Edge Security Platform Engineer
About this role
The Edge Security Platform Engineer owns the edge security controls that protect MLB’s public web and mobile traffic. This role builds, operates, and improves WAF and bot defenses and manages security capabilities across CDNs that support application delivery, traffic protection, and transaction flows.
This engineer tunes controls, automates workflows, and connects edge telemetry with application and payment signals to reduce bot abuse and fraud without adding unnecessary friction, latency, or downtime for legitimate fans.
Success is measured by stronger protection during high-demand events, fewer false positives, better visibility across edge-to-transaction flows, and measurable improvement in checkout conversion, site performance, and fraud reduction.
Responsibilities
Edge Security & Platform Operations
• Own and operate MLB’s edge security platforms (WAF, bot mitigation, CDN), including configuration, tuning, and lifecycle management
• Maintain secure, resilient environments using infrastructure-as-code and controlled deployment practices
• Continuously refine rules, policies, and thresholds to improve protection and prevent drift
• Participate in an on-call rotation for high-severity edge security incidents
Bot Mitigation & Fraud Prevention
• Design and manage defenses against automated abuse (e.g., credential stuffing, scraping, ticketing bots, payment fraud)
• Analyze telemetry to identify threats, false positives, and attacker behavior
• Partner with fraud and payment teams to strengthen early detection and mitigation
Performance & Incident Response
• Optimize security controls to protect uptime and user experience during high-traffic events
• Serve as a subject matter expert during incidents, ensuring mitigations meet latency, conversion, and availability targets
Observability & Reporting
• Build and maintain logging, monitoring, dashboards, and alerting across edge and application layers
• Integrate telemetry with SIEM tools to improve detection, triage, and auditability.
• Track and report on key risk and performance metrics
Automation, Governance & Collaboration
• Drive automation for detection, response, and change management while maintaining human oversight
• Establish strong deployment controls, audit trails, and support compliance (e.g., PCI, SOC 2)
• Collaborate cross-functionally to enhance edge security strategy, tooling, and execution
Qualifications & Skills
• Bachelor’s degree in Computer Science, Cybersecurity, Software Engineering, or a related field, or equivalent practical experience
• 5+ years in security, platform, SRE, or infrastructure engineering roles supporting high-scale, internet-facing systems; experience with high-demand consumer platforms such as ticketing, e-commerce, streaming, or live events strongly preferred
• Hands-on experience operating and tuning WAF, bot mitigation, rate limiting, CDN security, and related traffic protection controls in production environments
• Direct experience with HAProxy Enterprise WAF and bot/security modules, and with CDN including WAF, bot management, rate controls, and telemetry or log streaming
• Strong understanding of HTTP/S, TLS, DNS, TCP/IP, reverse proxying, caching, rate limiting, server- and client-side fingerprinting, and edge traffic behavior
• Experience investigating web abuse, fraud signals, or adversarial automation affecting login, checkout, account, or transaction flows
• Proficiency with Python, Go, Bash, or similar scripting languages, and experience with Terraform, Ansible, Git-based workflows, CI/CD pipelines, or other infrastructure-as-code practices
• Experience with observability, logging, and SIEM integration for security and operational telemetry
• Strong troubleshooting skills across distributed systems, production incidents, and customer-impacting edge events
• Strong written and verbal communication skills, with the ability to work effectively across technical and non-technical teams
Salary Range: $140,000 - $160,000 (Base Salary + Bonus)
As a candidate for this position, your salary and related aspects of compensation will be contingent upon your work experience, education, skills, and any other factors MLB considers relevant to the hiring decision. In addition to your salary, MLB believes in providing a competitive compensation and benefits package for its employees.
Top MLB Perks & Benefits
• Competitive Benefits Package
• Company 401K Contribution
• Paid Time Off and Holidays
• Paid Parental Leave
• Access to Free Tickets to Baseball Games & MLB.TV
• Discounts at MLB Store | MLBShop.com
• Employee Assistance Programs (EAP)
• Onsite/Online Training & Development Programs
• Tuition Reimbursement
• Disability Benefits (short term and long term)
• Life and Accidental Death Insurance
• Pet Insurance
Why MLB?
Major League Baseball (MLB) is the most historic of the major professional sports leagues in the United States and Canada. Employees love working at MLB because of the culture of growth, teamwork, and professionalism. Employees who are most successful at MLB take initiative, know how to identify problems and provide solutions, and always put the Team first. For those ready to step up to the plate and join the major leagues, MLB takes the same approach as teams do with their players: empowering our “workforce athletes” to be at their best by engineering experiences that put employees in the best position to succeed. Major League Baseball is looking for candidates who are passionate about growing America’s pastime to best serve its fans for decades to come.
California Residents: Please see our California Recruitment Privacy Policy for more details.
Colorado Residents: Colorado based applicants may redact or remove age-identifying information such as age, date of birth, or dates of school attendance or graduation. You will not be penalized for redacting or removing this information.
Applicants requiring a reasonable accommodation for any part of the application and hiring process, please email us at [email protected]. Requests received for non-disability related issues, such as following up on an application, will not receive a response.
Are you ready to Step Up to the Plate? Apply below!