{"id":1220432,"url":"https://alion.io/job/dtcc-cyber-security-engineering-associate-director","title":"Cyber Security Engineering Associate Director","company":{"id":1759477,"name":"Depository Trust & Clearing Corporation","domain":"dtcc.com","url":"https://alion.io/company/dtcc-com","size_band":"1001-5000","is_staffing_agency":false,"employer_type":"direct","is_intermediary":false,"listed_via":null,"ats_vendor":"Oracle","truth_index":{"grade":"B","score":75,"open_postings":26,"ghost_share":0,"stale_share":1,"repost_share":0,"time_to_fill_p50_days":58,"computed_at":"2026-09-28T05:45:00Z"}},"role":"Leadership","role_family":"Leadership","seniority":"head","employment_type":null,"work_mode":"hybrid","remote_scope":null,"remote_scope_basis":null,"remote_working_hours":null,"hiring_geo_confidence":"structured","locations":["Jersey City, United States"],"countries":["US"],"hiring_countries":[],"hiring_countries_total":0,"salary":null,"salary_estimate":{"min_usd":158000,"max_usd":297000,"period":"year","method":"role_seniority_country_remote_cell","sample_n":1670},"experience_years_min":8,"visa_sponsorship":false,"relocation_package":false,"has_equity":false,"technologies":[{"name":"A2A","optional":false},{"name":"AI Agents","optional":false},{"name":"Anthropic","optional":false},{"name":"API Gateway","optional":false},{"name":"AWS","optional":false},{"name":"AWS Bedrock","optional":false},{"name":"Azure","optional":false},{"name":"CI/CD","optional":false},{"name":"Cortex","optional":false},{"name":"DLP","optional":false},{"name":"GitHub Actions","optional":false},{"name":"IAM","optional":false},{"name":"Kong","optional":false},{"name":"Kong AI Gateway","optional":false},{"name":"Kubernetes","optional":false},{"name":"LLM","optional":false},{"name":"LLM Guardrails","optional":false},{"name":"Model Context Protocol","optional":false},{"name":"OpenAI","optional":false},{"name":"Python","optional":false},{"name":"RAG","optional":false},{"name":"Service Mesh","optional":false},{"name":"Snowflake","optional":false},{"name":"Terraform","optional":false},{"name":"Zero Trust","optional":false},{"name":"NIST 800-53","optional":true},{"name":"NIST AI RMF","optional":true},{"name":"PCI DSS","optional":true},{"name":"Prometheus","optional":true},{"name":"SOC 2","optional":true}],"status":"live","first_seen_at":"2026-09-04T13:57:13Z","employer_posted_date":"2026-09-04","last_verified_at":"2026-09-28T21:19:48Z","board_verified":true,"closed_at":null,"days_open":24,"trust":{"level":"ok","repost_count":null,"flags":[],"days_open":24},"description":"Are you ready to make an impact at DTCC?\nDo you want to work on innovative projects, collaborate with a dynamic and supportive team, and receive investment in your professional development? At DTCC, we are at the forefront of innovation in the financial markets. We are committed to helping our employees grow and succeed. We believe that you have the skills and drive to make a real impact. We foster a thriving internal community and are committed to creating a workplace that looks like the world that we serve.\nThe Information Technology group delivers secure, reliable technology solutions that enable DTCC to be the trusted infrastructure of the global capital markets. The team delivers high-quality information through activities that include development of essential, building infrastructure capabilities to meet client needs and implementing data standards and governance.\nPay and Benefits:\nCompetitive compensation, including base pay and annual incentive\nComprehensive health and life insurance and well-being benefits, based on location\nPension / Retirement benefits\nPaid Time Off and Personal/Family Care, and other leaves of absence when needed to support your physical, financial, and emotional well-being.\nDTCC offers a flexible/hybrid model of 3 days onsite and 2 days remote (onsite Tuesdays, Wednesdays and a third day unique to each team or employee).\nThe Impact you will have in this role:\nBeing a member of CISO Team, this role is critical to enabling the organization’s AI strategy by providing a secure, resilient, and governed platform for AI innovation. The Senior AI Gateway Engineer will play a foundational role in establishing the control plane through which enterprise AI interactions are managed, secured, monitored, and governed, while ensuring the resilience expected of a systemically important financial services organization. The Senior AI Gateway Engineer will lead the architecture, engineering, security, and operational management of our enterprise AI Gateway platform with a primary focus on Kong AI Gateway.\nThis role will serve as the technical authority responsible for enabling secure, resilient, compliant, and scalable consumption of Large Language Models (LLMs), AI Agents, Retrieval Augmented Generation (RAG) services, Model Context Protocol (MCP) services, and Agent-to-Agent (A2A) communications across the enterprise.\nThe successful candidate will combine expertise in Kong AI Gateway, cloud architecture, AI security, identity and access management (IAM), resiliency engineering, and enterprise governance to deliver a highly available AI platform that meets the demands of a regulated financial services environment.\nYour Primary Responsibilities:\nAI Gateway Architecture & Engineering\nDesign, implement, and evolve enterprise AI Gateway solutions using Kong AI Gateway and Kong Enterprise.\nDevelop standardized onboarding patterns for applications, AI agents, and business services consuming AI.\nEngineer reusable integration patterns for OpenAI, Azure OpenAI, AWS Bedrock, Anthropic, Snowflake Cortex, and internal and external AI services.\nImplement intelligent model routing, failover, traffic shaping, and provider abstraction.\nDevelop custom Kong plugins and integrations supporting AI-specific governance and security requirements.\nDefine scalable control plane and data plane deployment architectures across hybrid and multi-cloud environments.\nIdentity & Access Management for AI\nArchitect and implement enterprise-grade identity controls for AI platforms.\nIntegrate Kong AI Gateway with enterprise identity providers and IAM platforms.\nImplement OAuth 2.0, OpenID Connect (OIDC), JWT, mutual TLS (mTLS), RBAC, ABAC, non-human identities, workload identities, and agent identities.\nEstablish fine-grained authorization controls at the model, agent, tool, prompt, and data source levels.\nDesign identity propagation patterns across AI workflows and MCP services.\nPartner with security and compliance teams to establish AI governance and Zero Trust controls.\nAI Security, Governance & Risk Management\nImplement AI security guardrails and policy enforcement mechanisms.\nDesign controls for prompt injection protection, data loss prevention (DLP), PII detection and redaction, content safety enforcement, prompt and response filtering, and model access governance.\nEstablish policy-as-code practices to manage AI controls at scale.\nDefine logging, monitoring, and audit controls supporting regulatory and compliance requirements.\nCollaborate with Risk, Compliance, Legal, Data Protection, and AI Governance teams.\nResiliency, Reliability & Operational Excellence\nDesign highly available and resilient AI platform architectures.\nEstablish enterprise resiliency requirements including multi-region deployment strategies, provider failover, cross-cloud recovery patterns, active-active architectures, disaster recovery, and business continuity controls.\nImplement rate limiting, circuit breakers, load balancing, traffic throttling, semantic caching, and capacity management.\nDefine and manage Service Level Objectives (SLOs), Service Level Indicators (SLIs), error budgets, Recovery Time Objectives (RTOs), and Recovery Point Objectives (RPOs).\nConduct architecture reviews, resilience testing, and failure scenario exercises.\nCloud & Data Platform Integration\nDesign AI access patterns across Microsoft Azure, Amazon Web Services (AWS), and Snowflake.\nIntegrate AI Gateway services with Azure OpenAI, AWS Bedrock, Snowflake Cortex, vector databases, data protection platforms, and enterprise observability tooling.\nEnsure secure connectivity and standardized governance across multi-cloud environments.\nObservability & Platform Operations\nBuild enterprise observability capabilities for AI workloads.\nImplement monitoring, metrics, tracing, and audit logging.\nAnalyze token consumption, latency, model utilization, cost optimization opportunities, and security events.\nCreate operational dashboards for engineering, security, risk, and executive stakeholders.\nSupport incident response and platform troubleshooting efforts.\n**NOTE: The Primary Responsibilities of this role are not limited to the details above. **\nQualifications:\nBachelor's degree in Computer Science, Cyber Security, Information Technology, Engineering, and/or related discipline.\nMaster's degree preferred.\nMin 8 years of relevant experience\nTalents Needed for Success:\n8+ years of experience designing and operating enterprise API, application, or cloud platforms.\n5+ years of experience in cloud architecture and security.\n3+ years working with AI/ML platform technologies or enterprise AI deployments.\nHands-on experience implementing and managing Kong Gateway and Kong Enterprise solutions.\nExperience within regulated industries such as financial services, banking, insurance, or capital markets strongly preferred.\nTechnical Skills\n\nAI Gateway & Platform Technologies\n\nKong AI Gateway; Kong Enterprise; API gateway technologies; service mesh concepts; MCP and Agent-to-Agent architectures; LLM platforms and AI orchestration frameworks.\n\nCloud Platforms\n\nMicrosoft Azure; Azure OpenAI; AWS; AWS Bedrock; hybrid and multi-cloud architectures.\n\nData & Analytics Platforms\n\nSnowflake; Snowflake Cortex; vector databases; RAG architectures; data governance platforms.\n\nIAM & Security\n\nOAuth 2.0; OIDC; JWT; SAML; mTLS; privileged access management; secrets management; Zero Trust architecture; identity federation; machine and agent identity.\n\nProgramming & Automation\n\nPython; Terraform; Kubernetes; GitHub Actions; CI/CD; Infrastructure as Code; Policy as Code.\n\nPreferred Qualifications\nKong Certified Professional certification.\nAWS Solutions Architect certification.\nMicrosoft Azure Solutions Architect certification.\nCISSP, CCSP, or equivalent security certification.\nExperience implementing AI security controls and governance frameworks.\nFamiliarity with NIST AI RMF, NIST 800-53, NYDFS 500, PCI DSS, SOC 2, and other financial services regulatory requirements.\nExperience with DSPM, DLP, and enterprise data protection controls.\nKey Success Metrics\nSuccessful deployment and adoption of enterprise AI Gateway services.\nReduction of direct AI provider integrations through centralized governance.\nAchievement of enterprise resiliency and availability targets.\nCompliance with security, privacy, and regulatory requirements.\nImproved AI observability, auditability, and cost management.\nSuccessful implementation of AI identity and authorization controls.\nReduction in AI-related security risks and policy violations.\nThe salary range is indicative for roles at the same level within DTCC across all US locations. Actual salary is determined based on the role, location, individual experience, skills, and other considerations. We are an equal opportunity employer and value diversity at our company. We do not discriminate on the basis of race, religion, color, national origin, sex, gender, gender expression, sexual orientation, age, marital status, veteran status, or disability status. We will ensure that individuals with disabilities are provided reasonable accommodation to participate in the job application or interview process, to perform essential job functions, and to receive other benefits and privileges of employment. Please contact us to request accommodation.","description_format":"text","description_chars":9318,"description_truncated":false,"requirements":{"experience_years_min":8,"management_years_min":null,"team_size_min":null,"manages_managers":false,"education":{"level":"bachelor","optional":true},"security_clearance":false,"languages":[]},"benefits":["Life insurance","Professional development"],"hiring_locations":[{"name":"United States","iso":"US","kind":"country"}],"hiring_excludes":[],"relocation_offered":false,"industries":["Cybersecurity","Stock Exchanges & Market Infrastructure","Custody & Fund Administration"],"lifecycle":[{"event":"open","at":"2026-09-25T11:47:32Z"}],"liveness":{"score":53,"band":"ok","label":"Likely open","p_open":1,"p_active":0.589,"p_room":0.9,"age_days":23,"expected_fill_days":58,"reasons":["conf:1","stale_co","velocity","win:mid","comp:brand"],"computed_at":"2026-09-28T05:45:00Z"},"pay":null,"html_url":"https://alion.io/job/dtcc-cyber-security-engineering-associate-director","json_url":"https://alion.io/job/dtcc-cyber-security-engineering-associate-director.json","meta":{"generated_at":"2026-09-28T22:46:59Z","cache_seconds":300,"methodology":"https://alion.io/methodology","terms":"https://alion.io/terms","contact":"https://alion.io/contact","api":"https://alion.io/developers","usage":{"tier":"crawler","counted_by":"address","units_charged":1,"used_today":426,"day_limit":5000,"remaining_today":4574,"minute_limit":60,"resets_at":"2026-09-29T00:00:00Z"}}}