Senior/Staff Platform Security Engineer

Job not on LinkedIn

🕒 September 10

🇵🇭 Philippines – Remote

⏰ Full Time

🟠 Senior

🏗️ Platform Engineer

👻 Ghost score 10%

infoinfo
Apply Now
Find Similar Remote Jobs

📊 Check your resume score for this job

Improve your chances of getting an interview by checking your resume score before you apply.

Logo of Full Scale

Full Scale

201 - 500 employees

Founded 2018

💼 Consulting

☁️ SaaS

🏢 Enterprise

Consulting • SaaS • Enterprise

Full Scale is a staff augmentation company that focuses on providing exceptional tech talent to businesses across various industries. Founded by Matt Watson, a seasoned tech entrepreneur, Full Scale has partnered with over 200 tech companies since its inception, offering top-notch services while fostering a positive work environment for its employees. The company's commitment to corporate social responsibility is evident in its engagement in community outreach, environmental sustainability, and educational initiatives.

📋 Description

• Build, implement, and validate security controls across Azure, AKS/Kubernetes, identity, CI/CD, cloud networking, and production environments • Personally configure and implement production security controls and validate their effectiveness • Secure software and container supply chains, including image scanning, registries, image provenance or signing, base-image and dependency vulnerabilities, and secure deployment controls • Implement secure-SDLC controls and CI/CD security gates • Apply network-security controls including WAFs, firewalls, segmentation, private endpoints, ingress and egress controls, attack-surface reduction, and zero-trust principles • Conduct security monitoring, detection, investigation, incident response, and containment using SIEM telemetry, identity events, and cloud audit logs • Conduct threat modeling and security architecture reviews • Translate security findings into a prioritized technical security roadmap • Implement infrastructure-as-code policy and security automation • Partner with engineering teams, explain security findings clearly, and drive remediation through completion • Collaborate with Engineering, Product, IT, Quality, and Compliance teams • Work on a cloud-native healthcare/SaMD platform in a regulated, high-assurance environment

🎯 Requirements

• 6+ years of experience in cloud security, platform security, security engineering, infrastructure security, DevSecOps, SRE, DevOps, or related technical infrastructure roles • At least 4 years of security-focused experience in cloud, platform, application, DevSecOps, or production security engineering • Strong hands-on Azure security experience, including Entra ID, managed and workload identities, RBAC, PIM, Key Vault, Defender for Cloud, Sentinel or comparable tools, private networking, and least-privilege architecture • Strong AKS/Kubernetes and container-security experience, including Kubernetes RBAC, workload identity, secrets, network policies, ingress controls, admission and policy controls, runtime protection, and workload isolation • Practical experience implementing secure-SDLC controls: SAST, DAST, SCA/dependency scanning, secret scanning, IaC scanning, container scanning, vulnerability management, CVEs/CVSS, and CI/CD security gates • Experience securing software and container supply chains, including image scanning, registries, image provenance or signing, base-image and dependency vulnerabilities, and secure deployment controls • Strong network-security knowledge across WAFs, firewalls, segmentation, private endpoints, ingress and egress controls, attack-surface reduction, and zero-trust principles • Experience with security monitoring, detection, and incident response using SIEM telemetry, identity events, cloud audit logs, investigation, and containment workflows • Experience conducting threat modeling and security architecture reviews, and translating findings into a prioritized technical security roadmap • Strong infrastructure-as-code experience using Terraform, Bicep, ARM, or comparable tools, including policy and security automation • Strong communication skills and the ability to partner with engineering teams, explain security findings clearly, and drive remediation through completion • Must be hands-on at the keyboard and able to describe security controls personally configured or implemented, including the tools used, architecture decisions made, problems encountered, and how the control was validated • Preferred: Experience operating in a regulated or high-assurance environment and producing audit-ready technical evidence; HIPAA, SOC 2, ISO 27001, healthcare SaaS, fintech, or similar experience is valuable • Preferred: Experience with Microsoft Defender for Cloud, Microsoft Sentinel, Azure Policy, Log Analytics, CrowdStrike, Aikido, Vanta, New Relic, or comparable security platforms • Preferred: Experience with GitHub Actions, Azure DevOps, or comparable CI/CD platforms • Preferred: Familiarity with SAML, OIDC, SCIM, SSO, MFA, Conditional Access, and privileged-access management • Preferred: Experience in multi-tenant SaaS, .NET, Angular, or security automation using Python, Go, Bash, or PowerShell • Preferred: Certifications such as Azure Security Engineer Associate, CKS, CCSP, or CISSP, paired with demonstrated implementation experience

🏖️ Benefits

• 100% remote work setup • Work from anywhere in the Philippines • Direct visibility and collaboration with the team • High-impact role with significant technical ownership and autonomy • Opportunity to work on a cloud-native healthcare/SaMD platform • Exposure to modern Azure, AKS, Kubernetes, and cloud security technologies • Opportunity to work in a regulated, high-assurance environment • Collaboration with Engineering, Product, IT, Quality, and Compliance teams

Apply Now

Similar Jobs

🕒 September 2

Manila Recruitment

11 - 50

💼 Consulting

📦 Logistics

📣 Marketing

DevOps engineer maintaining Azure infrastructure, deployments, monitoring, security, and disaster recovery. Supporting an Australian claims management company’s reliable insurance-claims platform.

Azure

Cloud

DNS

Docker

Linux

Python

SQL

Terraform

🕒 August 17

DysrupIT

51 - 200

🏢 Enterprise

☁️ SaaS

🔒 Cybersecurity

Infrastructure & Platform Operations Engineer supporting DysrupIT’s Nephos technology services. Operating AWS, Linux, databases, containers, monitoring and enterprise production platforms.

AWS

Azure

Cloud

DNS

Docker

Firewalls

Google Cloud Platform

ITSM

Kubernetes

Linux

Microservices

MongoDB

Postgres

Python

RabbitMQ

Redis

ServiceNow

TCP/IP

🕒 June 16

3Cloud

501 - 1000

💼 Consulting

🏥 Healthcare

🏭 Manufacturing

Database Administrator managing Azure DB migrations and high availability for clients. Working on multiple projects with a focus on performance tuning and security in cloud environments.

Azure

Cloud

Oracle

RDBMS

SQL

Terraform