Network Security Expert – TLS Obfuscation & CDN Evasion Specialist

Job ID: 39240274

Budget: $250 – $750 USD

We're looking for an experienced Network Security or DevOps Engineer to help us mitigate ISP censorship and deep packet inspection (DPI) techniques, especially SNI (Server Name Indication) exposure during TLS handshakes. This is particularly critical in regions like the UAE, where our streaming services are being blocked due to visible SNI data.

? Responsibilities:
Implement advanced CDN-based Domain Fronting techniques.

Configure Cloudflare Workers or alternative CDN solutions to mask true origin domains.

Set up reverse proxy configurations (Nginx/Apache) to hide or reroute traffic securely.

Utilize ECH (Encrypted Client Hello) if applicable, or propose alternatives such as VPN tunnels (WireGuard/OpenVPN), Shadowsocks, or v2ray.

Test and verify configurations using tools like Wireshark to ensure no SNI leaks.

Provide scalable and sustainable solutions for securing our IPTV app connections.

✅ Requirements:
Proven experience with Cloudflare, Fastly, or similar CDN platforms.

Deep knowledge of TLS 1.2/1.3, QUIC, and HTTP/2 / HTTP/3.

Familiarity with DPI evasion techniques and SNI cloaking.

Ability to write custom proxy or tunneling scripts if needed.

Experience deploying VPN/obfuscation layers between clients and backend servers.

Ability to provide proof of concept or demo of similar work.

? Nice to Have:
Background in stream T V ;) , video streaming services, or mobile apps.

Past experience handling censorship in high-block regions like China, Iran, or GCC countries.

Understanding of Android/iOS app networking and traffic routing.