For this behavior i don't think you will be able to preserver security after removing the Alias.
Your best bet will be get a screen short of the Group where Alias is set and after removing the alias assign the AD group back to the same Enterprise Group.