Currency

Senior Cloud Security Specialist

Security

Senior Cloud Security Specialist

Security

-, Kraków +4 Locations

EPAM Systems

Full-time
B2B, Permanent
Senior
Remote

Tech stack

    English

    B2

    Cybersecurity

    advanced

    Linux

    advanced

    Cloud

    advanced

    HTTP

    advanced

    JSON

    advanced

    GitHub

    advanced

Job description

We are seeking a highly skilled and motivated Senior Cloud Security Specialist to join our team, where you will play a pivotal role in strengthening our cloud security infrastructure. This position focuses on managing and optimizing Web Application Firewall (WAF) configurations, analyzing traffic logs, and collaborating with cross-functional teams to ensure robust cloud security measures across all business-critical websites and domains.


Responsibilities

  • Deploy and audit baseline WAF rules across all in-scope websites and domains using internal tooling

  • Review WAF logs in Cloudflare to identify legitimate traffic and assess rule impact

  • Transition WAF rules from log mode to block mode following thorough analysis and stakeholder approval

  • Apply and manage exceptions to WAF rules, ensuring minimal impact on security posture

  • Raise and manage ServiceNow change requests for rule updates and deployments

  • Maintain and update weekly progress reports and tracker spreadsheets for leadership visibility

  • Collaborate with internal stakeholders including website owners, InfoSec, and platform teams

  • Use GitHub-hosted tools and scripts to automate and streamline rule deployment and reporting


Requirements

  • Bachelor’s degree in Cybersecurity, Computer Science, Information Technology, or a related field

  • 3+ years of experience in managing cloud security infrastructure

  • Strong understanding of Cloudflare WAF, including Managed Rulesets, OWASP Core Ruleset, and WAF Attack Score

  • Proficiency in Linux command line, bash scripting, and tools like jq for JSON parsing

  • Experience with log analysis and identifying false positives in HTTP event logs

  • Familiarity with Cloudflare dashboard and filtering techniques (IP, ASN, request paths)

  • Working knowledge of GitHub for accessing and managing internal tools

  • Excellent command of written and spoken English (B2+ level)

Nice to have

  • Background in Information Security, DevSecOps, or Security Operations

  • Familiarity with networking concepts (e.g., IP addresses, ASNs)


We offer

  • We gather like-minded people:

    • Engineering community of industry professionals

    • Friendly team and enjoyable working environment

    • Flexible schedule and opportunity to work remotely within Poland

    • Chance to work abroad for up to 60 days annually

    • Business-driven relocation opportunities

  • We provide growth opportunities:

    • Outstanding career roadmap

    • Leadership development, career advising, soft skills, and well-being programs

    • Certification (GCP, Azure, AWS)

    • Unlimited access to LinkedIn Learning, Get Abstract, Cloud Guru

    • English classes

  • We cover it all:

    • Stable income (Employment Contract or B2B)

    • Participation in the Employee Stock Purchase Plan

    • Benefits package (health insurance, multisport, shopping vouchers)

    • Strategically located offices featuring entertainment and relaxation zones, table tennis and football, free snacks, fantastic coffee, and more

    • Referral bonuses

    • Corporate, social and well-being events

  • Please, note:

    • The set of bonuses might vary based on the role you apply for – specifics will be discussed with our recruiter during the general interview

    • We will reach out to selected candidates exclusively


EPAM is a leading global provider of digital platform engineering and development services. We are committed to having a positive impact on our customers, our employees, and our communities. We embrace a dynamic and inclusive culture. Here you will collaborate with multi-national teams, contribute to a myriad of innovative projects that deliver the most creative and cutting-edge solutions, and have an opportunity to continuously learn and grow. No matter where you are located, you will join a dedicated, creative, and diverse community that will help you discover your fullest potential.

Tech stack

    English

    B2

    Cybersecurity

    advanced

    Linux

    advanced

    Cloud

    advanced

    HTTP

    advanced

    JSON

    advanced

    GitHub

    advanced

Office location

Published: 27.10.2025

Senior Cloud Security Specialist

Summary of the offer

Senior Cloud Security Specialist

-, Kraków

EPAM Systems

By applying, I consent to the processing of my personal data for the purpose of conducting the recruitment process. Klikając w przycisk „Aplikuj” lub w inny sposób wysyłając zgłoszenie rekrutacyjne, zgadzasz się na przetwarzanie Twoich danych osobowy... MoreThis site is protected by reCAPTCHA and the Google Privacy Policy and Terms of Service apply.
ADVERTISEMENT: Recommended by Just Join IT