Web Application Security Engineer jobs in United States
cer-icon
Apply on Employer Site
company-logo

Ryder System, Inc. ยท 1 day ago

Web Application Security Engineer

Ryder System, Inc. is a leading transportation and logistics company, and they are seeking a Web Application Security Engineer to enhance their cybersecurity team. This role is responsible for protecting web applications by managing WAF protections, conducting DAST scans, and collaborating with various teams to ensure comprehensive application security.

Fleet ManagementLogisticsSupply Chain ManagementTransportation
check
H1B Sponsor Likelynote

Responsibilities

Lead the onboarding of web applications into a CDN, ensuring proper security policy integration and optimized delivery
Manage WAFs deployed on-premises, in the cloud, or in hybrid environments, including those co-managed with external service providers. Configure, maintain, and tune WAF rules to protect against web application threats, including OWASP Top Ten risks
Set up and execute DAST scans on web applications to identify vulnerabilities in runtime environments, validate WAF coverage, and provide actionable remediation guidance. Collaborate with development, infrastructure, and SOC/IR teams to ensure findings are triaged, addressed, and documented
Monitor application traffic and threat activity, leveraging automation and analytics to detect and respond to anomalies. Perform continuous testing and tuning of WAF policies based on threat intelligence, logs, and scan results
Contribute to incident response efforts related to application-layer attacks and vulnerabilities
Develop and maintain documentation related to WAF policies, scan results, application mappings, and remediation plans
Perform other duties as assigned

Qualification

WAF technologiesDAST toolsOWASP Top TenScripting languagesWeb application securityCDN platformsCI/CD pipelinesCommunication skillsRelationship buildingTeamworkFlexibilityTime management

Required

Excellent communication skills, both verbal and written, and the ability to work effectively with cross-functional teams
Ability to create and maintain professional relationships within all levels of the organization (peers, work groups, customers, supervisors)
Ability to work independently and as a member of a team
Flexibility to operate and self-driven to excel in a fast-paced environment
Capable of multi-tasking, highly organized, with excellent time management skills
Bachelor's degree in computer science, Information Security, or a related field
5 years or more experience with WAF technologies (Akamai Kona, Azure App Gateway, Cloudflare)
7 years or more experience with DAST tools such as Burp Suite and enterprise scanning platforms such as InsightAppSec
5 years or more Proficiency with applications, databases, web services, authentication and middleware servers
5 years or more Aptitude with one or more scripting languages (e.g., Python, PowerShell, Bash)
5 years or more Proven experience in diagnosing, isolating, resolving complex issues and recommending/implementing strategies to resolve problems
5 years or more Understanding of OWASP Top Ten, threats and vulnerabilities, and tactics used to compromise applications
5 years or more Skilled in analyzing logs to identify and interpret attack patterns accurately
Hands-on experience with CDN platforms and integration of security policies within those services. Expert
Advanced understanding of web application security, including common attack vectors and secure design principles. Expert
Knowledge of CI/CD pipelines and integration of security testing tools. Advanced
Strong troubleshooting skills of web application client and server technologies, forward and reverse proxies, static content caching, DNS, etc Expert
Experience in risk management findings, vulnerability prioritization, threat modeling, and mitigation strategy, advanced required Advanced

Preferred

& CISSP, OSCP, OSWE, or other industry-leading certifications

Benefits

Comprehensive health and welfare benefits
Medical
Prescription
Dental
Vision
Life insurance
Disability insurance options
Paid time off for vacation
Illness
Bereavement
Family and parental leave
Tax-advantaged 401(k) retirement savings plan

Company

Ryder System, Inc.

company-logo
We perfect the supply chains people depend on.

H1B Sponsorship

Ryder System, Inc. has a track record of offering H1B sponsorships. Please note that this does not guarantee sponsorship for this specific role. Below presents additional info for your reference. (Data Powered by US Department of Labor)
Distribution of Different Job Fields Receiving Sponsorship
Represents job field similar to this job
Trends of Total Sponsorships
2025 (53)
2024 (45)
2023 (39)
2022 (54)
2021 (54)
2020 (36)

Funding

Current Stage
Public Company
Total Funding
unknown
1978-01-13IPO

Leadership Team

leader-logo
Robert Sanchez
Chief Executive Officer
linkedin
leader-logo
John Diez
President and Chief Operating Officer
linkedin
Company data provided by crunchbase