Big4 cybersecurity consultant to Security engineer at a small size company: smart career move or risky jump?
Hi everyone,
I’m looking for advice from people who have moved from a large organisations into a smaller company.
I’m currently in Big4 cybersecurity consulting. The role is stable, hybrid, decent experience for consulting, and gives me exposure to large enterprise clients and mature security environments.
I recently received an offer from a well-established fintech/crypto company with fewer than 100 employees. I would be their first dedicated security engineer, working directly with the CTO and building the security program from the ground up.
The tradeoff is basically:
- Current role: Big4 brand, large clients, stable environment, structured growth, 40hrs/week.
- New role: much more ownership, higher compensation, fully remote, unlimited PTO.
- Current comp: around $78K, likely $85K after promotion in few months
- New comp: $120K base + 20% bonus (144K TC)
For people who made a similar move from consulting or a large organization into a smaller company, How was it?
Did being the first security/security engineering hire help your long-term career, or did the lack of structure make it harder?
I’m mostly trying to understand the career risk vs. upside.
NOTE : I’m also in team matching for a Google L3 Security Engineer role, but it’s been around 9 months, so I’ve almost gave up.