Demo

WAF Security Engineer

College Board
Virginia, VA Remote Full Time
POSTED ON 12/8/2024
AVAILABLE BEFORE 2/5/2025

College Board - Technology - Cloud Security Engineering

100% Remote, working core EST hours

About the Team 

The Cloud Security Engineering (CSE) team engineers, operates, and secures College Board’s critical cloud infrastructure.  As a close-knit and collaborative group, we thrive on sharing ideas and working together to navigate intricate security challenges. By leveraging leading cloud security technology solutions, we proactively protect College Board’s web applications and products, all in support of our mission to clear a path for all students to own their future. We partner across the organization, collaborating closely with various cybersecurity and development teams to address sophisticated security issues. 

About the Opportunity  

As our WAF Engineer, you are a collaborative, detail-oriented and a proactive problem solver. You will develop, support, tune and deploy cutting-edge web application security solutions (WAF, DDOS, BOT Mitigation) across College Board. Focusing on web application security, you will engineer, deploy, and operate robust security solutions, including WAFs (Akamai, AWS, Cloudflare, etc.) and seamlessly integrate these platforms with other security solutions. You will leverage scripting in Python, shell, and other languages, as necessary to meticulously protect our infrastructure.

In this role you will:

  • Engineer, configure, deploy, and maintain Web Application Firewall solutions

  • Develop advanced scripts for manipulation of multiple data repositories to support analyst requirements

  • Develop advanced alerts/reports to meet the requirements of key stakeholders

  • Develop scalable security management tools and processes

  • Develop automation for security tools management and workflow integration

  • Collaborate with key stakeholders within Cybersecurity and Engineering teams to develop use cases to address specific business needs

  • Create WAF rules to mitigate threats and implement best practices

  • Develop new SIEM (Security Information and Event Management) content for Cybersecurity teams, including correlations, enrichments, dashboards, reports, and alerts that appropriately characterize web application attacks and mitigation mechanisms

  • Provide rotating 24/7 support for security-related issues

About You           

You have:

  • 3 years’ experience as a Security Engineer with strong focus on Akamai WAF platforms

  • Understanding of OWASP risks, vulnerabilities and mitigation mechanisms

  • Experience managing Web Application Firewalls and rules

  • Expertise in exploiting web apps and web services security vulnerabilities (XSS, CSRF, SQL injection, DoS, XML/SOAP, API attacks)

  • Proficiency in system exploits (Buffer Overflows, PTH attacks, Windows authentication framework, etc.)

  • Understanding of common network and web protocols

  • Knowledge of DDoS techniques and mitigation

  • Familiarity of event logs and alerts from various data sources (Windows/Unix systems, IDS/IPS, AV, HIDS/HIPS, WAFs, firewalls, web proxies)

  • Willingness and ability to provide 24/7 support, rotating primary and secondary support roles within the team

  • Authorization to work in the United States

Additional nice-to-haves:

  • Knowledge of SSDLC processes and application security tools and frameworks, including Kali Linux Web application testing tools (Burp Suite, Nikto, Maltego, SQLMap)

  • Experience in Cyber Security Operations, Digital Forensics, Threat Hunting, and Incident Response

  • System administration experience in a Windows and Unix environment

About Our Process 

  • Application review will begin immediately and will continue until the position is filled 

  • While the hiring process may vary, it generally includes: resume and application submission, recruiter phone/video screen, hiring manager interview, performance exercise such as live coding, a panel interview, a conversation with leadership and reference checks.  

About Our Benefits and Compensation

College Board offers a competitive benefits and compensation program that attracts top talent looking to make a difference in education. As a self-sustaining non-profit, we believe in compensating employees equitably in relation to each other, their qualifications, their impact, and the relevant market.

The hiring range for a new employee in this position is $120,000 to $131,000. Your salary will be carefully determined based on your location, relevant experience, the external labor market, and the pay of College Board employees in similar roles. College Board strives to provide our best offer up front based on this criteria.

Your salary is only one part of all that College Board offers, including but not limited to:  

  • A comprehensive package designed to support the well-being of employees and their families and promote education. Our robust benefits package includes health, dental, and vision insurance, generous paid time off, paid parental leave, fertility benefits, pet insurance, tuition assistance, retirement benefits, and more

  • Recognition of exceptional performance through annual bonuses, salary growth over time through market increases, and opportunities for merit raises and promotions based on increased scope of responsibility

  • A job that matters, a team that cares, and a place to learn, innovate and thrive

You can expect to have transparent conversations about benefits and compensation with our recruiters throughout your application process.

About Our Culture 

Our community matters, and we strive to practice and improve our culture daily. Here are some headlines: 

  • We are motivated to positively impact the educational and career trajectories of millions of students a year 

  • We prioritize building a diverse and inclusive team where every employee can thrive, and every voice is heard

  • We are a dynamic hybrid team, giving staff members the choice to either be fully remote or hybrid if they live close to a College Board office. Hybrid employees go into offices every Tuesday and Wednesday

  • We welcome staff to join any or all six of our affinity groups: ARISE (Alliance for Asian Retention, Inclusion, Success, and Engagement; DIASPORA (Alliance for Pan-African Success and Achievement); Pride (alliance for LGBTQ staff and allies); Resilience (alliance for Native staff and advocates); SALSA (Staff Alliance for Latinx Success and Achievement); and WIN (Women’s Impact Network)

  • We value learning and growth; we offer formal and informal ways to lead through your superpowers, sharpen your strengths, and meet your development goals

  • Our high-performing engineers work with the latest technologies, so you will be constantly learning and sharpening your skills

#LI-MS1

#LI-REMOTE

Salary : $120,000 - $131,000

If your compensation planning software is too rigid to deploy winning incentive strategies, it’s time to find an adaptable solution. Compensation Planning
Enhance your organization's compensation strategy with salary data sets that HR and team managers can use to pay your staff right. Surveys & Data Sets

What is the career path for a WAF Security Engineer?

Sign up to receive alerts about other jobs on the WAF Security Engineer career path by checking the boxes next to the positions that interest you.
Income Estimation: 
$65,440 - $83,454
Income Estimation: 
$102,189 - $143,024
Income Estimation: 
$152,549 - $188,894
Income Estimation: 
$194,072 - $240,547
Income Estimation: 
$135,994 - $168,063
Income Estimation: 
$161,209 - $233,553
Income Estimation: 
$77,991 - $108,747
Income Estimation: 
$111,725 - $147,313
Income Estimation: 
$112,673 - $137,290
Income Estimation: 
$140,233 - $181,029
Income Estimation: 
$161,209 - $233,553
Income Estimation: 
$70,462 - $84,818
Income Estimation: 
$77,991 - $108,747
Income Estimation: 
$87,093 - $107,335
Income Estimation: 
$140,233 - $181,029
Income Estimation: 
$161,209 - $233,553
Income Estimation: 
$111,725 - $147,313
Income Estimation: 
$139,945 - $168,577
Income Estimation: 
$140,233 - $181,029
Income Estimation: 
$161,209 - $233,553
View Core, Job Family, and Industry Job Skills and Competency Data for more than 15,000 Job Titles Skills Library

Job openings at College Board

College Board
Hired Organization Address New York, NY Full Time
College Board – Learning and Assessment – Psychometrics 100% Remote (anticipated 25% travel, usually 2-3 days at a time)...
College Board
Hired Organization Address New York, NY Full Time
This is a fully remote role. Candidates who live near CB offices have the option of being fully remote or hybrid (Tuesda...
College Board
Hired Organization Address New York, NY Full Time
This is a fully remote role. Candidates who live near CB offices have the option of being fully remote or hybrid (Tuesda...
College Board
Hired Organization Address New York, NY Full Time
Clinical Manager College Board - Risk Management Hybrid (NYO) or Remote Candidates should expect to come into the New Yo...

Not the job you're looking for? Here are some other WAF Security Engineer jobs in the Virginia, VA area that may be a better fit.

WAF Security Engineer

Adaptive Solutions Group, St. Louis, MO

WAF Security Engineer

The College Board, Chicago, IL

AI Assistant is available now!

Feel free to start your new journey!