As a Lead Security Engineer, you will mentor and develop a security team, driving initiatives in DevSecOps and AppSec, while ensuring security across the development lifecycle.
At Fullscript, we’re not just changing healthcare—we’re making it whole.
We help 100,000+ healthcare practitioners support 10 million patients with a platform that delivers evidence-based health solutions, diagnostic support, and practitioner tools—all in one place.
Healthcare today is disconnected. We’re fixing that. Fullscript makes it easier for practitioners to treat the whole person, not just symptoms, so patients get the support they need—when they need it.
We’re building a better way—one where healthcare is connected, complete, and built for impact.
The Role
We’re looking for an experienced Lead Security Engineer to help shape and strengthen Fullscript’s security posture. You’ll play a key role in embedding security across our development lifecycle, leading initiatives in DevSecOps, AppSec, GRC, security operations, and incident response.
This is an opportunity to tackle real-world security challenges, develop scalable security strategies, and work cross-functionally to ensure security is built into everything we do.
What You'll Do:
- Lead and mentor a security engineering team while partnering with teams like Engineering and IT to embed security throughout our development lifecycle.
- Define and implement security best practices, combining practical recommendations with automated guardrails.
- Drive security initiatives and provide technical guidance for infrastructure decisions, ensuring security is considered from design through implementation.
- Establish and optimize security triage processes, including SLAs, severity frameworks, and remediation protocols.
- Review feature designs and technical approaches to ensure features are developed with security in mind.
- Grow and expand our purple team capabilities.
- Sharing your knowledge and expertise with our developer community.
What You Bring:
- Demonstrated success mentoring and developing security engineering teams.
- Experience partnering with cross-organizational teams to drive security initiatives.
- Proven ability to translate complex security concepts for diverse technical audiences.
- Track record of building and optimizing security triage processes.
- Hands-on coding experience in at least one modern programming language.
- Understanding of industry frameworks (SOC2, PCI, HIPAA, HITRUST, NIST).
Bonus Points
- Background in automation and infrastructure as code (Terraform, CloudFormation).
- Container security and Kubernetes ecosystem security.
- Implementation of cloud security platforms (Wiz) and SIEM solutions.
- Compliance automation and continuous control monitoring (Drata).
- Edge security (WAF).
- Experience securing Ruby on Rails and Javascript applications.
- Experience in securing APIs (GraphQL).
- Experience with pen-test software (Burpsuite).
- Experience with software threat modelling.
- Database security best practices (MySQL, Postgres).
- Experience with security tooling integration in CI/CD pipelines (GitLab, GitHub Actions).
- Advanced Linux/Unix systems security.
What You Get:
- Flexible PTO & competitive pay—because balance fuels performance.
- RRSP match & stock options—invest in your future.
- Customizable benefits—flexible coverage, paramedical services, and an HSA.
- Fullscript discounts—save on high-quality wellness products.
- Continuous learning—training budget + company-wide initiatives.
- Wherever You Work Well—hybrid and remote flexibility.
Why Fullscript?
Great work happens when people are supported, challenged, and inspired. Here, you’ll be part of a team that:
⬦ Values innovation—we push boundaries and always look for better ways.
⬦ Supports growth—through learning, mentorship, and meaningful work.
⬦ Cares about balance—with flexible work options and time off when you need it.
📌 Apply now—let’s build the future of healthcare, together.
Fullscript is an equal-opportunity employer committed to creating an inclusive workplace. Accommodations are available upon request—email [email protected] for support.
Before joining the team, all candidates who receive and accept an offer will complete a background check.
We use AI tools to support parts of our hiring process, like screening and reviewing responses. Final decisions are always made by people. This process complies with privacy and employment laws across Canada and the U.S.
------
🚀 MORE INFO: www.fullscript.com | www.rupahealth.com | Follow us on social media @fullscriptHQ
🔥 IN THE NEWS: Fullscript acquires Rupa Health
📺 Let’s make healthcare whole
Top Skills
Appsec
Burpsuite
CloudFormation
Devsecops
Drata
Github Actions
Gitlab
GraphQL
Grc
JavaScript
Kubernetes
Linux
MySQL
Postgres
Ruby On Rails
SIEM
Terraform
Unix
Wiz
Similar Jobs
Cloud • Insurance • Payments • Software • Business Intelligence • App development • Big Data Analytics
The role involves collaborating with an Agile team to develop, implement, and maintain software solutions, while ensuring high performance and quality standards.
Top Skills:
.NetAngularC#ConfluenceCypressGitlabGoJIRAKubernetesReactSQL ServerTypescriptVisual Studio
Artificial Intelligence • Cloud • Consumer Web • Productivity • Software • App development • Data Privacy
The role involves designing, deploying, and refining ML systems for conversational AI, focusing on large-scale LLM workflows while ensuring responsible AI practices and mentoring team members.
Top Skills:
CC++GoHuggingfaceKerasMachine LearningNatural Language ProcessingPythonPyTorchScikit-LearnTensorFlow
Artificial Intelligence • Cloud • Consumer Web • Productivity • Software • App development • Data Privacy
The Staff Infrastructure Software Engineer will lead the Developer Infrastructure team, focusing on improving developer productivity through large-scale systems, mentoring, and AI integration.
Top Skills:
Ai-Powered ToolsC/C++Developer InfrastructureGoJavaPython
What you need to know about the Charlotte Tech Scene
Ranked among the hottest tech cities in 2024 by CompTIA, Charlotte is quickly cementing its place as a major U.S. tech hub. Home to more than 90,000 tech workers, the city’s ecosystem is primed for continued growth, fueled by billions in annual funding from heavyweights like Microsoft and RevTech Labs, which has created thousands of fintech jobs and made the city a go-to for tech pros looking for their next big opportunity.
Key Facts About Charlotte Tech
- Number of Tech Workers: 90,859; 6.5% of overall workforce (2024 CompTIA survey)
- Major Tech Employers: Lowe’s, Bank of America, TIAA, Microsoft, Honeywell
- Key Industries: Fintech, artificial intelligence, cybersecurity, cloud computing, e-commerce
- Funding Landscape: $3.1 billion in venture capital funding in 2024 (CED)
- Notable Investors: Microsoft, Google, Falfurrias Management Partners, RevTech Labs Foundation
- Research Centers and Universities: University of North Carolina at Charlotte, Northeastern University, North Carolina Research Campus