Staff DevSecOps Engineer

Fullscale Io — Philippines · Posted ~1 month ago

🔓 Log in to save this job, tailor your resume & track your apply process — 7 days free, no card needed.

Log in to add to target list

Description

This is a remote position. Join one of the Philippines' fastest-growing tech companies. Open to Philippine-based candidates only, with required overlap with US Central business hours. About Us: Full Scale is a fully remote-first company that helps businesses build dedicated teams of skilled software engineers. We make it easier for growing companies to find, onboard, and retain high-performing software talent. About the Role: We are looking for a Staff DevSecOps Engineer to help strengthen the security of our software delivery lifecycle, cloud infrastructure, and production environment. This is a senior individual contributor role with direct visibility to leadership and broad cross-functional influence. You will work closely with engineering, IT, product, quality, and compliance teams to improve CI/CD security, software supply chain security, Azure and AKS security posture, infrastructure security baselines, vulnerability management, privileged access controls, and technical audit readiness. This role is ideal for someone who is highly hands-on, practical, and comfortable driving security improvements across cloud platforms, Kubernetes, identity systems, pipelines, and production workflows. Key Responsibilities: 10+ years of experience in DevOps, SRE, platform engineering, cloud security, security engineering, or related infrastructure roles5+ years of experience in DevSecOps, cloud security, application security, or production security engineeringDeep hands-on experience with Azure, including AKS, Entra ID, networking, storage, Azure SQL, secrets management, monitoring, and access controlsStrong experience securing CI/CD pipelines, dependencies, containers, secrets, and shift-left security toolingHands-on Kubernetes and container security experience, including workload identity, network controls, and runtime hardeningExperience with infrastructure as code using Terraform, Bicep, or similar toolingScripting skills in Python, Go, Bash, PowerShell, or a similar languageStrong vulnerability management experience with practical risk-based prioritizationExperience with least-privilege and just-in-time production access modelsAbility to work directly with engineering teams, influence without authority, and drive work independentlyStrong written communication skills for documentation, findings, exceptions, and audit evidence Requirements: 8+ years of experience in DevOps, SRE, platform engineering, cloud security, security engineering, or related infrastructure roles5+ years of experience in DevSecOps, cloud security, application security, or production security engineeringDeep hands-on experience with Azure, including AKS, Entra ID, networking, storage, Azure SQL, secrets management, monitoring, and access controlsStrong experience securing CI/CD pipelines, dependencies, containers, secrets, and shift-left security toolingHands-on Kubernetes and container security experience, including workload identity, network controls, and runtime hardeningExperience with infrastructure as code using Terraform, Bicep, or similar toolingScripting skills in Python, Go, Bash, PowerShell, or a similar languageStrong vulnerability management experience with practical risk-based prioritizationExperience with least-privilege and just-in-time production access modelsAbility to work directly with engineering teams, influence without authority, and drive work independentlyStrong written communication skills for documentation, findings, exceptions, and audit evidence Nice to Have Experience in regulated or high-assurance environments such as HIPAA, SOC 2, ISO 13485, ISO 27001, FDA-regulated software, healthcare SaaS, or fintechExperience with SaMD, FDA QMSR, ISO 13485/MDSAP, or validated software development environmentsFamiliarity with Aikido, CrowdStrike, Vanta, New Relic, or similar toolsExperience with SAML, OIDC, SCIM, SSO, MFA, Conditional Access, PIM, and access reviewsExperience with Azure Policy, Defender for Cloud, Sentinel, Log Analytics, Key Vault, managed identities, and workload identityExperience with GitHub Actions, Azure DevOps, Playwright, TUnit, or similar toolingExperience with threat modeling, architecture reviews, incident response, disaster recovery, or ransomware resilienceRelevant certifications such as Azure Security Engineer Associate, CKS, CCSP, or CISSP Why Join Us Fully remote work setupWork from anywhere in the PhilippinesHigh-impact role with strong ownership and leadership visibilityOpportunity to shape secure engineering standards and cloud security practicesWork on meaningful infrastructure, platform, and software security challengesCollaborate with a high-performing team that values trust, ownership, and technical excellence