{"schemaVersion":"jobsearcher.job.v1","id":"d20b3589d344a6b312ebc6c2","url":"https://jobsearcher.com/jobs/d20b3589d344a6b312ebc6c2","canonicalUrl":"https://jobsearcher.com/jobs/d20b3589d344a6b312ebc6c2","title":"Network Security Engineer","description":"Job Title: Junior Network Security Engineer – WAAP (Web Application & API Protection)Location: Houston TX - OnisteDuration: Temp - 6 monthsPay Range: $38/hr $48/hr (W2)Job ID: 408720About BCforwardBCforward is a leading global IT consulting and workforce solutions firm providing services and support to Fortune 500 and government clients. Founded in 1998, BCforward has grown with our customers needs into a full-service business solutions provider. With delivery centers and offices across North America and India, we take pride in building long-term relationships and delivering excellence through innovation, collaboration, and integrity.Job DescriptionWe are seeking a Senior Network Security Engineer – WAAP to join our team. The ideal candidate will have strong experience in Web Application and API Protection, network security architecture, and application-layer threat mitigation and a proven ability to design, implement, and operate enterprise-grade WAAP solutions and secure hybrid networks.Responsibilities:Translate business and application security requirements into enterprise WAAP and network security architectures.Develop and support solutions aligned with defense-in-depth strategy.Lead architecture, design, and deployment of WAAP solutions across global environments.Develop and drive a multi-year roadmap for application-layer security, including WAF, API security, bot protection, and DDoS mitigation.WAAP Responsibilities (Primary Focus):Architect, implement, and manage WAAP platforms including WAF, API security, bot management, and DDoS protection (L3–L7).Design and deploy WAAP using platforms such as Akamai, Thales Imperva, and cloud-native WAFs (Azure, AWS WAF) or equivalent.Develop and maintain custom WAF rules, security policies, and signatures for critical applications.Perform false-positive tuning, policy optimization, and rule lifecycle management.Enable API discovery, schema enforcement, and protection against OWASP API Top 10 threats.Integrate WAAP with SIEM/SOAR, identity providers, and threat intelligence feeds.Collaborate with application teams to onboard applications, perform security assessments, and minimize performance impact while enforcing controls.Implement protection against OWASP Top 10 vulnerabilities, including SQLi, XSS, and RCE.Lead WAAP incident response and root cause analysis for application-layer attacks.Define and track application security metrics and KPIs such as attack trends and mitigation effectiveness.Ensure compliance with frameworks including CIS, NIST, Zero Trust, and data protection standards.Core Network Security Responsibilities:Architect and maintain secure network infrastructure across data center, campus, and cloud environments.Conduct security design reviews to ensure compliance with enterprise standards.Provide risk reporting, control effectiveness, and security posture visibility.Support internal and external security audits.Manage and optimize SIEM systems and related integrations.Develop and maintain network security policies and procedures.Collaborate with cybersecurity, infrastructure, and application teams globally.Required Skills & Qualifications:Proficiency in WAAP platforms, WAF policy creation, API security controls, bot mitigation, and DDoS protection across L3–L7.Strong analytical and problem-solving skills with focus on application-layer threats and mitigation.Effective communication and teamwork abilities with global, cross-functional teams.10+ years in network security architecture, engineering, and operations.Preferred Skills:Experience with AWS, Azure, or GCP security services and cloud-native WAF and API security tools.Background in DevSecOps integration and CI/CD security controls.Network Security & Infrastructure:Hands-on experience with firewalls such as Fortinet, Palo Alto, and Juniper, plus IDS/IPS, VPN, and SIEM.Expertise in firewall policy design, NAT, routing, inspection, and threat prevention.Design of secure hybrid environments spanning on-prem, cloud, and internet-facing assets.Experience with proxy architectures and secure internet gateways.Networking & Protocol Expertise:Strong knowledge of TCP/IP, DNS, HTTP/HTTPS, and TLS/SSL, including routing protocols such as BGP, OSPF, and MPLS.Experience with QoS, NetFlow, ACLs, NAT, IP traffic management, and network monitoring tools.Cloud & Integration:Experience securing applications in AWS, Azure, and GCP.Familiarity with cloud-native WAF and API security tools.Integration experience with SIEM, EDR/XDR, and IAM platforms.Data Center & Enterprise Networking:Experience managing enterprise environments with Aruba, Arista, and Juniper switches, plus firewalls, load balancers, and WAN optimization tools.Understanding of high availability and performance optimization for application traffic.Operations & Lifecycle Management:Lead onboarding and lifecycle management of applications into WAAP platforms.Perform security tuning, upgrades, and optimization activities.Support incident response and threat mitigation at the application layer.Work within ITIL processes for incident, problem, and change management.Education & Certifications:Bachelor’s Degree in Computer Science, Information Technology, or related field, or equivalent experience.10+ years of experience in enterprise network and application security.Preferred certifications: CCNP/CCIE/JNCIE, CISSP/CISM, and vendor certifications such as Akamai, AWS Security, or Azure Security.Key Differentiators:Positions WAAP as a primary security control layer.Aligns application security and network security within a defense-in-depth strategy.Emphasizes API security, bot management, and DDoS protection for internet-facing applications.Maintains a strong foundation in firewalls, SIEM, and network architecture.Why BCforward?At BCforward, we believe in advancing lives and careers. When you join our team, you gain access to:Competitive compensation and benefits.Opportunities for growth with global clients.A supportive, inclusive culture that values innovation and people.Exposure to cutting-edge technologies and projects.","company":"BCforward","rawCompany":"bcforward","city":"Houston","state":"TX","isRemote":false,"isActive":false,"createdAt":"2026-08-25T11:10:34.909Z","occupations":[{"code":"15-1299.05","title":"Information Security Engineers","slug":"information-security-engineers"},{"code":"15-1244.00","title":"Network and Computer Systems Administrators","slug":"network-and-computer-systems-administrators"},{"code":"15-1299.08","title":"Computer Systems Engineers/Architects","slug":"computer-systems-engineers-architects"}],"industries":[{"code":"541512","title":"Computer Systems Design Services","slug":"computer-systems-design-services"},{"code":"541511","title":"Custom Computer Programming Services","slug":"custom-computer-programming-services"},{"code":"541519","title":"Other Computer Related Services","slug":"other-computer-related-services"}],"jobPosting":{"@context":"https://schema.org","@type":"JobPosting","title":"Network Security Engineer","description":"Job Title: Junior Network Security Engineer – WAAP (Web Application & API Protection)Location: Houston TX - OnisteDuration: Temp - 6 monthsPay Range: $38/hr $48/hr (W2)Job ID: 408720About BCforwardBCforward is a leading global IT consulting and workforce solutions firm providing services and support to Fortune 500 and government clients. Founded in 1998, BCforward has grown with our customers needs into a full-service business solutions provider. With delivery centers and offices across North America and India, we take pride in building long-term relationships and delivering excellence through innovation, collaboration, and integrity.Job DescriptionWe are seeking a Senior Network Security Engineer – WAAP to join our team. The ideal candidate will have strong experience in Web Application and API Protection, network security architecture, and application-layer threat mitigation and a proven ability to design, implement, and operate enterprise-grade WAAP solutions and secure hybrid networks.Responsibilities:Translate business and application security requirements into enterprise WAAP and network security architectures.Develop and support solutions aligned with defense-in-depth strategy.Lead architecture, design, and deployment of WAAP solutions across global environments.Develop and drive a multi-year roadmap for application-layer security, including WAF, API security, bot protection, and DDoS mitigation.WAAP Responsibilities (Primary Focus):Architect, implement, and manage WAAP platforms including WAF, API security, bot management, and DDoS protection (L3–L7).Design and deploy WAAP using platforms such as Akamai, Thales Imperva, and cloud-native WAFs (Azure, AWS WAF) or equivalent.Develop and maintain custom WAF rules, security policies, and signatures for critical applications.Perform false-positive tuning, policy optimization, and rule lifecycle management.Enable API discovery, schema enforcement, and protection against OWASP API Top 10 threats.Integrate WAAP with SIEM/SOAR, identity providers, and threat intelligence feeds.Collaborate with application teams to onboard applications, perform security assessments, and minimize performance impact while enforcing controls.Implement protection against OWASP Top 10 vulnerabilities, including SQLi, XSS, and RCE.Lead WAAP incident response and root cause analysis for application-layer attacks.Define and track application security metrics and KPIs such as attack trends and mitigation effectiveness.Ensure compliance with frameworks including CIS, NIST, Zero Trust, and data protection standards.Core Network Security Responsibilities:Architect and maintain secure network infrastructure across data center, campus, and cloud environments.Conduct security design reviews to ensure compliance with enterprise standards.Provide risk reporting, control effectiveness, and security posture visibility.Support internal and external security audits.Manage and optimize SIEM systems and related integrations.Develop and maintain network security policies and procedures.Collaborate with cybersecurity, infrastructure, and application teams globally.Required Skills & Qualifications:Proficiency in WAAP platforms, WAF policy creation, API security controls, bot mitigation, and DDoS protection across L3–L7.Strong analytical and problem-solving skills with focus on application-layer threats and mitigation.Effective communication and teamwork abilities with global, cross-functional teams.10+ years in network security architecture, engineering, and operations.Preferred Skills:Experience with AWS, Azure, or GCP security services and cloud-native WAF and API security tools.Background in DevSecOps integration and CI/CD security controls.Network Security & Infrastructure:Hands-on experience with firewalls such as Fortinet, Palo Alto, and Juniper, plus IDS/IPS, VPN, and SIEM.Expertise in firewall policy design, NAT, routing, inspection, and threat prevention.Design of secure hybrid environments spanning on-prem, cloud, and internet-facing assets.Experience with proxy architectures and secure internet gateways.Networking & Protocol Expertise:Strong knowledge of TCP/IP, DNS, HTTP/HTTPS, and TLS/SSL, including routing protocols such as BGP, OSPF, and MPLS.Experience with QoS, NetFlow, ACLs, NAT, IP traffic management, and network monitoring tools.Cloud & Integration:Experience securing applications in AWS, Azure, and GCP.Familiarity with cloud-native WAF and API security tools.Integration experience with SIEM, EDR/XDR, and IAM platforms.Data Center & Enterprise Networking:Experience managing enterprise environments with Aruba, Arista, and Juniper switches, plus firewalls, load balancers, and WAN optimization tools.Understanding of high availability and performance optimization for application traffic.Operations & Lifecycle Management:Lead onboarding and lifecycle management of applications into WAAP platforms.Perform security tuning, upgrades, and optimization activities.Support incident response and threat mitigation at the application layer.Work within ITIL processes for incident, problem, and change management.Education & Certifications:Bachelor’s Degree in Computer Science, Information Technology, or related field, or equivalent experience.10+ years of experience in enterprise network and application security.Preferred certifications: CCNP/CCIE/JNCIE, CISSP/CISM, and vendor certifications such as Akamai, AWS Security, or Azure Security.Key Differentiators:Positions WAAP as a primary security control layer.Aligns application security and network security within a defense-in-depth strategy.Emphasizes API security, bot management, and DDoS protection for internet-facing applications.Maintains a strong foundation in firewalls, SIEM, and network architecture.Why BCforward?At BCforward, we believe in advancing lives and careers. When you join our team, you gain access to:Competitive compensation and benefits.Opportunities for growth with global clients.A supportive, inclusive culture that values innovation and people.Exposure to cutting-edge technologies and projects.","datePosted":"2026-08-25T11:10:34.909Z","dateModified":"2026-08-25T11:10:34.909Z","hiringOrganization":{"@type":"Organization","name":"BCforward","sameAs":"https://jobsearcher.com"},"jobLocation":{"@type":"Place","address":{"@type":"PostalAddress","addressLocality":"Houston","addressRegion":"TX","addressCountry":"US"}},"identifier":{"@type":"PropertyValue","name":"JobSearcher","value":"d20b3589d344a6b312ebc6c2"},"url":"https://jobsearcher.com/jobs/d20b3589d344a6b312ebc6c2"}}