Search by job, company or skills

Python Security Test Engineer

  • Posted 12 hours ago
  • Be among the first 10 applicants

Job Description

Security Test Engineer

About the Role

We are looking for a Security Test Engineer to validate the security, reliability, and correctness of authorization and policy enforcement systems used in AI agent platforms. This role combines security testing, automated test development, API security validation, and policy verification to ensure secure, compliant, and resilient platform services.

As part of the Core Architecture Team, you will work closely with software engineers, architects, and security specialists to design and execute security-focused test strategies, build automated test suites with Python, and validate authorization mechanisms that protect enterprise-scale cloud platforms. This is an exciting opportunity to contribute to next-generation AI platforms while advancing modern application security and quality engineering practices.

Project Overview

Our customer is a multinational corporation with more than a century of history and operations in over 180 countries. As part of its digital transformation journey, the company is investing heavily in Reduced-Risk Products (RRPs), targeting more than one billion consumers worldwide.

The enterprise platform supports more than 700 applications across Digital Commerce, Digital Marketing, IoT, and Enterprise Services.

Intellias partners with the customer to engineer a comprehensive software ecosystem for innovative IoT products and digital platforms. As a member of the Core Architecture Team, you will help build and secure an enterprise engineering platform that accelerates software delivery by providing reusable services, security controls, governance, and engineering best practices across multiple development teams.

Key Responsibilities

  • Design and execute functional and security testing strategies for policy-driven authorization systems.
  • Develop and maintain automated security and policy validation test suites using Python and pytest.
  • Validate permit/deny decisions, policy precedence, parameter-level access controls, and authorization logic.
  • Verify policy behavior during transitions between LOG_ONLY and ENFORCE modes.
  • Perform API security testing aligned with the OWASP API Top 10.
  • Conduct penetration testing, threat modeling, and security assessments for platform services and AI agent workflows.
  • Design and execute test scenarios covering prompt injection, agent identity spoofing, policy bypass attempts, and other Agentic AI attack vectors.
  • Validate audit logging, traceability, and security event generation for authorization decisions.
  • Verify Agent-to-Agent (A2A) policy enforcement across distributed workflows.
  • Collaborate with software engineering and security teams to identify vulnerabilities and strengthen the platform's security posture.
  • Maintain security test documentation, test reports, and compliance evidence.

Required Qualifications

Education

  • Bachelor's degree in computer science, Software Engineering, Information Security, or a related technical field.

Technical Skills

  • Security testing, including penetration testing and threat modeling.
  • Python test automation using pytest.
  • Functional and security test design.
  • API security testing based on the OWASP API Top 10.
  • Agentic AI threat modeling, including:
  • Prompt injection
  • Policy bypass
  • Agent identity spoofing
  • Authorization and policy enforcement testing.
  • Agent-to-Agent (A2A) policy enforcement validation.
  • Audit log validation and security event verification.
  • Policy validation, including:
  • Permit/Deny correctness
  • Policy precedence
  • Parameter-level conditions
  • LOG_ONLY to ENFORCE mode validation

Experience

  • 4+ years of experience in Quality Assurance, Security Testing, or Application Security.
  • Experience implementing automated security test suites.
  • Hands-on experience with API security testing and vulnerability validation.
  • Experience designing functional and security test strategies.
  • Strong understanding of secure software development practices.

Nice to Have

  • AWS security testing experience.
  • Experience with Cedar policy testing tools.
  • Regulatory compliance testing (GDPR, SOC 2).
  • Experience testing cloud-native applications and distributed systems.
  • Familiarity with AI security, authorization frameworks, and policy engines.

Why Join Us

  • Work on enterprise-scale platforms supporting more than 700 applications used across a global organization.
  • Help secure next-generation AI agent platforms and modern authorization systems.
  • Collaborate with experienced architects, software engineers, and security specialists on innovative cloud-native solutions.
  • Contribute to the development of security standards and best practices that impact engineering teams worldwide.
  • Expand your expertise in AI security, policy validation, cloud-native application security, and automated testing while working on cutting-edge technologies.

More Info

Job Type:
Industry:
Employment Type:

About Company

Job ID: 151784091

Beware of Scammers

We don’t charge money for job offers