> Markdown version of [/jobs/ext/577663-staff-security-engineer](https://www.wearedevelopers.com/jobs/ext/577663-staff-security-engineer). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Staff, Security Engineer - **Company:** Fullscript Inc. - **Location:** Austin, TX, United States (Remote available) - **Experience:** Expert - **Contract:** Permanent contract - **Skills:** JavaScript (Programming Language), Application Programming Interfaces (APIs), Artificial Intelligence, Applications Architecture, Software System Penetration Testing, Cloud Computing, Cloud Computing Security, Static Program Analysis, Customer Data Management, Github, Information Security Management, Node.Js, Ruby on Rails, Secure Coding, Software Engineering, Software Vulnerability Management, Software Security, Gitlab, Graphql - **Published:** June 12, 2026 - **Apply:** https://www.indeed.com/viewjob?jk=eda65835966a8787 ## About the Role Do you have experience in Tooling?, * 8+ years of software engineering experience designing, building, and operating production systems. * 3+ years of recent experience in application security, product security, security engineering, or a related security discipline. * Deep understanding of secure software development, modern application architectures, APIs, and cloud-native environments. * Experience owning complex technical initiatives from problem definition through delivery, including working across multiple teams and stakeholders. * Proven ability to influence technical direction, mentor engineers, and drive adoption of security best practices. * Strong hands-on experience with security tooling, automation, vulnerability management, and security assessments. * Excellent communication skills, strong technical judgment, and a continuous learning mindset. Bonus if you have * Experience securing Ruby on Rails, Node.js, JavaScript, GraphQL, or similar application ecosystems. * Experience with AWS cloud security and cloud-native security controls. * Experience with threat modeling methodologies such as STRIDE, PASTA, or similar frameworks. * Experience with vulnerability management, application security posture management, or developer security tooling. * Familiarity with GitHub, GitLab, Wiz, static analysis tools, secret scanning, or related security platforms. * Experience conducting penetration testing, security research, or ethical hacking activities. * Experience protecting healthcare, regulated, or sensitive customer data. ## Description You'll work closely with engineering teams to design and implement security solutions that scale across Fullscript's products and platforms. As a Staff-level engineer, you'll own complex technical initiatives, help shape security strategy, and influence how security is built into the software development lifecycle. You'll be expected to balance hands-on execution with technical leadership, mentoring engineers and helping teams solve security challenges in a way that supports both business objectives and engineering velocity. We're looking for someone who has owned systems end-to-end; from application development and infrastructure decisions through security design and implementation; Understands how to build secure, scalable solutions in production environments. The ideal candidate is deeply technical, highly collaborative, and energized by solving difficult problems that span multiple teams, systems, and domains. What you'll do * Lead the design and implementation of security solutions across Fullscript's applications, platforms, and AI-powered systems. * Partner with engineering teams to embed security throughout the software development lifecycle, including architecture reviews, threat modeling, secure coding practices, and design reviews. * Drive application security, product security, and vulnerability management initiatives from concept through implementation. * Own complex security challenges that span multiple teams, balancing technical requirements, business priorities, and engineering constraints to deliver scalable solutions. * Mentor engineers and security practitioners, raising the bar for secure software development and helping teams make sound security decisions. * Influence technical strategy and security standards through hands-on engineering, technical leadership, and cross-functional collaboration. * Stay ahead of emerging threats, security technologies, and AI-specific risks to help shape Fullscript's long-term security posture., A quick note: Due to the high volume of applications, we're not able to respond to phone or email inquiries about application status. If there's a match, our team will reach out directly. Fullscript is an equal opportunity employer committed to creating an inclusive workplace. Accommodations are available upon request at accommodations@fullscript.com. All offers are contingent on successful background checks conducted in compliance with federal, state, and provincial laws. We use AI tools to support parts of the hiring process, including screening and reviewing responses. Final hiring decisions are always made by people and follow all applicable privacy and employment laws in Canada and the U.S. ## Related Videos - [Real-World Security for Busy Developers](https://www.wearedevelopers.com/videos/1545-real-world-security-for-busy-developers) - [WeAreDevelopers LIVE - Modern DevOps for IoT Devices and More](https://www.wearedevelopers.com/videos/1805-wearedevelopers-live-modern-devops-for-iot-devices-and-more) - [Innovating Developer Tools with AI: Insights from GitHub Next](https://www.wearedevelopers.com/videos/1268-innovating-developer-tools-with-ai-insights-from-github-next) - [Putting the Graph In GraphQL With The Neo4j GraphQL Library](https://www.wearedevelopers.com/videos/257-putting-the-graph-in-graphql-with-the-neo4j-graphql-library) - [Enabling automated 1-click customer deployments with built-in quality and security](https://www.wearedevelopers.com/videos/83-enabling-automated-1-click-customer-deployments-with-built-in-quality-and-security) - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) ## Related Articles - [Dev Digest 121 - AI goes offline](https://www.wearedevelopers.com/magazine/456-dev-digest-121-ai-goes-offline) - [Dev Digest 120 - Apple and peers](https://www.wearedevelopers.com/magazine/455-dev-digest-120-apple-and-peers) - [Fully Remote Software Engineer Jobs](https://www.wearedevelopers.com/magazine/447-fully-remote-software-engineer-jobs) - [Dev Digest 138 - Are you secure about this?](https://www.wearedevelopers.com/magazine/486-dev-digest-138-are-you-secure-about-this) - [Dev Digest 131 - AI'm not sure about OSS](https://www.wearedevelopers.com/magazine/472-dev-digest-131-ai-m-not-sure-about-oss) - [How We Built a Worry-Free System That Runs for 10+ Years – And What We’d Do Again](https://www.wearedevelopers.com/magazine/751-how-we-built-a-worry-free-system-that-runs-for-10-years-and-what-we-d-do-again)