Application Security Engineer (IGT1)

IFS

Not Interested
Bookmark
Report This Job

profile Job Location:

Colombo - Sri Lanka

profile Monthly Salary: Not Disclosed
Posted on: 2 hours ago
Vacancies: 1 Vacancy

Department:

Engineering

Job Summary

About this Role

We are seeking an Application Security Engineer with a strong focus on Security Operations and Web
Application Firewall (WAF) monitoring. This role is responsible for detecting analyzing and responding to
application-layer threats by reviewing WAF logs security alerts and web traffic patterns.
The engineer will work closely with SOC analysts DevOps and application teams to strengthen
application-layer defenses investigate suspicious activity and continuously improve web security controls.

Security Monitoring & Incident Response

  • Monitor application security alerts from Web Application Firewalls (WAF) and other security monitoring tools.
  • Investigate suspicious web traffic attack patterns and security events.
  • Triage and respond to security incidents related to web applications and APIs.
  • Conduct root cause analysis for application-layer attacks and security alerts.
  • Escalate confirmed incidents to the incident response or security engineering teams.


WAF Management

  • Configure tune and maintain WAF policies and rules to protect web applications.
  • Analyze WAF logs to identify attack attempts such as SQL injection cross-site scripting bot activity and API abuse.
  • Optimize WAF configurations to reduce false positives and improve detection accuracy.
  • Implement custom rules to mitigate emerging threats and vulnerabilities.

Threat Detection & Security Analysis

  • Analyze security events using SIEM and monitoring platforms.
  • Correlate WAF alerts with other security telemetry to identify potential attacks.
  • Identify trends in web attacks and recommend improvements to security controls.
  • Maintain documentation for incidents WAF rules and detection strategies.

Qualifications :

  • Bachelors degree in Computer Science Cybersecurity Engineering or a related technical field (or equivalent experience).
  • 3 years of experience in cybersecurity security operations or application security.
  • Hands-on experience working with Web Application Firewalls (WAF).
  • Experience analyzing security logs alerts and threat events.
  • Experience working in a Security Operations Center (SOC) or similar monitoring environment.
  • Understanding of web protocols such as HTTP HTTPS REST APIs and web architectures.
  • Familiarity with SIEM platforms and security monitoring tools.

Additional Information :

We champion flexibility and hybrid work options to support varying lifestyles and personal needs. At the same time we value the power of in-person collaboration to build community spark innovation and strengthen connections. Our approach ensures you can work in ways that suit you best while still engaging with colleagues to share ideas and grow together. #LI-Hybrid #LI-DNP 


    Remote Work :

    No


    Employment Type :

    Full-time

    About this RoleWe are seeking an Application Security Engineer with a strong focus on Security Operations and WebApplication Firewall (WAF) monitoring. This role is responsible for detecting analyzing and responding toapplication-layer threats by reviewing WAF logs security alerts and web traffic pa...
    View more view more

    Key Skills

    • Children Activity
    • EAM
    • Engineering Support
    • Maintenance Engineering
    • Accident Investigation
    • Branding

    About Company

    Company Logo

    We are growing! At IFS we are constantly growing to deliver award-winning solutions to hundreds of partners and thousands of customers worldwide! We help companies who want to be their best when it matters most – at their #momentofservice. Visit https://ifs.link/IzM0px to find out mo ... View more

    View Profile View Profile