Назад
Company hidden
обновлено 16 часов назад

Senior Cloud Security Developer (OAuth 2.0)

Формат работы
remote (только Europe)
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
Serbia/Ukraine/Poland +7 еще
Вакансия из списка Hirify.GlobalВакансия из Hirify RU Global, списка компаний с восточно-европейскими корнями
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Senior Cloud Security Developer (OAuth 2.0): Designing and implementing secure identity flows for agent-based architectures and enterprise authorization controls with an accent on authentication, authorization, token exchange, and identity federation. Focus on building OAuth 2.0 and OpenID Connect flows, managing token lifecycles and credentials, and enforcing policy-based access across distributed systems.

Location: Armenia, Bulgaria, Cyprus, Georgia, Kazakhstan, Latvia, Poland, Romania, Serbia, or Ukraine

Company

hirify.global is a global software engineering company that builds data, analytics, and AI solutions for clients across multiple industries.

What you will do

  • Design and implement inbound and outbound authentication flows for agent-based architectures using AWS Bedrock AgentCore Identity or similar technologies.
  • Build On Behalf Of token exchange and scoped identity propagation across agent, tool, and API chains.
  • Develop OAuth 2.0, OpenID Connect, and JWT flows covering token issuance, validation, exchange, and audience or issuer checks.
  • Integrate enterprise identity federation with MS Entra, Okta, Amazon Cognito, or similar platforms.
  • Implement gateway outbound authorization, per-target credential management, and secure integration with the AgentCore invocation lifecycle.
  • Manage secrets and credentials through token rotation, vaulting, Cedar or claims-based authorization, and secure policy controls.

Requirements

  • 5+ years of experience in cloud security or identity engineering.
  • Hands-on experience implementing OAuth 2.0, OpenID Connect, and JWT identity flows.
  • Production experience with On Behalf Of or token exchange flows, including RFC 8693 or an equivalent.
  • Experience with enterprise identity federation using MS Entra, Okta, or Amazon Cognito.
  • Experience with secure credential and secret management, token rotation, and vaulting.

Nice to have

  • Experience with AWS Bedrock AgentCore Identity or AWS AgentCore Gateway outbound authorization.
  • Exposure to MCP or A2A tool invocation authentication patterns.
  • Exposure to AgentCore Policy using Cedar or AWS Verified Permissions.

Culture & Benefits

  • Flexible work formats, including office, hybrid, and fully remote options, depending on the role and region.
  • Vacation, sick pay, health insurance, and time off for state holidays according to the applicable country and contract.
  • Coverage for IT certification costs and access to professional learning platforms and courses.
  • Supportive environment with mentoring, professional development programs, and career flexibility.
  • Corporate events, practical workplace support, mental health programs, and equipment options.

Hiring process

  • CV review followed by an HR interview.
  • Communication and technical assessments covering English skills and relevant technologies.
  • Discussion with a project team member and possible client interview preparation.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →