Назад
Company hidden
16 часов назад

Security Engineer with Cedar Policy (Cybersecurity)

Формат работы
onsite
Тип работы
fulltime
Грейд
middle
Английский
b2
Страна
Serbia/Ukraine/Poland +7 еще
Вакансия из списка Hirify.GlobalВакансия из Hirify RU Global, списка компаний с восточно-европейскими корнями
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Security Engineer with Cedar Policy (Cybersecurity): Building a centralized authorization framework for enterprise AI services and cloud applications with an accent on Cedar policies, identity provider integration, and secure access control. Focus on implementing ABAC and RBAC models, mapping identity claims to authorization decisions, automating policy validation with Python, and supporting auditability and governance.

Location: Armenia, Bulgaria, Cyprus, Georgia, Kazakhstan, Latvia, Poland, Romania, Serbia, or Ukraine

Company

hirify.global delivers software engineering and technology services for enterprise clients and global projects.

What you will do

  • Develop, test, validate, and maintain Cedar authorization policies for enterprise applications and AI services.
  • Implement ABAC and RBAC access control models, including parameter-level controls for secure tool and service interactions.
  • Integrate Microsoft Entra ID, Okta, Amazon Cognito, and other identity providers.
  • Map identity claims and token attributes to authorization decisions and policy rules.
  • Support AWS AgentCore Policy in LOG_ONLY and ENFORCE modes and develop Python tooling for automation and validation.
  • Collaborate on security reviews, audit logging, authorization traceability, and governance standards.

Requirements

  • 3+ years of experience in security engineering, backend engineering, or a related field.
  • Hands-on experience with enterprise identity providers such as Microsoft Entra ID, Okta, or Amazon Cognito.
  • Experience with ABAC or RBAC authorization frameworks and policy technologies such as Open Policy Agent or Cedar.
  • Knowledge of OAuth 2.0, JWT, OpenID Connect, claims mapping, and token-based authorization.
  • Experience with Python development for automation, validation, or backend services.
  • Strong analytical, problem-solving, written, and verbal communication skills.

Nice to have

  • Experience with LangGraph tool invocation patterns or AWS AgentCore Gateway.
  • Knowledge of enterprise AI platform architecture and governance.
  • Experience with policy-as-code methodologies, cloud-native security services, audit logging, or compliance reporting.

Culture & Benefits

  • Collaborative work with security engineers, backend developers, platform engineers, architects, and governance specialists.
  • Flexible and supportive technology environment focused on policy as code, automation, secure design, and continuous improvement.
  • Vacation, sick pay, and state-holiday time off according to the laws and official calendar of the employee's country.
  • Health insurance support for employees and their loved ones.
  • IT certification funding and access to courses and learning platforms.
  • Corporate events and technical and everyday workplace support.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →