Unlock Full Resume Report

New offer - be the first one to apply!

September 18, 2026

Security Engineer (Policy-Based Authorization)

Mid • Remote

18,000 - 20,000 PLN/yr

Wrocław, DS, Poland

Quick Facts

  • Role: Security Engineer focused on policy-based authorization for enterprise AI and cloud platforms

Description

You will support the implementation and governance of policy-based authorization solutions that centralize access control for enterprise AI services and cloud applications. The work includes developing Cedar authorization policies, integrating identity providers, and enabling auditable and governable policy enforcement across distributed systems.

Responsibilities

  • Develop and maintain authorization policies using the Cedar policy language

  • Author, test, and validate policy definitions for enterprise applications and AI services

  • Implement access control models using ABAC and RBAC approaches

  • Integrate identity providers (Microsoft Entra ID, Okta, Amazon Cognito)

  • Map identity claims and token attributes to authorization decisions and policy rules

  • Support AWS AgentCore Policy in LOG_ONLY and ENFORCE modes

  • Build Python tooling for policy validation, testing, and automation

  • Design parameter level access control patterns for secure tool and service interactions

  • Collaborate with security, platform, and engineering teams to review authorization requirements and implement policy controls

  • Contribute to audit logging and authorization decision traceability

  • Support security reviews and authorization governance standards

Requirements

  • 3+ years of experience in security engineering, backend engineering, or related field

  • Hands-on experience integrating enterprise identity providers (Microsoft Entra ID, Okta, Amazon Cognito)

  • Experience defining and managing policies within ABAC or RBAC frameworks

  • Hands-on experience with Open Policy Agent, Cedar, or similar policy-based authorization technologies

  • Knowledge of OAuth 2.0, JWT, and OpenID Connect

  • Experience with claims mapping and token-based authorization models

  • Understanding of secure authorization design principles and policy lifecycle management

  • Python development experience for automation, validation, or backend services

  • Strong analytical and problem-solving skills

  • Good written and verbal communication skills

Benefits

  • Up to 26 business vacation days per year

  • 10 illness/special paid days off per year (no medical papers)

  • Health and life insurance (Luxmed)

  • MyBenefit platform with Multisport option

  • Internal psychological support service

  • English language classes from the first working day

  • Access to external learning platforms (O’Reilly, LinkedIn Learning, Udemy) and internal training catalog

  • Flexible workplace: office, remote, or hybrid

  • Tech Skills Mentoring Program

  • Opportunities to develop as a public speaker, mentor, or technical interviewer

  • Fully paid idle (bench) when not on a project

  • Certification reimbursement (AWS, GCP, Microsoft, etc.)

Similar jobs you might like