Job Title: Senior Akamai Edge Security Engineer
Location: Remote (U.S.)
Employment Type: Contract (W2 through ZipStaff — No C2C or 1099)
About the Opportunity:
ZipStaff is seeking a Senior Akamai Edge Security Engineer for the enterprise edge and application-security platform at a major healthcare and pharmacy organization.
You will design, run, and harden Akamai and Imperva protections for internet-facing apps, APIs, and digital services—WAF, bot management, DDoS, CDN, DNS, and certificates—plus security automation. This is a 6-month contract. Recruit to the end date. Rotating on-call is about one week every six weeks.
What You’ll Do:
- Administer and tune Akamai: Kona Site Defender, WAF, Bot Manager Premier, Adaptive Security Engine, Account Protector, Client Reputation, DDoS, related edge services.
- Lead Imperva Website Security: onboarding, policy, monitoring, data-protection/privacy controls, origin integrations.
- Design and maintain controls for apps, APIs, websites, and digital services across cloud, on-prem, and colo.
- Optimize WAF: API constraints, rate limits, IP/geo restrictions, ACLs, custom rules, Slow POST, browser controls.
- Run bot mitigation (behavior, scoring, allow/deny, automated enforcement).
- Monitor and respond to DDoS, credential stuffing, account takeover, scraping, and app-layer attacks.
- Support Property Manager, GTM, Cloudlets, SiteShield, Akamai DNS, CDN/caching, origin offload, traffic steering.
- Administer CPS / SSL-TLS lifecycle, SAN renewals, mTLS.
- Integrate security into SDLC and CI/CD; Security-as-Code and IaC.
- Automate with Python, Java, JavaScript, C#, C/C++, Shell, or PowerShell.
- Monitor Akamai Event/Control Center, Splunk, Grafana, and cloud-native tools.
- On-call for critical incidents, emergency changes, and production deploys.
- Act as SME for application, cloud, and edge security; support audit and compliance.
Required Qualifications:
- Bachelor’s in a technical field or equivalent experience.
- 5+ years implementing and supporting enterprise security technologies.
- 5+ years web application security, CDN, or edge security platforms.
- Hands-on Akamai security or a comparable WAF/CDN platform (Imperva, Cloudflare, or equivalent—Akamai strongly preferred).
- Working knowledge of WAF, bot management, DDoS, HTTP/S, TCP/IP, DNS, GTM, SSL/TLS, certificates, API security, OWASP Top 10, Linux and Windows, CDN operations.
- Docker, Kubernetes, IaC, and Security-as-Code.
- Scripting or programming in at least one of: Python, Java, JavaScript, C#, C/C++, Shell, PowerShell.
- Data-protection / GDPR / CCPA familiarity.
- Able to analyze traffic logs, spot attack patterns, and ship countermeasures.
- Comfortable with a 6-month assignment and rotating on-call (~1 week in 6).
- U.S. Citizen or Green Card holder (no sponsorship now or in the future).
Preferred Qualifications:
- Deep Akamai: Property Manager, GTM, Cloudlets, SiteShield, CPS, Adaptive Security Engine, Account Protector, Client Reputation, Bot Manager Premier.
- Secure public-cloud design on AWS, Azure, and GCP.
- Splunk, Grafana, SIEM / observability.
- DevSecOps and CI/CD security integrations.
- PCI-DSS, HIPAA, HITRUST, NIST, or CSA.
- Snowflake / data-platform security.
- Large-scale internet-facing apps and APIs.
- Healthcare or regulated-industry edge security.
About ZipStaff
ZipStaff partners with leading organizations to connect skilled technology professionals with high-impact contract opportunities. We focus on quality matches, clear communication, and long-term success for candidates and clients.
To apply, submit your resume highlighting Akamai (or equivalent WAF/CDN) administration, bot/DDoS/WAF tuning you owned, and any automation or IaC around those platforms. State U.S. citizenship or Green Card status.