- As a Security Engineer at Hadrian, you’ll shape the security of our platform as we expand to serve external customers and partners
- You’ll drive the transition to Factory-as-a-Service, with identity, multi-tenancy, and data boundaries at the core
- This is a full-stack role—spanning application code, cloud, Kubernetes, identity management, and cutting-edge operational technology on the factory floor
- You’ll work with innovative systems, some being developed here for the first time, including manufacturing and OT environments that few security engineers have encountered
- Join us as a founding member of a rapidly growing security team
- Instead of inheriting legacy choices, you’ll establish the standards, best practices, and tools that will scale our security from the ground up
- You’ll tackle challenges end-to-end—learning unfamiliar systems and designing solutions that make secure practices the default
- Own security end-to-end across the whole stack — application code, cloud infrastructure (AWS/GCP), Kubernetes workloads, identity and authorization, and the factory-floor and operational-technology systems that produce real parts
- Scale security through automation. Build the agentic tooling and automation loops — AI-driven checks, paved-road patterns, self-enforcing guardrails — that let coverage grow with what you build rather than with headcount
- Dig into unfamiliar systems — new tech we’re adopting and manufacturing systems few people understand — map how they actually work, identify where the real risk lies, and design controls that fit the way Hadrian builds
- Turn compliance into engineering. Build the practical foundations for CMMC 2.0 / NIST 800-171 and the ITAR boundary as controls that hold up under audit — not paperwork beside the system
- Respond when it matters. Investigate, contain, and drive incidents to resolution, then turn each one into a systemic fix and a better default
Benefits
- Relocation stipend if you’re moving from outside of LA
- 100% coverage of platinum medical, dental, vision, and life insurance plans for employees
401k - Flexible vacation policy
Eligibility & Requirements
- To conform to U.S. Government space technology export regulations, including the International Traffic in Arms Regulations (ITAR) you must be a U.S. citizen, lawful permanent resident of the U.S., protected individual as defined by 8 U.S.C. 1324b(a)(3), or eligible to obtain the required authorizations from the U.S. Department of State
- If you’re curious, thrive in ambiguity, and want to chart new territory, this is your opportunity to make a lasting impact
- Ship the fix, not just the finding. You write code (Go, Python, or similar) and solve problems by building the guardrails and tooling — SDKs, CLIs, CI/CD checks, and patterns — that make it easy to do the right thing and hard to do the wrong one, rather than filing a ticket for someone else
- 4+ years in security engineering, software engineering, or infrastructure/platform engineering, with real hands-on security ownership somewhere in there
- You move fast and learn faster. You take an under-specified mission, decide where to start, make sound calls under uncertainty, and ramp on something unfamiliar quickly
- A track record of deleting controls or process — retiring the checks that shouldn’t exist and proving the automated replacement held
- Fluency with agentic systems. Familiarity with agentic loops and task delegation — building with or on LLM agents and automation
- You weigh risk against innovation — and say so. You make the risk-aversion versus innovation trade-off explicit on real decisions, so the business chooses deliberately rather than defaulting to “no.”
- Genuine breadth and curiosity. You move between application security, cloud and Kubernetes security, identity/authorization, and networking — and you actively want to understand how a new layer works, down to the details
- Security experience in manufacturing or OT environments
- Familiarity with ITAR/EAR and CUI marking and handling requirements
- Ability to mentor and grow a team. As security scales here, you can set technical direction and level up the engineers who join around you
- GCC High administration or migration experience
Security Engineer (Full Stack) in san francisco at Unknown Company
This position is listed as full time and onsite.