EPAM Systems logo

Senior PBAC Engineer

EPAM Systems

Newtown, PARemoteJobNo compensation foundPosted 2mo agoSeen in employer's feed 4 days ago

Most applications go out cold — see where you stand first. No sign-up to start.

At a glance

Compensation
No compensation found
Location
Newtown, PARemote
Work Authorization
Not specified

Job overview

EPAM Systems is hiring a Senior PBAC Engineer. The Senior PBAC Engineer will architect, deploy, and operate a secure application infrastructure aligned with business needs. This role involves developing scalable and resilient security solutions, focusing on Policy-Based Access Control (PBAC) capabilities. Key responsibilities include centralized policy decisioning, distributed policy enforcement integration, attribute/context aggregation, and ensuring auditability to meet security and compliance expectations.

Key focus areas include Be self-driven with minimal daily oversight required, Design and build security solutions, and Design and implement security architectures and strategies to safeguard information system resources and assets.

Successful candidates bring 7+ Years Of PBAC Implementations Experience. Important skills include PBAC Implementations, Platform Onboarding, Policy Lifecycle Management, Integration Patterns For Policy Decisioning, Integration Patterns For Policy Enforcement, and PBAC Across Pilot Applications. Preferred (not required): Operating System Hardening, OpenID Connect, Self-Driven, and Design Security Solutions.

Skills & qualifications

RequiredNice to have

Skills

PBAC ImplementationsPlatform OnboardingPolicy Lifecycle ManagementIntegration Patterns for Policy DecisioningIntegration Patterns for Policy EnforcementPBAC Across Pilot ApplicationsScaling to Broader AdoptionPolicy DevelopmentEnforcement Integration Into ApplicationsEnforcement Integration Into GatewaysJavaScriptJavaPythonActive DirectoryLDAP Directory ServicesIntrusion DetectionSecurity PoliciesGPOsOperating System HardeningSSOFederationSAMLOpenID ConnectMFACertificatesPKIIdentity Management ConceptsCloud TechnologyDevice AuthenticationSelf-DrivenDesign Security SolutionsBuild Security SolutionsDesign Security ArchitecturesImplement Security ArchitecturesDesign Security StrategiesImplement Security StrategiesIntegration of TechnologyCoachingMaintain Awareness of Security Technology DirectionDevelop Long-Term Strategy for Supported Security SystemsDesign PBAC Platform ComponentsImplement PBAC Platform ComponentsEnable Distributed Policy Enforcement PointsCoordinate Attribute AggregationImplement Audit & Compliance PipelinesSupport Delegated Administration WorkflowsSupport Governance Models for Policy Control

Qualifications

7+ Years of PBAC Implementations Experience

Full job description

The Senior PBAC Engineer helps architect, deploy and operate a secure application infrastructure that aligns with business needs. The position is responsible for developing security solutions at scale and with resiliency to support business initiatives. In this role, the Senior IAM Engineer will focus on pBAC / PBAC (Policy-Based Access Control) capabilities, including centralized policy decisioning, distributed policy enforcement integration, attribute/context aggregation, and auditability to meet security and compliance expectations.

Req# 1025895901

Responsibilities

  • Be self-driven with minimal daily oversight required

  • Design and build security solutions

  • Design and implement security architectures and strategies to safeguard information system resources and assets

  • Ensure integration of technology that upholds the Information Security policies and standards, as well as meets firm business objectives

  • Mentor fellow team members and other associates in security best practices

  • Maintain awareness of security technology direction, trends, and related issues

  • Develop long-term strategy for supported security systems

  • Design and implement pBAC / PBAC platform components, including a central Policy Decision Point (PDP) with high availability, performance, and scale

  • Enable distributed Policy Enforcement Points (PEPs) by integration of enforcement with API gateways, SSO platforms, and target applications as needed

  • Coordinate attribute aggregation across identity, risk, device, transaction, location, and other enterprise data sources required for policy decisions

  • Implement audit & compliance pipelines by streaming PBAC decision logs to SIEM/compliance dashboards and support of reporting needs

  • Support delegated administration workflows and governance models for policy control across business units, IT, risk, and compliance stakeholders

Requirements

  • 7+ years of experience with pBAC / PBAC implementations, including platform onboarding, policy lifecycle management, and integration patterns for policy decisioning and enforcement (PDP/PEP model)

  • Experience with implementation of PBAC across pilot applications and scaling to broader adoption, including policy development and enforcement integration into applications and/or gateways

  • Proficiency in JavaScript, Java or Python

  • General knowledge of Active Directory (AD) or other LDAP Directory Services, Intrusion Detection, Security Policies / GPOs, Operating System (OS) hardening, Single Sign-on (SSO), Federation (SAML and/or OIDC), Multi-Factor Authentication (MFA), Certificates/Public Key Infrastructure (PKI), Identity Management concepts, Cloud Technology and device authentication a plus

This Remote Position Cannot be Performed in New York City.

In accordance with the LA County Fair Chance Ordinance, you may find a copy of the Notice containing a summary of the Ordinance’s key provisions here: Concept FCO Posting 8 27 24 (lacounty.gov)

EPAM Systems, Inc. is an equal opportunity employer. We recognize the value of diversity and inclusion in creating success for our customers, business partners, shareholders, employees and communities. We are committed to recruiting, hiring, developing and promoting employees without discrimination. As a global employer, this commitment includes complying with all laws in the countries in which we operate. Nevertheless, we believe equal employment practices should not be limited to what the law requires. Equal opportunity and inclusion are essential to motivate, empower and recognize the best in everyone.

At EPAM, employment actions are based on individual qualifications, without regard to race, color, religion, creed, gender, pregnancy status, sexual orientation, gender identity, gender expression, marital or familial status, national origin, ancestry, genetics, age, disability status, veteran status, citizenship status when otherwise legally able to work, or any other characteristic protected by law.

You've read the whole posting — now see how you match it.