security engineer for agent authorization

HireHi

United States

Remote

USD 130,000 - 170,000

Full time

9 days ago
Application generator

An application made for this job — a tailored resume and cover letter that speak straight to the posting.

Get past ATS filters

Job summary

DataArt разрабатывает AI-платформу, сфокусированную на безопасной работе агентов и контролируемом доступе к инструментам, включая аутентификацию, управление ключами и аудит. Задачи включают реализацию систем авторизации, управление секретами, валидацию идентичности агентов и усиление трассируемости рабочих процессов.

Команда обеспечивает безопасность и соответствие требованиям за счет политики доступа Cedar/OPA, взаимодействий между сервисами и управления довериями в облаке AWS.

Qualifications

  • 3+ года опыта в инженерии безопасности на платформах ИИ/ML.
  • Опыт реализации авторизации для API или доступа к инструментам.
  • Опыт управления секретами и ротации.
  • Опыт наблюдаемости и трассировки рабочих процессов агентов.
  • Знание Cedar или OPA для политик доступа.

Responsibilities

  • Разработка систем авторизации для доступа к API и инструментам.
  • Управление хранением учетных данных и ротация секретов.
  • Валидация идентичности агентов и поддержки доверия между сервисами.
  • Улучшение наблюдаемости и трассируемости рабочих процессов.
  • Обеспечение аудита взаимодействий агентов и событий доступа к инструментам.
  • Применение gateway-контролей и предотвращение прямого доступа к инструментам.
  • Работа с AWS Secrets Manager и конфигурациями политики.

Skills

Authorization systems
Credential management
Observability & tracing
Audit logging
Zero-trust architecture
OAuth / API keys / IAM
JWT validation
Cedar policy language
OPA policy language
AWS Bedrock AgentCore
Agent-to-agent auth
Tool access control

Tools

Cedar
OPA
AWS Bedrock AgentCore

Job description

Описание

DataArt develops an AI platform focused on secure agent operations and controlled tool access, including authorization, credential management, identity validation, audit tracing, and gateway-based protection for tool interactions.

Задачи
  • Implement authorization systems for API and tool access
  • Manage credential storage and secret rotation patterns for target systems
  • Validate agent identity and support cross-agent authentication and service-to-service trust
  • Improve observability and tracing for agent workflows and tool invocation activity
  • Support audit logging for agent interactions and tool access events
  • Enforce gateway controls to prevent direct tool access outside approved paths
  • Work with AWS-based secrets management for per-target credential storage and rotation
Требования
  • 3+ Years of security engineering experience in AI or ML platforms or agent platforms
  • Experience implementing authorization systems for API or tool access
  • Experience with credential management and secret rotation patterns
  • Experience with agent workflow observability and tracing
  • Knowledge of Cedar policy engine for agent-to-tool permissions and tool-level access control
  • Experience with OAuth tokens, API keys, and IAM roles for secure credential handling
  • Experience validating JWT and supporting service-to-service trust models
  • Experience with audit logging and tracing for agent workflows
  • Experience with Cedar policy language or OPA for agent authorization
  • Experience with AWS Bedrock AgentCore policy configuration
  • Knowledge of agent-to-agent authentication patterns
  • Experience with zero-trust architecture for agentic systems
  • Knowledge of MCP protocol security, including authentication and authorization at tool invocation
Условия

No conditions specified

Get your free, confidential resume review.

or drag and drop your file here.

Similar jobs

Similar jobs worth comparing

Security Engineer with Cedar Policy
Security Engineer with Cedar Policy

Jobo • United States

Remote
USD 110,000 - 160,000
Security Engineer with Cedar Policy
Security Engineer with Cedar Policy

Aether Biomedical • United States

On-site
USD 110,000 - 150,000
Vacation days 26+
Sick days 10
Health and life insurance
+7
Security Engineer - AI Platform & Zero-Trust Access
Security Engineer - AI Platform & Zero-Trust Access

HireHi • United States

Remote
USD 130,000 - 170,000
qa engineer (auto) for AI agent platforms
qa engineer (auto) for AI agent platforms

HireHi • United States

Remote
USD 100,000 - 140,000
Senior Platform Engineer with AWS AgentCore Gateway
Senior Platform Engineer with AWS AgentCore Gateway

Jobo • United States

Remote
USD 130,000 - 180,000
Influence on solutions
Mentoring & knowledge exchange
Agile engineering environment
devops engineer for enterprise AI agents
devops engineer for enterprise AI agents

HireHi • United States

Remote
USD 120,000 - 170,000
Well-being benefits
Professional growth opportunities
Security Engineer: Authorization Policy & Identity
Security Engineer: Authorization Policy & Identity

Jobo • United States

Remote
USD 110,000 - 160,000
backend developer for agent image lifecycle management
backend developer for agent image lifecycle management

HireHi • United States

Remote
USD 120,000 - 180,000
devops engineer for containerized AI agents
devops engineer for containerized AI agents

HireHi • United States

Remote
USD 120,000 - 170,000
Здравоохранение
Гибкий график
Корпоративные мероприятия
python developer for agent ecosystems
python developer for agent ecosystems

HireHi • United States

Remote
USD 120,000 - 150,000
Remote work