At a Glance
- Tasks: Secure web applications and automate cloud security configurations in a dynamic Agile environment.
- Company: Join a high-performing team dedicated to protecting critical web infrastructure.
- Benefits: Enjoy hybrid work flexibility with competitive salary and opportunities for professional growth.
- Why this job: Be at the forefront of cloud security, working with cutting-edge technologies and a collaborative culture.
- Qualifications: 3+ years of Cloudflare WAF experience, strong scripting skills, and a solid understanding of network protocols.
- Other info: Candidates must be based in Brussels, Amsterdam, Paris, or London, with 8 days on-site monthly.
The predicted salary is between 72000 - 108000 £ per year.
Location: Remote working HOWEVER candidates must already be based in Brussels OR Amsterdam OR Paris OR London (8 days a month on site is mandatory)
Work Type: Permanent
Budget: £90,000 PA (UK)/€90,000 PA (EU)
About the Role
We are seeking a highly skilled and security-focused Cloud Security Engineer with deep expertise in Cloudflare WAF to join a high-performing team responsible for protecting critical web infrastructure. You will play a central role in securing web applications, automating cloud security configurations, and supporting a DevSecOps culture within an Agile environment. This is an excellent opportunity for someone passionate about cloud security, WAF technologies, and modern automation practices.
Key Responsibilities
- Lead the implementation, configuration, and management of Cloudflare WAF, including custom rule sets, rate limiting, and DDoS protection.
- Monitor and fine-tune web traffic security policies to safeguard against evolving threats.
- Collaborate with application, infrastructure, and DevOps teams to embed security into pipelines and workflows.
- Work with other WAF platforms (eg, Imperva) across on-prem, SaaS, and cloud environments.
- Write scripts and tools (preferably in Python) to automate security configurations and tasks.
- Apply a deep understanding of network protocols, TLS/mTLS, and authentication mechanisms (eg, OAuth, SAML).
- Support and troubleshoot security issues across Linux-based (RedHat) systems.
- Contribute to a DevSecOps culture, embracing continuous improvement, Agile delivery, and cross-functional collaboration.
Required Skills & Experience
- Minimum 3 years of hands-on experience with Cloudflare WAF - policy management, custom rules, and advanced security configurations.
- Strong grasp of the OSI model, especially Layers 3-7.
- Excellent knowledge of HTTP, HTTPS, SSL, TLS, mTLS.
- Familiarity with authentication protocols such as SAML, OAuth, or similar.
- Scripting skills in Python (other programming languages are a plus).
- Solid understanding of PKI and certificate management.
- Experience with Linux/Unix systems, ideally RedHat.
- Solid networking knowledge (Layer 3 and 4).
Desirable Skills
- Experience with Imperva WAF/WAAP - on-prem, SaaS, or cloud.
- Automation and Infrastructure-as-Code experience using Terraform or Ansible.
- Familiarity with DevOps, Agile, and Scrum methodologies.
- Hands-on experience with reverse proxies such as NGINX or Apache HTTPD.
- Security certifications such as CISSP, OSCP, or similar.
- Passionate about a specific technical area (cloud, containers, security, etc.).
Soft Skills & Traits
- Collaborative team player with a proactive attitude.
- Strong problem-solving and critical thinking capabilities.
- Customer-focused, able to understand the broader business context.
- Open-minded and eager to learn and evolve.
- Able to communicate complex ideas clearly and assess consequences of decisions.
Cloud Security Engineer - Cloudflare WAF Specialist - Hybrid - Perm employer: iBSC
Contact Detail:
iBSC Recruiting Team
StudySmarter Expert Advice 🤫
We think this is how you could land Cloud Security Engineer - Cloudflare WAF Specialist - Hybrid - Perm
✨Tip Number 1
Make sure to showcase your hands-on experience with Cloudflare WAF during networking opportunities. Attend relevant meetups or webinars where you can connect with professionals in the field and discuss your expertise.
✨Tip Number 2
Join online forums or communities focused on cloud security and WAF technologies. Engaging in discussions can help you stay updated on industry trends and may lead to valuable connections that could refer you to job openings.
✨Tip Number 3
Consider contributing to open-source projects related to cloud security or WAF. This not only enhances your skills but also demonstrates your commitment to the field, making you a more attractive candidate.
✨Tip Number 4
Prepare for potential interviews by practising common technical questions related to Cloudflare WAF and security protocols. Being well-prepared will help you confidently demonstrate your knowledge and problem-solving abilities.
We think you need these skills to ace Cloud Security Engineer - Cloudflare WAF Specialist - Hybrid - Perm
Some tips for your application 🫡
Tailor Your CV: Make sure your CV highlights your experience with Cloudflare WAF and relevant security protocols. Use specific examples that demonstrate your hands-on experience and technical skills, particularly in scripting with Python and managing security configurations.
Craft a Compelling Cover Letter: In your cover letter, express your passion for cloud security and how your background aligns with the role. Mention your familiarity with DevSecOps practices and your collaborative approach to working with cross-functional teams.
Showcase Relevant Projects: If you have worked on projects involving Cloudflare WAF or similar technologies, be sure to include these in your application. Describe your role, the challenges faced, and the outcomes achieved to illustrate your expertise.
Highlight Soft Skills: Don't forget to mention your soft skills such as problem-solving, teamwork, and communication. These are crucial for a role that requires collaboration with various teams and the ability to convey complex ideas clearly.
How to prepare for a job interview at iBSC
✨Showcase Your Cloudflare WAF Expertise
Make sure to highlight your hands-on experience with Cloudflare WAF during the interview. Be prepared to discuss specific projects where you implemented custom rules, managed policies, and configured advanced security settings.
✨Demonstrate Your Scripting Skills
Since scripting in Python is a key requirement, come ready to share examples of scripts you've written to automate security configurations. If possible, explain how these scripts improved efficiency or security in previous roles.
✨Understand the Broader Security Landscape
Familiarise yourself with various authentication protocols like OAuth and SAML, as well as other WAF platforms such as Imperva. This knowledge will show that you have a comprehensive understanding of web application security.
✨Emphasise Collaboration and Agile Mindset
As the role involves working closely with DevOps and application teams, be ready to discuss your experience in collaborative environments. Share examples of how you've contributed to a DevSecOps culture and embraced Agile methodologies in past projects.