1 день назад
Senior Security Engineer (Cedar Policy)
Мэтч & Сопровод
Для мэтча с этой вакансией нужен Plus
Описание вакансии
Текст:
TL;DR
Senior Security Engineer (Cedar Policy) (Cloud Authorization): Building a centralized authorization layer for enterprise AI services and cloud applications with an accent on Cedar policies, identity integration, and policy-based access control. Focus on designing attribute-based access models, mapping identity claims to authorization policies, and implementing auditability and zero-trust controls across distributed cloud environments.
Location: Armenia, Bulgaria, Cyprus, Georgia, Kazakhstan, Latvia, Poland, Romania, Serbia, or Ukraine
Company
delivers software engineering and technology solutions for enterprise clients.
What you will do
- Design and implement Cedar-based authorization frameworks for enterprise AI services and cloud platforms.
- Develop and govern policy-as-code solutions and attribute-based access control models.
- Integrate authorization services with Microsoft Entra ID, OAuth 2.0, JWT, and OpenID Connect identity systems.
- Build default-deny access models and audit logging for authorization decisions and policy evaluations.
- Map identity claims and token attributes to authorization policies and review platform security designs.
- Collaborate with security architecture, governance, and engineering teams on compliance reviews, standards, and zero-trust initiatives.
Requirements
- 5+ years of experience in cloud security engineering, identity engineering, or a related security field.
- Hands-on experience designing and implementing attribute-based access control solutions.
- Strong understanding of OAuth 2.0, JWT, OpenID Connect, and identity federation.
- Experience inspecting authentication tokens and mapping claims to authorization policies.
- Experience with policy-based access control systems, policy-as-code methodologies, and authorization frameworks.
- Knowledge of Cedar concepts, secure audit logging, enterprise security reviews, and governance processes.
Nice to have
- Experience with AWS Cedar, AWS Verified Permissions, or AWS AgentCore Policy.
- Knowledge of zero-trust architecture and cloud-native security services.
- Experience supporting enterprise AI platforms and building scalable authorization platforms for distributed systems.
Culture & Benefits
- Work on global projects in a supportive, flexible, and innovative technology environment.
- Vacation, sick pay, and time off for state holidays according to local laws and calendars.
- Health insurance support for employees and loved ones.
- Coverage for IT certifications and access to courses and learning platforms.
- Corporate events, colleague meetups, and technical and everyday workplace support.
Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →
Похожие вакансии
Scorewarrior
6 дней назад
Senior Security Engineer (GameDev)
14 часов назад
Senior AI Security Engineer
1 день назад
PAM Architect with CyberArk (Cybersecurity)
5 дней назад
Product Security Engineer (DevSecOps)
5 дней назад
Cybersecurity Solution Architect (Secure SDLC)
5 дней назад