Ataccama

Senior Python Engineer (part-time, contract)

Ataccama Capital City of Prague, Prague, Czechia

Software Development · 501-1,000 employees

20 h ago
Remote python Senior (5-10 yrs) Part-time Contractor Czechia
Create a free account to apply — email only, no card. You can also save this posting or score it against your profile with AI.

About the role

Design and deliver production-grade evidence collectors to automate security and compliance data gathering. Develop agentic workflows using AI to interpret controls and execute review procedures across various APIs.

What they look for

Python FastAPI SQLAlchemy Alembic REST APIs AWS Docker Terraform PostgreSQL CI/CD Observability Security compliance Identity management LLM agent workflows Data quality System integration

Requirements

Requires senior backend experience with Python, FastAPI, and SQLAlchemy, along with a strong track record of integrating third-party REST APIs. Candidates must possess a security-first mindset and proficiency with AWS, Docker, and infrastructure-as-code tools.

Full description

Ataccama is the agentic data trust company. Organizations worldwide rely on Ataccama ONE, the agentic data trust platform, to ensure data is accurate, accessible, and trusted for every decision and system. Powered by the ONE AI Agent, Ataccama ONE brings autonomy to data quality and governance, continuously monitoring, improving, and explaining the reliability of data across complex enterprise and multi-agent environments. At the core of the platform is Ataccama’s market-leading data quality, with modules built around it to unify data quality monitoring, catalog, lineage, observability, and reference data management, ensuring data is consistent and explainable. This quality-first foundation makes data the engine of trust, powering AI, analytics, and operations with confidence.

Recognized as a Leader in the 2026 Gartner Magic Quadrant for Augmented Data Quality and positioned furthest in Completeness of Vision, Ataccama continues to set the standard for enterprise-grade data trust.

Our people are located across the globe. They succeed by collaborating as a team and thrive in our company culture defined by these core values:

Challenging Fun

ONE Team

Customer Centric

Candid and Caring

Aim High

\n

Our ChallengeAtaccama serves Fortune 500 customers with demanding security and compliance requirements, which means our own security and compliance program has to run at a scale and speed that manual work simply can’t sustain. Our Security & Compliance team has responded by building software: an internal platform that keeps risks, controls, and evidence in one place, drives owner attestations, and turns recurring compliance work into scheduled, tracked, and auditable processes.

The platform is in daily use, and the next phase is the interesting part. Instead of asking people for evidence, we want to collect it directly from the systems that already hold it — and, where deterministic automation isn’t practical, have an AI agent prepare evidence for human review. That’s a genuine engineering problem: reliable integrations against a dozen different APIs, a scheduler you can trust, normalized evidence you can put in front of an auditor, and no shortcuts on security.

We’re bringing in a senior engineer on a contract basis to own that build with us.

Your Challenge

  • Design and deliver production-grade evidence collectors that pull compliance evidence directly from our security, cloud, and identity tooling — configuration, scheduling, normalization, failure handling, and alerting included.
  • Productize the collector framework so that adding the next integration is a well-trodden path rather than a new project.
  • Take the remaining platform modules through to production cutover: role-based access from identity-provider claims, admin and audit-logging hardening, and enabling writes back to upstream systems.
  • Build agentic evidence collection: an AI “compliance specialist” that interprets a control, designs and executes a review procedure over REST APIs and MCP servers, interacts with control owners in our collaboration tools, and hands its work to a mandatory human review gate.
  • Keep the platform boringly reliable — database parity and migration safety in CI, observability, performance, and remediation of internal AppSec findings before anything reaches production.
  • Work in the open with our Security & Compliance team: small frequent PRs, tests with the code, ADRs for decisions worth remembering, and documentation that outlives the engagement.

Our Tech Stack

  • Backend: Python, FastAPI, SQLAlchemy + Alembic, APScheduler
  • Data: PostgreSQL in deployment, SQLite locally and in CI
  • Cloud & delivery: Docker on AWS (ECS/ECR), AWS Secrets Manager, Terraform, GitHub + GitHub Actions
  • Integrations: REST APIs across our security, cloud, identity, and collaboration tooling; OIDC SSO; MCP servers for agentic workflows
  • AI-assisted development: the codebase is built with AI coding tools and we expect you to use them — with full ownership of what you merge

What we are looking for:

  • Senior backend experience with strong Python (FastAPI, SQLAlchemy/Alembic), or equivalent depth in a comparable stack and the appetite to work in ours.
  • A track record of integrating third-party REST APIs in production: auth flows and token handling, pagination, rate limits, webhooks, retries, and the failure modes that only show up at 3 a.m.
  • Working knowledge of AWS (ECS, Secrets Manager, IAM basics) and Docker; able to read and adjust Terraform.
  • Strong testing habits and comfort in a documentation-heavy, review-driven workflow.
  • A security mindset: least privilege, secret hygiene, and care when handling confidential data.
  • Fluent English; Czech is welcome but not required.

Nice to have

  • Hands-on experience with SIEM/SOC or security tooling APIs.
  • Exposure to GRC and compliance automation (SOC 2, ISO 27001) or products like Vanta or Drata.
  • Experience building LLM-agent workflows with tool use, or with Jira, Slack, or Notion APIs.
  • Experience with observability stacks (Grafana, Prometheus).

Engagement details

  • Contract (B2B/IČO), time & materials, monthly invoicing
  • Part-time, 0.5 FTE (approx. 10 man-days per month)
  • ASAP through 31 December 2026, with extension into 2027 by mutual agreement
  • Remote within the EU, possible to work also from our Prague office

\n

Similar roles