Security Engineer – DevSecOps & SDLC Security (f/m/d)
Join Allianz Global Investors as a Security Engineer – DevSecOps & SDLC Security (f/m/d). This role is part of AllianzGI’s Development, Test & Transformation (DTT) team and will focus on integrating security across the software development lifecycle, cloud‑native infrastructure, and automation platforms.
What You Will Do
* Implement and oversee security controls across SDLC and infrastructure layers.
* Test‑drive and evaluate security tools for integration into CI/CD pipelines and developer workflows.
* Advise development teams and security champions on the secure use of provided tools and platforms.
* Define and enforce secure SDLC practices aligned with DORA, KAIT, BAIT, and AllianzGI’s internal frameworks.
* Apply security best practices to cloud‑native infrastructure, with emphasis on Microsoft’s Well‑Architected Framework.
* Secure and govern Infrastructure as Code (IaC) using Terraform Cloud, Bicep, and Ansible.
* Implement policy‑as‑code using Open Policy Agent (OPA) across infrastructure and pipelines.
* Automate security controls, evidence generation, and release promotion workflows.
* Champion security‑by‑design principles across architecture, development, and operations.
* Collaborate with governance, application, and infrastructure teams to map technologies to compliance controls.
* Contribute to the Security Champion Community of Practice (CoP).
* Apply CIS Benchmarks to harden systems and validate configurations.
* Support compliance dashboards and DORA metrics implementation in our IDP.
* Optionally contribute to areas such as Kubernetes, Azure role assignments, VM usage, and private endpoint architecture.
* Serve as a sparring partner for internal and external auditors, working closely with internal process and application owners to ensure alignment of technical controls with audit and compliance expectations.
What You Bring
* 5+ years of experience in SDLC security, application security, or DevSecOps.
* Hands‑on experience with CI/CD pipelines, GitHub, and JFrog.
* Strong knowledge of Terraform Cloud, Bicep, Ansible, and cloud security principles.
* Familiarity with Open Policy Agent (OPA), Microsoft’s Well‑Architected Framework, and CIS Benchmarks.
* Experience with security testing tools and vulnerability management.
* Proven ability to operate effectively in regulated environments (DORA, KAIT, BAIT).
* Excellent communication skills across technical and business stakeholders.
* Fluent in English; additional languages are a plus.
Preferred
* Degree in Information Technology or a related field.
* Certifications such as CSSLP, GCSA, AZ-500, CISSP, CISM, or CISA.
* Experience with internal developer platforms (IDPs) and platform engineering.
* Exposure to Agile environments and enterprise transformation programs.
* Familiarity with AI‑enhanced developer workflows and their security implications.
What We Offer
* Flexible work arrangements, including hybrid model and flexible working hours.
* Company pension/savings plans.
* Company share purchasing plan.
* Mental health and wellbeing programs.
* Career opportunities within the Allianz Group.
* Comprehensive learning and development offerings, including certifications and professional qualifications.
* … and so much more.
About Allianz Global Investors
Allianz Global Investors is a leading global active asset manager investing for the long term and creating value for clients at every step. The firm focuses on sustainability and enhancing the investment experience. Allianz believes in a diverse and inclusive workforce, supporting equal employment opportunity and accessibility for all applicants.
How to Apply
Simply upload your CV in English to apply for this position. If you need support to navigate our websites or at any stage during your application, please send an email with your request to recruiting@allianzgi.com.
Job Details
Seniority level: Mid‑Senior level. Employment type: Full‑time. Job function: Information Technology. Industries: Financial Services and Insurance. Location: Frankfurt or Munich.
#J-18808-Ljbffr