Back to search
EPAM Systems Linkedin · Posted 9d ago

Senior Security & Test Engineer, A2A

Georgia, United States

Linkedin
Continue to application Add your email once, then Caio opens the original posting.

Indexed description

We are looking for a Senior Security & Test Engineer to take ownership of the security, functional, and performance test suites for our A2A gateway within an enterprise-grade Agent Development Platform. This production-ready, cloud-native ecosystem empowers engineering teams to define, orchestrate, deploy, and monitor AI agents at scale, standardizing agent development through LangGraph and Strands Agents on AWS AgentCore Runtime.

This position centers on verifying Cedar policy enforcement accuracy and performing trust model gap analysis for non-AgentCore A2A agents, ensuring uniform security, quality, and governance standards throughout the platform.

Experience the freedom of remote work from anywhere in Georgia, whether from the comfort of your home, our modern offices in Tbilisi and Batumi or a coworking space in Kutaisi.

Responsibilities

  • Own security, functional, and performance test suites for the A2A gateway
  • Validate Cedar policy enforcement correctness across LOG_ONLY and ENFORCE modes
  • Conduct trust model gap analysis for non-AgentCore A2A agents
  • Design and execute functional and security test strategies for agentic AI systems
  • Build and maintain Python-based security test automation frameworks
  • Perform performance testing and benchmarking for cloud APIs using k6 and Locust
  • Test permit/deny correctness and forbid-overrides-permit logic within Cedar policies
  • Apply agentic AI and LLM threat modeling practices to identify risks such as excessive agency and tool parameter exfiltration
  • Evaluate A2A trust model components, including OAuth 2.0, signed Agent Cards, JWT validation, and token scope enforcement for agent channels

Requirements

  • 3+ years of experience in security engineering or QA
  • Expertise in API security testing and performance benchmarking for cloud APIs
  • Skills in security test design for AI/agent systems beyond traditional REST APIs
  • Background in enforcement mechanism design or implementation
  • Knowledge of A2A trust model concepts, including OAuth 2.0, signed Agent Cards, JWT validation, and token scope enforcement
  • Proficiency in Python security test automation, functional test design, and performance testing tools such as k6 and Locust
  • Understanding of Cedar policy testing, including permit/deny correctness and LOG_ONLY vs ENFORCE modes
  • Familiarity with agentic AI and LLM threat modeling frameworks, including OWASP Top 10 for LLMs
  • Excellent command of written and spoken English (B2+ level)

Nice to have

  • Familiarity with multi-agent communication security patterns
  • Expertise in trust model gap analysis for non-AgentCore A2A agents

We offer

  • We connect like-minded people
    • Delivering innovative solutions to industry leaders, making a global impact
    • Enjoyable working environment, whether it is the vibrant office or the comfort of your own home
    • Opportunity to work abroad for up to two months per year
    • Relocation opportunities within our offices in 55+ countries
    • Corporate and social events
  • We invest in your growth
    • Leadership development, career advising, soft skills and well-being programs
    • Certifications, including GCP, Azure and AWS
    • Unlimited access to EPAM's internal learning database
    • Free English classes with certified teachers
  • We cover it all
    • Participation in the Employee Stock Purchase Plan
    • Monetary bonuses for engaging in the referral program
    • Comprehensive medical & family care package
    • Five trust days per year (sick leave without a medical certificate)
    • Benefits package (sports activities, a variety of stores and services)
EPAM is global leader in AI transformation engineering and integrated consulting, serving Forbes Global 2000 companies and ambitious startups. With over thirty years of expertise in custom software, product and platform engineering, we empower our clients to become AI-Native enterprises, driving measurable value from innovation and digital investments.
Free. 20 seconds. No password. See every match in this search.

Create a free Caio profile to unlock more results and save your role and location preferences.

Unlock free search
Want help applying to roles like this? Search Caio for free. If repetitive applications get heavy, Managed Job Search adds supervised execution for $99/month.
View Managed Job Search