks and resource requirements; plays significant roles in larger, more complex initiatives.


Required Qualifications:

The requirements listed below are representative of the knowledge, skill and/or ability required. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions.

1. Bachelor’s degree and six to eight years of experience in systems engineering or administration or an equivalent combination of education and work experience

2. Deep specialized and/or broad functional knowledge in applied enterprise information security technologies including but not limited to firewalls, intrusion detection/prevention systems, network operating systems, identity management, database activity monitoring, encryption, content filtering, and Mainframe security

3. Previous experience in leading complex IT projects

Preferred Qualifications:

  • Hands-on experience:Monitor and analyze web traffic for potential security threats and take appropriate action to mitigate risks.

  • Previous experience in planning and managing IT projects

  • Bachelor’s degree andsixyears of experience or an equivalent combination ofeducation and work experience

  • Banking or financialservices experience

  • + years of experience in Information Security with at least 5 years specializing in WAF and DDoS technologies preferable Akamai and AWS WAF.

Visual / Audio / Speaking

Able to access and interpret client information received from the computer and able to hear and speak with individuals in person and on the phone.

Manual Dexterity / Keyboarding

Able to work standard office equipment, including PC keyboard and mouse, copy/fax machines, and printers.

Able to work all hours scheduled, including overtime as directed by manager/supervisor and required by business need