> Markdown version of [/jobs/ext/1624789-cyber-security-analyst-vulnerability-attack-surface-management](https://www.wearedevelopers.com/jobs/ext/1624789-cyber-security-analyst-vulnerability-attack-surface-management). Every page supports `.md` or `Accept: text/markdown`. Links point to the HTML versions so they work for humans too. Agent guide: [/agents.md](https://www.wearedevelopers.com/agents.md). --- # Cyber Security Analyst - Vulnerability & Attack Surface Management - **Company:** Allianz Group - **Location:** Barcelona, Spain - **Contract:** Permanent contract - **Skills:** Burp Suite, Cyber Security, Digital Assets, Open Web Application Security, Web Application Security, Software Vulnerability Management, Software Security, Nessus, Appscan, Qualys, Dynamic Application Security Testing - **Published:** July 25, 2026 - **Apply:** https://www.buscojobs.com.es/cyber-security-analyst-vulnerability-attack-surface-management-en-barcelona-ID-365178882 ## About the Role Qualifications3+ years of experience in cybersecurity (application security or vulnerability management preferred). Hands?on experience with DAST tools (e.g., Burp Suite, OWASP ZAP, AppScan). Strong understanding of web security (OWASP Top 10, API security). Familiarity with vulnerability management tools (e.g., Qualys, Nessus). Fluent English and ability to work in international environments. ## Description Passionate about cybersecurity and eager to protect global digital assets?We are looking for a Cyber Security Analyst to join our Allianz Vulnerability Management (AVM) team, where you will help identify, assess, and mitigate vulnerabilities across Allianz's digital landscape.Working in an international environment, you will collaborate with internal teams and external partners to strengthen our security posture and drive continuous improvement across key security services.Si está considerando enviar una solicitud, asegúrese de pulsar el botón de solicitar de abajo después de leer la descripción completa.ResponsibilitiesPerform web application security testing using DAST tools to identify vulnerabilities in applications and APIs.Analyze, validate, and prioritize vulnerabilities based on risk and business impact.Support and coordinate Allianz's Bug Bounty Program, including validation of submissions.Monitor Allianz's external attack surface to detect shadow IT and potential risks.Collaborate with internal teams to ensure timely remediation of vulnerabilities.Advise stakeholders on remediation strategies and security best practices.Contribute to the continuous improvement of security processes, tools, and standards.Qualifications3+ years of experience in cybersecurity (application security or vulnerability management preferred).Hands?on experience with DAST tools (e.g., Burp Suite, OWASP ZAP, AppScan).Strong understanding of web security (OWASP Top 10, API security).Familiarity with vulnerability management tools (e.g., Qualys, Nessus).Fluent English and ability to work in international environments.BenefitsHybrid work model with up to 25 days per year working from abroad.Compensation and benefits package includes a company bonus scheme, pension, employee shares program, and various employee discounts.Career development and digital learning programs, international career mobility, and lifelong learning opportunities.xohynlmFlexible working, health and wellbeing offers including healthcare and parental leave benefits.Location: Barcelona, Catalonia, ES Equal Employment OpportunityWe are proud to be an equal?opportunity employer and encourage applicants regardless of race, ethnicity, national origin, gender identity, sexual orientation, religion, disability, or any other characteristic protected by law.#J-*****-Ljbffr ## Related Videos - [Security Pitfalls for Software Engineers](https://www.wearedevelopers.com/videos/726-security-pitfalls-for-software-engineers) - [You can’t hack what you can’t see](https://www.wearedevelopers.com/videos/41-you-can-t-hack-what-you-can-t-see) - [It's a (testing) trap! - Common testing pitfalls and how to solve them](https://www.wearedevelopers.com/videos/1193-it-s-a-testing-trap-common-testing-pitfalls-and-how-to-solve-them) ## Related Articles - [Understanding and Mitigating Common Web Vulnerabilities](https://www.wearedevelopers.com/magazine/565-understanding-and-mitigating-common-web-vulnerabilities) - [9 Ways to Make Money Hacking](https://www.wearedevelopers.com/magazine/333-9-ways-to-make-money-hacking) - [Best Coding Boot Camps in Germany](https://www.wearedevelopers.com/magazine/237-best-coding-boot-camps-in-germany) - [Walking Into The Era of Supply Chain Risks](https://www.wearedevelopers.com/magazine/106-walking-into-the-era-of-supply-chain-risks) - [The 12 Best Jobs for Software Engineers](https://www.wearedevelopers.com/magazine/401-the-12-best-jobs-for-software-engineers) - [Data Analyst Salary Germany](https://www.wearedevelopers.com/magazine/277-data-analyst-salary-germany)