1,455,532open jobs
88,320companies
228,212added this week
Browse all
Salary
$120k – $180k per year
Location
In office (Portland)
Employment
Full-Time

Confirmed on the employer's own hiring board on Oct 11, 2026. First seen by Alion on Oct 6, 2026. Panthalassa scores A on the Alion truth index.

Overview
Company
Impact
Profile match
Headquartered in Portland, Oregon, Panthalassa is a public-benefit ocean technology and renewable energy company building offshore compute infrastructure. The firm develops autonomous ocean-based nodes that integrate low-cost marine power generation with embedded computing systems and satellite connectivity to support high-density AI workloads. Additionally, its scalable, zero-emission platforms operate in international waters to provide clean energy and processing capacity beyond the physical and permitting constraints of the terrestrial grid.

About the Company

We are a renewable energy and ocean technology company committed to rapidly developing and deploying technologies that will ensure a sustainable future for Earth by unlocking the vast energy potential of its oceans. Our focus is on capturing civilizational levels of ultra-low-cost renewable energy for applications including computing and affordable renewable fuels delivered to shore.

The company is a public benefit corporation headquartered in Portland, Oregon, and backed by leading venture capitalists, philanthropic investors, university endowments, and private investment offices. We operate as an idea meritocracy in which the best ideas change the company’s direction on a regular basis.

Our staff have worked at organizations such as SpaceX, Blue Origin, Boeing, Tesla, Apple, Virgin Orbit, Astra, Google, Amazon, Microsoft, New Relic, Bridgewater, Raytheon, Disney Imagineering, and the US Army and Air Force, as well as research universities, startups, and small companies across a range of industries.

About the Job

Our core technology is the node, a device that produces energy in the ocean’s harshest conditions for years at a time without human maintenance or intervention.

We're looking for an IAM Engineer to own the identity plane at Panthalassa. Identity is the control point for everything we do: who gets access to what, on which device, from where, and for how long. You'll build that system and the automation behind it.

This is a high-ownership individual contributor role. You'll administer Microsoft Entra ID and Google Workspace identity, design Conditional Access and context-aware policy, automate joiner/mover/leaver, and bring every SaaS application in our stack under SSO and automated provisioning. You'll also help govern the identities that aren't people: service accounts, OAuth grants, and workload credentials. We have an established zero trust roadmap and a security framework to comply with, and your job is to turn both into enforceable technical controls and explain the reasoning well enough that the rest of the company comes along with you.

Candidates should have strong interpersonal skills and be able to thrive in a creative, scrappy, and collaborative environment in which the best ideas change the company’s direction on a regular basis.

Responsibilities

Identity Infrastructure

  • Administer Microsoft Entra ID, including user lifecycle, group management, dynamic membership rules, and role assignment.
  • Design and maintain Conditional Access policy, tying device compliance posture, identity signals, risk, and location to resource access.
  • Own authentication standards: MFA, phishing-resistant methods, passwordless rollout, and legacy auth retirement.
  • Partner with our Endpoint Engineer so access policy and device posture stay in sync.

Access Automation and Lifecycle

  • Automate joiner, mover, and leaver so access is granted and revoked from a source of truth rather than a ticket.
  • Manage SSO integrations and application provisioning via SAML and SCIM across our SaaS stack.
  • Build and run access review and recertification cycles that produce evidence auditors accept.
  • Implement least privilege for privileged roles, including just-in-time elevation and break-glass procedures.

Non-Human Identity and Governance

  • Govern service accounts, OAuth grants, and API credentials: naming conventions, ownership, scope review, and rotation.
  • Establish where secrets live and how they are issued, stored, and retired.
  • Maintain a defensible inventory of who and what can reach our systems.

Security and Compliance

  • Advance our zero trust roadmap and translate policy into enforceable technical controls.
  • Own the access control domain of our compliance framework (NIST or equivalent), including documentation and evidence.
  • Partner with information security leadership on access control policy, identity threat detection, and incident response involving compromised accounts.

Required Qualifications

  • Experience administering identity and access in a modern IdP, including user lifecycle, groups, and conditional or context-aware access.
  • Experience implementing SSO and provisioning integrations (SAML, SCIM) across a SaaS stack.
  • Automation experience: scripting or API work against identity and SaaS platforms rather than console-only administration.
  • Ability to write clear documentation and turn written policy into enforceable technical controls.
  • Ability to explain the reasoning behind an access decision to a non-technical audience and get buy-in.

Desired Qualifications

  • Experience owning an IdP at a growing technology company.
  • Familiarity with zero trust architecture and how it translates into identity controls.
  • Experience with identity governance and administration: access reviews, entitlement management, and privileged access.
  • Experience governing non-human identities, service accounts, and OAuth scopes.
  • Experience supporting or implementing a security or compliance framework (NIST, ISO 27001, SOC 2, or equivalent).
  • Experience with identity threat detection and response, or investigating account compromise.

The above qualifications are desired, not required. We encourage you to apply if you are a strong candidate with only some of the desired skills and experience listed.

Additional Requirements

  • Available for occasional off-hours work to support identity migrations, tenant changes, and access cutovers that have to land outside business hours.
  • Participate in incident response when accounts or credentials are involved, including outside business hours.
  • Travel to the Portland office quarterly if working remotely.
  • Intermittently able to work longer hours to support critical needs. While we expect a lot of each other, we also offer a high degree of autonomy and work-life balance, including flexible PTO and flexible working hours.

Compensation and Benefits

If hired for this full-time role, you will receive:

  • Cash compensation of $120,000 - $180,000.
  • Equity in the company. We’re all owners and if we’re successful, this equity should be far and away the most valuable component of your compensation.
  • A benefits package that helps you take care of yourself and your family, including:
    • Flexible paid time off
    • Health insurance (the company pays 100% of gold-level PPO plan for full-time employees, their partners, and dependents)
    • Dental insurance (the company pays 100% for full-time employees, their partners, and dependents)
    • Vision insurance (the company pays 100% for full-time employees, their partners, and dependents)
    • Disability insurance (the company pays 100% for a policy to provide long-term financial support if you become disabled)
    • Ability to contribute to tax-advantaged accounts, including 401(k), health FSA, and dependent care FSA
  • Relocation assistance to facilitate your move to Portland (if needed).

Location

This is an on-site position. Our offices, lab, and shop are located in Portland, Oregon.

Free account
Stop reading job ads. Get the ones that fit.
One free account turns this page into a shortlist built around your stack, your level and your pay.
Match on every job. Stack, seniority, pay and location, scored against your profile.
1,455,532 open roles. Read straight off company career pages, refreshed every day.
Unlimited applications. Every one you send is tracked in one place, on-site or on a company board.
3 tailored CVs a month. Rewritten for the exact job you are applying to. Included free.
Create a free account Continue with Google
Free forever. No card. Under a minute.

Your match

How well do you fit this role?
Two answers are enough for a real match. No account needed.
Check my fit
Answers stay in this browser until you create an account.

Recommended for you based on this role

Security
Similar stack
Same company
Portland
≈ $123k – $241k per year (Estimated) • In office • TS/SCI • 6+ years exp • Chantilly
DevOps
AWS
Kubernetes
Platform Engineering
GitLab
IAM
Cybersecurity
Keycloak
Zero Trust
LDAP
Management
ServiceNow
Apply
≈ $133k – $290k per year (Estimated) • Hybrid • Full-Time • 10+ years exp • Bachelor's Degree • United States
Cybersecurity
HIPAA
Apply
$150k – $300k per year • In office • Full-Time • 5+ years exp • New York
AI/ML
Groq
AI Agents
LLM
OpenAI
Hugging Face
Red Teaming
LLM Evaluation
Cybersecurity
SIEM
Apply
≈ $116k – $228k per year (Estimated) • Equity • Remote (United States) • Full-Time • United States
DevOps
Linux
Windows
Cybersecurity
Crowdstrike
Apply
≈ $133k – $269k per year (Estimated) • In office • TS/SCI • Full-Time • 10+ years exp • Bachelor's Degree • Linthicum Heights
AI/ML
PyTorch
Ignite
DevOps
Linux
Windows
Unix
Cybersecurity
EnCase
Apply
≈ $102k – $185k per year (Estimated) • Hybrid • Bachelor's Degree • London
AI/ML
Fine-tuning
DevOps
Ansible
GCP
Azure DevOps
Azure
Jenkins
Git
AWS
Docker
Kubernetes
Windows
Cybersecurity
HashiCorp Vault
ISO 27001
GDPR
Zero Trust
SIEM
DLP
Cryptography
Vault
Apply
≈ $78k – $199k per year (Estimated) • Hybrid • Belfast
DevOps
Azure
Cybersecurity
ISO 27001
Microsoft Defender
NIST CSF
Zero Trust
Apply
≈ $18k – $36k per year (Estimated) • In office • Bachelor's Degree • Novosibirsk
DevOps
IAM
Cybersecurity
ISO 27001
SIEM
DLP
Apply
Security Engineer 3 days ago
≈ $55k – $162k per year (Estimated) • In office • Full-Time • 1+ year exp • Jakarta
AI/ML
Red Teaming
DevOps
Kali Linux
Linux
Cybersecurity
Metasploit
Crowdstrike
Nmap
OWASP ZAP
ISO 27001
OWASP Top 10
IBM QRadar
Sophos
SIEM
Apply
≈ $58k – $135k per year (Estimated) • Hybrid • Bachelor's Degree • Edinburgh
Python
PowerShell
DevOps
Terraform
GCP
Azure
CI/CD
AWS
Cybersecurity
Zero Trust
SIEM
Management
Agile
Scrum
Apply
$200k – $260k per year • In office • Full-Time • 6+ years exp • Bachelor's Degree • Portland
AI/ML
AI Agents
DevOps
GCP
New Relic
Azure
CI/CD
AWS
Docker
Kubernetes
GitHub
Cybersecurity
Burp Suite
Snyk
OWASP Top 10
CWE
Threat Modeling
Fortify
Apply
$150k – $190k per year • In office • Full-Time • 5+ years exp • Bachelor's Degree • Vancouver
DevOps
New Relic
Apply
$175k – $225k per year • In office • Full-Time • Portland
DevOps
New Relic
Apply
$120k – $180k per year • In office • Full-Time • Portland
Python
PowerShell
DevOps
New Relic
IAM
Windows
Cybersecurity
ISO 27001
SOC 2
Zero Trust
Management
Confluence
Apply
$120k – $180k per year • In office • Full-Time • Portland
Python
JavaScript
DevOps
Rest API
New Relic
IAM
Cybersecurity
ISO 27001
SOC 2
Management
Slack
Confluence
Jira
Google Workspace
Apply
$44k per year • In office • Full-Time • 1+ year exp • Portland
Apply
Plant Electrician 1 day ago
$92k per year • In office • Portland
Apply
CDL Truck Driver 1 day ago
≈ $37k – $84k per year (Estimated) • In office • Portland
Apply
≈ $26k – $46k per year (Estimated) • In office • 1+ year exp • Portland
Apply
≈ $26k – $46k per year (Estimated) • In office • 1+ year exp • Portland
Apply
See all jobs
This is one of many
1,455,532 more open roles from verified company boards, updated every day.