About this role
About the Role We are seeking an Infrastructure Security Specialist to join Motorola Solutions' Core Platforms & Services team. This role is responsible for defining and securing the architecture of a hybrid multi-cloud environment and on‑prem data centers, with a strong focus on WAFs and the F5 ecosystem and a commitment to Security as Code. What You'll Do
- WAF & Application Security Architecture: Architect and manage the F5 and Signal Sciences WAF infrastructure. Move beyond basic setup to perform continuous threat modeling and rule tuning to minimize false positives while blocking active attacks. Traffic Policy Enforcement: Translate complex business logic into secure traffic policies; develop custom rules to mitigate OWASP Top 10 threats, bots, and zero-day vulnerabilities immediately upon discovery. Attack Surface Reduction: Regularly audit and harden public-facing endpoints to ensure no unauthorized services are exposed to the internet.
- Hybrid Network Security: Secure Ingress Operations: Manage Kubernetes Ingress (F5 Nginx) with TLS/SSL termination, mutual TLS (mTLS) for service-to-service communication, and certificate rotation rather than just load balancing. Micro-segmentation: Design network policies that isolate critical on-premise databases from public cloud front-ends, strictly enforcing "Least Privilege" network access. Hybrid Connectivity Security: Secure the interconnects (VPN/Direct Connect) between on-prem data centers and Cloud (AWS/GCP/Azure), ensuring encrypted and authenticated transit.
- Infrastructure Hardening & Compliance: OS & Container Hardening: Responsible for the security configuration of base images and VM templates. Implement CIS Benchmarks and ensure all deployed assets match strict security baselines before they go live. Vulnerability Management: Own the lifecycle of vulnerability remediation. Prioritize remediation based on threat intelligence and ensure critical CVEs are resolved within SLAs. Drift Detection: Implement tools to detect configuration drift. If a server’s security setting is changed manually, your systems should detect and revert it automatically.
- DevSecOps: Security Observability: Configure SIEM forwarding and alerts for WAF and Network logs. You are responsible for detecting anomalies (like data exfiltration attempts or unusual traffic spikes), ensuring actionable intelligence is derived from system logs. Policy as Code: Write and enforce security policies (using tools like OPA or Sentinel) that automatically reject non-compliant Infrastructure as Code (Terraform/Ansible) commits. Pipeline Security Integration: Embed security gates (SAST, SCA, Container Scanning) into the CI/CD pipeline. Ensure that developers cannot deploy vulnerable code or images by accident.