Job Title:
Staff Engineer II - CyberLocation:
Block 23What you'll do:
As a Staff Engineer II – Cyber, you will serve as a technical leader responsible for end-to-end ownership of the bank’s cyber defense platforms, with a strong focus on Attack Surface Management (ASM) and Continuous Threat Exposure Management (CTEM). You will drive a proactive, risk-based security program that continuously discovers, prioritizes, and reduces cyber exposure across internal and external environments.This role combines deep engineering expertise, platform ownership, and strategic influence, leveraging tools such as CSPM, Vulnerability & Exposure Management, AV/EDR, Phishing, and DLP platforms to deliver integrated security outcomes across cloud, endpoint, network, and data layers.
Additionally, you'll lead the continuous review and improvement of the defense, auditing, access standards, tactics, and techniques to meet regulatory guidelines as well as owning the resiliency of cyber applications and platforms via routine disaster recovery exercises. You'll partner with vendors routinely to optimize cyber defense, auditing, and access products, as well as ensure costs/licenses do not exceed expectations, and that certificates do not expire while maintaining capacity planning to ensure quality end user experience.
- Engineer and operationalize a Continuous Threat Exposure Management (CTEM) program, including:
- Asset discovery across cloud, on-prem, and internet-facing environments.
- Risk-based prioritization of vulnerabilities and exposures.
- Validation of findings through real-world context and exploitability.
- Coordination of remediation and risk reduction efforts across IT and Cyber teams.
- Lead Attack Surface Management (ASM) capabilities using tools such as Assetnote and external scanning platforms:
- Identify and map internet-exposed assets (IPs, domains, cloud services).
- Validate exposures (open ports, public access, misconfigurations, weak controls).
- Provide continuous visibility into known and unknown attack surfaces.
- Engineer and operationalize a SaaS Security Posture Management (SSPM) technology:
- API discovery across cloud, on-prem, and internet-facing environments.
- Privilege Analysis, API development for 3rd party SaaS platforms to enforce the principle of least privilege .
- Validation of findings and reporting to fix misconfigurations and excessive permissions.
- Coordination of remediation and risk reduction efforts across IT and Cyber teams.
What you'll need:
- 6+ years of advanced cybersecurity experience.
- Bachelor's degree in related field required.
- Advanced knowledge of general Financial Services or Banking is preferred.
- Working knowledge of Linux and PowerShell. Solid understanding of authentication protocols SAML, SSO, and LDAP. Solid understanding of concepts regarding ASM, CTEM, DLP, CASB, CSPM, Firewall, SSL/TLS, Vulnerability Scanners, and EDR.
- Solid understanding of OSI layers, DNS, SMTP, etc. for troubleshooting application functionality.
- Advanced experience of CIS, NIST, MITRE, and Administration of either or all within organizations
- Advanced speaking and writing communication skills.
- Demonstrated leadership in security operations architecture or detection engineering.
- Proven ability to translate technical findings into executive‑level risk context.
Benefits you’ll love:
We offer all the important things you'd want — like competitive salaries, an ownership stake in the company, medical and dental insurance, time off, a great 401k matching program, tuition assistance program, an employee volunteer program, and a wellness program. In addition, you’ll have the opportunity to bolster your business knowledge, learning the ins and outs of how successful companies operate and manage their finances, giving you invaluable hands-on experience to help grow your career!
About the company:
Western Alliance Bank, Member FDIC, is a wholly owned subsidiary of Western Alliance Bancorporation. Serving clients nationwide, Western Alliance Bank includes six legacy bank brands — Alliance Association Bank, Alliance Bank of Arizona, Bank of Nevada, Bridge Bank, First Independent Bank and Torrey Pines Bank — that remain part of the company’s heritage, as well as AmeriHome Mortgage, a Western Alliance Bank Company.
Western Alliance Bancorporation is committed to equal employment and will consider all qualified applicants without regard to race, sex, color, religion, age, nation origin, marital status, disability, protected veteran status, sexual orientation, gender identity or genetic information. Western Alliance Bancorporation is committed to working with and providing reasonable accommodations for individuals with disabilities. If you are an individual with a disability and require a reasonable accommodation to complete any part of the application process and/or need an alternative method of applying, please email [email protected] or call 602-386-2488. When contacting us, please provide your contact information and state the nature of your accessibility issue. We will only respond to inquiries concerning requests that involve a reasonable accommodation in the application process.
© Western Alliance Bancorporation
Skills Required
- 6+ years of advanced cybersecurity experience
- Bachelor's degree in related field
- Advanced knowledge of Financial Services or Banking
- Working knowledge of Linux and PowerShell
- Solid understanding of authentication protocols SAML, SSO, and LDAP
- Solid understanding of ASM, CTEM, DLP, CASB, CSPM, Firewall, SSL/TLS, Vulnerability Scanners, and EDR
- Solid understanding of OSI layers, DNS, SMTP for troubleshooting
- Advanced experience with CIS, NIST, MITRE and administration of frameworks
- Advanced spoken and written communication skills
- Demonstrated leadership in security operations architecture or detection engineering
- Proven ability to translate technical findings into executive-level risk context
Western Alliance Bank Compensation & Benefits Highlights
The following summarizes recurring compensation and benefits themes identified from responses generated by popular LLMs to common candidate questions about Western Alliance Bank and has not been reviewed or approved by Western Alliance Bank.
-
Strong & Reliable Incentives — Feedback suggests annual bonuses are broadly available and can materially lift total compensation when business conditions are favorable. Participation spans many roles beyond executives.
-
Equity Value & Accessibility — Equity grants are described as widely accessible to employees at multiple levels, adding long‑term value to the package. This breadth helps align employees with company performance.
-
Retirement Support — The 401(k) program is positioned as a standout with an employer match structure viewed as stronger than common offerings. Automatic enrollment reinforces accessibility and participation.
Western Alliance Bank Insights
What We Do
Western Alliance Bancorporation (NYSE: WAL) is one of the country’s top-performing banking companies. Its primary subsidiary, Western Alliance Bank, Member FDIC, offers a full spectrum of tailored commercial banking solutions and consumer products, all delivered with outstanding service by banking and mortgage experts who put customers first. Serving clients across the country wherever business happens, Western Alliance Bank operates individual, full-service banking and financial brands with offices in key markets nationwide.








