Overview
We are looking for a Senior Security Engineer with strong experience in identity, access management, and policy driven authorization for cloud based platforms. In this role, you will design, implement, and govern authorization frameworks that support secure access to enterprise AI and cloud services. You will work closely with security, platform, and architecture teams to establish scalable policy controls, auditability, and zero trust access models.
Project Overview:
This project focuses on building a centralized authorization layer for enterprise AI services and cloud applications. The platform enables secure, policy based access decisions, integrates with enterprise identity providers, and supports governance, compliance, and audit requirements across distributed environments.
- Design and implement authorization frameworks using Cedar based policies
- Develop and maintain policy as code solutions for enterprise platforms and AI services
- Define and enforce attribute based access control models across applications and cloud environments
- Integrate authorization services with Microsoft Entra ID, OAuth 2.0, JWT, and OpenID Connect based identity systems
- Design default deny access models and secure authorization patterns
- Build and maintain audit logging mechanisms for authorization decisions and policy evaluations
- Collaborate with security architecture and governance teams to support security reviews and compliance requirements
- Map identity claims and token attributes to authorization policies and access control models
- Review platform designs and recommend improvements for authorization, governance, and security controls
- Contribute to enterprise security standards, documentation, and best practices
- Support zero trust initiatives and secure access programs across cloud environments
- 5+ years of experience in cloud security engineering, identity engineering, or a related security field
- Hands on experience designing and implementing attribute based access control solutions
- Strong understanding of OAuth 2.0, JWT, OpenID Connect, and identity federation concepts
- Experience inspecting authentication tokens and mapping claims to authorization policies
- Experience designing, implementing, or governing policy based access control systems
- Knowledge of Cedar policy language concepts, including principals, actions, resources, and conditions
- Experience working with policy as code methodologies and authorization frameworks
- Experience participating in enterprise security reviews, architecture review boards, or information security governance processes
- Understanding of secure audit logging and authorization decision traceability
- Strong written and verbal communication skills
- Experience working with AWS Cedar or other Cedar based authorization frameworks
- Experience with AWS Verified Permissions or AWS AgentCore Policy services
- Knowledge of zero trust architecture principles and implementation patterns
- Experience supporting enterprise AI platforms and authorization governance initiatives
- Exposure to cloud native security services and modern identity architectures
- Experience building scalable authorization platforms for distributed systems
✨ Our intelligent job search engine discovered this job and republished it for your convenience.
Please be aware that the job information may be incorrect or incomplete. The job announcement remains the property of its original publisher. To view the original job and its full details, please visit the job's URL on the owner’s page.
Please clearly mention that you have heard of this job opportunity on https://ijob.am.

