Web Application Firewall Engineer

CDK Global India Pvt Ltd
Hyderabad
Not disclosed
Work from OfficeWork from Office
Full TimeFull Time
Min. 5 yearsMin. 5 years

Job Description

Web Application Firewall (WAF) Engineer

About Us

 

CDK Global is a leading provider of cloud-based software to dealerships and Original Equipment Manufacturers (“OEMs”) across automotive and related industries. The Company’s cloud-based, software as a service (“SaaS”) platform enables dealerships to manage their end-to-end business operations including the acquisition, sale, financing, insuring, repair, and maintenance of vehicles. By automating and streamlining critical workflows, the integrated platform of modern solutions enables dealers to sell and service more vehicles by creating simple and convenient experiences for customers and improves their financial and operational performance.

Position Summary

The Web Application Firewall (WAF) Engineer is a specialized security engineering role responsible for designing, implementing, and operating web application protection controls across CDK’s cloud and on‑premises environments. This role focuses on safeguarding customer and internet facing web applications from modern threats such as OWASP Top 10 risks, bot abuse, and API attacks. The WAF Engineer partners with Application, Cloud, and Infrastructure teams to embed scalable, resilient, and automated web security controls aligned with zero trust and enterprise risk management objectives.

Responsibilities

·         Design, deploy, and manage Web Application Firewall (WAF) solutions protecting internet-facing web applications

·         Configure, tune, and maintain WAF policies to mitigate OWASP Top 10 vulnerabilities, bot attacks, and application-layer threats

·         Operate WAF platforms across cloud and hybrid environments, including integration with CDNs, load balancers, and ingress services

·         Partner with Application and DevOps teams to embed WAF controls into CI/CD pipelines and application delivery workflow

·         Analyze WAF alerts and logs to identify attack patterns, reduce false positives, and improve detection efficacy

·         Support API security use cases including rate limiting, schema validation, and abuse prevention

·         Implement WAF rule lifecycle management processes including testing, promotion, and rollback

·         Drive automation of WAF configuration and deployment using infrastructure as code and APIs

·         Participate in incident response related to web application attacks, including containment and root cause analysis

·         Document WAF standards, reference architectures, and operational procedures

Qualifications

·         Bachelor’s Degree in Computer Science, Information Security, or equivalent combination of education and relevant experience

·         5+ years of experience in application or network security engineering roles

·         Hands-on experience operating Web Application Firewalls in enterprise or SaaS environments

·         Strong understanding of web application architecture, HTTP/S, REST APIs, and common attack techniques

·         Experience mitigating OWASP Top 10 vulnerabilities and application-layer threats

·         Working knowledge of cloud platforms (AWS, Azure, or GCP) and cloud-native application delivery services

·         Ability to analyze security logs, tune detection logic, and balance security controls with application availability

·         Strong collaboration skills and experience working with development and platform teams

Preferred Qualifications

·         Experience with leading WAF platforms such as Cloudflare, Akamai, AWS WAF, Azure WAF, F5, or similar technologies

·         Background securing APIs and microservices architectures, including API gateways and service meshes

·         Experience integrating WAF controls into DevSecOps and CI/CD pipelines

·         Knowledge of bot management, DDoS mitigation, and edge security services

·         Experience supporting compliance-driven environments and participating in security assessments

·         Relevant certifications such as GWAPT, CSSLP, CISSP, or vendor-specific WAF and cloud security certifications

 

At CDK, we believe inclusion and diversity are essential in inspiring meaningful connections to our people, customers and communities. We are open, curious and encourage different views, so that everyone can be their best selves and make an impact.

CDK is an Equal Opportunity Employer committed to creating an inclusive workforce where everyone is valued. Qualified applicants will receive consideration for employment without regard to race, color, creed, ancestry, national origin, gender, sexual orientation, gender identity, gender expression, marital status, creed or religion, age, disability (including pregnancy), results of genetic testing, service in the military, veteran status or any other category protected by law.

CDK is committed to providing reasonable accommodations for qualified individuals with disabilities and disabled veterans in our job application procedures. If you need assistance or an accommodation due to a disability, you may contact us at accommodations-ext@cdk.com.

Applicants for employment in the US must be authorized to work in the US.  CDK may offer employer visa sponsorship to applicants.

Experience Level

Senior Level

Job role

Work location
Work locationIndia - Hyderabad
Department
DepartmentIT & Information Security
Role / Category
Role / CategoryIT Security
Employment type
Employment typeFull Time
Shift
ShiftDay Shift

Job requirements

Experience
ExperienceMin. 5 years

About company

Name
NameCDK Global India Pvt Ltd
Job posted by CDK Global India Pvt Ltd

Similar jobs you can apply for

Accounts / Finance
Quess Corp Limited

Field Installation Engineer

Quess Corp Limited
Kondapur, Hyderabad
₹21,000 - ₹27,000
Field Job
Full Time
Any experience
No English Required
Reliance Jio

Channel Sales Lead

Reliance Jio
Malakpet, Hyderabad
₹37,000 - ₹45,000*
Field Job
Full Time
Min. 3 years
Good (Intermediate / Advanced) English
Spectrum Wireless and Technologies Limited

Laptop Repair Technician

Spectrum Wireless and Technologies Limited
ABIDS, Hyderabad
₹15,000 - ₹18,000
Work from Office
Full Time
Min. 6 months
Basic English
Reliance Jio

Home Service Intern

Reliance Jio
Hyderabad
₹11,000 - ₹11,000
Field Job
Full Time
Freshers only
Basic English
Quess Corp Limited

Field Installation Engineer

Quess Corp Limited
Hyderabad
₹21,000 - ₹27,000
Field Job
Full Time
Any experience
No English Required
Leon Technologies Integrations

Network Engineer

Leon Technologies Integrations
Jubilee Hills, Hyderabad
₹35,000 - ₹50,000
Work from Office
Full Time
Min. 3 years
Good (Intermediate / Advanced) English

You can expect a minimum salary of 0 INR. The salary offered will depend on your skills, experience and performance in the interview.

The candidate should have completed the required education and people who have 5 to 31 years are eligible to apply for this job. You can apply for more jobs in Hyderabad to get hired quickly.

The candidate should have sound communication skills and sound communication skills for this job.

Both Male and Female candidates can apply for this job.

No, it's not a work from home job and can't be done online. You can explore and apply for other work from home jobs in Hyderabad at apna.

No work-related deposit needs to be made during your employment with the company.

Go to the apna app and apply for this job. Click on the apply button and call HR directly to schedule your interview.

The last date to apply for this job is . For more details, download apna app and find Full Time jobs in Hyderabad . Through apna, you can find jobs in 64 cities across India. Join NOW!