Cloudflare Security Specialist (F,M,X)
You will join the BlueBinary team, which develops modern online services in the iGaming industry for one of our clients. Every day we handle over 100 million requests (over 3 billion monthly), and our systems operate based on a distributed, efficient infrastructure. Scalability, security, and reliability are our priorities, and we design every solution with global traffic in mind.
We are looking for an expert to take the helm of our first line of defense. As a Cloudflare Security Specialist, you will be responsible for ensuring that our infrastructure is not only fast but, above all, resilient to advanced attacks and abuses. You will join a senior team of engineers where we place enormous emphasis on platform quality and stability.
This is an hourly-based collaboration role. We are looking for an expert who will support us during key configuration moments and be ready to react in the event of security incidents.
Technology stack:
Cloudflare (Enterprise)
WAF / Custom Rules
Bot Management
Cloudflare Workers
R2 Storage
Node.js / Express.js
Nginx
Docker.
From our side, you can count on:
Remuneration of 175-250 PLN/h net on a B2B contract (depending on experience).
Fully remote work.
Daily tasks
- Comprehensive configuration and management of L3/L4/L7 DDoS protection.
- Creating and maintaining WAF (Web Application Firewall) rules to block malicious traffic, SQL injection, and XSS.
- Designing Rate Limiting and Bot Management strategies – protecting APIs and payment endpoints from abuse is a key element for us.
- Managing Firewall Rules / Custom Rules (geoblocking, IP reputation, ASN blocking).
- Optimizing caching (Cache Rules, Page Rules, Tiered Cache) for performance and security.
- Managing DNS infrastructure, proxy settings, and SSL/TLS configuration.
- Monitoring and deep analysis of security logs (Security Analytics, Security Events).
- Responding to security incidents and attacks in real-time.
- Close cooperation with the backend team when securing new functionalities and endpoints.
Requirements
Our expectations:
Minimum 2 years of practical experience with Cloudflare at the Enterprise or Pro/Business level.
Proficiency in configuring Layer 7 DDoS protection (mitigating HTTP flood, slowloris, and cache-busting attacks).
Ability to write advanced WAF Custom Rules (Wirefilter expressions).
Required on-call availability in case of critical incidents.
Experience with Rate Limiting (both classic and Advanced).
Knowledge of Cloudflare Bot Management or Bot Fight Mode.
Deep understanding of the OSI model, HTTP/HTTPS protocols, and WebSocket.
Ability for analytical thinking when analyzing logs and network traffic.
Excellent knowledge of threats from the OWASP Top 10 list.
English language proficiency at a minimum of B2 level (technical communication and documentation).
Nice to have:
Cloudflare Accredited Configuration Engineer certificate.
Knowledge of Cloudflare Workers, R2, and experience with Nginx.
Knowledge of Node.js/Express.js and Docker.
Must have: Cloudflare, HTTP, WAF, OSI, WebSocket, OWASP
Nice to have: Nginx, Node.js, Express.js, Docker