Senior Security & Test Engineer - A2A

EPAM Systems

Poland

Hybrid

PLN 180,000 - 240,000

Full time

8 days ago

Get more replies from employers

Send a job-specific resume in minutes.

Job summary

EPAM Systems is seeking a Senior Security & Test Engineer to join our team building an Enterprise Agent Development Platform. This role focuses on securing the A2A gateway within a cloud-native ecosystem on AWS AgentCore Runtime.

You will own security and performance test suites, validate authentication flows, and drive threat modeling for AI/LLM systems, collaborating with engineers to elevate overall security posture. Hybrid work in Poland is available.

Qualifications

  • 5+ years of experience in security engineering or quality assurance.
  • Strong knowledge of the A2A trust model including OAuth 2.0 signed Agent Cards and JWT validation with token scope enforcement for agent channels.
  • Proficiency in Python for security test automation.
  • Skills in functional and security test design.
  • Experience in performance testing using k6 and Locust along with performance benchmarking for cloud APIs.
  • Expertise in Cedar policy testing including permit/deny correctness forbid-overrides-permit logic and LOG_ONLY vs ENFORCE mode.
  • Background in agentic AI/LLM threat modeling covering OWASP Top 10 for LLMs excessive agency and tool parameter exfiltration.
  • Expertise in API security testing.
  • Background in security test design for AI/agent systems beyond REST APIs
  • Experience in enforcement mechanism design or implementation.

Responsibilities

  • Own security, functional and performance test suites for the A2A gateway.
  • Test Cedar policy enforcement correctness across LOG_ONLY and ENFORCE modes.
  • Conduct trust model gap analysis for non-AgentCore A2A agents.
  • Design and execute functional and security test plans for agentic AI systems.
  • Validate authentication and authorization flows across agent communication channels.
  • Identify and mitigate security risks specific to agentic AI and LLM-based systems.
  • Collaborate with engineering teams to strengthen the platform's overall security posture.
  • Report and track defects, vulnerabilities and performance bottlenecks uncovered during testing.

Skills

Python
Security testing
Test design
API security testing
Performance testing

Tools

k6
Locust

Job description

We are looking for a Senior Security & Test Engineer to join our team building an Enterprise Agent Development Platform, a production-grade cloud-native ecosystem that enables engineering teams to define, orchestrate, deploy and observe AI agents at scale. This role focuses on securing the A2A gateway within a platform that standardizes agent development using LangGraph and Strands Agents on AWS AgentCore Runtime, reducing agent development time from months to days while enforcing consistent security, quality and governance standards.

Responsibilities
  • Own security, functional and performance test suites for the A2A gateway
  • Test Cedar policy enforcement correctness across LOG_ONLY and ENFORCE modes
  • Conduct trust model gap analysis for non-AgentCore A2A agents
  • Design and execute functional and security test plans for agentic AI systems
  • Validate authentication and authorization flows across agent communication channels
  • Identify and mitigate security risks specific to agentic AI and LLM-based systems
  • Collaborate with engineering teams to strengthen the platform's overall security posture
  • Report and track defects, vulnerabilities and performance bottlenecks uncovered during testing
Requirements
  • 5+ years of experience in security engineering or quality assurance
  • Knowledge of the A2A trust model including OAuth 2.0 signed Agent Cards and JWT validation with token scope enforcement for agent channels
  • Proficiency in Python for security test automation
  • Skills in functional and security test design
  • Experience in performance testing using k6 and Locust along with performance benchmarking for cloud APIs
  • Expertise in Cedar policy testing including permit/deny correctness forbid-overrides-permit logic and LOG_ONLY vs ENFORCE mode
  • Background in agentic AI/LLM threat modeling covering OWASP Top 10 for LLMs excessive agency and tool parameter exfiltration
  • Expertise in API security testing
  • Background in security test design for AI/agent systems beyond REST APIs
  • Experience in enforcement mechanism design or implementation
Nice to have
  • Familiarity with multi-agent communication security patterns
  • Background in trust model gap analysis for non-AgentCore A2A agents
We offer
  • We gather like-minded people:
  • Top tech minds driving innovation in AI, cloud and digital platform modernization
  • Supportive team and agile, startup-like culture
  • Hybrid by design mode and opportunity to work remotely within Poland
  • Chance to work abroad for up to 60 days annually
  • Business-driven relocation opportunities
  • Thought leadership, mentoring, soft skills and well-being programs
  • We cover it all:
  • Participation in the Employee Stock Purchase Plan with a 15% discount
  • Referral bonuses up to $2,000
  • Offices featuring entertainment and relaxation zones, table tennis and football, free snacks, coffee and more
  • Corporate, social and well-being events
  • Please, note:
  • Benefits listed above are available to employees only
  • We are open for working with Contractors. Terms of B2B cooperation agreements are agreed individually
  • We will reach out to selected candidates exclusively

EPAM is global leader in AI transformation engineering and integrated consulting, serving Forbes Global 2000 companies and ambitious startups. With over thirty years of expertise in custom software, product and platform engineering, we empower our clients to become AI-Native enterprises, driving measurable value from innovation and digital investments.

Get your free, confidential resume review.
or drag and drop your file here.
Similar jobs

Similar jobs worth comparing

Senior Security & Test Engineer for AI Agent Platform
Senior Security & Test Engineer for AI Agent Platform

EPAM Systems • Poland

Hybrid
PLN 180,000 - 240,000
Senior AI/ML Solution Engineer (AI Agentic Security Testing)
Senior AI/ML Solution Engineer (AI Agentic Security Testing)

EPAM Systems • Poland

Hybrid
PLN 240,000 - 360,000
Employee stock purchase plan
Referral bonuses
Office amenities
Senior AI Platform Engineer
Senior AI Platform Engineer

EPAM Systems • Poland

Hybrid
PLN 180,000 - 300,000
Hybrid work model
Remote in Poland
Work abroad availability
+2
Senior QA / ML Tester
Senior QA / ML Tester

EPAM Systems • Poland

Hybrid
PLN 180,000 - 260,000
Hybrid by design
Remote within Poland
Work abroad up to 60 days annually
+2
Chief Forward Deployed Engineer
Chief Forward Deployed Engineer

EPAM Systems • Poland

Hybrid
PLN 260,000 - 380,000
Hybrid work model
Opportunity to work abroad up to 60,00
Relocation opportunities
+2
AI Architect
AI Architect

EPAM Systems • Województwo pomorskie

Hybrid
PLN 260,000 - 380,000
Hybrid by design
Remote work within Poland
Relocation opportunities
+4
Senior AI Workflow Development Engineer
Senior AI Workflow Development Engineer

EPAM Systems • Warszawa

Hybrid
PLN 200,000 - 320,000
Hybrid by design
Remote work within Poland
Relocation opportunities
+2
Lead Platform Engineer
Lead Platform Engineer

EPAM Systems • Poland

Hybrid
PLN 180,000 - 240,000
Hybrid work design
Remote within Poland
Global mobility up to 60 days
Senior Cloud Native Developer (Python & AI)
Senior Cloud Native Developer (Python & AI)

EPAM Systems • Poland

Hybrid
PLN 180,000 - 240,000
Hybrid work model
Remote within Poland
relocation opportunities
+1
Senior AI Engineer
Senior AI Engineer

EPAM Systems • Poland

Hybrid
PLN 180,000 - 240,000
Hybrid work environment
Relocation opportunities
International assignments
+2