Information Security Support Specialist; m/f/d
Publicado en 2026-09-30
-
TI/Tecnología
Seguridad cibernética, Seguridad de la Información
About the Job
Digital Resilience is a central function within Allianz Technology, responsible for ensuring that IT services across the group meet regulatory and internal information security standards. Within Customer & Sales IT (CSI), a department in the CT1
GER function, we work in agile, hybrid teams consisting of Allianz Technology and Allianz Deutschland colleagues. Our team drives information security governance and challenging security initiatives across multiple tribes and squads.
We are looking for a proactive and communicative Information Security Support Specialist to join our agile team and help us strengthen the security posture of CSI – taking ownership of diverse IS initiatives and supporting the Risk Shield governance process.
As an Information Security Support Specialist, you act as a generalist within the Digital Resilience function, taking on challenging information security initiatives across CSI. This is not about ticking boxes – it's about driving real improvements in a complex stakeholder environment where self-initiative, self-organization, and strong communication are key to success. You work as part of an agile, hybrid team and collaborate closely with tribes, squads, and central security functions.
Whatyou do
- Take ownership of and drive challenging IS initiatives across CSI, including topics such as vulnerability management, source code scanning, Identity & Access Management (IAM), authorization concepts, and toxicity remediation.
- Coordinate and support pentest activities, liaising between external/internal testers, application teams, and ISOs to ensure findings are addressed.
- Contribute to risk management activities, including supporting the lifecycle of information risks in Archer and Presto. Assist in audit preparation and audit support, ensuring evidence readiness and tracking of open findings.
- Support the Allianz Risk Shield (ARS) process within CSI, assisting teams through the evaluation, attestation, evidence, and completion phases. Navigate a complex stakeholder landscape across CSI tribes and squads, ISOs, central IS functions, and management – communicating effectively at all levels.
- Help coordinate Risk Shield cycles, including stakeholder communication, timeline tracking, and issue follow-up. Assist with data verification and maintenance in tools such as Service Now, ADOIT, Presto, and Archer.
- Gather, structure, and document IS knowledge on Confluence, SharePoint, and Wiki pages, contributing to a well-maintained knowledge base for the team and our AI agents. Proactively identify gaps, raise issues, and propose solutions – taking shared responsibility for the team's success.
- Stay up to date on evolving IS topics, including new threats, regulatory changes, and internal initiatives. Explore the use of GenAI tools (e.g., Claude Enterprise) to improve documentation, reporting, and process efficiency.
- Bachelor's degree in Information Technology, Information Security, Business Informatics, or a related field – or equivalent practical experience, with 0–3 years of professional experience in information security, IT compliance, IT governance, or a related field. Motivated career starters with strong academic backgrounds are welcome.
- Basic understanding of or genuine interest in information security topics such as vulnerability management, source code security, Identity & Access Management, authorization concepts, pentest coordination, or IT security incident management.
- Understanding of regulatory frameworks and internal security standards (e.g., AFRIT, corporate rulebooks). Proficiency in Microsoft Office (Excel, Word, PowerPoint) and collaboration tools (MS Teams, SharePoint, Confluence). Willingness to learn and work with enterprise tools such as…
(Si este trabajo está en su jurisdicción, entonces puede estar usando un Proxy o VPN para acceder a este sitio, para seguir avanzando, debe cambiar su conectividad a otro dispositivo móvil o PC).