We are hiring for the post of Security Engineer @ Kochi / Bangalore for a leading IT Co.
Job Description:-
- 5+ years in platform security, cloud security, or edge security roles, with a minimum of 3 years in a hands-on CDN security capacity.
- Deep, demonstrable expertise with enterprise CDN platforms such as Akamai, Cloud flare, Fastly, or AWS Cloud Front, including:
- Writing, deploying, and tuning custom WAF rules and managed rule groups.
- Configuring and managing bot mitigation policies, bot scoring thresholds, and challenge/block actions.
- Designing and executing DDoS mitigation strategies for both volumetric and application-layer attacks.
- Analysing CDN security event logs and traffic analytics to identify and respond to threats in real time.
- Proven experience supporting high-traffic, revenue-critical websites and securing large-scale distributed systems where availability and integrity are non-negotiable.
- Ability to articulate trade-offs between security posture and business impact (e.g., false positive rates, latency, user experience) when configuring CDN edge policies.
- Proficiency in scripting languages (Python, Bash) for automating CDN policy management, log analysis, and alerting. Experience with Infrastructure-as-Code tools (Terraform)for managing CDN and cloud security configurations.
- Experience with container security, Kubernetes hardening, and CI/CD pipeline security. Familiarity with SIEM tools, threat intelligence platforms, and compliance frameworks (SOC 2, ISO 27001, PCI-DSS).
- CDN or security vendor certifications (e.g., Akamai Certified Professional, Cloud flare Certified, AWS Security Specialty).
- Experience with API security gateways and securing GraphQL /REST APIs at the edge.
- Background in e-commerce security, retail, or DTC (direct-to-consumer) environments with high seasonal traffic spikes.
- Experience with threat modeling for web application architectures and CDN-integrated platforms.
- Familiarity with client-side security standards such as Content Security Policy (CSP), SubresourceIntegrity (SRI), and browser-side attack detection.
If interested please do share the updated CV to [Confidential Information] also share the below details:-
Total Exp-
Security Exp-
CDN Exp-
Akamai, Cloud flare, Fastly or AWS Cloud Front Exp-
Terraform, Kubernetes, CI/CD Exp-
Python ,Bash Exp-
Current CTC-
Expected CTC-
Notice Period-
Current Location-