- configuration and maintains waf solution
- monitor the web application which added in waf
- provide ongoing support to existing monitoring capabilities and data collection systems
- create waf rules/signatures to mitigate threats and implements.
- create the policy for the new on boarding applications
- create advanced alerts/reports to meet the requirements of key stakeholders
- uploading new asm signature
- share the blocked request details. based on application team request, tuning waf policies, applying signatures
- participate all the drill activity and check the traffic and ensure the status.
- worked on the onboarding of new sites stage, prod instances behind waf.
- waf rule finetuning based on owasp, new rule addition/deletion for suppressing false positives, coordinating with various teams to fix any security flaw which could not be fixed in application.
- waf rule finetuning based on owasp top10, new rule addition/deletion for suppressing false positives, coordinating with various teams to fix any security flaw which could not be fixed in application.
- cdn fine tuning for better performance, multiple origin configuration , redirects, rewrites, cert issue.