{"id":1364157,"url":"https://alion.io/job/intellias-security-test-engineer-a2a","title":"Security & Test Engineer (A2A)","company":{"id":13249,"name":"Intellias","domain":"intellias.com","url":"https://alion.io/company/intellias","size_band":"1001-5000","is_staffing_agency":false,"employer_type":"direct","is_intermediary":false,"listed_via":"teamlyzer.com","ats_vendor":null,"truth_index":null},"role":"QA","role_family":"QA","seniority":"middle","employment_type":"full_time","work_mode":"on_site","remote_scope":null,"remote_scope_basis":null,"remote_working_hours":null,"hiring_geo_confidence":"inferred","locations":[],"countries":[],"hiring_countries":[],"hiring_countries_total":0,"salary":{"min":36000,"max":44000,"currency":"EUR","period":"year","gross":null,"usd_annual":50168},"salary_estimate":null,"experience_years_min":4,"visa_sponsorship":false,"relocation_package":false,"has_equity":false,"technologies":[{"name":"A2A","optional":false},{"name":"AI Agents","optional":false},{"name":"AWS Bedrock AgentCore","optional":false},{"name":"k6","optional":false},{"name":"LLM","optional":false},{"name":"Locust","optional":false},{"name":"Multi-Agent Systems","optional":false},{"name":"OWASP Top 10","optional":false},{"name":"Python","optional":false},{"name":"Rest API","optional":false},{"name":"Threat Modeling","optional":false}],"status":"live","first_seen_at":"2026-09-11T00:00:00Z","employer_posted_date":"2026-09-11","last_verified_at":"2026-09-11T00:00:00Z","board_verified":false,"closed_at":null,"days_open":19,"trust":{"level":"ok","repost_count":null,"flags":[],"days_open":19},"description":"Sobre a vaga\nWe are looking for a Security & Test Engineer to validate the security, reliability, and trustworthiness of agent-to-agent communication platforms. The role combines security testing, performance validation, policy verification, and AI threat modeling for multi-agent systems. You will become a part of Core Architecture Team and be responsible for the architecture and implementation.\nO que vais fazer\nDesign and execute security and functional test strategies for A2A communication platforms\nValidate A2A trust models including OAuth 2.0 authentication, JWT validation, signed Agent Cards, and token scope enforcement\nDevelop automated security test suites using Python\nDesign and execute API security testing scenarios against agent communication channels and platform services\nImplement performance and load testing using tools such as k6 and Locust\nDesign and maintain Cedar policy validation suites covering permit/deny behavior, policy precedence, forbid-overrides-permit logic, and policy mode transitions\nValidate LOG_ONLY versus ENFORCE behavior across authorization workflows\nPerform security reviews and threat modeling for agent ecosystems and AI-driven workflows\nDevelop test scenarios covering prompt injection, excessive agency, tool misuse, parameter exfiltration, and other AI-specific attack vectors\nVerify authorization, policy enforcement, auditability, and trust boundaries between communicating agents\nCollaborate with platform, backend, and security teams to identify vulnerabilities and improve platform resilience\nProduce security reports, test documentation, risk assessments, and mitigation recommendations\nO que é pedido\nA2A trust model (OAuth 2.0 + signed Agent Cards, JWT validation, token scope enforcement for agent channels)\nPython security test automation\nFunctional and security test design\nPerformance testing (k6, Locust)\nCedar policy testing (permit/deny correctness, forbid-overrides-permit, LOG_ONLY vs ENFORCE mode)\nAgentic AI / LLM threat modelling (OWASP Top 10 for LLMs, excessive agency, tool parameter exfiltration)\n4+ years security engineering or QA\nAPI security testing\nPerformance benchmarking for cloud APIs\nSecurity test design for AI/agent systems (not just REST APIs)\nEnforcement mechanism design or implementation\nValorizado\nMulti-agent communication security patterns\nTrust model gap analysis for non-AgentCore A2A agents\nResumo organizado por IA a partir do anúncio original. Confirma os detalhes no site da empresa.","description_format":"text","description_chars":2487,"description_truncated":false,"requirements":{"experience_years_min":4,"management_years_min":null,"team_size_min":null,"manages_managers":false,"education":null,"security_clearance":false,"languages":[]},"benefits":[],"hiring_locations":[],"hiring_excludes":[],"relocation_offered":false,"industries":["IT Consulting & Digital Transformation","IT Outsourcing & Dedicated Teams","Custom Software Development"],"lifecycle":[{"event":"open","at":"2026-09-28T01:18:49Z"}],"liveness":{"score":53,"band":"ok","label":"Likely open","p_open":0.85,"p_active":0.829,"p_room":0.75,"age_days":18,"expected_fill_days":26,"reasons":["seen:18","urgency","velocity","win:late"],"computed_at":"2026-09-29T05:45:00Z"},"pay":{"stated_usd_annual":50168,"is_top_pay":false},"html_url":"https://alion.io/job/intellias-security-test-engineer-a2a","json_url":"https://alion.io/job/intellias-security-test-engineer-a2a.json","meta":{"generated_at":"2026-09-30T02:18:25Z","cache_seconds":300,"methodology":"https://alion.io/methodology","terms":"https://alion.io/terms","contact":"https://alion.io/contact","api":"https://alion.io/developers","usage":{"tier":"crawler","counted_by":"address","units_charged":1,"used_today":1587,"day_limit":5000,"remaining_today":3413,"minute_limit":60,"resets_at":"2026-10-01T00:00:00Z"}}}