Назад
Company hidden
1 день назад

Senior Security Engineer (Cedar Policy)

Формат работы
onsite
Тип работы
fulltime
Грейд
senior
Английский
b2
Страна
Serbia/Ukraine/Poland +7 еще
Вакансия из списка Hirify.GlobalВакансия из Hirify RU Global, списка компаний с восточно-европейскими корнями
Для мэтча и отклика нужен Plus

Мэтч & Сопровод

Для мэтча с этой вакансией нужен Plus

Описание вакансии

Текст:
/
TL;DR
Senior Security Engineer (Cedar Policy) (Cloud Authorization): Building a centralized authorization layer for enterprise AI services and cloud applications with an accent on Cedar policies, identity integration, and policy-based access control. Focus on designing attribute-based access models, mapping identity claims to authorization policies, and implementing auditability and zero-trust controls across distributed cloud environments.

Location: Armenia, Bulgaria, Cyprus, Georgia, Kazakhstan, Latvia, Poland, Romania, Serbia, or Ukraine

Company

hirify.global delivers software engineering and technology solutions for enterprise clients.

What you will do

  • Design and implement Cedar-based authorization frameworks for enterprise AI services and cloud platforms.
  • Develop and govern policy-as-code solutions and attribute-based access control models.
  • Integrate authorization services with Microsoft Entra ID, OAuth 2.0, JWT, and OpenID Connect identity systems.
  • Build default-deny access models and audit logging for authorization decisions and policy evaluations.
  • Map identity claims and token attributes to authorization policies and review platform security designs.
  • Collaborate with security architecture, governance, and engineering teams on compliance reviews, standards, and zero-trust initiatives.

Requirements

  • 5+ years of experience in cloud security engineering, identity engineering, or a related security field.
  • Hands-on experience designing and implementing attribute-based access control solutions.
  • Strong understanding of OAuth 2.0, JWT, OpenID Connect, and identity federation.
  • Experience inspecting authentication tokens and mapping claims to authorization policies.
  • Experience with policy-based access control systems, policy-as-code methodologies, and authorization frameworks.
  • Knowledge of Cedar concepts, secure audit logging, enterprise security reviews, and governance processes.

Nice to have

  • Experience with AWS Cedar, AWS Verified Permissions, or AWS AgentCore Policy.
  • Knowledge of zero-trust architecture and cloud-native security services.
  • Experience supporting enterprise AI platforms and building scalable authorization platforms for distributed systems.

Culture & Benefits

  • Work on global projects in a supportive, flexible, and innovative technology environment.
  • Vacation, sick pay, and time off for state holidays according to local laws and calendars.
  • Health insurance support for employees and loved ones.
  • Coverage for IT certifications and access to courses and learning platforms.
  • Corporate events, colleague meetups, and technical and everyday workplace support.

Будьте осторожны: если работодатель просит войти в их систему, используя iCloud/Google, прислать код/пароль, запустить код/ПО, не делайте этого - это мошенники. Обязательно жмите "Пожаловаться" или пишите в поддержку. Подробнее в гайде →