Security Engineer – Fractional

Job not on LinkedIn

🔥 0 minutes ago

Apply Now
Find Similar Remote Jobs

📊 Check your resume score for this job

Improve your chances of getting an interview by checking your resume score before you apply.

Logo of Arcanys

Arcanys

201 - 500 employees

Founded 2010

📦 Logistics

📣 Marketing

💼 Consulting

Logistics • Marketing • Consulting

Arcanys is a Swiss software development outsourcing firm headquartered in the Philippines that builds and matures dedicated teams of developers for startups and established companies. Founded in 2010, the company supplies project-ready tech experts across software development, cloud/DevOps, and IT support with flexible engagement models, emphasizing continuity, employee well-being, and skills development.

📋 Description

• Design a 12-month security roadmap balancing enterprise-grade expectations with software-outsourcing agility • Establish and prioritize a risk register based on business impact • Mentor the IT Manager and transform technical tasks into security controls • Establish security office hours and train lead developers on secure coding, OWASP, and DevSecOps • Ensure data handling meets GDPR, the Philippines Data Privacy Act, and the Australian Privacy Act • Standardize responses to client security questionnaires • Draft and implement Incident Response, Access Control, and BCP/DR policies • Oversee selection and implementation of EDR, SIEM, and vulnerability-scanning tools • Define a right-sized security framework for Arcanys Ventures’ portfolio companies • Evaluate technical security and data privacy risks during potential venture investments • Advise startups on security policies, data privacy compliance, and Security by Design

🎯 Requirements

• Proven hands-on experience in security engineering, cloud security, application security, or DevSecOps • Experience ideally in software, technology, or outsourcing environments • Strong technical foundation across SDLC, CI/CD security, AWS/GCP, identity and access management, vulnerability management, and endpoint security • Ability to independently assess and verify security controls, AWS/GCP configurations, GitHub repositories, CI/CD pipelines, and security tools • Experience providing practical security recommendations • Experience with client security assessments, security questionnaires, audits, or vendor assessments • Governance, risk management, SOC 2, ISO 27001, GDPR, and other compliance experience is a plus • AWS/GCP, CISSP, CISM, CISA, or equivalent security certifications are preferred • Experience working with distributed Europe/Asia/Australia teams and early-stage startups is a plus

🏖️ Benefits

• Well-being support • Trust and autonomy • Work only on projects the company believes in

Apply Now