Senior Java Engineer (Access & Authorization)
Summary
Design and build a secure, scalable access and authorization platform in Java, implementing fine-grained ABAC policies and API gateways to enforce consistent security across distributed services.
Senior Java Engineer (Access & Authorization)
We are looking for a Senior Java Engineer to join the Atlas & Authorization Platform project full-time. We are building a platform access and security layer that sits in front of all core services and serves as the unified entry point for data and service access across the ecosystem, alongside a fine-grained Attribute-Based Access Control (ABAC) system.
Your responsibilities will include:
- Design and evolve the platform access architecture
- Build and maintain a unified API layer over multiple distributed services
- Design and implement fine-grained authorization at scale (ABAC model)
- Support complex organizational hierarchies and access relationships
- Build fail-closed security architectures with strict enforcement guarantees
- Manage regional compliance and data residency requirements
- Enforce consistent data visibility rules across all products and services
- Design high-performance authorization evaluation systems
- Provide full auditability, traceability, and security transparency
- Develop and maintain a unified API composition layer across services
- Design and implement policy evaluation architecture for access control decisions
- Ensure tenant isolation and enforce strict data boundaries
- Implement regional routing and compliance-aware data access
- Build scalable and high-performance authorization systems
- Ensure consistent enforcement of security and governance rules across the ecosystem
- Design and maintain auditability and traceability mechanisms
- Collaborate with platform and product teams on API and access design
- Contribute to architectural decisions and security standards across the organization
- At least 5 years of experience building distributed systems
- Strong expertise in Java development
- Experience designing API platforms or API gateways
- Strong background in security architecture and system design
- Experience with authorization systems (RBAC/ABAC or similar models)
- Experience with cloud-native architectures
- Experience designing scalable, high-availability systems
- Strong understanding of multi-tenant architectures
- Experience working with complex distributed systems in production
- Strong architectural thinking and problem-solving skills
- Upper-Intermediate+ English level
- Experience with Identity and Access Management (IAM) systems
- Experience building API gateways or service mesh architectures
- Experience with security-critical or compliance-heavy systems
- Experience with policy engines (e.g., OPA or similar concepts)
- Experience with large-scale enterprise platforms
- Experience with cloud providers (e.g., GCP)
- Experience with data governance, audit, and compliance systems
- Experience in regulated or high-security environments
- Work at a Top-employer company (according to DOU 2025)
- A strong culture built on empathy, trust, openness, and real care for employees
- Competitive compensation with regular reviews
- Medical insurance
- Personal learning budget and access to top HR tools, platforms, and practices
- Team events and regular team-building activities
- Flexible hybrid work model with an office in central Kyiv