Equifax

Cyber Security Web Application Firewall Analyst - Entry

Equifax Costa Rica

Financial Services · 10,001+ employees

19 h ago
Junior (0-2 yrs) Full-time Costa Rica
Log in to apply, save this posting, or score it against your profile with AI.

About the role

The analyst will monitor real-time web traffic and analyze WAF logs to detect and mitigate security threats. They will also deploy and tune security policies while collaborating with development teams during incident response.

What they look for

Web Application Firewall SIEM DEVO SQL injection mitigation XSS mitigation Bot attack mitigation HTTP protocol OWASP Top 10 OSI Model Layer 4 Layer 7 Incident response Security policy tuning Network security

Requirements

Candidates should have 0-1 years of experience in IT or Cybersecurity and a strong foundation in HTTP and web vulnerabilities. A bachelor's degree in a related field is highly preferred.

Benefits

Comprehensive compensation Healthcare packages On-site doctor Paramedics service 24/7 Life insurance Gym facilities Collaborative workspaces Free transportation Parking Subsidized cafeteria Solidarity association Online learning platform

Full description

Equifax is where you can power your possible. If you want to achieve your true potential, chart new paths, develop new skills, collaborate with bright minds,  and make a meaningful impact, we want to hear from you.

Working on supporting our Cyber Security Countermeasures team, you will work as part of the WAF team where you will be responsible for delivering security solutions across all the enterprise for our applications.

What you’ll do

  • Monitor and Analyze Traffic: Actively monitor real-time web traffic and analyze WAF logs using SIEM tools (like DEVO) to detect and mitigate threats such as SQL injection, XSS, and bot attacks.
  • Deploy and Tune Security Policies: Safely deploy and tune WAF rules, transitioning them from Log/Simulate mode to Block mode while investigating false positives to ensure valid business traffic is never disrupted.
  • Support Incident Response: Actively participate in security incident response by providing WAF telemetry and collaborating with web development teams to share actionable feedback on application vulnerabilities.

What experience you need

  • 0–1 years of experience in a corporate or technical IT/Cybersecurity role.
  • Bachelor’s degree in Cybersecurity, Computer Science, Information Technology, or a related field is highly preferred.
  • Foundation in HTTP Knowledge: Must understand headers, cookies, sessions, and the full request/response lifecycle.
  • Web Vulnerabilities: Familiarity with the OWASP Top 10 (specifically SQLi, XSS, and SSRF) and how a WAF mitigates them.
  • The OSI Model: Specifically, a strong grasp of Layer 4 (Transport) and Layer 7 (Application)

What could set you apart

  • F5 certifications and previous experience deploying solutions
  • Relevant security certifications such as CompTIA Security+, CompTIA Network+, or others
  • Passionate desire for continuous improvement and learning of new technologies and security practices.

We offer comprehensive compensation and healthcare packages, on-site doctor, paramedics service 24/7, life insurance, gym facilities, collaborative workspaces, free transportation and parking, subsidized cafeteria, solidarity association, and organizational growth potential through our online learning platform with guided career tracks.

Are you ready to power your possible?  Apply today, and get started on a path toward an exciting new career at Equifax, where you can make a difference!

 

Equifax is an Equal Opportunity Employer. All qualified applicants will receive consideration for employment without regard to race, color, religion, sex, sexual orientation, gender identity, national origin, disability, or status as a protected veteran.

Primary Location:

CRI-Sabana

Function:

Function - Security Governance and Compliance

Schedule:

Full time