Software Engineer, Identity
AI in this role
Senior Identity Engineer to design, implement, and operate identity and access management systems at Hadrian.
Hadrian is building autonomous factories to reindustrialize America. By combining AI, advanced software, robotics, and full-stack manufacturing, we help aerospace and defense companies build rockets, satellites, aircraft, ships, and other mission-critical systems up to 10x faster and at significantly lower cost.
Following our $1.37B Series D at a $7.87B valuation, Hadrian is rapidly expanding our manufacturing footprint, launching new capabilities across welding, casting, forging, electronics, additive manufacturing, and more, while scaling our Factory-as-a-Service platform to transform how critical products are built.
Backed by leading investors including JPMorgan Chase, Valor Equity Partners, Andreessen Horowitz, Founders Fund, 137 Ventures, Lux Capital, T. Rowe Price, and Morgan Stanley, we’re building the future of American manufacturing—and looking for exceptional people to help make it happen.
If you’re ready to take on the most challenging and rewarding work of your career while helping create American manufacturing jobs for generations to come, you’re exactly who we’re looking for.
The Role
As our Senior Identity Engineer, you will own workforce and workload identity end-to-end — SSO, MFA, the joiner-mover-leaver lifecycle, privileged access, secrets, and service/machine identity — across corporate, cloud, and factory systems that handle export-controlled technical data. You will build an automation-first, least-privilege identity program that shrinks our largest attack surface while keeping engineers fast. This is a hands-on individual-contributor role on a small, high-leverage security team in Los Angeles.
What You’ll Do
Design, implement, and operate our IdP stack (e.g., Okta, Entra, Google Workspace, Auth0, or Zitadel) — SSO, SCIM provisioning, and phishing-resistant MFA — and build the systems around it.
Build identity systems at scale that put OAuth 2.0 / OIDC / SAML and modern authorization models (RBAC and relationship-based access control) to work in production.
Own cloud identity end-to-end — Azure service principals, AWS IAM, and workload/service identity — and tie those identities cleanly to the underlying infrastructure.
Work cross-functionally to help other teams meet their identity needs, and automate the access lifecycle (joiner-mover-leaver) and reviews.
Partner with Detection & Response and Compliance/FSO so identity telemetry is detectable, actionable, and audit-ready.
What We’re Looking For
You can build. Strong software engineering fundamentals and a track record of shipping identity systems at scale — not just configuring a vendor tool or leaning on AI-assisted coding.
Real command of core identity concepts — OAuth 2.0 flows, OIDC, SAML, RBAC, and relationship-based access control (ReBAC) — and the ability to design systems that exploit these protocols well.
Hands-on depth with one or more IdPs (Okta / Entra / Google Workspace / Auth0 / Zitadel), since day-to-day is implementing, designing, and integrating these platforms.
Cloud identity depth — Azure service principals, AWS IAM — and a clear grasp of how those identities map to real infrastructure.
The autonomy and urgency to own the identity domain end-to-end on a small, high-leverage team with minimal direction.
What Will Set You Apart
Fine-grained authorization at scale (ReBAC with OpenFGA / Zanzibar-style systems) built and run in production.
Identity engineering for OT/manufacturing or other regulated, controlled environments.
Large-scale passkey/FIDO2 or PAM (CyberArk/Teleport) rollouts, and secrets management with HashiCorp Vault.
Experience building on a small, high-automation team where output-per-engineer is the measure; detection-engineering and ITAR-aware access design.
Benefits for Full-time Employees
Medical, dental, vision, and life insurance plans for employees
401kRelocation support may be provided for certain situations, based on business need.
Flexible vacation policy
Equity
ITAR Requirements
To conform to U.S. Government export regulations, including the International Traffic in Arms Regulations (ITAR) you must be a U.S. citizen or national, lawful permanent resident, protected individual as defined by 8 U.S.C. 1324b(a)(3), or eligible to obtain the required authorizations from the U.S. Department of State. Learn more about the ITAR here.
Use of AI in hiring
Hadrian uses AI-assisted tools in our recruiting and hiring processes to help our team work more efficiently. This may include tools that help organize and analyze recruiting data, as well as an AI-powered notetaker that can record and transcribe interviews and help coordinate feedback. These tools support our team and are not used to make hiring decisions. All candidate evaluations and hiring decisions are performed by humans. If an interview will be recorded, you will be notified in advance and may opt out at any time with no impact on your candidacy. Candidate data processed through these tools is subject to the same protections described in our Privacy Policy.
Consideration of Criminal History
Hadrian will consider for employment qualified applicants with criminal histories in a manner consistent with the requirements of all applicable laws. We do not ask about criminal history on our application, and we do not consider criminal history before making a conditional offer of employment.
Hadrian Is An Equal Opportunity Employer
Hadrian does not unlawfully discriminate on the basis of race, color, religion, gender, national origin/ethnicity, veteran status, disability status, age, sexual orientation, marital status, mental status, physical disability or any other legally protected status. When necessary, the Company also makes reasonable accommodations for disabled candidates and employees, including for candidates or employees who are disabled by pregnancy, childbirth, or related medical conditions.
How we rate this
Software Engineer, Identity at Hadrian rates 10 out of 100 for how much of the daily work is AI. That makes it Little AI (AI Level 1 of 4). The level is about AI in the job, not seniority.
Little AI. AI is not part of the work.
- ●●●● Builds AI80 to 100
- ●●●○ Works on AI60 to 79
- ●●○○ Uses AI40 to 59
- ●○○○ Little AI0 to 39
Levels come from how often the tools, models and workflows of the role are named in the posting itself. Open the description and count.
Prepare for this job
A free preview built only from this posting: what it asks for, what you could be asked in an interview, and how to adjust your resume.
Skills and AI tools this role asks for
Questions you could be asked
- Tell me about a project where identity management was part of your work. What did you do?
- Tell me about a project where sso was part of your work. What did you do?
- Tell me about a project where security was part of your work. What did you do?
- Tell me about a project where automation was part of your work. What did you do?
- Tell me about a project where oauth was part of your work. What did you do?
Adapt your resume
- List these exact terms on your resume: Identity Management, Sso, Security, Automation, and Oauth. An applicant tracking system matches the wording, not the idea.
- Attach one line of real, concrete experience to at least one of them — a tool named with nothing behind it rarely survives a human read.
Want an expert to read your CV for this job?
Free. Send your CV and the role you want next. We reply by email within 2 to 4 business days.
Get a free CV reviewGet new software engineer jobs by email
One email a week with the new software engineer jobs, each rated for how much AI is in the work. No recruiter spam, unsubscribe in one click.
Free. One email a week. Unsubscribe in one click.
Similar roles
Software Engineering roles that involve little AI, at other companies.
What kind of AI work fits you?
Answer 12 practical questions in about three minutes. Get a simple profile, the work it points to, and live roles to explore next.
Find my next step