Fullscript

Fullscript

Fullscript provides a platform that enables healthcare practitioners to create personalized supplement plans and recommend professional-grade supplements to their patients, enhancing patient care and treatment adherence through convenient ordering and ...

Health Care Providers & Services
251-1K
Founded 2011
$267M raised

Description

  • Lead the design and implementation of security solutions across Fullscript’s applications, platforms, and AI-powered systems.
  • Partner with engineering teams to embed security throughout the software development lifecycle, including architecture reviews, threat modeling, secure coding practices, and design reviews.
  • Drive application security, product security, and vulnerability management initiatives from concept through implementation.
  • Own complex security challenges that span multiple teams while balancing technical requirements, business priorities, and engineering constraints.
  • Mentor engineers and security practitioners to improve secure software development practices and decision-making.
  • Influence technical strategy and security standards through hands-on engineering and cross-functional collaboration.
  • Stay current on emerging threats, security technologies, and AI-specific risks to strengthen Fullscript’s security posture.

Requirements

  • 8+ years of software engineering experience designing, building, and operating production systems.
  • 3+ years of recent experience in application security, product security, security engineering, or a related security discipline.
  • Deep understanding of secure software development, modern application architectures, APIs, and cloud-native environments.
  • Experience owning complex technical initiatives from problem definition through delivery across multiple teams and stakeholders.
  • Proven ability to influence technical direction, mentor engineers, and drive adoption of security best practices.
  • Strong hands-on experience with security tooling, automation, vulnerability management, and security assessments.
  • Excellent communication skills, strong technical judgment, and a continuous learning mindset.
  • Experience securing Ruby on Rails, Node.js, JavaScript, GraphQL, or similar ecosystems is a plus.
  • Experience with AWS cloud security and cloud-native security controls is a plus.
  • Familiarity with threat modeling frameworks such as STRIDE or PASTA, developer security tooling, GitHub, GitLab, Wiz, static analysis tools, or secret scanning is a plus.

Benefits

  • Remote-first flexibility, with North America (Ottawa, Toronto, or Calgary) preferred for this role.
  • Flexible PTO and competitive pay.
  • RRSP/401k match and stock options.
  • Premium benefits package with customizable coverage, paramedical services, and an HSA.
  • Fullscript discounts on wellness products.
  • Continuous learning opportunities to grow skills and career.
  • Salary transparency with base pay reviewed regularly for market alignment and internal equity.

Interested in this position?

Apply directly on the company website

Apply Now

Similar Roles

Senior Security Engineer

Hummingbird 1K-5K Professional Services

Hummingbird is hiring a Senior Security Engineer to own and strengthen security for its remote-first SaaS platform that helps financial institutions fight financial crime.

AWS Azure CircleCI Docker Encryption GraphQL JavaScript Network Security PostgreSQL Python React Redis Ruby Ruby on Rails Terraform TypeScript
1 day, 16 hours ago

Principal IAM Engineer Consultant

Kalles Group 11-50 Internet Software & Services

Kalles Group is hiring a remote Principal IAM Engineer Consultant to lead engineering design and delivery for a customer identity and access management platform in a highly regulated financial services environment.

DevSecOps Microservices REST API SAML
2 days, 16 hours ago

Senior Security Research Engineer

PlayStation 100K+ Household Durables

Sony Interactive Entertainment is hiring a Senior Security Research Engineer to lead Global Vulnerability Management efforts that advance its Threat Exposure Management program and strengthen security risk reduction across the PlayStation ecosystem.

Bash CI/CD Domo Git JavaScript PowerShell Python Snowflake SQL
2 days, 16 hours ago

Senior Capabilities Developer

Dragos 251-1K Professional Services

Dragos is hiring a Senior Capabilities Developer to build and maintain the Synapse-based threat intelligence infrastructure that powers analysis and reporting for critical infrastructure cybersecurity.

2 days, 16 hours ago

You're on a roll! Sign up now to keep applying.

Sign Up

Already have an account? Log in

Used by 14,729+ remote workers