{"id":1178712,"url":"https://alion.io/job/saturn-security-engineer-2","title":"Security Engineer","company":{"id":5639,"name":"Saturn","domain":"saturnos.com","url":"https://alion.io/company/saturn","size_band":null,"is_staffing_agency":false,"is_intermediary":false,"listed_via":null,"ats_vendor":"Work at a Startup","truth_index":{"grade":"B","score":75,"open_postings":7,"ghost_share":0,"stale_share":1,"repost_share":0,"time_to_fill_p50_days":null,"computed_at":"2026-09-24T05:45:00Z"}},"role":"Security","role_family":"Security","seniority":"middle","employment_type":"full_time","work_mode":"on_site","remote_scope":null,"remote_scope_basis":null,"remote_working_hours":null,"hiring_geo_confidence":"structured","locations":["London, United Kingdom"],"countries":["GB"],"hiring_countries":[],"hiring_countries_total":0,"salary":{"min":80000,"max":130000,"currency":"GBP","period":"year","gross":null,"usd_annual":171904},"salary_estimate":null,"experience_years_min":3,"visa_sponsorship":false,"relocation_package":false,"has_equity":true,"technologies":[{"name":"AI Agents","optional":false},{"name":"AWS","optional":false},{"name":"CI/CD","optional":false},{"name":"Go","optional":false},{"name":"IAM","optional":false},{"name":"ISO 27001","optional":false},{"name":"OWASP Top 10","optional":false},{"name":"Postman","optional":false},{"name":"Python","optional":false},{"name":"SIEM","optional":false},{"name":"SOC 2","optional":false},{"name":"TypeScript","optional":false}],"status":"live","first_seen_at":"2026-09-24T12:26:24Z","employer_posted_date":"2026-09-24","last_verified_at":"2026-09-24T21:14:38Z","board_verified":true,"closed_at":null,"days_open":0,"trust":{"level":"ok","repost_count":null,"flags":[],"days_open":0},"description":"Your role\nAs a Security Engineer, you will own the security of the systems financial institutions trust with sensitive client data and regulated financial workflows: our applications, our cloud infrastructure and the engineering practices that produce them.\nSaturn is a Series A, Y Combinator-backed company building the AI-native operating system for financial advice. Our platform combines a living data model of the client, AI agents that complete complex advice and operational workflows, and compliance logic embedded directly into how work is produced. That means real client data, real money movements and real regulatory consequences, all moving through systems that are still being built.\nYou will not operate as a gatekeeper or arrive at the end of a project to review it. You are expected to understand how systems actually work, identify where a failure or an attack would cause real harm, and help teams fix it at the right level. Your work is what allows Saturn to meet the security expectations of large financial institutions without slowing engineering down with process for its own sake.\nThe Team\nOur engineers care deeply about craft, speed and quality. They include early and founding team members from companies including Rippling, Postman, Gojek, CRED and Slice.\nYou will work alongside product designers, backend engineers, AI engineers and domain experts with decades of experience in financial advice and compliance.\nWe are building a small, high calibre engineering organisation for people who want genuine ownership, difficult product problems and the opportunity to shape an important company while its foundations are still being formed.\nWhat You’ll Work On\nApplication and API security across Saturn’s web applications, backend services and integrations, including authentication, authorisation, session management and firm-level data separation\n\nAWS security, covering IAM, network controls, secrets, encryption and workload isolation\n\nThreat modelling and security review for new systems, financial workflows, external integrations and AI capabilities, joining projects early enough to change their design\n\nVulnerability management end to end: discovery, prioritisation by real risk, remediation and verification across code, dependencies, cloud resources and employee systems\n\nSecurity tooling and automation, including checks built into CI/CD, so the same work is never done manually twice\n\nDetection and incident response, from logging and alerting through investigation and recovery, turning each incident into a lasting improvement to systems and controls\n\nAI security, including prompt injection, unsafe tool execution, retrieved data and sensitive information disclosure\n\nEvidence and assurance for SOC 2, enterprise security reviews and customer due diligence, plus the reusable security patterns engineering teams adopt as standard\n\nWhat We’re Looking For\nSecurity engineering experience. 3+ years in security engineering, software engineering, infrastructure security or a closely related role, with a track record of improving the security of production software or cloud infrastructure\n\nApplication and API security depth. Strong command of common web and API vulnerabilities including the OWASP Top 10, and practical knowledge of authentication, authorisation, sessions, secrets and encryption\n\nCloud security. Hands-on experience securing AWS or another major cloud platform, including IAM, network security and cloud-native controls\n\nSecure design. You have run threat modelling and architecture reviews, and you recommend proportionate controls that fit the system and its stage rather than the textbook answer\n\nYou build, not just advise. You can write software and automation in Go, TypeScript, Python or a comparable language, and you integrate security checks into how engineers already work\n\nDetection and response. Understanding of security logging, monitoring and incident investigation, and comfort owning a problem through investigation, remediation and verification\n\nRisk judgement at startup pace. You start from the likely harm and attack path, separate material risk from low-value security work, and prioritise sensibly with incomplete information\n\nStrong written communication. You describe risks and mitigations clearly enough that engineers, customers and leadership can act on them, and you document accepted risks rather than leaving them implicit\n\nPreferred\nSecurity engineering in financial services or another regulated domain\nApplication or product security for a B2B SaaS platform, including data isolation in multi-tenant systems\nAWS security services, infrastructure as code, and enterprise identity integrations such as OAuth, OIDC and SAML\nDetection engineering, SIEM or cloud security monitoring, incident response or digital forensics\nSOC 2, ISO 27001 or enterprise customer security reviews\nPenetration testing or working with external security researchers\nWhat We Offer\nCompetitive salary with regular appraisals\nCompetitive equity package at an early stage company with high growth potential\nOur beautiful new five-floor office, “The Dome”, equipped with an onsite gym and roof terrace\nBest-in-class dental and medical insurance\nA dedicated budget for learning and professional development\nAccess to an additional world-class gym and wellness centre two minutes from the office\nA tight-knit, ambitious team that cares deeply about quality and each other","description_format":"text","description_chars":5434,"description_truncated":false,"requirements":{"experience_years_min":3,"management_years_min":null,"team_size_min":null,"manages_managers":false,"education":null,"security_clearance":false,"languages":[]},"benefits":["Equity","Health insurance","Professional development"],"hiring_locations":[],"hiring_excludes":[],"relocation_offered":false,"industries":["Business Process Automation (BPA)","Wealth Management","Financial AI"],"lifecycle":[{"event":"open","at":"2026-09-24T12:26:24Z"}],"liveness":{"score":86,"band":"hot","label":"Hiring now","p_open":1,"p_active":0.86,"p_room":1,"age_days":0,"expected_fill_days":17,"reasons":["conf:1","win:early"],"computed_at":"2026-09-24T23:04:51Z"},"pay":{"stated_usd_annual":171904,"is_top_pay":true},"html_url":"https://alion.io/job/saturn-security-engineer-2","json_url":"https://alion.io/job/saturn-security-engineer-2.json","meta":{"generated_at":"2026-09-24T23:04:51Z","cache_seconds":300,"methodology":"https://alion.io/methodology","terms":"https://alion.io/terms","contact":"https://alion.io/contact","api":"https://alion.io/developers","usage":{"tier":"crawler","counted_by":"address","units_charged":1,"used_today":1286,"day_limit":5000,"remaining_today":3714,"minute_limit":60,"resets_at":"2026-09-25T00:00:00Z"}}}