Information Security Specialist (m/f/d)
Zagreb, HR
We are seeking a motivated and detail-oriented Information Security Specialist to support the development, implementation, and operation of information security governance in alignment with business objectives, IS strategy, and regulatory requirements. The role contributes to strengthening information security risk management, compliance, and overall security posture while ensuring alignment with the organization’s risk appetite and operational resilience goals.
This position is suitable for junior candidates; previous experience is welcome but not mandatory.
Key responsibilities:
• Support the planning, implementation, and continuous improvement of information security governance, risk, and compliance (GRC) initiatives
• Establish and maintain an information security assurance framework to ensure systems, processes, and controls comply with internal policies, security standards, and best practices
• Perform and review user access management activities, including logical access reviews, and recommend adjustments to enforce least privilege and segregation of duties
• Support compliance with regulatory, legal, and security standards requirements (e.g., data protection, audits, ISO 27001), ensuring effective implementation of security controls
• Define, monitor, and report on information security metrics and KPIs to measure the effectiveness and maturity of security processes and controls
• Contribute to information security risk identification, assessment, and continuous monitoring, aligned with enterprise risk management frameworks
Qualifications:
• Bachelor’s degree in Computer Science, Information Security, Mathematics, or a related field
• Strong analytical, problem-solving, and communication skills, with the ability to translate security requirements into practical solutions
• High attention to detail and accuracy when working with security controls, risk assessments, and documentation
• Ability to work independently as well as collaboratively within cross-functional and international teams
• Interest in information security, emerging technologies, and modern digital work environments, including AI tools and AI work environment
Preferred qualifications:
• Basic understanding of information security governance, risk management, and compliance (GRC) principles
• Familiarity with governance and security frameworks (e.g., ISO 27001)
• General knowledge of key security domains, including network security, cloud security, endpoint protection, and data security
• Exposure to information security standards, regulatory requirements, or compliance programs (e.g., data protection, audits, certifications)
What we offer:
• Opportunities for professional growth and development in an international environment
• Permanent employment contract with the other benefits that Allianz offers to its employees
• Hybrid work model – working from home and in the office
• Digital learning programs available anytime
• Additional health insurance, Multisport/ Passport
101324 | Operations | Professional | Non-Executive | Allianz Croatia | Full-Time | Permanent
|
|