broadridge

Technology Lead

Apply Now

At a Glance

Location
Hyderabad-Hi-Tec City, India
Employment
Full time
Experience
7+ years
Posted
2026-05-27

Key Requirements

Required Skills

AWSAzureConfluenceGCPJira

Domain Knowledge

  • Cybersecurity
  • Engineering
  • SaaS

Requirements

7+ years of experience in Information Security, Application Security, Network Security, Cloud Security, Infrastructure Security, Security Engineering, or related technology roles.

Working knowledge of WAF technologies, implementation approaches, policy configuration, rule tuning, alert review, false-positive handling, and enforcement modes.

Strong understanding of DNS concepts, including domains, subdomains, CNAME records, A records, TTL, propagation, routing changes, domain validation, and DNS cutover planning.

Good understanding of web application traffic flows, including HTTP/HTTPS, TLS certificates, reverse proxies, load balancers, CDNs, API gateways, origin servers, and ingress/egress routing.

Basic understanding of web application security risks, including OWASP Top 10, injection attacks, cross-site scripting, authentication weaknesses, access control issues, malicious bots, and denial-of-service considerations.

Basic understanding of cloud services, cloud networking, cloud security concepts, cloud-hosted application architectures, and cloud-native WAF services such as AWS WAF, Azure Web Application Firewall, Google Cloud Armor, or equivalent services.

Responsibilities

Drive end-to-end WAF implementation for in-scope applications, websites, APIs, and internet-facing services, including intake, technical discovery, configuration, testing, validation, production cutover, and post-implementation review.

Partner with application, infrastructure, network, cloud, DNS, vendor, and Information Security teams to plan and execute WAF onboarding activities.

Gather and document key application and environment details, including URLs, domains, subdomains, origin IPs, ports, certificates, traffic patterns, hosting details, ownership, and business criticality.

Support DNS and traffic routing activities such as CNAME updates, domain validation, routing changes, cutover planning, rollback planning, and post-change verification.

Work with technical teams to understand application architecture, traffic flows, load balancers, CDNs, reverse proxy configurations, cloud hosting models, and related security dependencies.

Assist in defining, implementing, testing, and tuning WAF policies, managed rules, custom rules, exclusions, allowlists, blocklists, rate limiting, bot controls, logging, alerting, and enforcement modes.