Attack Surface Management Expert (m/f/d)
BARCELONA, B, ES, 08005
Allianz Services is proud to serve and be part of Allianz Group, one of the world's leading insurers and asset managers. Our global footprint, with more than 8000 employees located across ten countries and four continents, enables us to unlock value for our partners across the insurance value chain and deliver superior client experience within Allianz Group. At Allianz Services, we have a strong specialization in core insurance operations, shared services, business analytics, engineering, and management consulting. Our people and our trusted relationships with partners are what matter most. These are rooted in our values of compassion, integrity, and expertise and we strive to continuously evolve, improve, and deliver excellence while contributing successfully to the transformation of Allianz. Caring actively for the environment, for people, and for our customers is what makes us a great place to work and together we are shaping a better and more caring tomorrow.
Allianz Services is a company which belongs to the legal entity, Allianz Technology SE.
Role overview
The roles within this team form part of the Digital Resilience as a Service framework, collaborating closely with Group Information Security and Allianz Technology to ensure consistent execution of security processes, reliable risk insights, and alignment with Group-wide security policies and standards.
What you do:
- Engage with senior security, IT, and business stakeholders to align attack surface management (ASM) initiatives with organizational risk priorities.
- Present ASM findings, risk assessments, and remediation progress to both technical and non-technical audiences, ensuring clarity and actionable outcomes.
- Continuously identify and maintain visibility of externally exposed systems, services, domains, and cloud resources across all business units and geographies.
- Establish processes for ongoing asset discovery and inventory, ensuring comprehensive coverage of the organization’s digital footprint.
- Operate, fine-tune, and optimize ASM platforms and tools.
- Integrate ASM solutions with vulnerability management, threat intelligence, and incident response workflows to enhance automation and efficiency.
- Validate identified risks and exposures, ensuring accuracy and relevance.
- Work closely with IT, DevOps, and application owners to facilitate timely mitigation, track remediation progress, and resolve issues.
- Develop and maintain dashboards to visualize ASM findings, trends, and remediation status for various audiences, including executives and operational teams.
- Regularly report on key metrics such as asset inventory completeness, exposure trends, remediation SLAs, and risk reduction progress.
What you bring:
- Higher education degree in Information Security, Computer Science, Engineering, or a related technical or quantitative field.
- Hands-on experience in attack surface management, including discovery, vulnerability identification, remediation processes, and/or IT operations (e.g., patch management, configuration management, infrastructure support).
- Familiarity with internet-facing systems, cloud infrastructures (IaaS/PaaS/SaaS), domain and certificate management, ad network perimeter configuration.
- Excellent teamwork and communication skills, with the ability to work cross-functionally and engage stakeholders across IT and security teams.
- Good English skills (written and spoken); additional languages welcome.
- We highly welcome candidates with a genuine interest and affinity for Information Technology (IT) and Generative Artificial Intelligence (GenAI), as these attributes are considered valuable assets to our team.
What we offer:
- We offer a hybrid work model which recognizes the value of striking a balance between in-person collaboration and remote working incl. up to 25 days per year working from abroad
- We believe in rewarding performance and our compensation and benefits package includes a company bonus scheme, pension, employee shares program and multiple employee discounts (details vary by location)
- From career development and digital learning programs to international career mobility, we offer lifelong learning for our employees worldwide and an environment where innovation, delivery and empowerment are fostered
- Flexible working, health and wellbeing offers (including healthcare and parental leave benefits) support to balance family and career and help our people return from career breaks with experience that nothing else can teach.
Allianz Group is one of the most trusted insurance and asset management companies in the world. Caring for our employees, their ambitions, dreams and challenges, is what makes us a unique employer. Together we can build an environment where everyone feels empowered and has the confidence to explore, to grow and to shape a better future for our customers and the world around us.
We at Allianz believe in a diverse and inclusive workforce and are proud to be an equal opportunity employer. We encourage you to bring your whole self to work, no matter where you are from, what you look like, who you love or what you believe in. We therefore welcome applications regardless of ethnicity or cultural background, age, gender, nationality, religion, disability or sexual orientation.
Join us. Let's care for tomorrow.
#LI-RV1