Create an account for powerful AI tools, award-winning courses, and access to our vibrant community.
Already have an account?
Join 250,000+ professionals and teams at Microsoft, Shopify, and even NASA. đ
Already have an account? Login
Find the best remote jobs. Answer a few questions and we'll deploy a powerful assistant to help you search, create alerts, and more.
1 What roles are you open to?
2 Experience level
3 Work style
Did you know? If memory is enabled, Writing.io can remember your job search preferences and help you to improve your resume, craft customized outreach and more.
Category
Director leads enterprise security infrastructure across six domains including application, cloud, AI security, and red teaming, partnering with CISO to mature global security systems.
Are you ready to trade your job for a journey? Become a FlyMate!
Passion, excitement & global collaboration are all core to what it means to be a FlyMate. At Flywire, weâre on a mission to deliver the worldâs most important and complex payments. We use our Flywire Advantage - the combination of our next-gen payments platform, proprietary payment network and vertical specific software, to help our clients get paid, and help their customers pay with ease - no matter where they are in the world.
What more do we need to truly be unstoppable? Perhaps, that is you!
Who we are:
Flywire is a global payments enablement and software company, founded more than a decade ago to solve high-stakes, high-value payments in higher education. Weâve since scaled into new regions and industry verticals and expanded our product offerings to deliver meaningful value to our clients around the world.
Today we support more than 5,100 clients across the global education, healthcare, travel & B2B industries, with diverse payment methods across 240 countries & territories and more than 140 currencies.
With over 1,200 global FlyMates, representing more than 40 nationalities, and in 12 offices world-wide, weâre looking for FlyMates to join the next stage of our journey as we continue to grow.
The Opportunity:
As the Director of Security Risk Engineering, you will serve as a key senior leader working in direct partnership with the CISO to drive, shape, and mature Flywireâs global enterprise security infrastructure and systems. In this role, you will bridge the gap between high-level security strategy and tactical engineering execution across six core domains: Application Security, AI Security, Cloud Security, Corporate Security, Security Operations (SecOps), and Red Teaming (Penetration Testing).
In partnership with the internal stakeholder organizations, you will lead the organizational shift from technical recovery to global enterprise operational resilience, managing a highly impactful program that safeguards our global payment rails while fostering a culture of collaboration, innovation, and continuous improvement. A solid working knowledge of all aspects of cloud-native infrastructure, software applications, AI/LLM model development, governance & validation, and automated risk mitigation is required.
Responsibilities:
Hereâs What Weâre Looking For:
Highly Preferred Certifications
Skills and Abilities
What We Offer:
Submit today and get started!
We are excited to get to know you! Throughout our process you can expect to meet with different FlyMates including the Hiring Manager, Peers on the team, the VP of the department, and a skills assessment. Your Talent Acquisition Partner will walk you through the steps and be your âgo-toâ person for any questions.
The US base salary range for this full-time position is $200,000 - 210,000 and benefits. Our salary ranges are determined by role, position level, and location. The range displayed on this job posting reflects the minimum and maximum target for new hire salaries for the position across all US locations. Within the range, individual pay is determined by work location and several other factors, including job-related skills, experience, relevant education and training.
Flywire is an equal opportunity employer and follows a policy of administering all employment decisions and personnel actions without regard to race, color, religion, sex, pregnancy, gender identity, national origin, age, ancestry, physical or mental disability, sexual orientation, genetic disposition or carrier status, veteran status, or any other category protected under applicable national, federal, state or local law.
#LI-Hybrid
Build and tune threat detection rules in XSIAM, analyze security logs and telemetry, and research attack vectors to strengthen detection coverage across SaaS platforms and cloud infrastructure.
Are you curious about how enterprise security teams identify suspicious activity, build detections, and improve visibility across modern cloud and Software as a Service (SaaS) platforms? Coveo is looking for a Detection Engineering Intern to join our Security Operations Center (SOC) team. Your mission? Help us strengthen our detection coverage by building and tuning threat detection rules for the technologies that support Coveoâs production environment.
The SOC team plays a key role in protecting Coveo by monitoring security activity, investigating alerts, and continuously improving our ability to detect threats across our SaaS and infrastructure footprint. As an intern, youâll contribute to initiatives that expand our detection capabilities while gaining hands-on experience with real enterprise threat detection tools in a production environment.
Think youâve got what it takes? Letâs see!
Do you think you can bring this role to life? Send us your application, we want to hear from you!
We encourage all qualified candidates to apply regardless of, for example, age, gender, disability, gaps in CV, national or ethnic background.
This job description was written by humans, assisted by AI. We may leverage technology in our hiring process to help us see the person behind the resume.
Coveo is committed to providing accessible employment practices. If you require accommodation due to a disability at any point during the recruitment process, please contact HR@Coveo.com to discuss your needs.
Director leads enterprise security infrastructure across application, cloud, AI, and operations domains while partnering with CISO on strategic risk mitigation.
Are you ready to trade your job for a journey? Become a FlyMate!
Passion, excitement & global collaboration are all core to what it means to be a FlyMate. At Flywire, weâre on a mission to deliver the worldâs most important and complex payments. We use our Flywire Advantage - the combination of our next-gen payments platform, proprietary payment network and vertical specific software, to help our clients get paid, and help their customers pay with ease - no matter where they are in the world.
What more do we need to truly be unstoppable? Perhaps, that is you!
Who we are:
Flywire is a global payments enablement and software company, founded more than a decade ago to solve high-stakes, high-value payments in higher education. Weâve since scaled into new regions and industry verticals and expanded our product offerings to deliver meaningful value to our clients around the world.
Today we support more than 5,100 clients across the global education, healthcare, travel & B2B industries, with diverse payment methods across 240 countries & territories and more than 140 currencies.
With over 1,200 global FlyMates, representing more than 40 nationalities, and in 12 offices world-wide, weâre looking for FlyMates to join the next stage of our journey as we continue to grow.
The Opportunity:
As the Director of Security Risk Engineering, you will serve as a key senior leader working in direct partnership with the CISO to drive, shape, and mature Flywireâs global enterprise security infrastructure and systems. In this role, you will bridge the gap between high-level security strategy and tactical engineering execution across six core domains: Application Security, AI Security, Cloud Security, Corporate Security, Security Operations (SecOps), and Red Teaming (Penetration Testing).
In partnership with the internal stakeholder organizations, you will lead the organizational shift from technical recovery to global enterprise operational resilience, managing a highly impactful program that safeguards our global payment rails while fostering a culture of collaboration, innovation, and continuous improvement. A solid working knowledge of all aspects of cloud-native infrastructure, software applications, AI/LLM model development, governance & validation, and automated risk mitigation is required.
Responsibilities:
Hereâs What Weâre Looking For:
Highly Preferred Certifications
Skills and Abilities
What We Offer:
Submit today and get started!
We are excited to get to know you! Throughout our process you can expect to meet with different FlyMates including the Hiring Manager, Peers on the team, the VP of the department, and a skills assessment. Your Talent Acquisition Partner will walk you through the steps and be your âgo-toâ person for any questions.
The US base salary range for this full-time position is $200,000 - 210,000 and benefits. Our salary ranges are determined by role, position level, and location. The range displayed on this job posting reflects the minimum and maximum target for new hire salaries for the position across all US locations. Within the range, individual pay is determined by work location and several other factors, including job-related skills, experience, relevant education and training.
Flywire is an equal opportunity employer and follows a policy of administering all employment decisions and personnel actions without regard to race, color, religion, sex, pregnancy, gender identity, national origin, age, ancestry, physical or mental disability, sexual orientation, genetic disposition or carrier status, veteran status, or any other category protected under applicable national, federal, state or local law.
#LI-Hybrid
Leads fraud risk strategy and detection across a global payments platform, designing prevention frameworks and overseeing merchant and account security.
Are you ready to trade your job for a journey? Become a FlyMate!
Passion, excitement & global collaboration are all core to what it means to be a FlyMate. At Flywire, weâre on a mission to deliver the worldâs most important and complex payments. We use our Flywire Advantage - the combination of our next-gen payments platform, proprietary payment network and vertical specific software, to help our clients get paid, and help their customers pay with ease - no matter where they are in the world.
What more do we need to truly be unstoppable? Perhaps, that is you!
Who we are:
Flywire is a global payments enablement and software company, founded more than a decade ago to solve high-stakes, high-value payments in higher education. Weâve since scaled into new regions and industry verticals and expanded our product offerings to deliver meaningful value to our clients around the world.
Today we support more than 4,800 clients across the global education, healthcare, travel & B2B industries, with diverse payment methods across 240 countries & territories and more than 140 currencies.
With over 1,200 global FlyMates, representing more than 40 nationalities, and in 12 offices world-wide, weâre looking for FlyMates to join the next stage of our journey as we continue to grow.
The Opportunity
As our Fraud Risk Director, you will help architect our fraud risk strategy for our Flywire ecosystem. You wonât just be reacting to threats; you will be the chief architect of a proactive, global fraud prevention strategy. Youâll lead the charge in balancing a frictionless customer experience with rigorous security, ensuring that as we scale into new markets and complex payment methods, our financial and reputational integrity remains ironclad. We need a leader who is as comfortable with machine learning logic as they are with operations and high-level executive strategy.
What Youâll Do:
Hereâs what weâre looking for:
What We Offer:
Submit today and get started!
We are excited to get to know you! Throughout our process you can expect to meet different FlyMates including the Hiring Manager and other Flymates. Your Talent Acquisition Partner will walk you through the steps and be your âgo-toâ person for questions.
Flywire is an equal opportunity employer and follows a policy of administering all employment decisions and personnel actions without regard to race, color, religion, sex, pregnancy, gender identity, national origin, age, ancestry, physical or mental disability, sexual orientation, genetic disposition or carrier status, veteran status, or any other category protected under applicable national, federal, state or local law.
The US base salary range for this full-time position is $160,000 - $200,000 plus bonus, and benefits. Our salary ranges are determined by role, position level, and location. The range displayed on this job posting reflects the minimum and maximum target for new hire salaries for the position across all US locations. Within the range, individual pay is determined by work location and several other factors, including job-related skills, experience, relevant education and training.
#LI-Hybrid
Detection engineering intern builds and tunes threat detection rules in XSIAM, analyzes security logs, and researches threat actor tactics to strengthen SOC detection capabilities.
Are you curious about how enterprise security teams identify suspicious activity, build detections, and improve visibility across modern cloud and Software as a Service (SaaS) platforms? Coveo is looking for a Detection Engineering Intern to join our Security Operations Center (SOC) team. Your mission? Help us strengthen our detection coverage by building and tuning threat detection rules for the technologies that support Coveoâs production environment.
The SOC team plays a key role in protecting Coveo by monitoring security activity, investigating alerts, and continuously improving our ability to detect threats across our SaaS and infrastructure footprint. As an intern, youâll contribute to initiatives that expand our detection capabilities while gaining hands-on experience with real enterprise threat detection tools in a production environment.
Think youâve got what it takes? Letâs see!
Do you think you can bring this role to life? Send us your application, we want to hear from you!
We encourage all qualified candidates to apply regardless of, for example, age, gender, disability, gaps in CV, national or ethnic background.
This job description was written by humans, assisted by AI. We may leverage technology in our hiring process to help us see the person behind the resume.
Coveo is committed to providing accessible employment practices. If you require accommodation due to a disability at any point during the recruitment process, please contact HR@Coveo.com to discuss your needs.
Manages IT governance, risk, and compliance frameworks to ensure organizational security and regulatory adherence.
Designs and implements security infrastructure and protocols to protect healthcare systems and sensitive patient data across government assistance programs.
Builds product security infrastructure through threat modeling, security reviews, compliance, and AppSec tooling for a payments platform.
An Introduction to Primer
Primer is the unified infrastructure for global payments. We give finance and payments teams the visibility and control to reduce complexity, improve performance, and capture more revenue - all from a single platform.
Backed by Sofina, Peak XV Partners, ICONIQ, Tencent, Accel, and Balderton, weâre building the payments layer the worldâs best companies rely on.
Watch our showcase >
Read up on our $100m Series C
Learn more about our culture >
Youâll help build the entire product security surface for a company processing payments at scale: threat modelling, security review, compliance, incident escalation, and the multi-year AppSec roadmap. Youâd be the second hire, and the person that function finally gets to share the work with.
This is a hands-on delivery role, and a genuinely formative one. Youâll help set the security strategy and architecture; you take real ownership of the work that turns it into reality, reviews, research, automation, and the day-to-day partnership with engineering teams. Youâll have a clear direction to work within and someone senior to learn from, while still owning your projects end to end.
Security at Primer sits close to the engineering teams it protects rather than off to one side, so youâll spend real time embedded with the people building Cloud, Infra, and product. For someone who wants to go deep in product security with room to grow, there are few better seats than being the second engineer in a function thatâs only now scaling.
Running security reviews and threat modelling on features and systems across Primerâs product, and turning findings into clear, actionable guidance for the teams shipping them
Independently planning and delivering your own security projects, from initial design through to rollout
Building tooling and automation that makes future reviews faster and cheaper to run
Coordinating penetration testing and tracking remediation through to closure
Supporting the recurring compliance work (SOC2, PCI), including evidence collection and remediation tracking against fixed audit windows
Contributing to AppSec roadmap initiatives across areas like application threats, AI security, supply chain security, and ASPM
Picking up proactive security work, threat research and hands-on investigation, that a one-person function has never had the capacity for
Working alongside Cloud, Infra, and GRC on the security aspects of their projects
Working experience in product or application security: youâve done security reviews or threat modelling and can spot the risks that matter
The ability to read and write code, not just review it. Youâre comfortable building small tools and automation rather than only filing findings
Sound judgement about risk. You can weigh a real threat against a theoretical one and explain your reasoning clearly
The ability to plan and deliver your own work independently once you understand the direction, while knowing when to pull in the senior engineer
Clear communication with engineers who arenât security specialists, since most of your impact lands through their work
Nice to have:
Exposure to compliance frameworks like SOC2 or PCI, or genuine appetite to learn them
Background in payments, fintech, or another regulated, high-stakes domain
Interest in areas like supply chain security, detection engineering, or AI security
Itâs remote-first and high autonomy. Youâll get direction, but nobody checks your progress daily. If you need close structure, this will be uncomfortable
Youâll move between proactive project work and reactive BAU, and priorities will shift as audits and incidents land. Tolerating that change is part of the role.
An initial intro call with a Talent Partner
An interview with the Hiring Manager
Challenge Stage - Contextualised to the role
A final, values-alignment interview
Weâre building a culture where people can do their best work and be proud of the impact they have. Youâll be working with people who are mission-driven, smart, and reflective, and who are genuinely invested in building exceptional products and delivering success for our merchants.
We work remotely, and have done since day one. We believe that building a successful, profitable company goes beyond proximity. We invest in our relationships through great remote working practices and thoughtfully designed face-to-face time, including workations, our annual company retreat, and co-working space access worldwide.
The work is challenging. Scaleups are a challenge, and building category-defining products is a challenge. But thereâs a meaningful difference between a challenge and a struggle. At Primer, the right challenge comes with the right support: strong onboarding, a collaborative environment, and a team that is genuinely invested in your success. Itâs never something you face alone.
đ We are fully remote and globally distributed; and have been since day one
đ° Competitive share options
đ´ Uncapped holiday, with 25 days minimum to be taken
đŁď¸ Co-working space access
đ Workations & Company Retreat
đť The best equipment for your role
đ ÂŁ500 towards your home office setup
đ Generous learning budget
đĽ Private Medical Insurance
đ A broad set of additional perks and benefits ( depending on location)
At Primer, weâre dedicated to building a diverse, inclusive, and authentic workplace. If youâre excited about this role but your experience doesnât align perfectly with every qualification listed, we encourage you to apply. You may be the right candidate for this or other roles.
Primer is committed to the equal treatment of all current and prospective employees and adopts a zero-tolerance approach to discrimination, regardless of age, disability, sex, sexual orientation, pregnancy and maternity, race or ethnicity, religion or belief, gender identity, marriage and civil partnership, or any other background or belief.
Staff-level security engineer who designs and implements security solutions across applications and platforms while mentoring teams and shaping security strategy.
About Fullscript
Weâre an industry-leading health technology company on a mission to help people get better. We started in 2011 with one simple idea. Make it easier for practitioners to access the products they trust so they can deliver better care.
That simple idea grew into a platform that powers every part of care. Today, more than 125,000 practitioners use Fullscript for clinical insights, lab interpretations, patient analytics, education, and access to high-quality supplements. Over 10 million patients rely on Fullscript to stay connected to their care plans and follow through on treatment.
We build tools that make care smarter and more human. Tools that save time, simplify decisions, and help practitioners stay closely connected to the people they care for. When everything they need is in one place, they can focus on what matters most: helping people get better.
This is your invitation.
Bring your ideas, your grit, and your care for people.
Join us and shape the future of care.
The Opportunity
Weâre looking for a Staff Security Engineer to join Fullscriptâs Security Engineering team as a senior technical leader and hands-on builder. This role is ideal for someone who started their career in software engineering and developed deep expertise in security engineering, application security, or product security.
Youâll work closely with engineering teams to design and implement security solutions that scale across Fullscriptâs products and platforms. As a Staff-level engineer, youâll own complex technical initiatives, help shape security strategy, and influence how security is built into the software development lifecycle. Youâll be expected to balance hands-on execution with technical leadership, mentoring engineers and helping teams solve security challenges in a way that supports both business objectives and engineering velocity.
Weâre looking for someone who has owned systems end-to-end; from application development and infrastructure decisions through security design and implementation; Understands how to build secure, scalable solutions in production environments. The ideal candidate is deeply technical, highly collaborative, and energized by solving difficult problems that span multiple teams, systems, and domains.
What youâll do
What you bring to the table
Bonus if you have
What we can offer you
Fullscript shares salary ranges to support transparency and help candidates make informed decisions. The range shown reflects base salary only and does not include stock options, wellness stipends, or other benefits that are part of Fullscriptâs total rewards package.
Final compensation depends on experience, skills, and location. We review pay regularly to stay aligned with market data and internal equity. Benefits and total rewards may vary by region.
Why Fullscript
Great work happens when people feel supported, trusted, and inspired. At Fullscript, we stay curious and keep finding smarter ways to make care better. We grow together, take on new challenges, and focus on impact. We put people first, work as a team, and leave egos at the door.
What to Know Before You Apply
Weâre grateful for the interest in joining Fullscript. To make sure your application reaches our hiring team, please apply directly through our careers page.
A quick note: Due to the high volume of applications, weâre not able to respond to phone or email inquiries about application status. If thereâs a match, our team will reach out directly.
Fullscript is an equal opportunity employer committed to creating an inclusive workplace. Accommodations are available upon request at [email protected].
All offers are contingent on successful background checks conducted in compliance with federal, state, and provincial laws.
We use AI tools to support parts of the hiring process, including screening and reviewing responses. Final hiring decisions are always made by people and follow all applicable privacy and employment laws in Canada and the U.S.
Learn More
www.fullscript.com
@fullscriptHQon instagram
@fullscript on YouTube
FullScripton LinkedIn
We may use artificial intelligence (AI) tools to support parts of the hiring process, such as reviewing applications, analyzing resumes, or assessing responses. These tools assist our recruitment team but do not replace human judgment. Final hiring decisions are ultimately made by humans. If you would like more information about how your data is processed, please contact us.
Conducts security reviews, threat modeling, and compliance work for a payments platform while building AppSec tooling and automation.
An Introduction to Primer
Primer is the unified infrastructure for global payments. We give finance and payments teams the visibility and control to reduce complexity, improve performance, and capture more revenue - all from a single platform.
Backed by Sofina, Peak XV Partners, ICONIQ, Tencent, Accel, and Balderton, weâre building the payments layer the worldâs best companies rely on.
Watch our showcase >
Read up on our $100m Series C
Learn more about our culture >
Youâll help build the entire product security surface for a company processing payments at scale: threat modelling, security review, compliance, incident escalation, and the multi-year AppSec roadmap. Youâd be the second hire, and the person that function finally gets to share the work with.
This is a hands-on delivery role, and a genuinely formative one. Youâll help set the security strategy and architecture; you take real ownership of the work that turns it into reality, reviews, research, automation, and the day-to-day partnership with engineering teams. Youâll have a clear direction to work within and someone senior to learn from, while still owning your projects end to end.
Security at Primer sits close to the engineering teams it protects rather than off to one side, so youâll spend real time embedded with the people building Cloud, Infra, and product. For someone who wants to go deep in product security with room to grow, there are few better seats than being the second engineer in a function thatâs only now scaling.
Running security reviews and threat modelling on features and systems across Primerâs product, and turning findings into clear, actionable guidance for the teams shipping them
Independently planning and delivering your own security projects, from initial design through to rollout
Building tooling and automation that makes future reviews faster and cheaper to run
Coordinating penetration testing and tracking remediation through to closure
Supporting the recurring compliance work (SOC2, PCI), including evidence collection and remediation tracking against fixed audit windows
Contributing to AppSec roadmap initiatives across areas like application threats, AI security, supply chain security, and ASPM
Picking up proactive security work, threat research and hands-on investigation, that a one-person function has never had the capacity for
Working alongside Cloud, Infra, and GRC on the security aspects of their projects
Working experience in product or application security: youâve done security reviews or threat modelling and can spot the risks that matter
The ability to read and write code, not just review it. Youâre comfortable building small tools and automation rather than only filing findings
Sound judgement about risk. You can weigh a real threat against a theoretical one and explain your reasoning clearly
The ability to plan and deliver your own work independently once you understand the direction, while knowing when to pull in the senior engineer
Clear communication with engineers who arenât security specialists, since most of your impact lands through their work
Nice to have:
Exposure to compliance frameworks like SOC2 or PCI, or genuine appetite to learn them
Background in payments, fintech, or another regulated, high-stakes domain
Interest in areas like supply chain security, detection engineering, or AI security
Itâs remote-first and high autonomy. Youâll get direction, but nobody checks your progress daily. If you need close structure, this will be uncomfortable
Youâll move between proactive project work and reactive BAU, and priorities will shift as audits and incidents land. Tolerating that change is part of the role.
An initial intro call with a Talent Partner
An interview with the Hiring Manager
Challenge Stage - Contextualised to the role
A final, values-alignment interview
Weâre building a culture where people can do their best work and be proud of the impact they have. Youâll be working with people who are mission-driven, smart, and reflective, and who are genuinely invested in building exceptional products and delivering success for our merchants.
We work remotely, and have done since day one. We believe that building a successful, profitable company goes beyond proximity. We invest in our relationships through great remote working practices and thoughtfully designed face-to-face time, including workations, our annual company retreat, and co-working space access worldwide.
The work is challenging. Scaleups are a challenge, and building category-defining products is a challenge. But thereâs a meaningful difference between a challenge and a struggle. At Primer, the right challenge comes with the right support: strong onboarding, a collaborative environment, and a team that is genuinely invested in your success. Itâs never something you face alone.
đ We are fully remote and globally distributed; and have been since day one
đ° Competitive share options
đ´ Uncapped holiday, with 25 days minimum to be taken
đŁď¸ Co-working space access
đ Workations & Company Retreat
đť The best equipment for your role
đ ÂŁ500 towards your home office setup
đ Generous learning budget
đĽ Private Medical Insurance
đ A broad set of additional perks and benefits ( depending on location)
At Primer, weâre dedicated to building a diverse, inclusive, and authentic workplace. If youâre excited about this role but your experience doesnât align perfectly with every qualification listed, we encourage you to apply. You may be the right candidate for this or other roles.
Primer is committed to the equal treatment of all current and prospective employees and adopts a zero-tolerance approach to discrimination, regardless of age, disability, sex, sexual orientation, pregnancy and maternity, race or ethnicity, religion or belief, gender identity, marriage and civil partnership, or any other background or belief.
Security engineer performs threat modeling, security reviews, compliance work, and builds AppSec tooling for a payments infrastructure platform.
An Introduction to Primer
Primer is the unified infrastructure for global payments. We give finance and payments teams the visibility and control to reduce complexity, improve performance, and capture more revenue - all from a single platform.
Backed by Sofina, Peak XV Partners, ICONIQ, Tencent, Accel, and Balderton, weâre building the payments layer the worldâs best companies rely on.
Watch our showcase >
Read up on our $100m Series C
Learn more about our culture >
Youâll help build the entire product security surface for a company processing payments at scale: threat modelling, security review, compliance, incident escalation, and the multi-year AppSec roadmap. Youâd be the second hire, and the person that function finally gets to share the work with.
This is a hands-on delivery role, and a genuinely formative one. Youâll help set the security strategy and architecture; you take real ownership of the work that turns it into reality, reviews, research, automation, and the day-to-day partnership with engineering teams. Youâll have a clear direction to work within and someone senior to learn from, while still owning your projects end to end.
Security at Primer sits close to the engineering teams it protects rather than off to one side, so youâll spend real time embedded with the people building Cloud, Infra, and product. For someone who wants to go deep in product security with room to grow, there are few better seats than being the second engineer in a function thatâs only now scaling.
Running security reviews and threat modelling on features and systems across Primerâs product, and turning findings into clear, actionable guidance for the teams shipping them
Independently planning and delivering your own security projects, from initial design through to rollout
Building tooling and automation that makes future reviews faster and cheaper to run
Coordinating penetration testing and tracking remediation through to closure
Supporting the recurring compliance work (SOC2, PCI), including evidence collection and remediation tracking against fixed audit windows
Contributing to AppSec roadmap initiatives across areas like application threats, AI security, supply chain security, and ASPM
Picking up proactive security work, threat research and hands-on investigation, that a one-person function has never had the capacity for
Working alongside Cloud, Infra, and GRC on the security aspects of their projects
Working experience in product or application security: youâve done security reviews or threat modelling and can spot the risks that matter
The ability to read and write code, not just review it. Youâre comfortable building small tools and automation rather than only filing findings
Sound judgement about risk. You can weigh a real threat against a theoretical one and explain your reasoning clearly
The ability to plan and deliver your own work independently once you understand the direction, while knowing when to pull in the senior engineer
Clear communication with engineers who arenât security specialists, since most of your impact lands through their work
Nice to have:
Exposure to compliance frameworks like SOC2 or PCI, or genuine appetite to learn them
Background in payments, fintech, or another regulated, high-stakes domain
Interest in areas like supply chain security, detection engineering, or AI security
Itâs remote-first and high autonomy. Youâll get direction, but nobody checks your progress daily. If you need close structure, this will be uncomfortable
Youâll move between proactive project work and reactive BAU, and priorities will shift as audits and incidents land. Tolerating that change is part of the role.
An initial intro call with a Talent Partner
An interview with the Hiring Manager
Challenge Stage - Contextualised to the role
A final, values-alignment interview
Weâre building a culture where people can do their best work and be proud of the impact they have. Youâll be working with people who are mission-driven, smart, and reflective, and who are genuinely invested in building exceptional products and delivering success for our merchants.
We work remotely, and have done since day one. We believe that building a successful, profitable company goes beyond proximity. We invest in our relationships through great remote working practices and thoughtfully designed face-to-face time, including workations, our annual company retreat, and co-working space access worldwide.
The work is challenging. Scaleups are a challenge, and building category-defining products is a challenge. But thereâs a meaningful difference between a challenge and a struggle. At Primer, the right challenge comes with the right support: strong onboarding, a collaborative environment, and a team that is genuinely invested in your success. Itâs never something you face alone.
đ We are fully remote and globally distributed; and have been since day one
đ° Competitive share options
đ´ Uncapped holiday, with 25 days minimum to be taken
đŁď¸ Co-working space access
đ Workations & Company Retreat
đť The best equipment for your role
đ ÂŁ500 towards your home office setup
đ Generous learning budget
đĽ Private Medical Insurance
đ A broad set of additional perks and benefits ( depending on location)
At Primer, weâre dedicated to building a diverse, inclusive, and authentic workplace. If youâre excited about this role but your experience doesnât align perfectly with every qualification listed, we encourage you to apply. You may be the right candidate for this or other roles.
Primer is committed to the equal treatment of all current and prospective employees and adopts a zero-tolerance approach to discrimination, regardless of age, disability, sex, sexual orientation, pregnancy and maternity, race or ethnicity, religion or belief, gender identity, marriage and civil partnership, or any other background or belief.
Staff-level security engineer designs and implements security solutions across products, leads technical initiatives, and mentors engineering teams on embedding security in the SDLC.
About Fullscript
Weâre an industry-leading health technology company on a mission to help people get better. We started in 2011 with one simple idea. Make it easier for practitioners to access the products they trust so they can deliver better care.
That simple idea grew into a platform that powers every part of care. Today, more than 125,000 practitioners use Fullscript for clinical insights, lab interpretations, patient analytics, education, and access to high-quality supplements. Over 10 million patients rely on Fullscript to stay connected to their care plans and follow through on treatment.
We build tools that make care smarter and more human. Tools that save time, simplify decisions, and help practitioners stay closely connected to the people they care for. When everything they need is in one place, they can focus on what matters most: helping people get better.
This is your invitation.
Bring your ideas, your grit, and your care for people.
Join us and shape the future of care.
The Opportunity
Weâre looking for a Staff Security Engineer to join Fullscriptâs Security Engineering team as a senior technical leader and hands-on builder. This role is ideal for someone who started their career in software engineering and developed deep expertise in security engineering, application security, or product security.
Youâll work closely with engineering teams to design and implement security solutions that scale across Fullscriptâs products and platforms. As a Staff-level engineer, youâll own complex technical initiatives, help shape security strategy, and influence how security is built into the software development lifecycle. Youâll be expected to balance hands-on execution with technical leadership, mentoring engineers and helping teams solve security challenges in a way that supports both business objectives and engineering velocity.
Weâre looking for someone who has owned systems end-to-end; from application development and infrastructure decisions through security design and implementation; Understands how to build secure, scalable solutions in production environments. The ideal candidate is deeply technical, highly collaborative, and energized by solving difficult problems that span multiple teams, systems, and domains.
What youâll do
What you bring to the table
Bonus if you have
What we can offer you
Fullscript shares salary ranges to support transparency and help candidates make informed decisions. The range shown reflects base salary only and does not include stock options, wellness stipends, or other benefits that are part of Fullscriptâs total rewards package.
Final compensation depends on experience, skills, and location. We review pay regularly to stay aligned with market data and internal equity. Benefits and total rewards may vary by region.
Why Fullscript
Great work happens when people feel supported, trusted, and inspired. At Fullscript, we stay curious and keep finding smarter ways to make care better. We grow together, take on new challenges, and focus on impact. We put people first, work as a team, and leave egos at the door.
What to Know Before You Apply
Weâre grateful for the interest in joining Fullscript. To make sure your application reaches our hiring team, please apply directly through our careers page.
A quick note: Due to the high volume of applications, weâre not able to respond to phone or email inquiries about application status. If thereâs a match, our team will reach out directly.
Fullscript is an equal opportunity employer committed to creating an inclusive workplace. Accommodations are available upon request at [email protected].
All offers are contingent on successful background checks conducted in compliance with federal, state, and provincial laws.
We use AI tools to support parts of the hiring process, including screening and reviewing responses. Final hiring decisions are always made by people and follow all applicable privacy and employment laws in Canada and the U.S.
Learn More
www.fullscript.com
@fullscriptHQon instagram
@fullscript on YouTube
FullScripton LinkedIn
We may use artificial intelligence (AI) tools to support parts of the hiring process, such as reviewing applications, analyzing resumes, or assessing responses. These tools assist our recruitment team but do not replace human judgment. Final hiring decisions are ultimately made by humans. If you would like more information about how your data is processed, please contact us.
Provides infrastructure support and cybersecurity expertise for NIH-contracted work, managing network security and IT infrastructure.
Leads network and cybersecurity infrastructure delivery for government contracts, managing technical implementation and team oversight.
Manages cyber infrastructure systems and provides infrastructure support for government research contracts, ensuring secure and reliable IT operations.
Provides cybersecurity support and manages security systems for a government contract supporting NIH research operations.
Conducts penetration testing and security assessments to identify and remediate vulnerabilities in systems and applications.
Conducts offensive security testing and adversarial simulations to identify vulnerabilities in government and critical infrastructure systems.
Detects, investigates, and responds to security threats and incidents across the organization's systems and networks.
Investigates complex security incidents, performs deep analysis, escalates critical issues, and coordinates communication between customers and internal teams.