Senior Security Incident Responder
hace 10 días
Madrid
ph3About You /h3 pIf you are an experienced Incident Responder—or someone who is passionate about handling real cyber incidents and understanding how attackers operate—this role is for you. /p pYou will join the Incident Response cluster within the Allianz Cyber Defense Center (ACDC), a global team at the forefront of protecting Allianz against sophisticated cyber threats. In this role, you will work on high-impact incidents, collaborate with experts across threat intelligence, detection, and security operations, and play a key role in strengthening our overall security posture. You enjoy working in dynamic environments, taking ownership during critical situations, and continuously improving how incidents are detected, investigated, and resolved. If you are motivated by real‑world impact and want to be part of a highly skilled and collaborative cybersecurity team, we would love to hear from you. /p h3What You Do /h3 ul liCoordinate and own security incident response activities in a heterogeneous, multi-cultural, and geographically distributed environment — engaging all relevant technical and non-technical stakeholders across all phases of an incident. /li liAcquire and analyze data from various sources during incident response activities and report on findings in a clear, actionable manner. /li liConduct incident reviews, identify improvement potentials, and support the implementation of improvements — including updating guidelines, runbooks, and internal processes. /li liActively contribute to enhancing ACDC's internal toolset through new ideas on functionality and features, as well as by developing automation scripts and custom tooling. /li liAnalyse complex attack patterns and threat actors, derive technical insights, and provide recommendations to improve Allianz's detection and defence capabilities. /li liCollaborate closely with internal teams — including Threat Intelligence, Vulnerability Management, and Business Applications Teams — as well as external partners to ensure holistic and coordinated incident response. /li liParticipate in on-call shifts and contribute to the ACDC team's 24/7 availability, ensuring rapid response to critical security incidents at any time. /li /ul h3What You Bring /h3 ul liUniversity degree (Master's preferred) in Computer Science, Cyber Security, or a related field. /li liExtensive work experience in Incident Response, including managing complex environments; expertise in IT Forensics, Malware Analysis, or Vulnerability Management is a plus. /li liComprehensive technical expertise in system architecture with broad proficiency in key IT security technologies: Linux and Windows, Active Directory / Entra ID, web technologies, email, networking, cryptography, and widely used DevOps tools. /li liSoftware engineering and scripting skills: Python, Golang, Shell scripting, PowerShell, CI/CD, and database management. /li liStrong understanding of technical and organisational aspects of information security, demonstrated through prior defensive or offensive work experience. /li liIn-depth knowledge of fundamental attack concepts: terminology, tools, tactics, techniques, and procedures (TTPs). /li liExceptional analytical and problem‑solving mindset with the ability to collect, structure, analyse, and communicate large amounts of information with precision and attention to detail. /li liExcellent communication and interpersonal skills in English (fluent, written and spoken, including security terminology); willingness to participate in on-call shifts. Relevant certifications (e.g. SANS/GIAC, GCIH, GNFA, GCFA, GREM, GCFE, GIME), CompTIA Security+, CISSP, CISA, or CISM) are a plus but not mandatory. /li /ul h3What We Offer /h3 ul liWe offer a hybrid work model which recognizes the value of striking a balance between in‑person collaboration and remote working incl. up to 25 days per year working from abroad. /li liWe believe in rewarding performance and our compensation and benefits package includes a company bonus scheme, pension, employee shares program and multiple employee discounts (details vary by location). /li liFrom career development and digital learning programs to international career mobility, we offer lifelong learning for our employees worldwide and an environment where innovation, delivery and empowerment are fostered. /li liFlexible working, health and wellbeing offers (including healthcare and parental leave benefits) support to balance family and career and help our people return from career breaks with experience that nothing else can teach. /li /ul h3About Allianz Technology /h3 pWith its headquarters in Munich, Germany, Allianz Technology is Allianz's global IT service provider and delivers IT solutions that drive the group's digitalization. With more than 11,000 employees in over 20 countries around the world, Allianz Technology is tasked to run, optimize, transform, and innovate the infrastructure, applications, and services together with Allianz companies to co‑create the best customer experience. We service the entire spectrum of digitalization – from one of the industry's largest IT infrastructure projects that spans data centres, networks, and security, to application platforms ranging from workplace services to digital interaction. In short: We deliver comprehensive end‑to‑end IT solutions for Allianz in the digital age. We are the backbone of Allianz. /p h3Commitment to Integrity, Fairness Inclusion /h3 pAllianz Technology is proud to be an equal opportunity employer dedicated to fostering an inclusive work environment for everyone. We embrace individuals of all gender identities and expressions, sexual orientations, ethnicities, ages, nationalities, religions, disabilities, and philosophies of life. Ultimately, our greatest strength as a company lies in the unique skills, experiences, and backgrounds our employees contribute. We therefore welcome applications regardless of race, ethnicity or cultural background, age, gender, nationality, religion, social class, disability or sexual orientation, or any other characteristics protected under applicable local laws and regulations. /p /p #J-18808-Ljbffr