Pacific Fusion is an inertial confinement fusion startup developing pulser modules and a demonstration fusion power plant.
<div class="content-intro"><h2><strong>About Pacific Fusion</strong></h2> <p>Pacific Fusion was founded in 2023 with the mission to power the world with abundant, affordable, clean energy.</p> <p>We are rapidly designing and building a pulser-driven inertial fusion system to achieve net facility gain (more fusion energy output than stored energy input). In parallel, we are developing the key components required to build affordable fusion systems.</p> <p>Our plans are ambitious. We have raised over $900M so far from incredible investors, resourcing us to deliver on these plans. We are bringing together the best scientists, engineers, and operators from the fusion community, hard tech industry, and other sectors. We are united by a shared sense of urgency to provide clean power for the world, particularly managing climate change while meeting growing global energy demand. You can read more about us in <a href="https://pacificfusion.com/updates/founders-letter" target="_blank"><u>this letter from our founders</u></a>.</p></div><h1><span style="font-family: arial, helvetica, sans-serif;"><strong>Why This Role Matters</strong></span></h1> <p>The Senior Security Engineer will implement, monitor, and maintain security controls across Pacific Fusion's information technology systems, spanning corporate IT, cloud infrastructure, and SaaS applications. This role ensures critical business applications are securely configured, security policies are enforced, and both company-owned and BYOD devices meet security and compliance requirements. Working closely with IT, operations, and business application owners, the Senior Security Engineer will design access controls, oversee security configuration baselines, respond to security incidents, and produce the evidence and documentation underpinning our compliance program. This is a builder role in a growing hybrid environment of SaaS services, on-premise systems, and diverse endpoints across multiple sites.</p> <h2><span style="font-family: arial, helvetica, sans-serif;"><strong>What You'll Do</strong></span></h2> <ul> <li>Configure and maintain security settings for critical SaaS applications, including identity, collaboration, productivity, and business operations platforms.</li> <li>Manage and enforce mobile device management policies for company-owned and BYOD devices, including compliance policies that gate access to controlled data.</li> <li>Oversee endpoint security for Windows, macOS, and mobile devices, including patching, encryption, and threat protection.</li> <li>Implement and maintain secure authentication and access control policies, including MFA and conditional access aligned to NIST technical controls.</li> <li>Conduct regular security reviews of SaaS configurations and device compliance reports.</li> <li>Monitor for security incidents across endpoints, mobile devices, and SaaS applications; investigate, remediate, and document per incident response procedures.</li> <li>Maintain documentation of security controls, policies, and incident response procedures.</li> <li>Collaborate with IT and organizational stakeholders to design security protocols that empower business operations and productivity.</li> <li>Support System Security Plan (SSP) development by documenting how controls are implemented in systems you own.</li> </ul> <h2><span style="font-family: arial, helvetica, sans-serif;"><strong>What You Bring</strong></span></h2> <ul> <li>5+ years of experience in IT security, endpoint management, or related fields.</li> <li>Strong knowledge of SaaS application administration and security configuration best practices.</li> <li>Experience with identity and access management, MFA, and conditional access policies (Microsoft Entra ID experience strongly preferred).</li> <li>Understanding of endpoint protection technologies, patch management, and encryption.</li> <li>Experience investigating and remediating security incidents, and documenting the investigation.</li> <li>Strong communication skills and ability to work across technical and non-technical teams.</li> <li>Hands-on experience with MDM solutions (e.g. Microsoft Intune, JAMF, Kandji) for device enrollment, configuration, and compliance management</li> </ul> <h2><span style="font-family: arial, helvetica, sans-serif;"><strong>Bonus Points For</strong></span></h2> <ul> <li>Experience with security assessments and compliance frameworks (e.g., NIST 800-171, CMMC L2. SOC 2, ISO 27001). Experience producing audit evidence for compliance frameworks (NIST 800-171, SOC 2, ISO 27001) or cyber insurance assessments.</li> <li>Experience with SIEM tools or centralized logging platforms.</li> <li>Scripting or automation experience (PowerShell, Python).</li> <li>Relevant certifications (Security+, CISSP, Microsoft Security Operations Analyst, CMMC-related credentials such as CCP).</li> </ul> <p> </p><div class="content-pay-transparency"><div class="pay-input"><div class="title">Pay Range: </div><div class="pay-range"><span>$150,000</span><span class="divider">—</span><span>$200,000 USD</span></div></div></div><div class="content-conclusion"><h3><span style="font-family: arial, helvetica, sans-serif;"><strong>Total Compensation & Benefits for Eligible Employees</strong></span></h3> <ul> <li style="font-family: arial, helvetica, sans-serif;"> <p><span style="font-family: arial, helvetica, sans-serif;">Industry-competitive salary</span></p> </li> <li style="font-family: arial, helvetica, sans-serif;"> <p><span style="font-family: arial, helvetica, sans-serif;">Equity plan</span></p> </li> <li style="font-family: arial, helvetica, sans-serif;"> <p><span style="font-family: arial, helvetica, sans-serif;">6% employer 401k matching</span></p> </li> <li style="font-family: arial, helvetica, sans-serif;"> <p><span style="font-family: arial, helvetica, sans-serif;">Generous paid time off (including sick leave, vacation, paid family leave)</span></p> </li> <li style="font-family: arial, helvetica, san