All roles

Cloud Security Engineer- AWS WAF (Remote)

Remote · USA Full-time New today

Conexess Group is aiding a large healthcare client in their search for a Cloud Security Engineer in a remote capacity. This is a long-term contract opportunity with a competitive compensation package. Please note we are unable to provide sponsorship or work c2c for this role.

  • *This is position requires minimal travel to Bloomfield, CT**

This role is a hands‑on cloud and application security engineering position focused on modernizing and operating AWS WAF, API security, and application security posture at scale. The work emphasizes automation, policy‑as‑code, AI‑assisted analysis, and operational execution, with minimal emphasis on leadership or executive engagement. The contractor will design, build, tune, and operate AWS WAF and API security capabilities, migrate WAF policy management to GitHub‑based CI/CD, enhance visibility through AWS Security Lake, and automate remediation workflows to reduce manual effort and improve detection fidelity. Responsibilities:

  • Implement, operate, and tune AWS WAF, Firewall Manager, Shield Advanced, and related AWS security services.
  • Migrate and maintain AWS WAF policies as code using GitHub SaaS, including CI/CD workflows, versioning, testing, and rollback.
  • Build automation (Terraform, Python) to deploy, manage, and validate WAF and application security controls at scale.
  • Integrate WAF, API, and application security telemetry into AWS Security Lake to support detection, investigation, and analytics.
  • Apply AI‑assisted techniques to:
  • Reduce WAF false positives
  • Improve rule tuning and coverage
  • Accelerate threat detection and log analysis
  • Develop automation and scripts to produce actionable outputs from the API Ownership Framework, improving visibility and accountability.
  • Evaluate and enhance application security posture management (ASPM) and API ownership across cloud‑native applications.
  • Define and implement Noname remediation requirements, ensuring API posture findings are prioritized, actionable, and consumable by engineering teams.
  • Support day‑to‑day operations of cloud and application security tooling, including troubleshooting, optimization, and routine automation.
  • Partner directly with application and platform engineers to integrate WAF, API, and application security controls into CI/CD pipelines.

Requirements:

  • Bachelor’s degree in Computer Science or related field (or equivalent experience)
  • 8-12 years of hands‑on security engineering experience, primarily in cloud, application, or API security
  • AWS Security Specialty, GIAC Cloud Security Automation (GCSA) and/or CCSP preferred
  • Strong hands‑on experience with AWS WAF operations and tuning
  • Practical experience with policy‑as‑code and GitHub‑based CI/CD pipelines
  • Experience integrating security logs and findings into AWS Security Lake or similar platforms
  • Hands‑on experience with API security platforms (e.g., Noname or equivalent)
  • Strong automation skills using Terraform and Python
  • Experience with application security posture management and cloud‑native architectures (containers, serverless, microservices)
  • Ability to translate security findings into clear, actionable remediation guidance

Apply tot his job Apply To this Job

Related roles

Cyber Security Engineer job at ManTech in US National

Remote · USA Full-time

Security Engineer, Mid-Level

Remote · USA Full-time

Security Operations Engineer I (Bot Defense)

Remote · USA Full-time

Cyber Penetration Tester III

Remote · USA Full-time

Work From Home Information Security Analyst and SOC (Security Operations Center) Monitor

Remote · USA Full-time

Information Security Analyst – Intel and Email

Remote · USA Full-time

Senior Application Security Tester & AI Red Team Subject Matter Expert

Remote · USA Full-time

Solutions Security Analyst

Remote · USA Full-time

IAM PAM Program Manager Consultant (Security Analyst III)

Remote · USA Full-time

Senior Cyber Threat Intelligence Analyst

Remote · USA Full-time

Scrum Master - Cardio Partners - Remote

Remote · USA Full-time

Experienced Data Entry Specialist – Remote Work Opportunity at arenaflex

Remote · USA Full-time

Senior Editor/Writer | ClimateWorks Foundation | Remote (United States)

Remote · USA Full-time

Registered Nurse (RN) - Operating Room (OR)

Remote · USA Full-time

Digital Marketing Intern

Remote · USA Full-time

Senior Implementation Manager

Remote · USA Full-time

Director, Social Media, Community & Customer Marketing – Join arenaflex's Rapidly Growing Team

Remote · USA Full-time

Remote Data Entry & Product Testing Specialist – Join arenaflex's Dynamic Team

Remote · USA Full-time

Experienced First Notice of Loss (FNOL) Customer Service Representative - Work from Home Opportunity

Remote · USA Full-time

Experienced Social Media Customer Support Specialist – Work From Home Opportunity at arenaflex

Remote · USA Full-time