Security Engineer, Full Stack
The Role
As a Security Engineer at Hadrian, you'll shape the security of our platform as we expand to serve external customers and partners. You'll drive the transition to Factory-as-a-Service, with identity, multi-tenancy, and data boundaries at the core. This is a full-stack role—spanning application code, cloud, Kubernetes, identity management, and cutting-edge operational technology on the factory floor. You'll work with innovative systems, some being developed here for the first time, including manufacturing and OT environments that few security engineers have encountered. Join us as a founding member of a rapidly growing security team. Instead of inheriting legacy choices, you'll establish the standards, best practices, and tools that will scale our security from the ground up. You'll tackle challenges end-to-end—learning unfamiliar systems and designing solutions that make secure practices the default. If you're curious, thrive in ambiguity, and want to chart new territory, this is your opportunity to make a lasting impact.
What You'll Do
- Own security end-to-end across the whole stack — application code, cloud infrastructure (AWS/GCP), Kubernetes workloads, identity and authorization, and the factory-floor and operational-technology systems that produce real parts.
- Scale security through automation. Build the agentic tooling and automation loops — AI-driven checks, paved-road patterns, self-enforcing guardrails — that let coverage grow with what you build rather than with headcount.
- Dig into unfamiliar systems — new tech we're adopting and manufacturing systems few people understand — map how they actually work, identify where the real risk lies, and design controls that fit the way Hadrian builds.
- Turn compliance into engineering. Build the practical foundations for CMMC 2.0 / NIST 800-171 and the ITAR boundary as controls that hold up under audit — not paperwork beside the system.
- Respond when it matters. Investigate, contain, and drive incidents to resolution, then turn each one into a systemic fix and a better default.
What We're Looking For
- Ship the fix, not just the finding. You write code (Go, Python, or similar) and solve problems by building the guardrails and tooling — SDKs, CLIs, CI/CD checks, and patterns — that make it easy to do the right thing and hard to do the wrong one, rather than filing a ticket for someone else.
- 4+ years in security engineering, software engineering, or infrastructure/platform engineering, with real hands-on security ownership somewhere in there.
- Fluency with agentic systems. Familiarity with agentic loops and task delegation — building with or on LLM agents and automation.
- You move fast and learn faster. You take an under-specified mission, decide where to start, make sound calls under uncertainty, and ramp on something unfamiliar quickly.
- You weigh risk against innovation — and say so. You make the risk-aversion versus innovation trade-off explicit on real decisions, so the business chooses deliberately rather than defaulting to "no."
- A track record of deleting controls or process — retiring the checks that shouldn't exist and proving the automated replacement held.
- Genuine breadth and curiosity. You move between application security, cloud and Kubernetes security, identity/authorization, and networking — and you actively want to understand how a new layer works, down to the details.
What Will Set You Apart
- GCC High administration or migration experience
- Security experience in manufacturing or OT environments
- Familiarity with ITAR/EAR and CUI marking and handling requirements
- Ability to mentor and grow a team. As security scales here, you can set technical direction and level up the engineers who join around you.
Compensation
For this role, the target salary range is $160,000 - $230,000 (actual range may vary based on experience). This is the lowest to highest salary we reasonably and in good faith believe we would pay for this role at the time of this posting. We may ultimately pay more or less than the posted range, and the range may be modified in the future. An employee's pay position within the salary range will be based on several factors, including, but not limited to, relevant education, qualifications, certifications, experience, skills, geographic location, performance, and business or organizational needs.
Benefits
- Medical, dental, vision, and life insurance plans for employees
- 401k
- Relocation support may be provided for certain situations, based on business need.
- Flexible vacation policy
- Equity