We're looking for an IT Manager to own how Blockaid works day to day: how people get access, how their machines operate, how the network runs, and how the offices function.
Blockaid protects millions of crypto users and the largest wallets and protocols in the industry. We're small, fast, and cloud-native, with no data center and no patience for manual work. As our first in-house hire for this function you'll define what IT looks like at Blockaid from the ground up. We're looking for a builder - someone who wants real influence over how our infrastructure and processes come together.
Your Chain of Impact:
- Identity. Own Okta as our primary IdP. Automate the full joiner-mover-leaver lifecycle from HiBob into every downstream app, and own SAML and OIDC integrations, SCIM provisioning, and adaptive MFA policies. Access should be a function of someone's role, not a ticket.
- Endpoints. Own our Apple fleet in Jamf Pro: zero-touch enrollment, configuration profiles, patch policies, and scripted deployments. A new hire's Mac should be compliant and fully configured before they open it.
- Network and offices. Own the firewall and wireless infrastructure end to end: policies, VPN, segmentation, 802.1X, and zero-trust remote access. Own every meeting room too, including Meet and Zoom hardware, displays, booking, and cabling, and standardize the build so a new office is a deployment rather than a project.
- SaaS. Primary admin for Google Workspace, Slack, Notion, Linear, GitHub, and dozens more. Integrate through APIs and webhooks rather than manual sync, and drive license and vendor consolidation.
- Automation and AI. Treat every recurring manual task as a bug. Write code against the Okta, Jamf, Google Workspace, and HiBob APIs, and use LLM tooling, coding agents, and MCP integrations to build support workflows that resolve requests without a human in the loop.
- Security and compliance. Partner with Security on zero-trust access, patch remediation, access reviews, and automated evidence for SOC 2 and ISO 27001. Support incident response with the logs and device actions the team needs, fast.
Your Chain of Strengths:
- 3+ years in IT or systems engineering at a cloud-first company, with real ownership rather than ticket queue work.
- Deep hands-on Okta: lifecycle management, group rules, SAML and OIDC, SCIM, and authentication policies.
- Advanced Jamf Pro engineering and macOS troubleshooting at the command line.
- Real network experience: firewalls, controller-based wireless, VLANs, VPN, and 802.1X.
- Google Workspace administration in depth, plus experience owning conference room AV.
- Strong scripting and comfort working straight against REST APIs. You should be able to read an API doc and have something working the same day.
- Demonstrated use of AI tools to ship real work.