Senior Security & Test Engineer - A2A

EPAM Systems

Łódź

Hybrid

PLN 200,000 - 280,000

Full time

3 days ago
Be an early applicant

Get more replies from employers

Send a job-specific resume in minutes.

Benefits offered by this job

Health insurance
Multisport card
Relocation opportunities
Employee stock purchase plan

Job summary

EPAM Systems is seeking a Senior Security & Test Engineer to join a team building an Enterprise Agent Development Platform. You will own security, functional and performance test suites for the A2A gateway and validate auth flows across agent channels.

The role requires 5+ years in security or QA, strong Python skills for test automation, and experience with k6/Locust for performance testing, Cedar policy testing, and AI/LLM threat modeling.

Qualifications

  • 5+ years of experience in security engineering or quality assurance.
  • Proficiency in Python for security test automation.
  • Knowledge of OAuth 2.0 signed Agent Cards and JWT scope enforcement.
  • Experience in performance testing using k6 and Locust.
  • Expertise in Cedar policy testing and AI/LLM threat modeling.
  • API security testing experience.

Responsibilities

  • Own security, functional and performance test suites for the A2A gateway.
  • Test Cedar policy enforcement across LOG_ONLY and ENFORCE modes.
  • Design and execute functional and security test plans for agentic AI systems.
  • Validate authentication and authorization flows across agent channels.
  • Identify and mitigate security risks for agentic AI and LLM-based systems.
  • Collaborate with engineering teams to strengthen the platform's overall security posture.
  • Report and track defects, vulnerabilities and performance bottlenecks uncovered during testing.

Skills

Security engineering
Quality Assurance
Test design
Python
OAuth 2.0
JWT validation
Cedar policy testing
Threat modeling for AI/LLM
API security testing
Enforcement mechanism design

Tools

k6
Locust
AgentCore Runtime
LangGraph
Strands Agents

Job description

We are looking for a Senior Security & Test Engineer to join our team building an Enterprise Agent Development Platform, a production‑grade cloud‑native ecosystem that enables engineering teams to define, orchestrate, deploy and observe AI agents at scale. This role focuses on securing the A2A gateway within a platform that standardizes agent development using LangGraph and Strands Agents on AWS AgentCore Runtime, reducing agent development time from months to days while enforcing consistent security, quality and governance standards.

Responsibilities
  • Own security, functional and performance test suites for the A2A gateway
  • Test Cedar policy enforcement correctness across LOG_ONLY and ENFORCE modes
  • Conduct trust model gap analysis for non‑AgentCore A2A agents
  • Design and execute functional and security test plans for agentic AI systems
  • Validate authentication and authorization flows across agent communication channels
  • Identify and mitigate security risks specific to agentic AI and LLM‑based systems
  • Collaborate with engineering teams to strengthen the platform's overall security posture
  • Report and track defects, vulnerabilities and performance bottlenecks uncovered during testing
Requirements
  • 5+ years of experience in security engineering or quality assurance
  • Knowledge of the A2A trust model including OAuth 2.0 signed Agent Cards and JWT validation with token scope enforcement for agent channels
  • Proficiency in Python for security test automation
  • Skills in functional and security test design
  • Experience in performance testing using k6 and Locust along with performance benchmarking for cloud APIs
  • Expertise in Cedar policy testing including permit/deny correctness forbid‑overrides‑permit logic and LOG_ONLY vs ENFORCE mode
  • Background in agentic AI/LLM threat modeling covering OWASP Top 10 for LLMs excessive agency and tool parameter exfiltration
  • Expertise in API security testing
  • Background in security test design for AI/agent systems beyond REST APIs
  • Experience in enforcement mechanism design or implementation
Nice to have
  • Familiarity with multi‑agent communication security patterns
  • Background in trust model gap analysis for non‑AgentCore A2A agents
We offer
  • We gather like-minded people:
  • Top tech minds driving innovation in AI, cloud and digital platform modernization
  • Supportive team and agile, startup‑like culture
  • Hybrid by design mode and opportunity to work remotely within Poland
  • Chance to work abroad for up to 60 days annually
  • Business‑driven relocation opportunities
  • We provide growth opportunities:
  • Career development programs
  • Thought leadership, mentoring, soft skills and well‑being programs
  • Certification (Anthropic, Gemini, GCP, Azure, AWS)
  • English classes
  • We cover it all:
  • Stable pay
  • Participation in the Employee Stock Purchase Plan with a 15% discount
  • Benefits package (health insurance, multisport, shopping vouchers)
  • Referral bonuses up to $2,000
  • Offices featuring entertainment and relaxation zones, table tennis and football, free snacks, coffee and more
  • Corporate, social and well‑being events
  • Please, note:
  • Benefits listed above are available to employees only
  • We are open for working with Contractors. Terms of B2B cooperation agreements are agreed individually
  • We will reach out to selected candidates exclusively

EPAM is global leader in AI transformation engineering and integrated consulting, serving Forbes Global 2000 companies and ambitious startups. With over thirty years of expertise in custom software, product and platform engineering, we empower our clients to become AI‑Native enterprises, driving measurable value from innovation and digital investments.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior AI/ML Solution Engineer (AI Agentic Security Testing)
Senior AI/ML Solution Engineer (AI Agentic Security Testing)

EPAM Systems • Łódź

Hybrid
PLN 250,000 - 390,000
Hybrid work model
Relocation opportunities
English classes
+2
Senior Security Engineer with Cedar
Senior Security Engineer with Cedar

EPAM Systems • Warszawa

Hybrid
PLN 180,000 - 240,000
Hybrid work design
Remote within Poland
Relocation opportunities
+1
Lead AI Security Engineer
Lead AI Security Engineer

EPAM Systems • Poland

Hybrid
PLN 280,000 - 480,000
Health insurance
Employee stock purchase plan
Hybrid by design (Poland)
+1
Lead Azure AI Security Engineer
Lead Azure AI Security Engineer

EPAM Systems • Łódź

Hybrid
PLN 250,000 - 400,000
Hybrid by design
Remote within Poland
Relocation opportunities
+2
AI Architect
AI Architect

EPAM Systems • Województwo pomorskie

Hybrid
PLN 260,000 - 380,000
Hybrid by design
Remote work within Poland
Relocation opportunities
+4
AI-Augmented IAM Security Engineer
AI-Augmented IAM Security Engineer

EPAM Systems • Poznań

Hybrid
PLN 180,000 - 240,000
Hybrid by design
Remote within Poland
Health insurance
+4
Chief Forward Deployed Engineer
Chief Forward Deployed Engineer

EPAM Systems • Poland

Hybrid
PLN 260,000 - 380,000
Hybrid work model
Opportunity to work abroad up to 60,00
Relocation opportunities
+2
Senior AI Security & Test Engineer – Cloud Agent Platform
Senior AI Security & Test Engineer – Cloud Agent Platform

EPAM Systems • Łódź

Hybrid
PLN 200,000 - 280,000
Health insurance
Multisport card
Relocation opportunities
+1
Lead AI Engineer
Lead AI Engineer

EPAM Systems • Poland

Hybrid
PLN 180,000 - 250,000
Hybrid work design
Relocation opportunities
English language classes
+2
Senior Python Automation Engineer - Cyber Security Implementation & Adoption
Senior Python Automation Engineer - Cyber Security Implementation & Adoption

EPAM Systems • Województwo pomorskie

Hybrid
PLN 150,000 - 210,000
Hybrid by design mode
Work remotely within Poland
Work abroad up to 60 days annually
+4