The Role
Lead improvements to cloud and software delivery security across Azure and AKS. Secure CI/CD, containers, secrets, and infrastructure as code; manage vulnerabilities, least-privilege access, and audit readiness while partnering with engineering, IT, product, quality, and compliance teams.
Summary Generated by Built In
This is a remote position.
Join one of the Philippines' fastest-growing tech companies. Open to Philippine-based candidates only, with required overlap with US Central business hours.
About Us
Full Scale is a fully remote-first company that helps businesses build dedicated teams of skilled software engineers. We make it easier for growing companies to find, onboard, and retain high-performing software talent.
About the Role
We are looking for a Staff DevSecOps Engineer to improve security across our Azure cloud infrastructure, Kubernetes environments, CI/CD pipelines, and production systems.
You’ll work closely with engineering, IT, quality, product, and compliance teams to identify security gaps, implement practical solutions, and strengthen our overall security posture.
Key Responsibilities
- Secure and improve CI/CD pipelines, including SAST, SCA, secrets, IaC, and container scanning.
- Strengthen Azure and AKS security, including identity, networking, secrets, and workload security.
- Improve Kubernetes and container security.
- Establish and maintain infrastructure security baselines using Terraform, Bicep, or similar tools.
- Lead vulnerability management, prioritization, remediation, and reporting.
- Improve privileged access using least-privilege and just-in-time access.
- Partner with developers on secure coding, dependency management, and security reviews.
- Support security incidents, audits, compliance activities, and technical documentation.
Requirements
- 5+ years of experience in DevOps, SRE, platform engineering, cloud security, security engineering, or related roles.
- 2+ years of experience in DevSecOps, cloud security, application security, or production security.
- Strong hands-on experience with Azure, AKS, and Entra ID.
- Strong experience with CI/CD and software supply chain security.
- Hands-on Kubernetes and container security experience.
- Experience with Terraform, Bicep, or similar IaC tools.
- Scripting experience with Python, Go, Bash, PowerShell, or similar.
- Experience with vulnerability management and risk-based prioritization.
- Experience with least-privilege and just-in-time access.
- Strong communication skills and ability to work independently and influence engineering teams.
Nice to Have
- Experience in regulated environments such as HIPAA, SOC 2, ISO 27001, healthcare SaaS, or fintech.
- Experience with Aikido, CrowdStrike, Vanta, Azure Policy, Defender for Cloud, Sentinel, or Key Vault.
- Experience with threat modeling, incident response, disaster recovery, or security architecture.
- Certifications such as Azure Security Engineer, CKS, CCSP, or CISSP.
Benefits
Why Join Us
- 100% remote work setup
- Work from anywhere in the Philippines
- High-impact role with direct leadership visibility
- Opportunity to shape cloud and security practices
- Work on challenging cloud, Kubernetes, and software security problems
- Collaborative team that values ownership, trust, and technical excellence
Skills Required
- 8+ years in DevOps, SRE, platform engineering, cloud security, or related infrastructure roles
- 5+ years in DevSecOps, cloud security, application security, or production security engineering
- Deep hands-on experience with Azure (AKS, Entra ID, networking, storage, Azure SQL, monitoring, access controls)
- Strong experience securing CI/CD pipelines, dependencies, containers, secrets, and shift-left tooling
- Hands-on Kubernetes and container security experience (workload identity, network controls, runtime hardening)
- Experience with infrastructure as code using Terraform, Bicep, or similar tooling
- Scripting skills in Python, Go, Bash, PowerShell, or similar
- Strong vulnerability management with risk-based prioritization
- Experience with least-privilege and just-in-time production access models
- Ability to work directly with engineering teams, influence without authority, and drive work independently
- Strong written communication skills for documentation, findings, exceptions, and audit evidence
- Familiarity with CI/CD platforms such as GitHub Actions or Azure DevOps
- Experience with SAML, OIDC, SCIM, SSO, MFA, Conditional Access, PIM, and access reviews
- Experience with Azure Policy, Defender for Cloud, Sentinel, Log Analytics, Key Vault, managed identities, and workload identity
- Experience in regulated or high-assurance environments (HIPAA, SOC 2, ISO 27001, FDA, fintech)
- Familiarity with tools like CrowdStrike, Vanta, New Relic, Aikido
- Experience with threat modeling, architecture reviews, incident response, disaster recovery, or ransomware resilience
- Relevant certifications such as Azure Security Engineer Associate, CKS, CCSP, or CISSP
- Experience with testing/automation tooling (Playwright, TUnit)
Am I A Good Fit?
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.
Success! Refresh the page to see how your skills align with this role.
The Company
What We Do
Full Scale is an offshore development company that provides vetted software engineering teams from the Philippines. Founded in 2018, it solves traditional offshoring problems like high turnover and inconsistent quality by employing a full-time employment model and a respect-first culture, helping businesses scale their technical teams with high-quality developers who think like product owners.









