First Dedicated Security Engineer
$220k - $235kSavvy Wealth
About Savvy Wealth:
Wealth management is a $545 billion industry that still runs on manual work. 75% of advisors offer no digital communication beyond email, and most still build financial plans by hand in Excel. Savvy is reinventing what it looks like to be a financial advisor. Founder Ritik Malhotra saw the fragmentation firsthand after seeking out his own advisor, and started Savvy to give independent advisors a modern, AI-native home.
Savvy is a registered investment advisor (RIA), and we partner with experienced financial advisors who want to grow without running the back office themselves. Advisors bring their book and join Savvy, running under their own brand (or ours), and Savvy earns a percentage of the assets they manage. In return, they get a true business-in-a-box: a proprietary tech platform and client portal, an in-house marketing team that helps them grow, a world-class investment management team, and a dedicated client services team that runs day-to-day operations and support. Advisors at Savvy service up to 50% more households and save 19 hours a week.
AI runs through everything we do. On the product side, Savvy Intelligence (released April 2026) is the only AI built for wealth managers that can see a client's complete financial picture. Internally, everyone at Savvy uses Claude and is encouraged to experiment with it, backed by a dedicated AI enablement team and a RevOps org building agents in-house.
The trajectory is steep and it's still early. We're a Series C company with 170+ people, $200M raised, and $100M ARR in sight this year. Inc. ranked us the No. 1 fastest-growing financial services company in America in 2026. Come build the next stage with us!
Recognition:
We're a Certified Great Place to Work and have been honored for our culture and our growth:
Newsweek's America's Greatest Startup Workplaces (2026)
Fortune Best Workplaces in New York™ (2026)
Great Place to Work Certified™
The Role
We are seeking a Senior Application Security Engineer to join Savvy Wealth at our NYC headquarters as our first dedicated security hire. This is a hands-on, in-the-weeds engineering role. You will execute the security strategy set by our Director of IT & Information Security and our CTO, with day-to-day work centered on identifying vulnerabilities, remediating them, and closing the longer-term gaps that make us exposed, both in our product and in the SaaS tools our teams use every day.
Savvy is an AI-forward company. Most of our engineering is AI-assisted, and we enable people across the business, including non-technical roles, to build with AI coding tools. That enablement is a core part of how we work, and we intend to keep it. Your job is to make it safe: setting security hygiene standards in our codebases, building guardrails around AI-assisted development, and partnering closely with our internal AI team so that speed and security move together. You will make the secure path the easy path.
This role is deliberately not a compliance or GRC position. There are no audits to run, no certifications to chase, and no questionnaires to fill out. This is purely technical security work: finding and eliminating the vectors that make us vulnerable.
Responsibilities:
Own vulnerability management end to end: identify, triage, prioritize by real-world risk, and drive remediation to closure across our product, codebases, and cloud infrastructure (AWS, GCP, Cloudflare)
Build and operate our AppSec tooling pipeline: secrets scanning in CI and at the git layer, SCA/dependency scanning with triage SLAs, and SAST rollout on our most sensitive repos, tuned for signal over noise
Set and enforce security hygiene standards within our codebases, including code review standards that explicitly account for AI-generated code (authorship transparency, mandatory human review on security-sensitive paths)
Partner with our internal AI team to design guardrails that keep AI-assisted development, including vibe coding by non-technical builders, safe by default: sanctioned tooling, data handling boundaries, dependency vetting, and secure defaults for AI-built integrations
Secure the SaaS stack: harden configurations, review OAuth grants and third-party integrations, reduce misconfiguration risk across platforms like Google Workspace, GitHub, Rippling, and Slack
Help establish conditional access and identity-layer controls in partnership with IT (SSO, phishing-resistant MFA, managed-device posture)
Define cloud and SaaS configuration baselines for the infrastructure footprint we operate
Contribute to detection and response readiness: high-signal detections (new OAuth grants, mass code-host downloads, credential anomalies) and participate in incident response when needed
Work cross-functionally with Engineering, IT, and the internal AI team; clearly articulate risk, remediation paths, and tradeoffs to both technical and non-technical stakeholders
Must have:
5+ years of hands-on security engineering experience, with significant time in application security or product security in a small security engineer organization
Strong software engineering fundamentals; comfortable reading, writing, and remediating code, not just filing findings
Track record of enforcing security across technical and non-technical teams without slowing anyone down. The goal isn't to restrict how people work, it's to keep us safe while they keep working the way they need to.
Experience embedding security into existing workflows rather than bolting it on
Deep experience with the modern AppSec toolchain: secrets scanning, SCA/dependency scanning, SAST, and CI/CD security integration (GitHub-centric)
Practical experience securing SaaS environments: OAuth and third-party app review, configuration hardening, and least-privilege access design
Working knowledge of cloud security across AWS and/or GCP, and edge/CDN security (Cloudflare)
A pragmatic, risk-based mindset: you prioritize by what actually gets exploited, ship iteratively, and avoid drowning teams in noise
Strong perspective on AI-assisted development security: you understand how AI coding tools change the shape of AppSec risk (hallucinated dependencies, leaked secrets, insecure patterns at scale) and how to build guardrails without killing velocity
Excellent communication skills and ability to work independently in a fast-paced environment
Strong writing skills; Savvy is a written culture
Nice to have:
Experience building security programs at an early-to-mid stage company, taking a function from reactive to systematic
Experience with SaaS security posture management, CSPM, or identity threat detection
Familiarity with securing LLM-based tooling, agentic workflows, or internal AI platforms
Detection engineering experience (SIEM/MDR, high-signal alerting)
Fintech or financial services environment experience
Offensive security background (pentesting, bug bounty, red team) that informs how you defend
Benefits:
Competitive salary and equity package
Unlimited PTO + paid company holidays
Access to holistic medical, dental, and vision plans
Company 401(k) (including Mega backdoor Roth options), Commuter, and HSA/FSA plans
NYC office in Union Square
Lunch and snacks provided in the office, & dinner if you stay late
Access to virtual mental health care (Spring Health) and health concierge (Rightway) to help you find the right care
Access to counseling for stress management, dependent care, nutrition, fitness, legal, and financial issues (Guardian WorkLifeMatters EAP)
- ...covering secrets scanning, SCA/dependency scanning, SAST, and CI/CD security integration. Define and enforce secure coding and code... ...and contribute to incident response readiness. Work with Engineering, IT, and the internal AI team to communicate risks, remediation...SuggestedFull timeWork at office
- ...Capital. Join us and help build the platform engineers turn to ship AI products. THE ROLE... ...seeking an experienced and proactive Security Engineer to help us build, maintain,... ...infrastructure platform. As one of the first dedicated security hires at Baseten, you will...SuggestedFlexible hours
- ...Security EngineerNelo is a leading consumer fintech and e-commerce platform in Mexico... ...one. As we scale, we are creating a dedicated Security Engineer role with broad ownership across... ...implementationsReview designs and PRs with a security-first lensWhy you should applyYou have...SuggestedWork at office
$100k
...the pipeline, and the work of making Kaizen federal-ready is currently spread across a handful of engineers. That doesn't scale. We're hiring our first dedicated security engineer to sit on the platform team and own this end to end: architect the controls, write the SSPs...SuggestedWork at officeRemote workHome office$145k - $170k
The Role The Senior Security Engineer is a newly established senior individual contributor role... ...into security, bringing an automation-first foundation to detection and governance... ...the laws enforced by the EEOC and are dedicated to going above and beyond in fostering...SuggestedTemporary workWork at officeLocal areaRemote work- The Position As our first dedicated Senior Security Engineer, you will join a remote, global health‑tech team that works at the intersection of genomics, AI, and consumer health. You will report to the Head of Engineering, partner closely with DevOps, bioinformatics, and...Remote work
$234k - $286k
...Inc. ngrok is an all-in-one cloud networking platform that secures, transforms, and routes traffic to services running... ...and companies who rely on us trust us with that. As our first dedicated Security Engineer, you won't be inheriting a sprawling program or a backlog...Permanent employmentFull timeWork at officeLocal areaRemote workHome officeFlexible hoursShift work- ...Lime is seeking an experienced Senior Security Engineer to join our Product Security team. In this... .... We're a fast-paced, lean, and remote-first company, so we're looking for someone... ...Experience: 5+ years of experience in a dedicated product security, application security,...Local areaRemote workShift work
$300 per month
Security Operations Engineer We're hiring our founding Security Operations Engineer to help build and scale our security program from the ground... ...who wants to shape security from the ground up. As our first dedicated Security Engineer, you'll partner with the IT & Security...Full timeWork at office- ...Security Engineering @ Clay We're building a modern security organization from the ground up. We're hiring senior or staff-level security engineers who are strong software engineers first, with deep expertise in either Cloud Security or Application Security and...Flexible hours
$230k - $290k
...across organizations without compromising security or reliability. Continue cloud agent... ...your work reaches hundreds of thousands of engineers every day, we'd love to have you. The... ...moment in our growth and become the first engineer focused specifically on Enterprise...Work at officeRemote workFlexible hours$140k - $190k
...About Method Security Method Security is dedicated to reshaping cybersecurity in an era where AI-driven threats are growing rapidly. Our mission is... ...future of cybersecurity. Role Overview As a Security Engineer at Method Security, you will be instrumental in...Shift work- ...Security is at the foundation of Zizy’s mission to ensure that artificial general intelligence... .... About the Role As a Software Engineer focused on Security Partnerships on the... ...an AI research and deployment company dedicated to ensuring that general-purpose artificial...
- ...issues fixed. You’ll lead application security across our SaaS and AI products as part of our infrastructure team within Engineering. Working directly with product managers and... ..., GDPR, HIPAA, PCI DSS) Experience as a first or early security hire, or building security...Shift work
$180k - $258k
...since been well funded by a world-class group of funds (8VC, First Round Capital, BoxGroup) + angel investors. We're now helping... ...written by our founders. The Role We're looking for a Senior Security Engineer who is ready to elevate the safety and security of our...Flexible hours- ...Bringing crypto to everyone About the team Engineering at Privy is distinguished by: High... ...knowledge - you will often be "the PM". Security mindset: A great portion of our product is trust. While we have a dedicated security team, every engineer brings...Flexible hours
$200k - $255k
About Cape Cape is America’s privacy-first mobile carrier. Our mission is to be a force... ...quo, we decided to fix it. National security professionals, journalists, parents, and... ..., you will collaborate with world-class engineers, architects, and visionaries, and work across...Odd jobImmediate start- ...and Paradigm’s expertise in crypto tech. Tempo’s payment-first design provides a scalable, low-cost predictable backbone... ...for the fences — join us! The Role You'll be Tempo's first dedicated product security engineer, standing up application and infrastructure security from...
$165k - $215k
...create it. Who you are Metropolis is seeking a Senior Security Engineer to establish and lead a dedicated infrastructure and network security engineering... ...experience. Our corporate team members hold to our office-first model, which requires employees to be on-site at...Temporary workWork at officeLocal areaRemote work$165k - $200k
...other leading software investors. We are looking for a Senior Security Engineer who views security as an engineering challenge, not a... ...-default" APIs and deployments. Harden the Perimeter: Take a first-principles approach to hardening authentication and access control...Remote workWork from homeHome officeRelocation package$170.4k - $255.7k
...responsible for identifying vulnerabilities and security weaknesses across Stripe's systems,... ...security posture. We are builders first. Our team develops custom tooling, automation... ...We believe the best offensive security engineers are equal parts hacker and engineer. The...Remote workWork from homeWorldwide- Your Role: Security Engineer We're looking for an experienced, hands-on Security Engineer to secure XBOW's product, cloud, and platform as we... ..., detail-oriented, and a proactive communicator in remote-first teams Advantageous- Multi-cloud experience beyond AWS (e.g.,...Full timeContract workRemote work
$200k - $240k
...a diverse, global presence. The Liftoff Security team protects Liftoff's customers, users... ...systems that defend it, and partner with engineering teams as they ship new products and... ...OR, PA, TX, UT, and WA. We are a remote-first company with US hubs in Redwood City, Los...Full timeRemote work- ...just maintain them), this is a good time to join. Position: Security Engineer - Cloud & Infrastructure Security AWS Location: Remote Role Overview... ...directly into cloud-native infrastructure using automation-first practices. Primary Roles and Responsibilities : Design,...Remote work
$100k - $135k
...children with special health care needs. We deliver 24/7 virtual first and in home medical, behavioral, and social care, working... ...commitment to children with medical complexity. What You’ll Do As a Security Engineer, you will help operate, tune, and improve the technologies...Temporary work$160k - $200k
...you find get triaged, remediated, fixed. Security that ships as code Your work produces... ...hardened configs, detection rules, and tests. Engineers see you as someone who makes their... ...triage, LLM-assisted log analysis, automated first-pass audits of new contracts and...Work at officeRemote workWork from homeHome office$210k - $270k
...healthcare, yet both are often harder to secure than they should be. By integrating AI agents... ...EliseAI is looking for a Senior Security Engineer to join our team and help protect our... ...development Build and embed security-first application primitives across our...Work at officeLocal areaRelocation- ...IT Security EngineerPosition Summary:IT Security Engineer· CrowdStrike alert coordination and analysis, CS sensor deployment coordination, CSPM configuration·... ...technology-driven client experiences that put the users first, providing an unparalleled experience. This results...
$175k - $250k
...We are looking for an IT Security Engineer with a strong Windows engineering background and practical exposure to modern platform security controls to join a global team dedicated to securing Jane Street’s IT platforms. In this role, you will help secure our internal...Remote workFlexible hours$10k
...saves 5% and grows revenue 16% in their first year – far in excess of businesses operating... ...You’ll be the architect of our endpoint security posture across the full fleet — macOS,... .... You’ll partner with IT, SecOps, and engineering teams to sharpen our telemetry and detections...Full timeWork at officeRemote workHome officeRelocation packageFlexible hours
Do you want to receive more vacancies?
Subscribe and receive similar vacancies to First Dedicated Security Engineer. Be the first to apply!
- dlp security engineer New York, NY
- application security engineer New York, NY
- principal security engineer New York, NY
- security software engineer New York, NY
- aws cloud security engineer New York, NY
- sr security engineer New York, NY
- endpoint security engineer New York, NY
- offensive security engineer New York, NY
- sr information security engineer New York, NY
- security infrastructure engineer New York, NY

