Back to results

HackerOne

Visit website

Senior Security Engineer, Identity and Access Management

$180,000 – $220,0005+ yearsRemote

  • Engineering
  • Full time
  • Yesterday
Newly posted

About the role

HackerOne is seeking a Senior Security Engineer to lead the design and delivery of identity and access management capabilities using an AI-first approach. You will engineer identity as code, manage the full identity lifecycle for humans and AI agents, and build automated tooling to ensure least privilege access. This role focuses on scaling security through automation and intelligence rather than manual administration.

Responsibilities

  • Own the identity lifecycle end to end, from onboarding and creation through change to removal, for people, service accounts, and AI agents alike, building the automation that grants entitlements on evidence of legitimate need and removes them seamlessly and automatically
  • Design and build the access models on top of data classification, so that what an identity can reach follows from what the data is rather than from who asked
  • Make time-bound access the default for critical data, so that the secure path is the easy path
  • Engineer identity as code, keeping provisioning logic, entitlement policy, and access review rules in version control and under test across systems such as Okta, Lumos, and AWS IAM, applying First Principles Problem Solving rather than configuring by hand in consoles
  • Build AI and LLM-powered tooling that makes access review and entitlement anomaly detection continuous rather than periodic, embedding AI First practices so unusual patterns surface when they happen rather than at audit, and decide where AI is trusted to carry an access decision and where a person still signs it off
  • Bring non-human identities under the same discipline as human ones, ensuring service accounts, workload identities, integrations, and AI agents each get an owner, a purpose, and an expiry
  • Continuously measure access and report the opportunity to reduce unnecessary entitlement, using Data-Driven Decision Making to prioritize where reduction matters most
  • Partner with Engineering, Enterprise IT, and Compliance to embed identity controls into the systems they own, and support detection and incident response as the identity responder

Required skills

  • Identity and Access Management
  • Security Engineering
  • Okta
  • SAML
  • OIDC
  • SCIM
  • Cloud IAM
  • AWS
  • Python
  • Go
  • AI tooling
  • LLM tooling

Nice to have

  • PCI DSS
  • HIPAA
  • SOC 2
  • ISO 27001
  • Terraform
  • Lumos
  • Kandji
  • Secrets management
  • Incident response

Qualifications

  • 5+ years of experience in identity and access management, security engineering, or software engineering with substantial ownership of identity systems

Certifications

  • IDPro CIDPRO
  • Okta certifications
  • AWS Certified Security – Specialty
  • CISSP

Benefits

  • Health insurance
  • Life insurance
  • Disability insurance
  • Equity stock options
  • Retirement plans
  • Paid public holidays
  • Unlimited PTO
  • Paid maternity and parental leave
  • Employee Assistance Program

About the Company

HackerOne is a global leader in Continuous Threat Exposure Management (CTEM) that unites agentic AI solutions with a large community of security researchers. The company helps enterprises discover, validate, and remediate exposures across code, cloud, and AI systems.

Senior Security Engineer, Identity and Access Management at HackerOne · Grasshire