Senior Security Engineer Cedar Policy
Listed on 2026-09-03
-
Security
Information Security & Data Protection, Cybersecurity, Security Management & Operations
Job Title
Job Description
ResponsibilitiesDesign and implement authorization frameworks using Cedar based policies
Develop and maintain policy as code solutions for enterprise platforms and AI services
Define and enforce attribute based access control models across applications and cloud environments
Integrate authorization services with Microsoft Entra , OAuth 2.0, JWT, and OpenID Connect based identity systems
Design default deny access models and secure authorization patterns
Build and maintain audit logging mechanisms for authorization decisions and policy evaluations
Collaborate with security architecture and governance teams to support security reviews and compliance requirements
Map identity claims and token attributes to authorization policies and access control models
Review platform designs and recommend improvements for authorization, governance, and security controls
Contribute to enterprise security standards, documentation, and best practices
Support zero trust initiatives and secure access programs across cloud environments
Requirements5+ years of experience in cloud security engineering, identity engineering, or a related security field
Hands on experience designing and implementing attribute based access control solutions
Strong understanding of OAuth 2.0, JWT, OpenID Connect, and identity federation concepts
Experience inspecting authentication tokens and mapping claims to authorization policies
Experience designing, implementing, or governing policy based access control systems
Knowledge of Cedar policy language concepts, including principals, actions, resources, and conditions
Experience working with policy as code methodologies and authorization frameworks
Experience participating in enterprise security reviews, architecture review boards, or information security governance processes
Understanding of secure audit logging and authorization decision traceability
Strong written and verbal communication skills
Nice To HaveExperience working with AWS Cedar or other Cedar based authorization frameworks
Experience with AWS Verified Permissions or AWS Agent Core Policy services
Knowledge of zero trust architecture principles and implementation patterns
Experience supporting enterprise AI platforms and authorization governance initiatives
Exposure to cloud native security services and modern identity architectures
Experience building scalable authorization platforms for distributed systems
We OfferVacation as per the laws of your country. We do ask you to take a proper rest
Health insurance We help you to take out an insurance policy for you and your loved ones
Sick pay 10 days without a doctor's note, afterwards - as per the laws of your country
Equal opportunities
Time off for state holidays according to the official calendar, regardless of the client's schedule
Pleasant environment Two large corporate parties and many small get-togethers for colleagues
Comfort service Solving technical and everyday problems at work More about the perks List of benefits in PDF The benefits package may vary depending on the region and the type of contract
(If this job is in fact in your jurisdiction, then you may be using a Proxy or VPN to access this site, and to progress further, you should change your connectivity to another mobile device or PC).