Senior/Staff Security Engineer
$190k - $240kSAGE
Senior/Staff Security Engineer
New York, New York, United States
Sage is on a mission to improve care and quality of life for older adults, starting with those residing in senior living facilities. Falls are the leading cause of injury-related death among adults over 65. And yet, fall prevention and emergency response systems for older adults are archaic and ineffective. At Sage we've built a more modern way of understanding when older adults need help, including methods for residents to alert caregivers when in need of help, and corresponding software for caregivers to triage response. Our company mission is to create a product that our client counterparts love, and this role is a key part of that objective.
Sage is a small, tight team of ambitious, multi-disciplinary entrepreneurs. We are a software-enabled, mission-driven company, and are focused only on the problems that are central to achieving that mission. At Sage, we work hard and fast but also know that to build a truly important company, we need to treat our work as a marathon, and not a sprint. The journey matters.
About This Role
We are looking for a Senior/Staff Security Engineer to own and advance the security posture of our platform as we scale. You will be the dedicated security practitioner on the engineering team, responsible for hardening our cloud and edge infrastructure, driving compliance programs, building vulnerability management and incident response capabilities, and embedding security into the software development lifecycle.
This is a hands-on individual contributor role reporting to the Engineering Manager of Cloud and Security. You will work across AWS and GCP environments, partner closely with product engineering and platform teams, and have direct impact on Sage's ability to earn and maintain customer trust. Success in this role requires deep technical security skills, comfort operating across a broad surface area, and a bias toward practical, risk-proportionate solutions over checkbox compliance.
Responsibilities
- Harden and continuously improve the security of Sage's cloud infrastructure across AWS and GCP, including IAM policies, VPC configurations, security groups, and network segmentation.
- Own vulnerability management end to end: implement scanning, triage findings, coordinate remediation with engineering teams, and track resolution. Drive penetration test findings to closure on defined timelines.
- Build and maintain incident response capabilities, including detection tooling, runbooks, and post-incident analysis.
- Drive Sage's SOC 2 and HIPAA compliance programs forward, producing evidence, closing control gaps, and coordinating with external auditors.
- Implement and operate supply chain security controls, including dependency scanning, credential leak monitoring, and secret rotation automation.
- Embed security into CI/CD pipelines and the software development lifecycle through automated checks, secure defaults, and developer education.
- Conduct security reviews of architecture decisions, new services, and third-party integrations. Own the vendor security assessment process for evaluating and tracking third-party risk.
- Establish and maintain key and credential rotation policies with clear ownership and audit trails.
- Implement automated compliance scanning across cloud accounts and projects with defined triage workflows.
- Validate that disaster recovery procedures maintain security controls through failover, including encryption, access control, and network segmentation.
- Partner with engineering, product, and executive stakeholders to communicate security risk clearly and advocate for proportionate investment.
Minimum Qualifications
- 6+ years of experience in security engineering, with demonstrated depth in cloud security (at least one of AWS or GCP required).
- Hands-on experience with IAM design, VPC architecture, security group management, and infrastructure hardening in production environments.
- Experience building or significantly improving vulnerability management programs, including tooling selection, integration, and triage workflows.
- Direct experience with SOC 2 and HIPAA compliance, including evidence collection, control implementation, and auditor interactions.
- Practical incident response experience: you have detected, investigated, and resolved real security incidents, not just written the plan.
- Experience securing containerized applications and CI/CD pipelines.
- Experience securing device or edge computing environments, including firmware updates, device authentication, and network security for IoT or embedded systems.
- Strong written and verbal communication skills. You can explain a risk finding to an engineer and a business stakeholder in the same day.
- Willing and excited to be in the office Tuesday through Thursday (NYC).
Preferred Qualifications
- Experience with Terraform or similar infrastructure-as-code tools for managing security controls declaratively.
- Familiarity with healthcare or other regulated industries where data protection has real consequences.
- Experience with supply chain security tooling (dependency scanning, SBOM generation, container image signing).
- Track record of building automated credential rotation and secret management pipelines.
- Experience operating security programs at a growth-stage startup where you had to prioritize ruthlessly and build from scratch.
- Relevant certifications (CISSP, AWS Security Specialty, GIAC) are a plus but not required if the experience is there.
- Comfortable reading and reviewing application code (Java preferred) to identify security issues such as overly broad token scoping, improper credential handling, and authentication/authorization flaws. Ability to contribute fixes directly is a plus.
Benefits and Pay
Our headquarters are located in New York City's Union Square. We believe in cross team collaboration. We think good ideas can come from anyone, and we've designed our processes to encourage participation from all. While we take our mission seriously, we don't take ourselves too seriously. We like to host offsites, outings, and team meals where we can connect as people, not just as colleagues. We offer office lunch and a fully stocked snack bar. While we are an in office culture, we allow up to 2 remote days per week.
Our benefits package for employees includes competitive base compensation along with stock options. The expected annual salary range for this role is $190,000-240,000 USD, depending upon the job level, which will depend on your level of expertise, your experience, and your qualifications. We also provide fully-paid health and dental insurance coverage for all of our employees, along with other health benefits including vision insurance, membership to premium primary and urgent care, and online medical health providers. We also have a take as you need time off policy, in addition to 7 paid holidays and a company wide winter break during the holidays.
EEO Statement
Sage is an equal opportunity employer that is committed to diversity and inclusion in the workplace. We prohibit discrimination and harassment of any kind based on race, color, sex, religion, sexual orientation, national origin, disability, genetic information, pregnancy, or any other protected characteristic as outlined by federal, state, or local laws.
This policy applies to all employment practices within our organization, including hiring, recruiting, promotion, termination, layoff, recall, leave of absence, compensation, benefits, training, and apprenticeship. Sage makes hiring decisions based solely on qualifications, merit, and business needs at the time.
- ...Ethena Labs is seeking a Staff/Senior Security Engineer to lead their signing and treasury security program. This high-impact role involves owning the design of the signing regime and ensuring secure operational workflows within the security department. Ideal candidates...SeniorRemote workFlexible hours
- ...will be focused on two new major product lines coming to market in the next few months. Join us!! The Role We're hiring a Staff/Senior Security Engineer to lead our signing and treasury security program across wallets and custodian accounts. This is a high-impact, mission...SeniorContract workRemote workFlexible hours
$200k - $300k
...Radar Red Team Security Engineer Radar is the global leader in geolocation, with geofencing SDKs, maps APIs, and AI-enabled solutions for... ...engineers at Radar fit one of two molds, technically: either Staff level expertise in one stack, or "Multi-Stack" at any level....SeniorFull time$127k - $249k
...We are hiring an experienced Security Software Engineer (Staff or Senior) for our Infrastructure Security team to design and build scalable security controls and services within MongoDB Atlas multi-cloud infrastructure. The team sits within the Site Reliability Engineering...SeniorWork at officeLocal areaRemote workWorldwideFlexible hours$192k - $278k
...mission is to unleash employee productivity without compromising security by ensuring every identity is authentic, every application... ...need to do their best work. Position We are looking for a Staff Security Engineer to found and lead the DevSecOps function within our...SuggestedImmediate startRemote work$220k - $260k
...Responsibilities Own critical security infrastructure/services for the company (Key Management for wallet infrastructure) Perform regular... ...skills. Nice to have experience working as a security software engineer at crypto companies experience developing key management...Remote workFlexible hours$200k - $250k
...with a single, convenient solution. By integrating cutting‑edge security features and launching innovative tools for an enhanced... ...trust Phantom to securely store their crypto assets. As a Security Engineer, you will be responsible for identifying, exploiting and mitigating...Live inRemote workFlexible hours$190k - $250k
...Fanatics Betting and Gaming is headquartered in New York with offices in Denver, Leeds and Dublin. The Role: As a Staff Security Engineer on the Fanatics Ecosystems Security team, you will lead security reviews, deliver impactful tooling in close partnership with...Full timeTemporary workSeasonal work$180k - $247.5k
...Secure Every Identity, from AI to Human Identity is the key to unlocking the potential of AI. Okta secures AI by building... ...you are too, let's talk. Join Okta's Defensive Cyber Engineering team as a Staff Engineer responsible for safeguarding Okta's environments....Local areaWorldwideFlexible hours$147k - $253k
...fusion, and networking technology to the military in months, not years. About the Team Anduril’s Application and Security Engineering team is looking for a Staff Security Engineer to focus on Identity and Access Management and build and maintain world class defensive...Full timeWork experience placement$239k - $275k
...individuals who are motivated to make a meaningful impact on healthcare at scale.About the roleWe are seeking an exceptional Staff Security Engineer to serve as a technical anchor for our security function. This role is critical for leading technical design reviews and...Remote workFlexible hours$168k - $240k
...range of simple, reliable, and secure crypto products and services... ...security architecture and engineering to maintenance of cold storage... ...and supported. The Role: Staff Security Engineer We are... ..., strategies, and updates to senior management and other stakeholders...Work at officeRemote workFlexible hours- ...Staff Security Engineer At Rogo, we are building Wall Street's first true AI analyst. Our mission is to empower finance professionals at the world's top investment banks, private equity funds, and investment firms with AI that delivers unparalleled speed, accuracy,...
- ...Staff Security Engineer (Blockchain) Remote (US) – Software Engineering – Full-Time – Remote About the Company Hi, we're Ondo Finance. Our mission is to provide institutional-grade, blockchain-enabled investment products and services. We have both a technology arm that...Full timeContract workRemote workFlexible hours
$188k - $275k
...Staff Security Engineer, SOAR CoreWeave is The Essential Cloud for AI™. Built for pioneers by pioneers, CoreWeave delivers a platform of technology, tools, and teams that enables innovators to build and scale AI with confidence. Trusted by leading AI labs, startups,...Permanent employmentTemporary workCasual workWork at officeRemote workFlexible hours$196k - $245k
...your impact and unlock incredible career growth opportunities, join us, and build real world value. THE WORK: As a Staff Security Engineer within the Secure Digital Asset Operations (SDAO) function, you will collaborate with leadership and cross-functional Finance...Full timeContract workWork at officeLocal area- ...About the Role: As a Staff Application Security Engineer at Confluent, you will join a team of security architects and engineers responsible for shaping and advancing the application security strategy across our on-premises products and cloud services. In this role, you...
- ...OpenLoop Health is seeking a Staff Security Engineer (DevOps Integrations) to join our team remotely. This role involves leading DevSecOps practices across IT, software engineering, and product teams while ensuring implementation of secure practices in development lifecycles...Remote work
- ...virtual support to patients across an expansive array of specialties, in all 50 states. About The Role OpenLoop is looking for a Staff Security Engineer (DevOps Integrations) to join our team remotely. In this role, you will be responsible for being our DevSecOps subject...Remote workShift work
$140k - $200k
...ready to make a difference while enjoying the journey, come join us and let's Tango! About the Role: We’re hiring a Staff Security Engineer , a senior, polyglot, full-stack Application Security Engineer who not only uncovers vulnerabilities but also goes into application...Work at officeRemote workVisa sponsorshipWork visaFlexible hours- ...other practitioners to access high‑quality supplements and clinical insights. Staff Security Engineer Fullscript is seeking a seasoned Staff Security Engineer to join our security team as a senior technical leader. In this role, you’ll shape the technical vision for...Flexible hours
- ...Staff Security Engineer (Blue Team) at Olo Reporting to the Security Engineering Director, the Staff Security Engineer will act as the technical lead of the Olo Security Blue Team, designing and maintaining security defenses that protect our clients and their customers...Remote work
$200k - $350k
...trajectory of superintelligence. Come and be one of them. About the Role Fluidstack is looking for a seasoned Senior / Staff Network Security Engineer to spearhead our security strategy and defend our fast-growing cloud platform. You will design and deploy advanced...Local area- A leading crypto platform is seeking a Staff Software Engineer specializing in security to enhance its digital asset protection. The ideal candidate will engage in developing and implementing sophisticated security measures to protect customer assets, collaborate closely...Remote work
$188k - $275k
...Staff Security Engineer, Vulnerability Management Livingston, NJ / New York, NY / Sunnyvale, CA / Bellevue, WA CoreWeave is The Essential... ...firmware, DPU firmware/BlueField, and BMC surfaces) Act as senior technical responder for embargoed disclosures and zero-day...Permanent employmentTemporary workCasual workWork at officeRemote workFlexible hours$188k - $275k
...Staff Security Engineer, PKI & Secrets Livingston, NJ / New York, NY / Sunnyvale, CA / Bellevue, WA/ San Francisco, CA CoreWeave is The Essential Cloud for AI™. Built for pioneers by pioneers, CoreWeave delivers a platform of technology, tools, and teams that enables...Temporary workCasual workWork at officeRemote workFlexible hours- ...and/or PRs on our Github repos About this role: This isn’t one of those roles where “security” means running scans or writing policies that gather dust. We’re looking for a real engineer—someone who thinks like a builder and a breaker. Someone who gets deep into the...Remote workFlexible hours
$115.5k - $165k
...so our customers can be more agile, efficient, resilient, and secure. Our cloud native Zero Trust Exchange platform protects thousands... ...to Zscaler and help shape the future of cybersecurity. Our Engineering team built the world’s largest cloud security platform from the...Work at officeLocal areaWorldwide- ...A tech consulting firm is looking for a Sr. Infrastructure Security Engineer to develop and enhance security systems across AWS, GCP, and Azure. This remote role requires expertise in cloud security and automation, with responsibilities including architecting security...SeniorRemote work
- ...A fast-growing fintech company in the U.S. is seeking a Senior Security Engineer to enhance security within their innovative platform. This remote role involves leading security initiatives across application and cloud environments, conducting vulnerability assessments...SeniorRemote work
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to Senior/Staff Security Engineer. Be the first to apply!
- staff security engineer New York, NY
- staff devops engineer New York, NY
- assistant engineer New York, NY
- engineering aide New York, NY
- assistant chief engineer New York, NY
- staff engineer New York, NY
- technology administrator New York, NY
- senior staff systems engineer New York, NY
- assistant mechanical engineer New York, NY
- staff data engineer New York, NY

