Назад
Company hidden
11 часов Π½Π°Π·Π°Π΄

Senior Security Engineer, Identity and Access Management (IAM) (Aerospace)

150Β 000 - 220Β 000$
Π’ΠΈΠΏ Ρ€Π°Π±ΠΎΡ‚Ρ‹
fulltime
Π“Ρ€Π΅ΠΉΠ΄
senior
Английский
b2
Π‘Ρ‚Ρ€Π°Π½Π°
US
Вакансия ΠΈΠ· списка Hirify.GlobalВакансия ΠΈΠ· Hirify Global, списка ΠΌΠ΅ΠΆΠ΄ΡƒΠ½Π°Ρ€ΠΎΠ΄Π½Ρ‹Ρ… tech-ΠΊΠΎΠΌΠΏΠ°Π½ΠΈΠΉ
Для мэтча ΠΈ ΠΎΡ‚ΠΊΠ»ΠΈΠΊΠ° Π½ΡƒΠΆΠ΅Π½ Plus

ΠœΡΡ‚Ρ‡ & Π‘ΠΎΠΏΡ€ΠΎΠ²ΠΎΠ΄

Для мэтча с этой вакансиСй Π½ΡƒΠΆΠ΅Π½ Plus

ОписаниС вакансии

ВСкст:
/
TL;DR
Senior Security Engineer, Identity and Access Management (IAM) (Aerospace) (IAM and aerospace security): Building and operating an identity platform governing authentication and authorization across corporate, engineering, and mission environments with an accent on SSO, phishing-resistant MFA, lifecycle automation, privileged access, and secrets management. Focus on enforcing least privilege, automating machine identity and cloud IAM workflows, and detecting identity threats across mission-critical systems.

Location: Los Angeles, CA, United States. The role involves access to ITAR-controlled information and requires the hire to be a U.S. person or otherwise eligible for a federally issued export-control license.

Salary: $150,000–$220,000 per year, plus equity.

Company

hirify.global is a Series C aerospace startup building high-power satellite platforms for commercial and U.S. government missions from low Earth orbit to deep space.

What you will do

  • Own and mature the enterprise identity platform, including identity providers, SSO, federation, directory services, and conditional access.
  • Design authentication standards using SAML, OIDC, OAuth 2.0, SCIM, LDAP, and Kerberos, and drive adoption of FIDO2/WebAuthn-based MFA.
  • Build joiner, mover, and leaver automation, just-in-time access, RBAC/ABAC models, access reviews, and least-privilege standards.
  • Operate privileged access, secrets management, credential rotation, and machine/workload identity for automated pipelines and mission systems.
  • Harden AWS, Azure, or GCP IAM and automate identity operations with code and infrastructure as code.
  • Partner with security operations and engineering on identity threat detection, investigations, architecture reviews, documentation, and mentoring.

Requirements

  • 5+ years of experience in identity and access management, security engineering, or infrastructure engineering.
  • Hands-on administration of an enterprise identity provider such as Okta, Microsoft Entra ID, Ping, or Google Identity.
  • Experience with identity lifecycle automation, RBAC or ABAC, access reviews, privileged access management, and secrets management.
  • Experience with cloud IAM in AWS, Azure, or GCP and least-privilege role and policy design.
  • 2+ years of development experience with a modern programming language for identity automation, or a relevant STEM bachelor's degree.
  • Must qualify as a U.S. person under ITAR or be eligible for a federally issued export-control license.

Nice to have

  • Identity or security certifications such as Okta Certified Administrator, Microsoft SC-300, or CISSP.
  • Infrastructure as code with Terraform, CloudFormation, or CDK, and policy as code with OPA or Cedar.
  • Identity threat detection and response, Active Directory modernization, or legacy-system integration experience.
  • Experience with identity and access control in aerospace, defense, manufacturing, OT, engineering, or mission and ground-segment environments.

Culture & Benefits

  • Fast-paced Series C environment focused on building large-scale satellite platforms.
  • Paid time off, medical, dental, and vision coverage.
  • Life insurance and paid parental leave.
  • Equity in the company and additional benefits and perks.

Π‘ΡƒΠ΄ΡŒΡ‚Π΅ остороТны: Ссли Ρ€Π°Π±ΠΎΡ‚ΠΎΠ΄Π°Ρ‚Π΅Π»ΡŒ просит Π²ΠΎΠΉΡ‚ΠΈ Π² ΠΈΡ… систСму, ΠΈΡΠΏΠΎΠ»ΡŒΠ·ΡƒΡ iCloud/Google, ΠΏΡ€ΠΈΡΠ»Π°Ρ‚ΡŒ ΠΊΠΎΠ΄/ΠΏΠ°Ρ€ΠΎΠ»ΡŒ, Π·Π°ΠΏΡƒΡΡ‚ΠΈΡ‚ΡŒ ΠΊΠΎΠ΄/ПО, Π½Π΅ Π΄Π΅Π»Π°ΠΉΡ‚Π΅ этого - это мошСнники. ΠžΠ±ΡΠ·Π°Ρ‚Π΅Π»ΡŒΠ½ΠΎ ΠΆΠΌΠΈΡ‚Π΅ "ΠŸΠΎΠΆΠ°Π»ΠΎΠ²Π°Ρ‚ΡŒΡΡ" ΠΈΠ»ΠΈ ΠΏΠΈΡˆΠΈΡ‚Π΅ Π² ΠΏΠΎΠ΄Π΄Π΅Ρ€ΠΆΠΊΡƒ. ΠŸΠΎΠ΄Ρ€ΠΎΠ±Π½Π΅Π΅ Π² Π³Π°ΠΉΠ΄Π΅ β†’