Security Support Engineer I

F5 F5 · Enterprise · Guadalajara, Mexico Homebase

This role is for a Security Support Engineer I at F5, focusing on managing cloud-based security systems, particularly Web Application Firewalls (WAFs), for clients. The engineer will be responsible for real-time protection, detection, mitigation, and resolution of security events, interacting directly with customers, and collaborating with internal teams. The role requires 0-2 years of experience with WAF administration and a strong understanding of web application security. It is not directly related to AI/ML model development but operates within the broader cybersecurity domain.

What you'd actually do

  1. Take proactive and reactive steps to mitigate Application Layer security attacks or threats against our customers
  2. Interact directly with customers who are under attack via phone, chat, email and/or ticketing systems
  3. Provide proactive and real-time guidance to customers on security protocols and defensive security response
  4. Document actions taken in incident management systems, knowledge base, or ticketing systems as required
  5. Establish yourself as a trusted security advisor internally and externally

Skills

Required

  • Web Application Firewalls administration
  • English fluency (written and oral)
  • HTTP and web application security
  • SQL injection, cross-site scripting, web scraping, CSRF, brute force, cookie manipulation, parameter tampering, and other emerging Layer 4-7 attacks/vulnerabilities
  • Customer service skills
  • Troubleshooting and problem-solving ability
  • Analytical thinking
  • Attention to detail

Nice to have

  • Cyber security interest
  • Network security interest
  • Prior NOC or SOC experience
  • Security Incident Response background
  • Additional languages fluency
  • Programming or scripting language familiarity
  • Common enterprise network technologies understanding
  • Fundamental Linux skills
  • F5 hardware and software familiarity (Big-IP, TMOS, iRules, iApps, iControl, etc.)
  • Web Server Administrator/Developer Experience
  • Analysis using tools such as Fiddler, HttpWatch, Burp Suite, socat, and netcat
  • Log file analysis
  • TCP/IP networks troubleshooting
  • Detailed protocol analysis using tools such as tcpdump, tshark, and Wireshark
  • Packet manipulation and crafting using tools such as hping, scapy, and iptables
  • Traffic generation and replay using tools such as apachebench and tcpreplay

What the JD emphasized

  • Must be able to communicate technical and operational details fluently in English (written and oral)
  • Skilled understanding and experience with HTTP and web application security (school project experience counts)
  • 0-2 years’ experience administering Web Application Firewalls