Information Security Solution Architect - Cloud Security (m/f/d)

Job Level:  Professional
Location: 

Barcelona, B, ES, 08005 Lisbon, Lisbon, PT, 1000-236

Area of Expertise:  IT & Tech Engineering
Unit:  Allianz Services
Employing Entity:  Allianz Services GmbH Sucursal en España
Job Type:  Full-Time
Remote Job:  Hybrid working
Employment Type:  Permanent
ID:  103379
Position Cluster: 

130 years of trust, time to shape what's next. Allianz Group is one of the world's leading insurers and asset managers - built on over a century of stability, expertise, and financial strength. Allianz Services is where that legacy meets the future. 8,200+ people. Eight countries. Three continents. We deliver specialized services to clients within Allianz Group, powered by AI, advanced analytics, and a mindset that refuses to stand still. From core insurance operations to engineering and consulting services, we reimagine how insurance works. What truly sets us apart are our people and the trusted partnerships we build, anchored in our values of expertise, integrity, and empowerment. We don't support the business. We shape it.

 

Role Overview:

We are looking for an experienced IS Solution Architect – Cloud Security to drive the design, governance, and evolution of enterprise cloud security architectures across one or more major hyperscalers (AWS, Microsoft Azure, Google Cloud Platform). The role combines deep technical expertise in cloud-native security with strong governance capabilities — ensuring robust security controls, Zero Trust adoption, DevSecOps integration, and regulatory compliance across complex, multi-cloud environments.

 

What you do:

  • Design and maintain enterprise cloud security architectures across major hyperscalers: securing containers (Kubernetes, EKS, AKS, GKE), serverless workloads, managed services, and cloud IAM — aligned with Zero Trust principles including identity-based access, micro-segmentation, and least-privilege access.
  • Provide architectural guidance on cloud security posture management (CSPM), cloud workload protection (CWPP), cloud infrastructure entitlement management (CIEM), and DevSecOps practices including security-as-code, IaC scanning, CI/CD pipeline security, and secrets management.
  • Draft, review, and maintain cloud security policies, architectural baselines, and technical standards; support formal governance processes for cloud architecture decisions including risk assessments, exception handling workflows, and sign-off with risk and compliance stakeholders.
  • Define and track cloud security KPIs/KRIs (CSPM findings, misconfiguration rates, patch compliance, privileged access coverage) and present governance reporting to security committees and senior leadership.
  • Contribute to or lead cloud security design authority, architecture review board (ARB) processes, and security gate reviews for cloud-based projects and migrations; act as cloud security advisor to engineering teams and present architecture decisions to senior management.

 

What you bring:

  • Higher education degree in Information Security, Computer Science, Engineering, or related technical field.
  • 5+ years of experience in Cloud Security Architecture or Cloud Security Engineering in enterprise environments.
  • Hands-on experience designing and implementing cloud security architectures across one or more major hyperscalers (AWS, Microsoft Azure, Google Cloud Platform).
  • Strong understanding of Zero Trust principles applied to cloud environments: identity-based access, micro-segmentation, continuous validation, least-privilege access.
  • Experience securing cloud-native services: containers (Kubernetes, EKS, AKS, GKE), serverless (Lambda, Azure Functions), and managed services; knowledge of cloud IAM (RBAC, ABAC, service accounts, federated identity, workload identity, PAM in cloud).
  • Familiarity with CSPM, CWPP, and CIEM tools; experience with DevSecOps practices (security-as-code, IaC security scanning, CI/CD pipeline security, secrets management).
  • Regulatory and compliance knowledge: DORA, NIS2, ISO 27001, CIS Benchmarks for cloud, SOC 2 — experience translating regulatory requirements into cloud security controls.
  • Excellent English skills (written and spoken).
  • We highly welcome candidates with a genuine interest and affinity for Information Technology (IT) and Generative Artificial Intelligence (GenAI), as these attributes are considered valuable assets to our team.

 

What we offer:

  • We offer a hybrid work model which recognizes the value of striking a balance between in-person collaboration and remote working incl. up to 25 days per year working from abroad
  • We believe in rewarding performance and our compensation and benefits package includes a company bonus scheme, pension, employee shares program and multiple employee discounts (details vary by location)
  • From career development and digital learning programs to international career mobility, we offer lifelong learning for our employees worldwide and an environment where innovation, delivery and empowerment are fostered
  • Flexible working, health and wellbeing offers (including healthcare and parental leave benefits) support to balance family and career and help our people return from career breaks with experience that nothing else can teach

 

About Allianz 

Allianz Group is one of the most trusted insurance and asset management companies in the world. Caring for our employees, their ambitions, dreams and challenges is what makes us a unique employer.
We are united by a shared commitment: to put our customers first and at the center of everything we do. Their needs inspire our thinking and guide our actions.
Together, we can build an environment where everyone feels empowered and confident to explore, grow and shape a better future – for our customers and for the world around us. At Allianz, we stand for unity: we believe that a united world is a more prosperous world, and we are dedicated to consistently advocating for equal opportunities for all. The foundation for this is our inclusive workplace, where people and performance both matter, and where integrity, fairness, inclusion and trust are at the heart of our culture.
We therefore welcome applications regardless of ethnicity or cultural Internal background, age, gender, nationality, religion, social class, disability or sexual orientation, or any other characteristics protected under applicable local laws and regulations.

Join us. Let's care for tomorrow.

#LI-RV1