HackerOne combines AI with the ingenuity of the largest community of security researchers to find and fix security, privacy, and AI vulnerabilities across the SDLC. HackerOne offers AI red teaming, crowdsourced security, bug bounty, vulnerability disclosure... Backed by NEA.
About the role
At HackerOne, identity is at the heart of how we protect the data we are trusted with most, our customers' vulnerabilities. We are building our Identity and Access Management capability with an AI-first approach, focused on engineering and not administration alone. As a Senior Security Engineer, you will design and deliver the access models and the automation behind them, so that people and systems can access only the right data, at the right time, in the right way.
What they're looking for
- 5+ years of experience in identity and access management, security engineering, or software engineering with substantial ownership of identity systems
- Hands-on experience operating an enterprise identity provider such as Okta, including SAML, OIDC, SCIM, and lifecycle automation
- Experience managing identity across an enterprise SaaS estate such as Google Workspace, Salesforce and Workday, including SCIM provisioning and group-driven entitlements
- Experience with cloud IAM, ideally AWS, including policy design and short-lived credentials
- Strong software engineering fundamentals with proficiency in Python, Go, or a similar language, and hands-on use of AI and LLM tooling and agentic coding tools in production engineering work
- Identity work in a regulated sector such as financial services, healthcare, or government, and producing access control evidence for audit against requirements such as PCI DSS, HIPAA, SOC 2, or ISO 27001
More about this role
HackerOne is a global leader in Continuous Threat Exposure Management (CTEM). The HackerOne Platform unites agentic AI solutions with the ingenuity of the world’s largest community of security researchers to continuously discover, validate, prioritize, and remediate exposures across code, cloud, and AI systems. Through solutions like bug bounty, vulnerability disclosure, agentic pentesting, AI red teaming, and code security, HackerOne delivers measurable, continuous reduction of cyber risk for enterprises. Industry leaders, including Anthropic, Crypto.com , General Motors, Goldman Sachs, Lufthansa, Uber, UK Ministry of Defence, and the U.S. Department of Defense, trust HackerOne to safeguard their digital ecosystems. HackerOne was recognized in Gartner’s Emerging Tech Impact Radar: AI Cybersecurity Ecosystem report for its leadership in AI Security Testing and has been named a Most Loved Workplace for Young Professionals (2024).
HackerOne is at a pivotal inflection point in the security industry. Offensive security is no longer optional – it is the standard for forward-thinking companies that want to build trust and resilience in a world where AI-driven innovation and adversaries...
Browse similar: Startup jobs · Remote jobs