Staff Platform Security Engineer

🔥 0 minutes ago

🇵🇭 Philippines – Remote

⏰ Full Time

🔴 Lead

🏗️ Platform Engineer

👻 Ghost score 11%

infoinfo
Apply Now
Find Similar Remote Jobs

📊 Check your resume score for this job

Improve your chances of getting an interview by checking your resume score before you apply.

Logo of Full Scale

Full Scale

201 - 500 employees

Founded 2018

💼 Consulting

☁️ SaaS

🏢 Enterprise

Consulting • SaaS • Enterprise

Full Scale is a staff augmentation company that focuses on providing exceptional tech talent to businesses across various industries. Founded by Matt Watson, a seasoned tech entrepreneur, Full Scale has partnered with over 200 tech companies since its inception, offering top-notch services while fostering a positive work environment for its employees. The company's commitment to corporate social responsibility is evident in its engagement in community outreach, environmental sustainability, and educational initiatives.

📋 Description

• Own and improve security across Azure, AKS, Azure SQL, networking, storage, identity, secrets, and production environments • Harden Kubernetes workloads, containers, ingress, workload identity, secrets, and network controls • Design and improve least-privilege and privileged access models, including RBAC, PIM, just-in-time access, MFA, and access reviews • Own vulnerability management, including triage, risk-based prioritization, remediation tracking, exceptions, and reporting • Configure and optimize security and monitoring tools to improve threat detection and reduce unnecessary security noise • Implement security guardrails across CI/CD and Infrastructure as Code, including SAST, SCA, secrets scanning, IaC scanning, and container scanning • Partner with software engineers to make security findings understandable, actionable, and resolved at the source • Support security architecture reviews, threat modeling, incident response, and root-cause analysis when needed • Partner with Security & Privacy Compliance on audits, risk assessments, customer reviews, and technical security evidence • Develop security recommendations, standards, and implementation plans and communicate them clearly to technical and executive stakeholders • Own platform security from strategy through implementation and turn security requirements into practical controls

🎯 Requirements

• 8+ years of experience in cloud security, platform security, security engineering, infrastructure security, DevSecOps, SRE, DevOps, or related technical infrastructure roles • 4+ years of security-focused experience in cloud security, platform security, application security, DevSecOps, or production security engineering • Deep hands-on experience with Microsoft Azure, particularly AKS, Entra ID, networking, storage, Azure SQL, Key Vault/secrets management, monitoring, and production access controls • Strong understanding of cloud and platform security architecture, least privilege, secure configuration, production access, and vulnerability remediation • Hands-on experience with Kubernetes and container security, including workload identity, ingress, network controls, secrets, and runtime hardening • Experience with IAM, RBAC, PIM, privileged access, just-in-time access, and access reviews • Strong Infrastructure as Code experience using Terraform, Bicep, ARM, or comparable tools • Practical experience with CI/CD pipelines and software delivery workflows, including security controls and automated scanning • Strong ability to assess vulnerabilities based on exploitability, exposure, business impact, and blast radius, rather than relying solely on severity scores • Excellent communication skills and the ability to work independently, identify security gaps, make recommendations, and drive solutions through completion • Experience working in regulated environments such as HIPAA, SOC 2, ISO 13485, ISO 27001, FDA-regulated software, healthcare SaaS, fintech, or other high-assurance environments • Experience with SaMD, medical device software, FDA QMSR, ISO 13485/MDSAP, or validated software development environments • Familiarity with Aikido, CrowdStrike, Vanta, New Relic, Microsoft Defender for Cloud, Microsoft Sentinel, or comparable tools • Experience with SAML, OIDC, SCIM, SSO, MFA, Conditional Access, and PIM • Experience with Azure Policy, Log Analytics, Key Vault, managed identities, and workload identity • Experience with GitHub Actions, Azure DevOps, or comparable CI/CD platforms • Experience with threat modeling, secure architecture reviews, incident response, or root-cause analysis • Certifications such as Azure Security Engineer Associate, Certified Kubernetes Security Specialist (CKS), CCSP, CISSP, or equivalent hands-on experience • Experience with .NET, Angular, or multi-tenant SaaS environments

🏖️ Benefits

• 100% remote work setup • Work from anywhere in the Philippines • Direct visibility and collaboration with the CTO • High-impact role with significant technical ownership and autonomy • Opportunity to work on a cloud-native healthcare/SaMD platform • Exposure to modern Azure, AKS, Kubernetes, and cloud security technologies • Opportunity to work in a regulated, high-assurance environment • Collaboration with Engineering, Product, IT, Quality, and Compliance teams

Apply Now