Security & Test Engineer (A2A)

Intellias

Poland

On-site

PLN 120,000 - 180,000

Full time

2 days ago
Be an early applicant
Application generator

Get a reply from this employer — a resume and cover letter tailored to exactly what they’re hiring for.

Get past ATS filters

Job summary

Intellia seeks a Security & Test Engineer to validate security, reliability, and trust in agent-to-agent communication platforms. You will perform security testing, AI threat modeling, and policy verification within multi-agent systems, leveraging Python automation and Cedar policy testing.

The role involves designing scalable test strategies, evaluating OAuth 2.0, JWT validation, and agent card signing, and implementing performance tests for cloud APIs.

Qualifications

  • 4+ years security engineering or QA
  • API security testing
  • Performance benchmarking for cloud APIs
  • Security test design for AI/agent systems
  • Enforcement mechanism design or implementation

Responsibilities

  • Design and execute security and functional test strategies for A2A communication platforms.
  • Validate A2A trust models including OAuth 2.0 authentication, JWT validation, signed Agent Cards, and token scope enforcement.
  • Develop automated security test suites using Python.
  • Design and execute API security testing scenarios against agent communication channels and platform services.
  • Implement performance and load testing using tools such as k6 and Locust.
  • Design and maintain Cedar policy validation suites covering permit/deny behavior, policy precedence, forbid-overrides-permit logic, and policy mode transitions.
  • Validate LOG_ONLY versus ENFORCE behavior across authorization workflows.
  • Perform security reviews and threat modeling for agent ecosystems and AI-driven workflows.
  • Develop test scenarios covering prompt injection, excessive agency, tool misuse, parameter exfiltration, and other AI‑specific attack vectors.
  • Verify authorization, policy enforcement, auditability, and trust boundaries between communicating agents.
  • Collaborate with platform, backend, and security teams to identify vulnerabilities and improve platform resilience.
  • Produce security reports, test documentation, risk assessments, and mitigation recommendations.

Skills

A2A trust model
Python security test automation
Functional security test design
Cedar policy testing
Agentic AI threat modelling

Tools

k6
Locust

Job description

We are looking for a Security & Test Engineer to validate the security, reliability, and trustworthiness of agent-to-agent communication platforms. The role combines security testing, performance validation, policy verification, and AI threat modeling for multi-agent systems. The ideal candidate has hands‑on experience in security engineering, automated testing, API security, and modern AI/agent security frameworks.

Project Overview:

Our customer is a multinational corporation with more than a century of history and offices in over 180 countries. Their most ambitious goal at the time is to introduce a range of Reduced‑Risk Products (RRPs). The target audience is more than 1 billion consumers around the globe. IT platform hosts 700+ applications.

Intellia's mission is to help the client with the engineering of a comprehensive software ecosystem for a game‑changing IoT product on the margin of innovative consumer experience and cutting‑edge technology. Our teams are involved in the engineering of core platform components for best‑in‑class eCommerce, Digital Marketing and IoT solutions. As an Engineer, you will become a part of Core Architecture Team and be responsible for the architecture, implementation of best practices in our Digital Engineering Enterprise Platform.

The Platform is a set of services and internet applications that accelerate the development and delivery of software applications by taking care of common SDLC challenges. The Platform provides access and consumption for engineering teams to a set of services, technologies, practices for their development and for operating their application, ensuring a set of compliance and best practices.

Requirements:
  • A2A trust model (OAuth 2.0 + signed Agent Cards, JWT validation, token scope enforcement for agent channels)
  • Python security test automation
  • Functional and security test design
  • Cedar policy testing (permit/deny correctness, forbid-overrides-permit, LOG_ONLY vs ENFORCE mode)
  • Agentic AI / LLM threat modelling (OWASP Top 10 for LLMs, excessive agency, tool parameter exfiltration)
Experience:
  • 4+ years security engineering or QA
  • API security testing
  • Performance benchmarking for cloud APIs
  • Security test design for AI/agent systems (not just REST APIs)
  • Enforcement mechanism design or implementation
Will be a plus:
  • Multi-agent communication security patterns
  • Trust model gap analysis for non-AgentCore A2A agents
Responsibilities:
  • Design and execute security and functional test strategies for A2A communication platforms.
  • Validate A2A trust models including OAuth 2.0 authentication, JWT validation, signed Agent Cards, and token scope enforcement.
  • Develop automated security test suites using Python.
  • Design and execute API security testing scenarios against agent communication channels and platform services.
  • Implement performance and load testing using tools such as k6 and Locust.
  • Design and maintain Cedar policy validation suites covering permit/deny behavior, policy precedence, forbid-overrides-permit logic, and policy mode transitions.
  • Validate LOG_ONLY versus ENFORCE behavior across authorization workflows.
  • Perform security reviews and threat modeling for agent ecosystems and AI-driven workflows.
  • Develop test scenarios covering prompt injection, excessive agency, tool misuse, parameter exfiltration, and other AI‑specific attack vectors.
  • Verify authorization, policy enforcement, auditability, and trust boundaries between communicating agents.
  • Collaborate with platform, backend, and security teams to identify vulnerabilities and improve platform resilience.
  • Produce security reports, test documentation, risk assessments, and mitigation recommendations.
Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Security Test Engineer (Python)
Security Test Engineer (Python)

Intellias • Poland

On-site
PLN 120,000 - 210,000
Security & AI Trust Engineer for Agent Networks
Security & AI Trust Engineer for Agent Networks

Intellias • Poland

On-site
PLN 120,000 - 180,000
Senior Security & Test Engineer - A2A
Senior Security & Test Engineer - A2A

EPAM Systems • Łódź

Hybrid
PLN 200,000 - 280,000
Health insurance
Multisport card
Relocation opportunities
+1
Senior Security & Test Engineer - A2A
Senior Security & Test Engineer - A2A

EPAM Systems • Poland

Hybrid
PLN 180,000 - 240,000
Hybrid work mode
Relocation support
Health insurance
+2
Senior Platform Engineer (Agent Gateway)
Senior Platform Engineer (Agent Gateway)

Intellias • Poland

On-site
PLN 180,000 - 300,000
Senior AI Agent Platform Security & Test Engineer
Senior AI Agent Platform Security & Test Engineer

EPAM Systems • Poland

Hybrid
PLN 180,000 - 240,000
Hybrid work mode
Relocation support
Health insurance
+2
Senior AI Security & Test Engineer – Cloud Agent Platform
Senior AI Security & Test Engineer – Cloud Agent Platform

EPAM Systems • Łódź

Hybrid
PLN 200,000 - 280,000
Health insurance
Multisport card
Relocation opportunities
+1
Senior Platform Engineer
Senior Platform Engineer

Intellias • Poland

On-site
PLN 260,000 - 380,000
Principal Solution Architect - Agentic AI Platform
Principal Solution Architect - Agentic AI Platform

Intellias • Poland

On-site
PLN 230,000 - 550,000
Senior AI/ML Solution Engineer (AI Agentic Security Testing)
Senior AI/ML Solution Engineer (AI Agentic Security Testing)

EPAM Systems • Łódź

Hybrid
PLN 250,000 - 390,000
Hybrid work model
Relocation opportunities
English classes
+2