Przejdź do treści
DataArt

Senior Cloud Security Developer with OAuth 2.0

Wrocław
Lublin
Kraków
Łódź
+1
23 godziny temu

W skrócie

Senior Cloud Security Developer needed to design/implement secure identity flows for agent-based architectures using AWS Bedrock AgentCore. Focus on auth, authz, token management, federation. Offers 26 vacation days, insurance, learning platforms.

Skrót przygotowany przez AI na podstawie treści ogłoszenia.

Technology stackAWS Bedrock AgentCore Identity, OAuth 2.0, OpenID Connect, JWT, MS Entra, Okta, Amazon Cognito, Cedar, AWS Verified Permissions

Project overviewAWS Bedrock AgentCore Identity, OAuth 2.0, OpenID Connect, JWT, MS Entra, Okta, Amazon Cognito, Cedar, AWS Verified Permissions

Position overviewWe are looking for a Senior Cloud Security Developer who will help design and implement secure identity flows for agent based architectures, with a focus on authentication, authorization, token lifecycle management, and federation across enterprise systems.

Responsibilities

  • Develop inbound and outbound authentication flows using AWS Bedrock AgentCore Identity or similar technology
  • Implement On Behalf Of token exchange and scoped identity propagation across agent, tool, and API chains
  • Develop and maintain OAuth 2.0, OpenID Connect, and JWT based identity flows, including token issuance, validation, exchange, and audience or issuer checks
  • Integrate identity federation with MS Entra Agent ID integration or similar technology for workload identity brokering
  • Implement gateway outbound authorization and per target credential management while ensuring secrets are not exposed to the calling agent
  • Integrate identity controls into the agent invocation lifecycle through AgentCore Runtime
  • Collaborate on identity aware authorization using Cedar or MS Entra claims mapping in coordination with runtime controls
  • Support secure credential and secret management, including token rotation and vaulting
  • Requirements
  • Experience with AWS Bedrock AgentCore Identity as an early adopter or equivalent
  • Experience with AWS AgentCore Gateway outbound authorization integration
  • Exposure to MCP or A2A tool invocation authentication patterns
  • Exposure to AgentCore Policy using Cedar or AWS Verified Permissions
  • What We Offer:

Vacation days: Up to 26 business days per year.10 illness/special days off per year (fully paid, no medical papers needed) for all contract types

Health and life insurance (Luxmed)

MyBenefit platform with Multisport option

Internal psychological support service

English language classes from the first working dayAccess to external learning platforms: O’

Reilly, LinkedIn Learning, Udemy, and a wide catalog of diverse internal training

  • Flexible workplace: work from the office, from home, or choose a hybrid optionTech Skills Mentoring Program
  • Opportunities to develop as a public speaker, mentor, or technical interviewer
  • Fully paid idle (bench) when not involved in a project
  • Certification reimbursement (AWS, GCP, Microsoft, etc.)
Opublikowana 2026-09-18
Wygasa 2026-10-27
Źródło