We are seeking an experienced Senior API Security Engineer to join our team on-site. The ideal candidate will have strong expertise in API gateway security, network security solutions, and SIEM integration, with a proven ability to protect enterprise environments against evolving cyber threats.
Key Responsibilities
- Design, implement, and manage API security solutions across enterprise environments
- Configure and maintain API Gateways (e.g., F5, Kong, IBM DataPower)
- Implement and manage IDS/IPS systems for threat detection and prevention
- Integrate security solutions with SIEM platforms for monitoring and incident response
- Develop and enforce API security policies, including rate limiting, authentication, and threat protection
- Secure APIs by identifying and blocking malicious patterns and automated bot attacks
- Perform security assessments, vulnerability analysis, and risk mitigation
- Collaborate with cross-functional teams to ensure secure application delivery
Minimum 5+ years of experience in API security and network security
Hands-on experience with:
- F5 / Kong / IBM DataPower API Gateways
- IDS/IPS solutions
- SIEM integration
Strong understanding of:
- API security best practices
- Network security architecture
- Threat detection and mitigation techniques
Experience in securing APIs against common attack vectors (OWASP, bot attacks, etc.)
Relevant security certifications are mandatory:
- CISSP
- GICSP
- Or equivalent