Senior / Staff Platform Security Engineer

Posted 29 Days Ago
Be an Early Applicant
Hiring Remotely in Philippines, Autonomous Region in Muslim Mindanao, PHL
Remote
Senior level
Information Technology • Professional Services • Software • Consulting
The Role
Own and improve cloud and platform security across Azure, AKS, Kubernetes, production access, vulnerability management, infrastructure as code, CI/CD, and security tooling. The role designs least-privilege access controls, hardens containers and workloads, implements automated security scanning, supports threat modeling and incident response, and partners with engineering, compliance, and executive stakeholders to reduce risk in a regulated healthcare/SaMD environment.
Summary Generated by Built In
This is a remote position
Join one of the Philippines' fastest-growing tech companies! Open to Philippine-based candidates only.

About Us
Full Scale is a fully remote-first company that helps businesses build dedicated teams of skilled software engineers. We make it easier for growing companies to find, onboard, and retain high-performing software talent.

About the Role
We are seeking a hands-on Senior / Staff Platform Security Engineer who can build, implement, and validate security controls across Azure, AKS/Kubernetes, identity, CI/CD, cloud networking, and production environments.
This role is best suited to a security engineer who has personally built and improved production controls. Candidates whose experience is primarily compliance, audit, SOC monitoring, architecture advisory, or people management without implementation ownership will not be a strong fit.

Requirements
  • 6+ years of experience in cloud security, platform security, security engineering, infrastructure security, DevSecOps, SRE, DevOps, or related technical infrastructure roles.
  • At least 4 years of security-focused experience in cloud, platform, application, DevSecOps, or production security engineering.
  • Strong hands-on Azure security experience, including Entra ID, managed and workload identities, RBAC, PIM, Key Vault, Defender for Cloud, Sentinel or comparable tools, private networking, and least-privilege architecture.
  • Strong AKS/Kubernetes and container-security experience, including Kubernetes RBAC, workload identity, secrets, network policies, ingress controls, admission and policy controls, runtime protection, and workload isolation.
  • Practical experience implementing secure-SDLC controls: SAST, DAST, SCA/dependency scanning, secret scanning, IaC scanning, container scanning, vulnerability management, CVEs/CVSS, and CI/CD security gates.
  • Experience securing software and container supply chains, including image scanning, registries, image provenance or signing, base-image and dependency vulnerabilities, and secure deployment controls.
  • Strong network-security knowledge across WAFs, firewalls, segmentation, private endpoints, ingress and egress controls, attack-surface reduction, and zero-trust principles.
  • Experience with security monitoring, detection, and incident response using SIEM telemetry, identity events, cloud audit logs, investigation, and containment workflows.
  • Experience conducting threat modeling and security architecture reviews, and translating findings into a prioritized technical security roadmap.
  • Strong infrastructure-as-code experience using Terraform, Bicep, ARM, or comparable tools, including policy and security automation.
  • Strong communication skills and the ability to partner with engineering teams, explain security findings clearly, and drive remediation through completion.
  • Must be hands-on at the keyboard and able to describe security controls personally configured or implemented, including the tools used, architecture decisions made, problems encountered, and how the control was validated.
Preferred Qualifications

  • Experience operating in a regulated or high-assurance environment and producing audit-ready technical evidence; HIPAA, SOC 2, ISO 27001, healthcare SaaS, fintech, or similar experience is valuable.
  • Experience with Microsoft Defender for Cloud, Microsoft Sentinel, Azure Policy, Log Analytics, CrowdStrike, Aikido, Vanta, New Relic, or comparable security platforms.
  • Experience with GitHub Actions, Azure DevOps, or comparable CI/CD platforms.
  • Familiarity with SAML, OIDC, SCIM, SSO, MFA, Conditional Access, and privileged-access management.
  • Experience in multi-tenant SaaS, .NET, Angular, or security automation using Python, Go, Bash, or PowerShell.
  • Certifications such as Azure Security Engineer Associate, CKS, CCSP, or CISSP, paired with demonstrated implementation experience.

Benefits
Why join us:
  • 100% remote work setup
  • Work from anywhere in the Philippines
  • Direct visibility and collaboration with the
  • High-impact role with significant technical ownership and autonomy
  • Opportunity to work on a cloud-native healthcare/SaMD platform
  • Exposure to modern Azure, AKS, Kubernetes, and cloud security technologies
  • Opportunity to work in a regulated, high-assurance environment
  • Collaboration with Engineering, Product, IT, Quality, and Compliance teams

Skills Required

  • 8+ years of experience in cloud security, platform security, security engineering, infrastructure security, DevSecOps, SRE, DevOps, or related technical infrastructure roles.
  • 4+ years of security-focused experience in cloud security, platform security, application security, DevSecOps, or production security engineering.
  • Deep hands-on experience with Microsoft Azure, including AKS, Entra ID, networking, storage, Azure SQL, Key Vault, monitoring, and production access controls.
  • Strong understanding of cloud and platform security architecture, least privilege, secure configuration, production access, and vulnerability remediation.
  • Hands-on experience with Kubernetes and container security, including workload identity, ingress, network controls, secrets, and runtime hardening.
  • Experience with IAM, RBAC, PIM, privileged access, just-in-time access, and access reviews.
  • Strong Infrastructure as Code experience using Terraform, Bicep, ARM, or comparable tools.
  • Practical experience with CI/CD pipelines and software delivery workflows, including security controls and automated scanning.
  • Ability to assess vulnerabilities based on exploitability, exposure, business impact, and blast radius.
  • Excellent communication skills and ability to work independently, identify security gaps, make recommendations, and drive solutions through completion.
  • Experience in regulated environments such as HIPAA, SOC 2, ISO 13485, ISO 27001, FDA-regulated software, healthcare SaaS, fintech, or other high-assurance environments.
  • Experience with SaMD, medical device software, FDA QMSR, ISO 13485/MDSAP, or validated software development environments.
  • Familiarity with Aikido, CrowdStrike, Vanta, New Relic, Microsoft Defender for Cloud, Microsoft Sentinel, or comparable tools.
  • Experience with SAML, OIDC, SCIM, SSO, MFA, Conditional Access, and PIM.
  • Experience with Azure Policy, Log Analytics, Key Vault, managed identities, and workload identity.
  • Experience with GitHub Actions, Azure DevOps, or comparable CI/CD platforms.
  • Experience with threat modeling, secure architecture reviews, incident response, or root-cause analysis.
  • Certifications such as Azure Security Engineer Associate, Certified Kubernetes Security Specialist, CCSP, or CISSP, or equivalent hands-on experience.
  • Experience with .NET, Angular, or multi-tenant SaaS environments.
Am I A Good Fit?
beta
Get Personalized Job Insights.
Our AI-powered fit analysis compares your resume with a job listing so you know if your skills & experience align.

The Company
HQ: Leawood, KS
322 Employees
Year Founded: 2018

What We Do

Full Scale is an offshore development company that provides vetted software engineering teams from the Philippines. Founded in 2018, it solves traditional offshoring problems like high turnover and inconsistent quality by employing a full-time employment model and a respect-first culture, helping businesses scale their technical teams with high-quality developers who think like product owners.

Similar Jobs

Remote or Hybrid
3 Locations
289097 Employees

Smartly Logo Smartly

Head of Project Management

AdTech • Artificial Intelligence • Digital Media • Marketing Tech • Social Media • Software • Generative AI
Easy Apply
Remote or Hybrid
Philippines
805 Employees

Circle (circle.so) Logo Circle (circle.so)

Customer Support Specialist

Artificial Intelligence • Consumer Web • Digital Media • Information Technology • Social Impact • Software
In-Office or Remote
2 Locations
250 Employees
50K-50K Annually
Remote or Hybrid
2 Locations
289097 Employees

Similar Companies Hiring

Onshore Thumbnail
Artificial Intelligence • Fintech • Software • Financial Services
New York, New York
60 Employees
Revel Thumbnail
Aerospace • Hardware • Robotics • Software
Marina Del Rey, California
70 Employees
Blee Thumbnail
Artificial Intelligence • Marketing Tech • Software
New York, New York
30 Employees

Sign up now Access later

Create Free Account

Please log in or sign up to report this job.

Create Free Account