- Configuration and maintains WAF solution
- Monitor the web application which added in WAF
- Provide ongoing support to existing monitoring capabilities and data collection systems
- Create WAF rules/signatures to mitigate threats and implements.
- Create the policy for the new on boarding applications
- Create advanced alerts/reports to meet the requirements of key stakeholders
- Uploading new ASM signature
- Share the blocked request details. Based on application team request, tuning WAF policies, applying signatures
- Participate all the drill activity and check the traffic and ensure the status.
- Worked on the onboarding of new sites stage, prod instances behind WAF.
- WAF rule finetuning based on OWASP, new rule addition/deletion for suppressing false positives, coordinating with various teams to fix any security flaw which could not be fixed in application.
- WAF rule finetuning based on OWASP top10, new rule addition/deletion for suppressing false positives, coordinating with various teams to fix any security flaw which could not be fixed in application.
- CDN fine tuning for better performance, multiple origin configuration , redirects, rewrites, cert issue.