Valon
finance
SeniorSecurityEngineer,Identity&AccessManagement
Neural analysis suggests this role is
optimal for Senior candidates.
“Senior Security Engineer, Identity & Access Management at Valon. Skills: Identity and Access Management (IAM), Enterprise identity solutions, SAML 2.0, OIDC/OAuth 2.0, SCIM, Okta, Azure AD / Entra ID, Google Workspace, GCP, RBAC, PAM, AI. Design and support end-to-end lifecycle of workforce identity systems including identity automation, access management, and least-privilege enforcement across internal systems. Support design of secure identity design patterns for product teams building on Valo”
What You'll Achieve.
Ensure sound programs, processes, and automation in place to safeguard customers’ data; Protect the infrastructure and data for processing billions of dollars of mortgage loans; Secure AI-powered systems and pipelines; Leverage AI tools to optimize security and defense capabilities; Enable security throughout the organization; Continuously evaluate Valon’s security posture; Own the design, implementation, and operation of IAM systems for Valon’s enterprise identity stack; Support security for customer-facing authentication and authorization capabilities embedded in ValonOS; Ensure every identity, human or machine, is governed consistently and securely; Drive mitigation for data security risks
Industry & Context.
On-call duties
What They're Looking For.
Must Have
5+ years in security engineering roles with a core focus on identity and access management, Bachelor's degree in Information Security, Computer Science, Technology or related field, Relevant security certifications (e.g., CISSP, CISM, CCSK, CCSP or similar), Hands-on experience with an enterprise IdP (Okta, Entra ID, or Google Workspace) including SSO, MFA, SCIM, Deep understanding of authentication and authorization models across applications, SAML, OIDC/OAuth 2.0, RBAC, ABAC, and API access controls, Hands-on experience with modern identity security technologies and tooling
Nice to Have
Experience working in high-growth or startup environments is a plus
What You'll Do.
Design and support end-to-end lifecycle of workforce identity systems including identity automation
and least-privilege enforcement across internal systems
Support design of secure identity design patterns for product teams building on ValonOS
Manage and evolve Valon's IdP in conjunction with IT including SSO integrations
conditional access rules
and directory synchronization
Define and enforce RBAC and group-based access policies for internal applications
and development tooling
Support privileged access management (PAM) for internal infrastructure in conjunction with Engineering teams
Design and build AI-assisted workflows that automate and accelerate core IAM operations
Evaluate AI risks across IAM pipelines
ensuring appropriate security controls around data exposure
prompt injection and other threats
Collaborate with Product
and other teams to identify and drive mitigation for data security risks
Support other operational and on-call duties such as vulnerability management
regulatory compliance (SOC 2
incident response and security reviews
How You'll Work.
Team & Collaboration
Connective tissue between IT, Engineering, and Security; Partner closely with Product and Engineering to design and deliver secure, scalable, and trustworthy capabilities for ValonOS; Collaborate with Product, Engineering, Data, Compliance, Legal, and other teams; Engage with external security auditors, pentesting firms, and partners
Communication Scope
Ability to explain complex security concepts to both technical and non-technical stakeholders
Full Job Description
ABOUT THE COMPANY Valon is building the AI-native operating system for regulated finance, starting with mortgage servicing. We're a Series C company backed by a16z, transforming industries that others have written off as too complex to innovate. Rather than build on top of broken legacy systems, we took a different approach: we built and operate our own mortgage servicing business managing $110+ billion in loans. This wasn't the end goal, it was how we deeply understood the complexity needed to build software that actually works in regulated industries. The results speak for themselves. We've transformed mortgage servicing from a 0% margin business into 60%+ margins while dramatically improving customer experience. Major enterprise contracts are now deploying across the industry. ValonOS is our unified platform that makes every process structured and programmable and it is perfectly positioned for the AI era. When everything flows through one system with rich data, AI agents don't just automate tasks, they continuously improve entire operations. Mortgage servicing is just the beginning of our vision to transform regulated industries and beyond. SECURITY AT VALON Our customers entrust us with some of their most sensitive and personal financial information, and it is the ultimate mission of Valon’s Security team to ensure we have sound programs, processes, and automation in place to safeguard our customers’ data. The Security team protects the infrastructure and data for processing billions of dollars of mortgage loans. In addition to protecting Valon’s internal systems, the Security team partners closely with Product and Engineering to design and deliver secure, scalable, and trustworthy capabilities for ValonOS. As AI becomes central to how Valon builds and operates, our team is responsible for securing AI-powered systems and pipelines while also leveraging AI tools to optimize security and defense capabilities. We work cross-functionally across all teams at Valon t
Applying for this Senior Security Engineer, Identity & Access Management role?
Most applicants get filtered before a human reads their resume. See if yours makes the cut.
How to Apply on Ashby
- Ashby is a fast modern ATS — most applications take under 3 minutes.
- The resume parser is strong; verify parsed experience dates and job titles.
- Custom screening questions are often scored algorithmically — answer completely.
- Location field affects geo-based screening; use your actual metro area.
ANONYMOUS · UNFILTERED
What do employees actually say about Valon?
Real rants from real employees. Read before you apply.