NO (Sponsorship, H1B, OPT, C2C) – 6 Month Contract to Hire, 100% Remote
Pay: Market value
CBTS is searching for an experienced Akamai Engineer to join their security team. The candidate will have a deep understanding of Akamai's WAF, Bot, Client-Side Script Protector, and Account Protector. The candidate will be responsible for designing, implementing, and managing configurations to ensure the organization defends against fraudulent account abuse, and meets PCI DSS requirements
Responsibilities:
- Configure and manage Akamai security solutions, including Kona Site Defender, Web Application Firewall (WAF), Bot Manager, Client-Side Script Protector, and Account Protector, to mitigate threats, secure payment transactions, and ensure compliance with PCI DSS.
- Deploy and maintain Akamai Account Protector to defend against fraud-based threat actors. This includes account takeover (ATO) and fraudulent account enrollment protection mechanisms.
- Configure and operate Akamai Account Protector to provide real-time detection and mitigation of fraudulent login attempts, ensuring secure access to user accounts.
- Implement and optimize Akamai Content Delivery Network (CDN) for secure, high-performance web traffic delivery.
- Develop fine-tune rules and policies in Account Protector to adapt to new and emerging threats related to account takeover attempts and credential abuse.
- Manage Akamai’s SSL/TLS certificates to ensure encrypted and secure data transmission.
- Maintain the operational integrity of Akamai configurations across the organization, ensuring maximum uptime, performance, and security.
- Oversee the day-to-day operations of Akamai solutions, including monitoring, troubleshooting, and resolving incidents related to web security and performance.
- Ensure high availability and scalability of Akamai services, including participation in capacity planning and performance tuning.
- Conduct regular risk assessments, security reviews, and compliance checks to ensure ongoing adherence to PCI DSS standards.
- Collaborate with development and security teams to integrate Akamai Account Protector into existing login flows and enhance user security.
- Collaborate with cross-functional teams (IT, DevOps, Security, Compliance) to implement and monitor secure Akamai configurations aligned with PCI DSS requirements.
- Develop and implement automation scripts (e.g., in Python, Shell) to streamline operational tasks and ensure timely updates to Akamai configurations, patches, and security policies.
- Configure real-time monitoring for Akamai services to detect and respond to potential threats or performance issues.
- Maintain regular reporting on PCI DSS compliance status, Akamai configuration changes, and incident resolutions.
- Provide expertise in handling security incidents, troubleshooting Akamai-related configuration issues, and remediating vulnerabilities impacting PCI DSS compliance.
- Develop and maintain comprehensive documentation, including configuration guides, operational procedures, and PCI DSS compliance documentation.
- Assist with internal and external PCI DSS audits by providing detailed reports on Akamai configurations, security controls, and operational processes.
Requirements:
- Bachelor’s degree in computer science, Information Technology, Cybersecurity, or a related field.
- Minimum of 3-5 years of experience in cybersecurity, with a focus on endpoint protection, cloud security posture management, and cloud architecture.
- Relevant certifications such as PCI DSS Internal Security Assessor (ISA), Certified Information Systems Security Professional (CISSP), Certified Information Security Manager (CISM), or Akamai-related certifications.
- Proven experience in configuring and managing Akamai security products, including Kona Site Defender, WAF, CDN, SSL/TLS, and Account Protector.
- Prior experience in managing the security operations of large-scale web applications in industries such as finance, e-commerce, or technology.
- Strong understanding of PCI DSS requirements and proven experience implementing and maintaining compliance within large-scale web environments.
- Experience with Akamai Account Protector or similar solutions for securing user accounts from fraud, credential stuffing, and account takeover attempts.
- Hands-on experience with the day-to-day operations of web security infrastructure, including monitoring, troubleshooting, and incident resolution.
- Proficiency in scripting languages (e.g., Python, Shell) for automating tasks related to configuration management, performance monitoring, and security updates.
- Ability to analyze security risks and performance issues and troubleshoot complex security configurations.
- Strong understanding of web security principles, DDoS mitigation, CDN optimization, and network protocols.
- Additional working knowledge (understanding) with any of the following is a plus:
- Crowdstrike / Proofpoint / DTEX
- ITSM - Incident / Problem / Change / Request Management experience (Service Now preferred)
- Excellent problem-solving skills and the ability to identify, troubleshoot, and resolve complex configuration or security challenges.
- Strong interpersonal skills with the ability to work effectively with cross-functional teams, including IT, DevOps, Security, and Compliance.
- Strong organizational skills and attention to detail.
- Ability to work independently and manage multiple priorities and projects simultaneously in a fast-paced environment with changing priorities.
- Experience in a large-scale enterprise environment.
CBTS provides equal employment opportunities (EEO) to all employees and applicants for employment without regard to race, color, religion, gender, sexual orientation, gender identity or expression, national origin, age, disability, genetic information, marital status, amnesty, or status as a protected veteran in accordance with applicable federal, state and local laws.