Talent.com
Cybersecurity Engineer - Web Application Firewalls
Cybersecurity Engineer - Web Application FirewallsTriumph Financial • Dallas, TX, United States
serp_jobs.error_messages.no_longer_accepting
Cybersecurity Engineer - Web Application Firewalls

Cybersecurity Engineer - Web Application Firewalls

Triumph Financial • Dallas, TX, United States
job_description.job_card.30_days_ago
serp_jobs.job_preview.job_type
  • serp_jobs.job_card.full_time
job_description.job_card.job_description

Join TriumphX!

TriumphX provides a concentration of technology and project management resources the members of the Triumph Financial portfolio of brands - TriumphPay, Triumph and TBK Bank - via a shared service model. We're looking for top tech and project management talent to analyze, recommend and build strategic solutions that support Triumph Financial's mission to become a world-class, market-leading financial and technology company.

Position Summary : The web application firewall analyst provides advanced, hands-on representation of the cybersecurity defense team. Candidates for this technical role must possess a solid understanding of information security and should have held positions in cybersecurity and systems administration. The role also requires an understanding of business and governance processes. Web application firewall (WAF) analyst analysts accept primary responsibility for the overall management lifecycle of the program.

Web application firewall analysts should understand that legacy and present-day systems and applications may have weaknesses that can be exploited by external threat actors and potentially lead to a breach. The position must collaborate with others on the team for remediation and additional validation, as well as contribute to other collaborative approaches driven by the security team strategy.

Web application firewall analysts oversee the strategic initiatives for short- as well as long-term plans to identify and reduce the attack surface across applications and systems. Use of automated tools to identify, assess and report is expected, with emphasis placed on effective communication to constituents relying on applications and systems that support their business.

Essential Duties & Responsibilities

Create, deploy, maintain and troubleshoot Web Application Firewalls (WAF) policies for new and existing web applications.

Review vulnerabilities that impact web applications and develop WAF "Virtual Patching" solutions.

Monitor and analyze activity logs to detect malicious internet traffic and indicators of compromise as well as to reduce false positive blocks.

Review WAF usage and define means to improve and mature protection policies.

Understand web applications at a sufficient level to work with developers to implement protective controls that may need to be customized for specific applications.

Interpret web protocol information to determine source, intent, and risk of threat agents.

Provide preventative maintenance, troubleshooting and quickly resolve problems to ensure infrastructure and application stability.

Participate in technical design activities to ensure a sound design and any infrastructure impact is understood.

Create and maintain technical documentation regarding the WAF including network diagrams, policies and operational procedures for managing the infrastructure.

Work closely with Development, QA, DevOPS, Operations, InfoSec, and design engineers to ensure security requirements are met and web-applications are adequately protected from cyber-attacks.

Review vulnerability and application scan output and assess where WAF configuration can be used to mitigate attacks.

Awareness of mainstream operating systems and a wide range of security technologies including network firewall, IPS, and web proxy.

Work as a team to consistently learn and share advanced skills and foster team excellence.

Support internal and external auditors in their duties that focus on compliance and risk reduction.

Collaborate with security groups such as red teams, threat intelligence and risk management to form a holistic team dedicated to thwarting attackers and reducing attack surface.

Periodically attend and participate in change management policy discussions and meetings.

Define key performance indicators (KPIs) and metrics across business units to illustrate effectiveness with WAF controls.

Understand breach and attack simulation solutions for known vulnerabilities and work with the team to validate controls effectiveness.

Liaise with the security engineering team to improve tool usage and workflow, as well as with the advanced threats and assessment team to mature monitoring and response capabilities.

Perform other duties as assigned.

Experience & Education

Understanding of Windows and

  • nix operating systems, endpoint applications, networking protocols and devices.

Preferably some experience with implementing security solutions across Amazon Web Services (AWS), Microsoft Azure or Google Cloud Platform (GCP).

Ability to obtain and maintain technical team and business support to influence a collaborative effort to reduce attack surface.

Knowledge of one or more compliance standards, including Payment Card Industry (PCI), Health Information Portability and Accountability Act (HIPAA), Gramm-Leach-Bliley Act (GLBA), National Institute of Standards (NIST) or International Standards Organization (ISO).

Capable of scripting in Python, Bash, Perl or PowerShell.

Understanding of OWASP, CVSS, the MITRE ATT&CK framework and the software development lifecycle.

Bachelor's degree in Information Security, Information Systems, Computer Science, or equivalent work experience.

At least 3-5+ years' experience in managing and deploying web application firewalls, application security, or information security administration.

Proficient with cloud WAF solutions such as F5, Imperva, AWS, etc.

Preferably, one or more of the following certifications : CSSLP, CASE, GWEB, CISSP or CRISC.

Experience with infrastructure-as-code (IAC) tools like Terraform, Ansible, Cloud Formation, etc. is preferred

Skills & Abilities Required

Strong interpersonal skills.

Quality written, oral, and presentation skills to communicate business risk and remediation requirements from assessments.

Analytical and problem-solving mindset with an attention to detail.

Ability to function with supervision from other analysts.

Commitment to operational excellence and continuous process improvement.

Willingness to expand security knowledge, skills, and abilities to achieve department initiatives.

Self-starter requiring minimal supervision.

Highly organized and efficient.

Demonstrated strategic and tactical thinking, along with decision-making skills and business acumen.

Information Security Web Application Firewall Analyst should have a working knowledge of :

Web Application Firewalls

TLS and certificate management

Infrastructure-as-Code (IAC)

On-call network troubleshooting

Network Security

Network protocols

Threat management and response

Role and attribute-based access controls

(RBAC and ABAC)

System administration

Foundational routing, switching, segmentation

Vulnerability scanners

Log analysis

Virtual Private Networks (VPN)

Security Information and Event Monitoring Tools (SIEM)

Competencies

To perform the job successfully, an individual should demonstrate the following competencies :

Problem Solving - Identifies and resolves problems in a timely manner; Gathers and analyzes information skillfully; Develops alternative solutions.

Technical Skills - Pursues training and development opportunities; Strives to continuously build knowledge and skills; Shares expertise with others.

Quality Management - Looks for ways to improve and promote quality; Demonstrates accuracy and thoroughness.

Organizational Support - Follows policies and procedures; Completes administrative tasks correctly and on time; Supports organization's goals and values; Benefits organization through outside activities; Supports affirmative action and respects diversity.

Quality - Demonstrates accuracy and thoroughness; Looks for ways to improve and promote quality; Applies feedback to improve performance; Monitors own work to ensure quality.

Adaptability - Changes the approach or method to best fit the situation.

Work Environment

The work environment characteristics described here maybe encountered while performing the essential functions of this job. Reasonable accommodations may be made to enable individuals with disabilities to perform the essential functions.

Moderate noise (i.e., business office with computers, phone, and printers, light traffic).

Ability to work in a confined area.

Ability to sit at a computer terminal for an extended period. Occasional stooping or kneeling may be necessary.

While performing the duties of this job, the employee is regularly required to stand, sit, talk, hear and use hands and fingers to operate a computer keyboard and telephone.

Specific vision abilities are required by this job due to computer work.

Light to moderate lifting is required.

Occasional travel is required.

Triumph Bancorp, Inc. and its subsidiaries reserve the right to modify this job description at any time, with or without notice. This job description in no way implies that these are the only duties, to be performed by the employee occupying this position. This job description is not an employment contract, implied or otherwise.

Equal Employment Opportunity Statement : Triumph Bancorp, Inc., and its subsidiaries, provide equal employment opportunities (EEO) to all employees and applicants for employment without regard to race, color, religion, gender, sexual orientation, national origin, age, disability, genetic information, marital status, or status as a covered veteran in accordance with applicable federal, state, and local laws.

#LI-JG1

We offer Medical, Dental, Vision, Paid Time Off, 401k and much more.

Go on. Do it. Apply Today!

serp_jobs.job_alerts.create_a_job

Firewall Engineer • Dallas, TX, United States

Job_description.internal_linking.related_jobs
Cybersecurity Risk Analyst (Dallas)

Cybersecurity Risk Analyst (Dallas)

Dexian • Dallas, TX, United States
serp_jobs.job_card.full_time
Risk Analyst - 2nd Line of Defense.Location : Coppell, TX [OR] Tampa, FL ( Choose Any 1 ).Hybrid : 3 days Onsite & 2 days REMOTE. Duration : 6 Months (CONTRACT TO HIRE).Financial Services Industry expe...serp_jobs.internal_linking.show_more
serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
M516- (764117)Cybersecurity Engineer

M516- (764117)Cybersecurity Engineer

FHR • Dallas, TX, US
serp_jobs.job_card.full_time
serp_jobs.filters_job_card.quick_apply
Our client has an opening for a Cybersecurity Engineer 3 (764117).This position is up to 5 months with the option of extension. The client is located in Richmond, VA.IT security or cloud securit...serp_jobs.internal_linking.show_more
serp_jobs.last_updated.last_updated_30
Cyber Security Engineer (Dallas)

Cyber Security Engineer (Dallas)

Motion Recruitment • Dallas, TX, United States
serp_jobs.job_card.temporary
Hiring : Cybersecurity Engineer.Location : Dallas, TX / Chicago, IL / Peoria, IL.In this role, you will collaborate closely with development teams to identify, assess, and remediate security vulnerab...serp_jobs.internal_linking.show_more
serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
Classified Cybersecurity Manager

Classified Cybersecurity Manager

RTX • Richardson, Texas, USA
serp_jobs.job_card.full_time
HTX36 : Richardson TX 3200 E Renner Rd Richardson TX 75082-2402 USA.Person or Immigration Status Requirements : .The Cybersecurity Manager position will lead and manage all aspects of Cybersecurity ...serp_jobs.internal_linking.show_more
serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
Sr. CyberArk EPM

Sr. CyberArk EPM

Inherent Technologies • Frisco, TX, United States
serp_jobs.job_card.full_time
serp_jobs.filters_job_card.quick_apply
CyberArk EPM Endpoint Application Control Technical Lead Location : Overland Park or Frisco TX Day 1 ONSITE< / b&...serp_jobs.internal_linking.show_more
serp_jobs.last_updated.last_updated_30
Lead Security Engineer AWS

Lead Security Engineer AWS

JPMorganChase • Plano, Texas, USA
serp_jobs.job_card.full_time
Take on a crucial role where youll be a key part of a high-performing team delivering secure software solutions.As a Lead Security Engineer at JPMorgan Chase within the Cybersecurity & Technolo...serp_jobs.internal_linking.show_more
serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
Sr. Lead, Software Engineer, Back End (Cloud Operations Resilience Engineering)

Sr. Lead, Software Engineer, Back End (Cloud Operations Resilience Engineering)

Capital One • Plano, TX, US
serp_jobs.job_card.full_time +1
Lead, Software Engineer, Back End (Cloud Operations Resilience Engineering).Do you love building and pioneering in the technology space? Do you enjoy solving complex business problems in a fast-pac...serp_jobs.internal_linking.show_more
serp_jobs.last_updated.last_updated_variable_hours • serp_jobs.job_card.promoted • serp_jobs.job_card.new
Firewall Engineer

Firewall Engineer

TEKsystems • Dallas, Texas, United States
serp_jobs.job_card.full_time
In this contingent resource assignment, you may : Consult on complex initiatives with broad impact and large-scale planning for Information Security Engineering. Review and analyze complex multi-face...serp_jobs.internal_linking.show_more
serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
CONFIDENTIAL : Director of Cybersecurity

CONFIDENTIAL : Director of Cybersecurity

Genesis10 • Plano, TX, US
serp_jobs.job_card.permanent
Genesis10 is seeking a Director of InfoSec & Cybersecurity for a highly innovative client located in Plano, TX.This is a Direct Hire position. W2 Status : Only candidates available and ready to work ...serp_jobs.internal_linking.show_more
serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
Network Engineer (11948-1)

Network Engineer (11948-1)

Orcha Systems • Plano, Texas, United States
serp_jobs.job_card.full_time
serp_jobs.filters_job_card.quick_apply
F5 BigIP, Fortinet, Juniper, NetScaler, Cisco ASA, Palo Alto, Checkpoint, WAN technologies, VPNs, HIPAA, load balancing, app delivery, Network Security. Network Security (F5 BigIP Load Balancer).Net...serp_jobs.internal_linking.show_more
serp_jobs.last_updated.last_updated_30
Azure Engineer

Azure Engineer

Veloc Inc • Dallas, TX, US
serp_jobs.job_card.full_time
Azure Engineer Job Overview Responsible for the design, implementation, and administration of Azure Cloud environment.Responsibilities and Duties Design, implement, and manage cloud infrastructure ...serp_jobs.internal_linking.show_more
serp_jobs.last_updated.last_updated_30 • serp_jobs.job_card.promoted
Principal Engineer III - Cyber

Principal Engineer III - Cyber

Western Alliance Bancorporation • Dallas, TX, United States
serp_jobs.job_card.full_time
Job Title : Principal Engineer III - Cyber.The Principal Engineer III reports within the office of the CISO organization directly to the Business Information Security Officer.The resource is respons...serp_jobs.internal_linking.show_more
serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
Lead Product Security Engineer

Lead Product Security Engineer

Dematic Corp. (ILD-US) • Plano, TX, United States
serp_jobs.job_card.full_time
We are looking for a hands-on and highly motivated Lead Product Security Engineer to join our Product Security Operations team. In this role, you'll help protect and scale our cloud environment and ...serp_jobs.internal_linking.show_more
serp_jobs.last_updated.last_updated_30 • serp_jobs.job_card.promoted
IAM Engineer

IAM Engineer

Softtek Integration Systems • Dallas, TX, US
serp_jobs.job_card.full_time
Softtek Integration Systems, Inc.Job Description : Softtek Integration Systems, Inc.Job Description : Experience with implementation, support and maintenance of Information Security tools Experience ...serp_jobs.internal_linking.show_more
serp_jobs.last_updated.last_updated_30 • serp_jobs.job_card.promoted
Cybersecurity-Software Engineering

Cybersecurity-Software Engineering

L3Harris Technologies • Richardson, TX, US
serp_jobs.job_card.full_time
Our employees are unified in a shared dedication to our customers’ mission and quest for professional growth.Fundamental to our culture is an unwavering focus on values, dedication to our communiti...serp_jobs.internal_linking.show_more
serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted
Domain Lead

Domain Lead

Toyota Tsusho Systems • Plano, TX, US
serp_jobs.job_card.full_time
serp_jobs.filters_job_card.quick_apply
The Product Cybersecurity Domain Lead is responsible for leading cybersecurity efforts across the connected vehicle ecosystem. This role ensures security is embedded throughout the product lifecycle...serp_jobs.internal_linking.show_more
serp_jobs.last_updated.last_updated_variable_days
Senior Associate- Cyber Risk

Senior Associate- Cyber Risk

EisnerAmper • Dallas, TX, United States
serp_jobs.job_card.full_time
At EisnerAmper, we look for individuals who welcome new ideas, encourage innovation, and are eager to make an impact.Whether you're starting out in your career or taking your next step as a seasone...serp_jobs.internal_linking.show_more
serp_jobs.last_updated.last_updated_variable_hours • serp_jobs.job_card.promoted • serp_jobs.job_card.new
Cybersecurity & Network Administrator

Cybersecurity & Network Administrator

PMAM Corporation • Dallas, Texas, United States
serp_jobs.job_card.full_time
Position – Cybersecurity & Systems Administrator Job type - Fulltime Location – North Dallas, TX (75240) Onsite Benefits Offered - Vision, Medical, Life, Dental and Retirement plan (SEP-IRA) Note : ...serp_jobs.internal_linking.show_more
serp_jobs.last_updated.last_updated_variable_days • serp_jobs.job_card.promoted