FullscriptFU

Lead Engineer - Security

Fullscript is a healthcare platform founded in 2011 that enables practitioners to prescribe and manage professional-grade supplements, offering tools for personalized treatment plans and patient adherence. It serves healthcare professionals by providing a comprehensive solution for integrative medicine.

Fullscript

Employee count: 501-1000

Canada only
At Fullscript, we’re not just changing healthcare—we’re making it whole.
We help 100,000+ healthcare practitioners support 10 million patients with a platform that delivers evidence-based health solutions, diagnostic support, and practitioner tools—all in one place.
Healthcare today is disconnected. We’re fixing that. Fullscript makes it easier for practitioners to treat the whole person, not just symptoms, so patients get the support they need—when they need it.
We’re building a better way—one where healthcare is connected, complete, and built for impact.
The Role
We’re looking for an experienced Lead Security Engineer to help shape and strengthen Fullscript’s security posture. You’ll play a key role in embedding security across our development lifecycle, leading initiatives in DevSecOps, AppSec, GRC, security operations, and incident response.
This is an opportunity to tackle real-world security challenges, develop scalable security strategies, and work cross-functionally to ensure security is built into everything we do.

What You'll Do:

  • Lead and mentor a security engineering team while partnering with teams like Engineering and IT to embed security throughout our development lifecycle.
  • Define and implement security best practices, combining practical recommendations with automated guardrails.
  • Drive security initiatives and provide technical guidance for infrastructure decisions, ensuring security is considered from design through implementation.
  • Establish and optimize security triage processes, including SLAs, severity frameworks, and remediation protocols.
  • Review feature designs and technical approaches to ensure features are developed with security in mind.
  • Grow and expand our purple team capabilities.
  • Sharing your knowledge and expertise with our developer community.

What You Bring:

  • Demonstrated success mentoring and developing security engineering teams.
  • Experience partnering with cross-organizational teams to drive security initiatives.
  • Proven ability to translate complex security concepts for diverse technical audiences.
  • Track record of building and optimizing security triage processes.
  • Hands-on coding experience in at least one modern programming language.
  • Understanding of industry frameworks (SOC2, PCI, HIPAA, HITRUST, NIST).

Bonus Points

  • Background in automation and infrastructure as code (Terraform, CloudFormation).
  • Container security and Kubernetes ecosystem security.
  • Implementation of cloud security platforms (Wiz) and SIEM solutions.
  • Compliance automation and continuous control monitoring (Drata).
  • Edge security (WAF).
  • Experience securing Ruby on Rails and Javascript applications.
  • Experience in securing APIs (GraphQL).
  • Experience with pen-test software (Burpsuite).
  • Experience with software threat modelling.
  • Database security best practices (MySQL, Postgres).
  • Experience with security tooling integration in CI/CD pipelines (GitLab, GitHub Actions).
  • Advanced Linux/Unix systems security.

What You Get:

  • Flexible PTO competitive pay—because balance fuels performance.
  • RRSP match stock options—invest in your future.
  • Customizable benefits—flexible coverage, paramedical services, and an HSA.
  • Fullscript discounts—save on high-quality wellness products.
  • Continuous learning—training budget + company-wide initiatives.
  • Wherever You Work Well—hybrid and remote flexibility.
Great work happens when people are supported, challenged, and inspired. Here, you’ll be part of a team that:
⬦ Values innovation—we push boundaries and always look for better ways.
⬦ Supports growth—through learning, mentorship, and meaningful work.
⬦ Cares about balance—with flexible work options and time off when you need it.
📌 Apply now—let’s build the future of healthcare, together.
Fullscript is an equal-opportunity employer committed to creating an inclusive workplace. Accommodations are available upon request—email [email protected] for support.
Before joining the team, all candidates who receive and accept an offer will complete a background check.
🚀 MORE INFO: www.fullscript.com | www.rupahealth.com | Follow us on social media @fullscriptHQ
🔥 IN THE NEWS: Fullscript acquires Rupa Health

About the job

Apply before

Posted on

Job type

Full Time

Experience level

Senior
Manager

Location requirements

Hiring timezones

Canada +/- 0 hours

About Fullscript

Learn more about Fullscript and their company culture.

View company profile

Fullscript's journey began in 2011, born from a desire to simplify and improve how healthcare practitioners provide, and patients receive, nutritional supplements. Dr. Alanna Dyment, a naturopathic doctor, found herself wrestling with the complexities and costs of managing a physical supplement dispensary in her own clinic. She envisioned a more streamlined approach, one that would allow her to dedicate more time to patient care rather than inventory management. This vision was shared with her husband, Brad Dyment, and his partner, Kyle Braatz. Recognizing the potential to revolutionize this aspect of healthcare, they teamed up with Chris Wise, and Fullscript was officially launched.

The company started as an online platform for dispensing professional-grade nutraceuticals and supplements, allowing practitioners to prescribe and manage supplements for their patients digitally. This innovative approach quickly gained traction. A significant milestone in Fullscript's evolution was the 2018 merger with Natural Partners, an Arizona-based company with a strong background in supplement supply chain and merchandising since 1995. This merger, creating Natural Partners Fullscript (NPFS), combined Fullscript's software engineering prowess with Natural Partners' extensive distribution network and product catalog. The goal was to create a more efficient, effective, and innovative solution for the integrative healthcare market. Later, the company rebranded to simply Fullscript. Over the years, Fullscript continued to expand its offerings and reach. The platform evolved to include features like personalized treatment planning, wellness protocols, data insights, and patient adherence tools. Fullscript also focused on strategic acquisitions, such as Emerson Ecologics in 2022 and Rupa Health in 2024, further solidifying its market position and expanding its capabilities to include lab ordering and management. These moves have propelled Fullscript to become a leading healthcare platform, supporting over 100,000 practitioners and 10 million patients across North America, with a mission to power whole-person care.

Employee benefits

Learn about the employee benefits and perks provided at Fullscript.

View benefits

Work From Home

Supports remote work.

Mental Health Care

Mental health benefits.

Life Insurance

Life insurance coverage.

Dental Insurance

Dental insurance coverage.

View Fullscript's employee benefits
Claim this profileFullscript logoFU

Fullscript

View company profile

Similar remote jobs

Here are other jobs you might want to apply for.

View all remote jobs

23 remote jobs at Fullscript

Explore the variety of open remote roles at Fullscript, offering flexible work options across multiple disciplines and skill levels.

View all jobs at Fullscript

Remote companies like Fullscript

Find your next opportunity by exploring profiles of companies that are similar to Fullscript. Compare culture, benefits, and job openings on Himalayas.

View all companies

Find your dream job

Sign up now and join over 85,000 remote workers who receive personalized job alerts, curated job matches, and more for free!

Sign up
Himalayas profile for an example user named Frankie Sullivan