Senior Cloud Security Developer with OAuth 2.0
Tech Stack / Keywords
Wymagania
- Experience with AWS Bedrock AgentCore Identity as an early adopter or equivalent
- Experience with AWS AgentCore Gateway outbound authorization integration
- Exposure to MCP or A2A tool invocation authentication patterns
- Exposure to AgentCore Policy using Cedar or AWS Verified Permissions
Obowiązki
- Develop inbound and outbound authentication flows using AWS Bedrock AgentCore Identity or similar technology
- Implement On Behalf Of token exchange and scoped identity propagation across agent, tool, and API chains
- Develop and maintain OAuth 2.0, OpenID Connect, and JWT based identity flows, including token issuance, validation, exchange, and audience or issuer checks
- Integrate identity federation with MS Entra Agent ID integration or similar technology for workload identity brokering
- Implement gateway outbound authorization and per target credential management while ensuring secrets are not exposed to the calling agent
- Integrate identity controls into the agent invocation lifecycle through AgentCore Runtime
- Collaborate on identity aware authorization using Cedar or MS Entra claims mapping in coordination with runtime controls
- Support secure credential and secret management, including token rotation and vaulting
Benefity
- Up to 26 business vacation days per year
- 10 fully paid illness/special days off per year (no medical papers needed) for all contract types
- Health and life insurance (Luxmed)
- Access to MyBenefit platform with Multisport option
- Internal psychological support service
- English language classes from the first working day
- Access to external learning platforms: O’Reilly, LinkedIn Learning, Udemy, and diverse internal training
- Flexible workplace: office, home, or hybrid option
- Tech Skills Mentoring Program
- Opportunities to develop as a public speaker, mentor, or technical interviewer
- Fully paid idle (bench) when not involved in a project
- Certification reimbursement (e.g., AWS, GCP, Microsoft)
Inne informacje
Informujemy, że administratorem danych jest DataArt Poland Sp z o o z siedzibą w Lublinie, Ul. Zana 39 a, 20-601 Lublin (dalej jako "administrator"). Masz prawo do żądania dostępu do swoich danych osobowych, ich sprostowania, usunięcia lub ograniczenia przetwarzania, prawo do wniesienia sprzeciwu wobec przetwarzania, a także prawo do przenoszenia danych oraz wniesienia skargi do organu nadzorczego. Dane osobowe przetwarzane będą w celu realizacji procesu rekrutacji. Podanie danych w zakresie wynikającym z ustawy z dnia 26 czerwca 1974 r. Kodeks pracy jest obowiązkowe. W pozostałym zakresie podanie danych jest dobrowolne. Odmowa podania danych obowiązkowych może skutkować brakiem możliwości przeprowadzenia procesu rekrutacji. Administrator przetwarza dane obowiązkowe na podstawie ciążącego na nim obowiązku prawnego, zaś w zakresie danych dodatkowych podstawą przetwarzania jest zgoda. Dane osobowe będą przetwarzane do czasu zakończenia postępowania rekrutacyjnego i przez okres możliwości dochodzenia ewentualnych roszczeń, a w przypadku wyrażenia zgody na udział w przyszłych postępowaniach rekrutacyjnych - do czasu wycofania tej zgody. Zgoda na przetwarzanie danych osobowych może zostać wycofana w dowolnym momencie. Odbiorcą danych jest serwis Just Join IT oraz inne podmioty, którym powierzyliśmy przetwarzanie danych w związku z rekrutacją.
DataArt
26 aktywnych ofert