{"id":1149737,"url":"https://alion.io/job/alloy-senior-cloud-security-engineer","title":"Senior Cloud Security Engineer","company":{"id":58425,"name":"Alloy","domain":"alloy.com","url":"https://alion.io/company/alloy-com","size_band":"201-500","is_staffing_agency":false,"employer_type":"direct","is_intermediary":false,"listed_via":null,"ats_vendor":"Greenhouse","truth_index":{"grade":"B","score":75,"open_postings":9,"ghost_share":0,"stale_share":1,"repost_share":0,"time_to_fill_p50_days":null,"computed_at":"2026-09-29T05:45:00Z"}},"role":"Security","role_family":"Security","seniority":"senior","employment_type":null,"work_mode":"hybrid","remote_scope":null,"remote_scope_basis":null,"remote_working_hours":null,"hiring_geo_confidence":"structured","locations":["New York, United States"],"countries":["US"],"hiring_countries":[],"hiring_countries_total":0,"salary":{"min":163000,"max":206000,"currency":"USD","period":"year","gross":null,"usd_annual":206000},"salary_estimate":null,"experience_years_min":3,"visa_sponsorship":false,"relocation_package":false,"has_equity":true,"technologies":[{"name":"Amazon EKS","optional":false},{"name":"AWS","optional":false},{"name":"IAM","optional":false},{"name":"Kubernetes","optional":false},{"name":"Least Privilege","optional":false},{"name":"Python","optional":false},{"name":"SIEM","optional":false},{"name":"Terraform","optional":false},{"name":"TypeScript","optional":false}],"status":"live","first_seen_at":"2026-09-23T15:52:17Z","employer_posted_date":"2026-09-23","last_verified_at":"2026-09-29T16:37:47Z","board_verified":true,"closed_at":null,"days_open":6,"trust":{"level":"ok","repost_count":null,"flags":[],"days_open":6},"description":"Alloy is where you belong!\nAlloy is the AI-powered identity and fraud prevention platform that accelerates onboarding, stops fraud, and scales compliance across the customer lifecycle so financial organizations can grow without limits. More than 900 of the world's leading financial institutions and fintechs trust Alloy for smarter risk management that drives growth.\nThrough our values: Be Bold, Go Fast, Collaborate, and Celebrate Our Differences, we are creating a workplace where you can grow, thrive, and belong. See how we’ve been continuously recognized and named one of Inc. Magazine’s Best Workplaces, Forbes America’s Best Startup Employers, Best Fintech to Work for by American Banker, year after year.\nCheck out our investors and read more about us here.\nAbout the team\nProduct Security covers application security and cloud security at Alloy. Our customers are banks and fintechs, so the state of our security program is not an internal matter. It shows up in client due diligence, in what we can sell, and in whether deals close. The team is small and the program is still being matured, which means the person in this seat shapes how engineering across the company designs and ships infrastructure rather than inheriting someone else's finished playbook.\nAlloy operates in a hybrid-work environment. We look to foster collaboration and community by having our local employees onsite three days a week.\nWhat you'll be doing\nYou'll own the security of Alloy's AWS environment and the tooling that keeps it visible. You will work closest with the Infrastructure team, but your reach will extend to every engineering team.\nPartner with the Infrastructure team to build security into new cloud infrastructure as it is designed, and act as the security point of contact for new builds\nLead initiatives you scope yourself to reduce cloud infrastructure risk in ways that are repeatable and maintainable\nBuild alerts, detections, and dashboards in our CSPM and SIEM, and write the runbooks that make them actionable for the people who get paged\nOwn CSPM findings end to end, from triage through remediation, including the Terraform changes that fix the problem at its source\nDrive AWS permissions and network design toward least privilege, and debug both without widening the attack surface in the process\nJoin the on-call rotation, investigate security incidents to root cause, and put controls in place so the same incident does not recur\nWho we’re looking for\nMust-haves:\n3+ years in cloud security, or in cloud infrastructure with a security focus, primarily in AWS\nHands-on with AWS networking and security services: VPC design, security groups, NACLs, WAF, GuardDuty, Config, Inspector, KMS, and IAM\nProvisioning infrastructure as code with Terraform and working knowledge of Kubernetes or EKS\nWorking experience with a SIEM and a CSPM, including tuning alerts and building detections that engineers act on\nScripting or programming in Python or TypeScript, with an eye for where the code itself creates risk\nOn-call incident response experience, and the ability to explain risk and remediation to engineers who do not work in security\nNice-to-haves:\nAWS Organizations and multi-account environments\nAWS Solutions Architect Associate or AWS Security Specialty\nPublic key infrastructure and applied cryptography\nAlloy is committed to fair and equitable compensation practices. Below is the anticipated starting base compensation range for this role; however, pay may vary depending on job-related knowledge, in-demand skills, relevant experience, and/or geography. In addition to a competitive base salary, this position is also eligible for equity awards in the form of stock options (ISOs) as well as a competitive total benefits package. Your recruiter will be happy to walk you through the details and what compensation could look like for you specifically!\nThis position has a salary range of $163,000 - $206,000. \nBenefits and Perks \nUnlimited PTO and flexible work policy\nEmployee stock options\nMedical, dental, vision plans with HSA (monthly employer contribution) and FSA options\n401k with 100% match up to 4% of annual employee compensation \nEligible new parents receive 16 weeks of paid parental leave \nHome office stipend for new employees\nAnnual Learning & Development annual stipend\nWell-being benefits include access to ClassPass, OneMedical, UrbanSitter, and Spring Health \nHybrid work environment: employees are expected to work Tuesdays through Thursdays from our HQ in Union Square, Manhattan. Tasty lunches catered from a variety of local restaurants and frequent employee-organized cultural events contribute to our positive office energy. On Monday/Friday most employees Zoom into work from home while some take advantage of the quieter office.\nHow to apply\nApply right here! You've found the application!\nAlloy is proud to be an equal-opportunity workplace and employer. We’re committed to equal opportunity regardless of race, color, ancestry, religion, gender, gender identity, parental or pregnancy status, national origin, sexual orientation, age, citizenship, marital status, disability, or veteran status. We are committed to an inclusive interview experience and provide reasonable accommodations to applicants with visible and invisible disabilities. We encourage applicants to share needed accommodations with their recruiter.\nAll Alloy jobs are listed on our careers page. Any communication during the recruitment process, including interview requests or job offers, will come directly from a recruiting team member with an alloy.com email address. We do not use outside applications or automated text messaging in our recruiting process. We will not ask for any sensitive financial or identification information during the recruiting process. If you’re ever unsure, please contact us directly via our website before sharing personal information.","description_format":"text","description_chars":5891,"description_truncated":false,"requirements":{"experience_years_min":3,"management_years_min":null,"team_size_min":null,"manages_managers":false,"education":null,"security_clearance":false,"languages":[]},"benefits":["401k plan","Equity","Flexible schedule","Home office","Hybrid work","Parental leave","Stock options","Unlimited PTO"],"hiring_locations":[{"name":"United States","iso":"US","kind":"country"}],"hiring_excludes":[],"relocation_offered":false,"industries":["Cloud Security","Fraud Detection","Identity Management","RegTech, AML & Compliance"],"lifecycle":[{"event":"open","at":"2026-09-23T17:14:01Z"}],"liveness":{"score":86,"band":"hot","label":"Hiring now","p_open":1,"p_active":0.86,"p_room":1,"age_days":5,"expected_fill_days":46,"reasons":["conf:4","win:early"],"computed_at":"2026-09-29T05:45:00Z"},"pay":{"stated_usd_annual":206000,"is_top_pay":true},"html_url":"https://alion.io/job/alloy-senior-cloud-security-engineer","json_url":"https://alion.io/job/alloy-senior-cloud-security-engineer.json","meta":{"generated_at":"2026-09-29T21:37:30Z","cache_seconds":300,"methodology":"https://alion.io/methodology","terms":"https://alion.io/terms","contact":"https://alion.io/contact","api":"https://alion.io/developers","usage":{"tier":"search","counted_by":"address","units_charged":0,"used_today":0,"day_limit":null,"remaining_today":null,"minute_limit":null,"resets_at":"2026-09-30T00:00:00Z"}}}