Cyber Security II
McDonald's View all jobs
- Hyderabad, Telangana
- Permanent
- Full-time
- Global Grade: G3
- Office Location: India
- Part Time / Full-Time: Full Time
- Onboard new applications and APIs to Akamai.
- Configure and validate WAF / CDN / bot policies in staging and production.
- Support incident investigations, tuning, and change management.
- Execute onboarding of new web and API services onto Akamai, following E-WAAP intake, design, and implementation standards.
- Implement and maintain WAF, caching, origin, routing, and bot rules in Akamai based on designs from Senior Engineers and architects.
- Perform staging and production validations, including functional checks, logging verification, performance assessment, and rollback readiness.
- Support DDoS and high-traffic event preparations (e.g., promotions, product launches) by validating rules, load behavior, and monitoring dashboards.
- Monitor Akamai, WAF, and API security dashboards for anomalies, attacks, or performance regressions; escalate and investigate as needed.
- Analyze WAF logs to identify blocked attacks, false positives, and potential misconfigurations; propose tuning changes to Senior Engineers.
- Apply approved changes to security rulesets, rate limits, bot categories, and exceptions in a controlled manner with proper documentation.
- Use scripts and automation (e.g., Python, shell, Akamai CLI / API) to perform bulk changes, configuration comparisons, and standardization tasks.
- Contribute to internal tooling to simplify configuration deployments, environment promotions, and validation.
- Support integration of Akamai checks and validations into CI/CD pipelines in partnership with development and platform teams.
- Work directly with application and product teams to understand requirements, explain security behaviors, and troubleshoot issues.
- Maintain detailed runbooks, implementation guides, and operational SOPs in Confluence; keep Jira / ServiceNow records accurate and up to date.
- Participate in Agile ceremonies (stand-ups, sprint planning, retrospectives) as part of the E-WAAP product team.
- Bachelors degree in computer science, Engineering, Information Technology, or equivalent experience.
- 25 years of relevant experience in security engineering, network engineering, SRE, or application support.
- Practical experience of 4-5 years with at least one WAF / CDN platform (Akamai preferred, or equivalent like Cloudflare, F5, etc.).
- Understanding of HTTP, TLS, DNS, CDN, SDK concepts, and basic web development (HTML, JavaScript, APIs).
- Knowledge of Agile software development process including application of Agile techniques and delivery practices.
- Familiarity with SIEM / SOAR tools and log analysis for WAF and CDN events.
- Industry certifications in security or cloud (e.g., CISSP, CCSP, GIAC, cloud provider security certifications).