Skip to content
DataArt

Senior Cloud Security Developer with OAuth 2.0

DataArt Show all offers
Kraków
Lublin
Łódź
Warszawa
+1
1 day ago

In short

Senior Cloud Security Developer in Kraków. Focus on secure identity flows for agent-based architectures, authentication, authorization, and federation. Requires AWS Bedrock AgentCore Identity experience. Benefits include vacation, insurance, learning platforms, and flexible work.

AI-written summary based on the listing content.

Technology stackAWS Bedrock AgentCore Identity, OAuth 2.0, OpenID Connect, JWT, MS Entra, Okta, Amazon Cognito, Cedar, AWS Verified Permissions

Project overviewAWS Bedrock AgentCore Identity, OAuth 2.0, OpenID Connect, JWT, MS Entra, Okta, Amazon Cognito, Cedar, AWS Verified Permissions

Position overviewWe are looking for a Senior Cloud Security Developer who will help design and implement secure identity flows for agent based architectures, with a focus on authentication, authorization, token lifecycle management, and federation across enterprise systems.

Responsibilities

  • Develop inbound and outbound authentication flows using AWS Bedrock AgentCore Identity or similar technology
  • Implement On Behalf Of token exchange and scoped identity propagation across agent, tool, and API chains
  • Develop and maintain OAuth 2.0, OpenID Connect, and JWT based identity flows, including token issuance, validation, exchange, and audience or issuer checks
  • Integrate identity federation with MS Entra Agent ID integration or similar technology for workload identity brokering
  • Implement gateway outbound authorization and per target credential management while ensuring secrets are not exposed to the calling agent
  • Integrate identity controls into the agent invocation lifecycle through AgentCore Runtime
  • Collaborate on identity aware authorization using Cedar or MS Entra claims mapping in coordination with runtime controls
  • Support secure credential and secret management, including token rotation and vaulting
  • Requirements
  • Experience with AWS Bedrock AgentCore Identity as an early adopter or equivalent
  • Experience with AWS AgentCore Gateway outbound authorization integration
  • Exposure to MCP or A2A tool invocation authentication patterns
  • Exposure to AgentCore Policy using Cedar or AWS Verified Permissions
  • What We Offer:

Vacation days: Up to 26 business days per year.10 illness/special days off per year (fully paid, no medical papers needed) for all contract types

Health and life insurance (Luxmed)

MyBenefit platform with Multisport option

Internal psychological support service

English language classes from the first working dayAccess to external learning platforms: O’

Reilly, LinkedIn Learning, Udemy, and a wide catalog of diverse internal training

  • Flexible workplace: work from the office, from home, or choose a hybrid optionTech Skills Mentoring Program
  • Opportunities to develop as a public speaker, mentor, or technical interviewer
  • Fully paid idle (bench) when not involved in a project
  • Certification reimbursement (AWS, GCP, Microsoft, etc.)
Published 2026-09-18
Expires 2026-10-27
Source