Software Engineer, Identity Infrastructure Engineering
About the Team Security is at the foundation of OpenAI’s mission to ensure that artificial general intelligence benefits all of humanity. The Identity Infrastructure Engineering team sits at the core of this effort, designing and building the identity and access management solutions that protect our model weights, cust
What this role actually needs.
About the Team Security is at the foundation of OpenAI’s mission to ensure that artificial general intelligence benefits all of humanity. The Identity Infrastructure Engineering team sits at the core of this effort, designing and building the identity and access management solutions that protect our model weights, cust Responsibilities: - Identity & Access Orchestration : Build and maintain the systems and interfaces that manage user and service identity, ensuring fine-grained access controls are consistent across cloud providers and internal services. - Multi-Cloud Security : Design architectures and tooling that protect model weights, custom data, and sensitive assets while operating seamlessly in AWS, Azure, GCP, or future cloud environments. - Automation & Tooling : Develop robust frameworks, APIs, and CLI tools that automate recurring security tasks (like provisioning or rotating credentials), freeing teams to focus on AI innovation without sacrificing security. - Build new features for our IAM platform that seamlessly integrate with evolving cloud services, enabling teams to work efficiently while adhering to security best practices. - Drive security innovation by designing tools, processes, and architectures that protect data at scale and reinforce a secure development culture across the organization. - Collaborate cross-functionally with researchers, engineers, and compliance teams to address security requirements for multi-cloud deployments, large-scale model training, and emerging AI use cases. Requirements: - Implement and refine access policies that strike the right balance between enabling rapid experimentation and protecting high-value assets, including model weights and customer data. - Troubleshoot complex identity or access issues across distributed systems, ensuring minimal downtime and a safe environment for AI research and product teams. - A background in building secure systems—from core IAM services to orchestration layers that manage credentials, roles, or policies at scale. - Proficiency in programming languages such as Python, Go, or similar, with a track record of writing high-quality, maintainable code. - Experience with modern cloud infrastructure (AWS, Azure, GCP) and familiarity with industry-standard security protocols (OAuth, SAML, OpenID Connect) and authentication/authorization patterns. - A security-focused mindset, with knowledge of threat modeling, risk assessment, and the ability to embed security features throughout the software development lifecycle. Benefits: - Identity & Access Orchestration : Build and maintain the systems and interfaces that manage user and service identity, ensuring fine-grained access controls are consistent across cloud providers and internal services. - Multi-Cloud Security : Design architectures and tooling that protect model weights, custom data, and sensitive assets while operating seamlessly in AWS, Azure, GCP, or future cloud environments. - Automation & Tooling : Develop robust frameworks, APIs, and CLI tools that automate recurring security tasks (like provisioning or rotating credentials), freeing teams to focus on AI innovation without sacrificing security. - Build new features for our IAM platform that seamlessly integrate with evolving cloud services, enabling teams to work efficiently while adhering to security best practices. - Drive security innovation by designing tools, processes, and architectures that protect data at scale and reinforce a secure development culture across the organization. - Collaborate cross-functionally with researchers, engineers, and compliance teams to address security requirements for multi-cloud deployments, large-scale model training, and emerging AI use cases. Company context: OpenAI builds frontier AI systems, research infrastructure, and applied products for developers, enterprises, and global users.
Day-to-day expectations
OpenAI lists these responsibilities for the Software Engineer, Identity Infrastructure Engineering role.
- Identity & Access Orchestration : Build and maintain the systems and interfaces that manage user and service identity, ensuring fine-grained access controls are consistent across cloud providers and internal services.
- Multi-Cloud Security : Design architectures and tooling that protect model weights, custom data, and sensitive assets while operating seamlessly in AWS, Azure, GCP, or future cloud environments.
- Automation & Tooling : Develop robust frameworks, APIs, and CLI tools that automate recurring security tasks (like provisioning or rotating credentials), freeing teams to focus on AI innovation without sacrificing security.
- Build new features for our IAM platform that seamlessly integrate with evolving cloud services, enabling teams to work efficiently while adhering to security best practices.
- Drive security innovation by designing tools, processes, and architectures that protect data at scale and reinforce a secure development culture across the organization.
- Collaborate cross-functionally with researchers, engineers, and compliance teams to address security requirements for multi-cloud deployments, large-scale model training, and emerging AI use cases.
What a strong candidate brings
These requirements are extracted from the source listing and normalized for UpJobz readers.
- Implement and refine access policies that strike the right balance between enabling rapid experimentation and protecting high-value assets, including model weights and customer data.
- Troubleshoot complex identity or access issues across distributed systems, ensuring minimal downtime and a safe environment for AI research and product teams.
- A background in building secure systems—from core IAM services to orchestration layers that manage credentials, roles, or policies at scale.
- Proficiency in programming languages such as Python, Go, or similar, with a track record of writing high-quality, maintainable code.
- Experience with modern cloud infrastructure (AWS, Azure, GCP) and familiarity with industry-standard security protocols (OAuth, SAML, OpenID Connect) and authentication/authorization patterns.
- A security-focused mindset, with knowledge of threat modeling, risk assessment, and the ability to embed security features throughout the software development lifecycle.
Why people would want this job
OpenAI published these compensation, benefits, or working-context details with the role.
- Identity & Access Orchestration : Build and maintain the systems and interfaces that manage user and service identity, ensuring fine-grained access controls are consistent across cloud providers and internal services.
- Multi-Cloud Security : Design architectures and tooling that protect model weights, custom data, and sensitive assets while operating seamlessly in AWS, Azure, GCP, or future cloud environments.
- Automation & Tooling : Develop robust frameworks, APIs, and CLI tools that automate recurring security tasks (like provisioning or rotating credentials), freeing teams to focus on AI innovation without sacrificing security.
- Build new features for our IAM platform that seamlessly integrate with evolving cloud services, enabling teams to work efficiently while adhering to security best practices.
- Drive security innovation by designing tools, processes, and architectures that protect data at scale and reinforce a secure development culture across the organization.
- Collaborate cross-functionally with researchers, engineers, and compliance teams to address security requirements for multi-cloud deployments, large-scale model training, and emerging AI use cases.
Why this listing is more than a copied job post.
Software Engineer, Identity Infrastructure Engineering is framed against UpJobz source checks, country scope, compensation visibility, and work-authorization signals so candidates can make a faster go/no-go decision.
United States tech market
United States roles on UpJobz are filtered for high-tech relevance, source freshness, and actionable employer detail before they are allowed into SEO surfaces.
Compensation read
$184K - $385K is visible before the click, so candidates can compare the role against local market expectations before applying.
Work authorization read
Current extracted signal: United States residents. UpJobz treats this as a search signal, not legal advice, and links visa-sensitive roles back to the relevant visa hub where possible.
Location read
Hybrid roles in San Francisco should be compared against commute, local salary bands, and nearby employer demand.
Browse similar jobs
Turn this listing into an application plan.
This is the first pass at the premium UpJobz layer: a fast brief that helps serious applicants move with more clarity.
Next moves
- Tailor your resume around ai and research instead of sending a generic application.
- Use the first two bullets of your application to connect your background directly to software engineer, identity infrastructure engineering is a high-signal hybrid role in san francisco, and it is most realistic for united states residents.
- Open the role quickly if it fits and bookmark three similar jobs before you leave the page.
Interview themes
Watchouts
- $184K - $385K is visible, so calibrate your application around the posted range.
- Use united states residents as part of your positioning so the recruiter does not have to infer it.
- Show concrete examples of succeeding in hybrid environments.
Keywords to match against your background
Use these terms to decide whether your resume, portfolio, and recent projects line up with the role.
Apply through the employer source
Open the source listing from jobs.ashbyhq.com, confirm the role is still active, then apply on the employer or ATS page.
Source: jobs.ashbyhq.com · Source ID: 551b0d0d-46c2-42fb-bb05-46e2fba8d4db · Confidence: 97/100 · Last checked: May 7, 2026
How UpJobz verifies job sourcesContinue browsing tech jobs