Назад
Company hidden
4 дня назад

Security Engineer with Agent Authorization (AI)

Формат работы
onsite
Тип работы
fulltime
Грейд
middle
Английский
b2
Страна
Serbia/Ukraine/Poland +7 еще
Вакансия из списка Hirify.GlobalВакансия из Hirify RU Global, списка компаний с восточно-европейскими корнями
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Security Engineer with Agent Authorization (AI): Building security controls for an AI platform focused on secure agent operations and controlled tool access with an accent on authorization, credential management, identity validation, and observability. Focus on implementing policy-based API and tool access, designing secret rotation and service-to-service trust models, and improving audit tracing for agent workflows.

Location: Armenia, Bulgaria, Cyprus, Georgia, Kazakhstan, Latvia, Poland, Romania, Serbia, or Ukraine

Company

A global software engineering company building data, analytics, and AI solutions for clients across multiple industries.

What you will do

  • Implement authorization systems for API and tool access.
  • Manage credential storage and secret rotation for target systems using AWS-based solutions.
  • Validate agent identities and support cross-agent authentication and service-to-service trust.
  • Improve observability and tracing for agent workflows and tool invocation activity.
  • Support audit logging and enforce gateway controls that prevent unapproved direct tool access.

Requirements

  • 3+ years of security engineering experience with AI, ML, or agent platforms.
  • Experience implementing authorization for APIs or tools and managing credential rotation.
  • Knowledge of Cedar policy engine for agent-to-tool permissions and tool-level access control.
  • Experience with OAuth tokens, API keys, IAM roles, JWT validation, and service-to-service trust models.
  • Experience with audit logging, workflow observability, and tracing for agent interactions.
  • English proficiency sufficient for communication and technical assessments.

Nice to have

  • Experience with Cedar policy language, OPA, or AWS Bedrock AgentCore policy configuration.
  • Knowledge of agent-to-agent authentication patterns and zero-trust architecture for agentic systems.
  • Knowledge of MCP protocol security, including authentication and authorization during tool invocation.

Culture & Benefits

  • Flexible work formats and secure access with company equipment support.
  • Vacation and sick leave according to the laws of the employment country.
  • Health insurance support and paid state holidays based on the local calendar.
  • IT certification cost coverage, professional courses, mentoring, and learning platforms.
  • Corporate events, technical support, mental health programs, and professional development opportunities.

Hiring process

  • CV review followed by an HR interview.
  • Communication and technical assessments covering English and relevant technologies.
  • Meeting with the project team and possible client interview preparation.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →