обновлено 16 часов назад
Senior Cloud Security Developer (OAuth 2.0)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
Текст:
TL;DR
Senior Cloud Security Developer (OAuth 2.0): Designing and implementing secure identity flows for agent-based architectures and enterprise authorization controls with an accent on authentication, authorization, token exchange, and identity federation. Focus on building OAuth 2.0 and OpenID Connect flows, managing token lifecycles and credentials, and enforcing policy-based access across distributed systems.
Location: Armenia, Bulgaria, Cyprus, Georgia, Kazakhstan, Latvia, Poland, Romania, Serbia, or Ukraine
Company
is a global software engineering company that builds data, analytics, and AI solutions for clients across multiple industries.
What you will do
- Design and implement inbound and outbound authentication flows for agent-based architectures using AWS Bedrock AgentCore Identity or similar technologies.
- Build On Behalf Of token exchange and scoped identity propagation across agent, tool, and API chains.
- Develop OAuth 2.0, OpenID Connect, and JWT flows covering token issuance, validation, exchange, and audience or issuer checks.
- Integrate enterprise identity federation with MS Entra, Okta, Amazon Cognito, or similar platforms.
- Implement gateway outbound authorization, per-target credential management, and secure integration with the AgentCore invocation lifecycle.
- Manage secrets and credentials through token rotation, vaulting, Cedar or claims-based authorization, and secure policy controls.
Requirements
- 5+ years of experience in cloud security or identity engineering.
- Hands-on experience implementing OAuth 2.0, OpenID Connect, and JWT identity flows.
- Production experience with On Behalf Of or token exchange flows, including RFC 8693 or an equivalent.
- Experience with enterprise identity federation using MS Entra, Okta, or Amazon Cognito.
- Experience with secure credential and secret management, token rotation, and vaulting.
Nice to have
- Experience with AWS Bedrock AgentCore Identity or AWS AgentCore Gateway outbound authorization.
- Exposure to MCP or A2A tool invocation authentication patterns.
- Exposure to AgentCore Policy using Cedar or AWS Verified Permissions.
Culture & Benefits
- Flexible work formats, including office, hybrid, and fully remote options, depending on the role and region.
- Vacation, sick pay, health insurance, and time off for state holidays according to the applicable country and contract.
- Coverage for IT certification costs and access to professional learning platforms and courses.
- Supportive environment with mentoring, professional development programs, and career flexibility.
- Corporate events, practical workplace support, mental health programs, and equipment options.
Hiring process
- CV review followed by an HR interview.
- Communication and technical assessments covering English skills and relevant technologies.
- Discussion with a project team member and possible client interview preparation.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →
Похожие вакансии
20 часов назад
Senior Application Security Engineer (Java)
5 дней назад
Application Security Architect (Cybersecurity)
5 дней назад
Senior Security Engineer (AWS)
150 000 - 160 000$
4 дня назад
Security Engineer - Platform & Shared Services
120 000 - 185 000$
4 дня назад
Lead AppSec Engineer (Application Security)
116 000 - 170 000$
6 дней назад