M
Technical Architect
Mphasis
· Bangalore
Full Time Posted July 30, 2026 via Mphasis
Job Title: Senior Network Security Engineer – WAAPDesignation: Technical Architect
Location: Bangalore
Job Summary: We are seeking a highly skilled Senior Network Security Engineer with a focus on Web Application and API Protection (WAAP) to join our team in Bangalore. The ideal candidate will be responsible for translating business and application security requirements into robust WAAP and network security architectures. This role involves leading the architecture, design, and deployment of WAAP solutions across global environments, ensuring the security of critical applications while maintaining optimal performance.
Responsibilities:
Translate business and application security requirements into enterprise-grade WAAP and network security architectures.
Develop and support solutions aligned with Client’s application security and defense-in-depth strategy.
Lead the architecture, design, and deployment of WAAP solutions, including Web Application Firewalls (WAF), API security, bot management, and DDoS protection.
Develop and drive a multi-year roadmap for application-layer security.
Architect, implement, and manage WAAP platforms, ensuring effective protection against OWASP Top 10 vulnerabilities.
Design and deploy WAAP solutions using platforms such as Thales, Imperva, and cloud-native WAFs (Azure, AWS WAF).
Develop and maintain custom WAF rules, security policies, and signatures to protect critical applications.
Perform false positive tuning, policy optimization, and rule lifecycle management.
Enable API discovery, schema enforcement, and protection against OWASP API Top 10 threats.
Integrate WAAP with SIEM/SOAR platforms, identity providers, and threat intelligence feeds.
Collaborate with application teams to onboard applications into WAAP platforms and perform security assessments.
Lead WAAP incident response and root cause analysis for application-layer attacks.
Define and track application security metrics and KPIs.
Ensure compliance with security frameworks such as CIS, NIST, and Zero Trust.
Architect and maintain secure network infrastructure across data center, campus, and cloud environments.
Conduct security design reviews and support internal and external security audits.
Manage and optimize Security Information and Event Management (SIEM) systems.
Develop and maintain network security policies and procedures.
Collaborate with cybersecurity, infrastructure, and application teams globally.
Mandatory Skills:
Strong experience with WAAP platforms, particularly Akamai or equivalent.
Deep understanding of OWASP Top 10 and application-layer threats.
Hands-on experience in WAF policy creation, API security controls, and bot mitigation strategies.
Expertise in DDoS protection architecture (L3–L7).
Strong knowledge of secure application architectures and DevSecOps integration.
Hands-on experience with firewalls (Fortinet, Palo Alto, Juniper), IDS/IPS, and VPN.
Proficient in TCP/IP, DNS, HTTP/HTTPS, and routing protocols (BGP, OSPF).
Experience securing applications in cloud environments (AWS, Azure, GCP).
Preferred Skills:
Experience with traffic analysis and behavioral-based threat detection.
Familiarity with cloud-native WAF and API security tools.
Understanding of high availability and performance optimization for application traffic.
Experience with network monitoring and analysis tools.
Qualifications:
Bachelor’s Degree in Computer Science, IT, or a related field.
Preferred certifications: CCNP, CCIE, JNCIE, CISSP, CISM, and vendor certifications (Akamai, AWS Security, Azure Security).