{"id":1528336,"url":"https://alion.io/job/dataart-security-engineer-with-agent-authorization","title":"Security Engineer with Agent Authorization","company":{"id":46984,"name":"DataArt","domain":"dataart.com","url":"https://alion.io/company/dataart-com","size_band":"201-500","is_staffing_agency":false,"employer_type":"direct","is_intermediary":false,"listed_via":null,"ats_vendor":null,"truth_index":null},"role":"Security","role_family":"Security","seniority":"middle","employment_type":"full_time","work_mode":"remote","remote_scope":"stated_countries","remote_scope_basis":"inferred_payroll_markers","remote_working_hours":null,"hiring_geo_confidence":"inferred","locations":["Warsaw, Poland"],"countries":["PL"],"hiring_countries":["PL"],"hiring_countries_total":1,"salary":{"min":16000,"max":20000,"currency":"PLN","period":"month","gross":null,"usd_annual":62496},"salary_estimate":null,"experience_years_min":3,"visa_sponsorship":false,"relocation_package":false,"has_equity":false,"technologies":[{"name":"AWS","optional":false},{"name":"AWS Bedrock","optional":false},{"name":"AWS Bedrock AgentCore","optional":false},{"name":"IAM","optional":false},{"name":"Model Context Protocol","optional":false},{"name":"AI Agents","optional":true},{"name":"Zero Trust","optional":true}],"status":"live","first_seen_at":"2026-09-30T14:44:04Z","employer_posted_date":null,"last_verified_at":"2026-09-30T14:44:04Z","board_verified":false,"closed_at":null,"days_open":2,"trust":{"level":"not_scored","repost_count":null,"flags":[],"days_open":2},"description":"Technology stack\nCedar policy engine, OAuth, API keys, IAM roles, JWT, AWS Secrets Manager, AWS Bedrock AgentCore, OPA, MCP\nProject overview\nYou will contribute to an AI platform centered on secure agent operations and controlled tool access. The work includes authorization, credential management, identity validation, audit tracing, and gateway based protection for tool interactions.\nPosition overview\nWe are looking for a Security Engineer to support the security of an AI platform with a focus on agent authorization, credential management, identity, and observability. In this role, you will work on practical security controls that help protect agent workflows and tool integrations.\nResponsibilities\nImplement authorization systems for API and tool access\n\nManage credential storage and secret rotation patterns for target systems\n\nValidate agent identity and support cross agent authentication and service to service trust\n\nImprove observability and tracing for agent workflows and tool invocation activity\n\nSupport audit logging for agent interactions and tool access events\n\nEnforce gateway controls to prevent direct tool access outside approved paths\n\nWork with AWS based secrets management for per target credential storage and rotation\n\nRequirements\n3+ years of security engineering experience in AI or ML platforms or agent platforms\n\nExperience implementing authorization systems for API or tool access\n\nExperience with credential management and secret rotation patterns\n\nExperience with agent workflow observability and tracing\n\nKnowledge of Cedar policy engine for agent to tool permissions and tool level access control\n\nExperience with OAuth tokens, API keys, and IAM roles for secure credential handling\n\nExperience validating JWT and supporting service to service trust models\n\nExperience with audit logging and tracing for agent workflows\n\nNice to have\nExperience with Cedar policy language or OPA for agent authorization\n\nExperience with AWS Bedrock AgentCore policy configuration\n\nKnowledge of agent to agent authentication patterns\n\nExperience with zero trust architecture for agentic systems\n\nKnowledge of MCP protocol security including authentication and authorization at tool invocation","description_format":"text","description_chars":2217,"description_truncated":false,"requirements":{"experience_years_min":3,"management_years_min":null,"team_size_min":null,"manages_managers":false,"education":null,"security_clearance":false,"languages":[]},"benefits":[],"hiring_locations":[{"name":"Poland","iso":"PL","kind":"country"}],"hiring_excludes":[],"relocation_offered":false,"industries":["IT Outsourcing & Dedicated Teams","Custom Software Development"],"lifecycle":[{"event":"open","at":"2026-09-30T14:56:59Z"}],"liveness":{"score":90,"band":"hot","label":"Hiring now","p_open":1,"p_active":0.903,"p_room":1,"age_days":1,"expected_fill_days":38,"reasons":["seen:1","velocity","win:early"],"computed_at":"2026-10-02T05:45:00Z"},"pay":{"stated_usd_annual":62496,"is_top_pay":false},"html_url":"https://alion.io/job/dataart-security-engineer-with-agent-authorization","json_url":"https://alion.io/job/dataart-security-engineer-with-agent-authorization.json","meta":{"generated_at":"2026-10-03T03:48:57Z","cache_seconds":300,"methodology":"https://alion.io/methodology","terms":"https://alion.io/terms","contact":"https://alion.io/contact","api":"https://alion.io/developers","usage":{"tier":"crawler","counted_by":"address","units_charged":1,"used_today":3807,"day_limit":5000,"remaining_today":1193,"minute_limit":60,"resets_at":"2026-10-04T00:00:00Z"}}}