
Real job — pulled straight from Black Canyon Consulting’s careers page · Verified July 15, 2026 · No reposts.
Job description
Black Canyon Consulting is hiring a Web Service Protection Engineer — a full-time, based in Bethesda, MD role. Apply directly on Black Canyon Consulting's careers page below.
Web Service Protection Engineer
Location: Bethesda, MD
Department: Platform & DevOps
Overview
Black Canyon Consulting (BCC) is searching for a Web Service Protection Engineer to support the National Center for Biotechnology Information (NCBI). This opportunity is full time and onsite at the NCBI in Bethesda, MD.
NCBI is part of the National Library of Medicine (NLM) at the National Institutes of Health (NIH). NCBI is the world’s premier biomedical center hosting over six million daily users that seek research, clinical, genetic, and other information that directly impacts biomedical research and public health – at NCBI you can literally help to accelerate cures for diseases! NCBI’s wide range of applications, platforms (node, python, Django, C++, you name it) and environments (big data [petabytes], machine learning, multiple clouds) serve more users than almost any other US Government Agency according to https://analytics.usa.gov/.
We attract the best people in the business with our competitive benefits package that includes medical, dental and vision coverage, 401k plan with employer contribution, paid holidays, vacation, and tuition reimbursement. If you enjoy being a part of a high performing, professional service and technology focused organization, please apply today!
Duties & Responsibilities
- Develop and own protection metrics and alerting — build dashboards and alert pipelines that surface anomalies across a range of network and application-layer signals.
- Perform deep log analysis to identify overuse, scraping, abuse, DDoS, and attack patterns across millions of daily requests.
- Operate and tune cloud-based edge security controls — configure and update security policies, rate limiting, and adaptive protection rules in response to evolving threats.
- Enforce traffic controls — apply a range of mitigation strategies to abusive traffic while minimizing impact to legitimate users.
- Monitor continuously and respond quickly — this role requires a bias for action. You will triage incidents and either resolve them directly or escalate to development or sysadmin teams with clear, actionable information.
- Support protection across a mixed cloud and on-premises infrastructure — NCBI operates services in both environments, and protection coverage must extend consistently across both.
Requirements:
- Strong understanding of high-volume web service architecture — how traffic flows, where bottlenecks and abuse vectors appear, and how load balancers and edge infrastructure make routing decisions.
- Hands-on experience with a major cloud provider's security and networking stack, including:
- Global load balancing and traffic management
- Edge-layer security policy enforcement and WAF capabilities
- Large-scale log querying and metric-driven alerting
- Solid grasp of HTTP/HTTPS protocol internals — headers, TLS behavior, connection patterns, and how these relate to traffic analysis and fingerprinting techniques.
- Experience analyzing traffic using network and application-layer signals including address-based, organizational, and transport-layer fingerprinting methods.
- Familiarity with common web server platforms, their log formats, and configuration.
- Ability to read, write, and tune access control and rate-limiting rules under pressure.
- Comfort working across hybrid infrastructure environments.
Preferred Skills:
- Experience with advanced abuse mitigation techniques, including traffic redirection and challenge-response mechanisms.
- Scripting or automation experience (Python, Bash, or similar) for log parsing and rule generation.
- Prior work protecting high-traffic government or research platforms.
- Knowledge of bot detection techniques beyond simple blocking — behavioral signals, fingerprinting, headless browser detection, and similar approaches.
- Familiarity with evolving attacker tradecraft and how modern scrapers and abusers adapt to countermeasures.
Benefits and Salary
We attract the best people in the business with our competitive benefits package that includes medical, dental and vision coverage, 401k plan with employer contribution, paid holidays, vacation, and tuition reimbursement.
We offer a competitive salary commensurate with experience and location. If you enjoy being a part of a high performing, professional service and technology focused organization, please apply today!
Get Web Service Protection Engineer jobs like this→
New roles from thousands of companies land hourly, straight from their careers pages. Get the freshest matches by email so you never miss one.
Email me new jobsSimilar jobs




Frequently asked questions
What skills are required for Web Service Protection Engineer at Black Canyon Consulting?
The required skills for Web Service Protection Engineer at Black Canyon Consulting include: HTTP, Python, Bash.
What is the seniority level for Web Service Protection Engineer at Black Canyon Consulting?
Web Service Protection Engineer at Black Canyon Consulting is a Mid Level level position.
How do I apply for Web Service Protection Engineer at Black Canyon Consulting?
You can view the full description and apply for Web Service Protection Engineer at Black Canyon Consulting on EchoJobs: https://echojobs.io/job/black-canyon-consulting-web-service-protection-engineer-6fqa8.