Application Security & Observability Engineer (Sofia- Srebarna 16, BG)

Allianz
Sofia
Workplace: HybridFull timeFunction: DevOps, Cloud & InfrastructureExperience: 3+ yearsSkills: ["Communication","Proactive mindset","Coordination","Organized issue tracking"]

Configure and operate application security tooling (SAST, SCA, WAF) and drive remediation by translating findings into actionable guidance for development teams. Own end-to-end observability and advise teams on onboarding applications to monitoring platforms, including log reviews and root-cause analysis. Use AI tools to support secure workflows while continuously improving standards, integrating scanning into CI/CD, and ensuring SLAs are met.

Loading

Loading job details...

Preparing the role view and application actions.

FursaFursa
Allianz
Allianz
2 days ago

Application Security & Observability Engineer (Sofia- Srebarna 16, BG)

✓ Verified Job

Canonical indexed version, validated from employer's careers page.

Source: Company careers pageValidated by: Fursa AI
Last checked: 19 hours agoStatus: Live

Job Summary

Configure and operate application security tooling (SAST, SCA, WAF) and drive remediation by translating findings into actionable guidance for development teams. Own end-to-end observability and advise teams on onboarding applications to monitoring platforms, including log reviews and root-cause analysis. Use AI tools to support secure workflows while continuously improving standards, integrating scanning into CI/CD, and ensuring SLAs are met.
Location: Sofia
Workplace: Hybrid
Employment Type: Full time · Permanent
Job Function: DevOps, Cloud & Infrastructure
Seniority: Mid level

Key Responsibilities

  • •Configure, maintain, and monitor application security tools (SAST, SCA, WAF) and adapt AI workflows for layered security scanning.
  • •Identify vulnerabilities across code, applications, and infrastructure; report findings to relevant stakeholders.
  • •Translate security findings into clear, actionable guidance for development teams and coordinate remediation through closure and validation.
  • •Coordinate with external penetration testers, including scoping support, access, and follow-up on findings.
  • •Configure and maintain end-to-end observability, advise teams on onboarding monitoring, review logs for issues, and support root-cause analysis for production incidents.

Pay and Benefits

Equity and Bonus:Equity
Perks:Annual BonusEquityPensionHealth InsuranceHybrid WorkGym Membership

Key Requirements

  • •3+ years of experience in application security, DevSecOps, site reliability, or a closely related IT field.
  • •Practical experience with code security tooling such as SAST, SCA, or WAF (e.g., Checkmarx, Veracode, SonarQube, OWASP ZAP, Snyk, Fortify).
  • •Familiarity with an enterprise observability/APM platform (e.g., Datadog, New Relic, AppDynamics).
  • •Solid understanding of common application vulnerabilities and secure development practices (e.g., OWASP Top 10, CWE).
  • •Comfort reading application logs to diagnose security, performance, and reliability issues and understanding CI/CD pipelines.
Experience:3+ years
Skills:CommunicationProactive mindsetCoordinationOrganized issue tracking
Tech Stack:Static Application Security Testing (SAST)Software Composition Analysis (SCA)Web Application Firewall (WAF)CheckmarxVeracodeSonarQubeOWASP ZAPSnykFortifyDatadogNew RelicAppDynamicsOWASP Top 10CWEMicrosoft CopilotChatGPTAzure AIAzureAmazon Web Services (AWS)Python

Company Brief

Allianz
Global insurance and financial services group offering property-casualty insurance, life and health insurance, asset management, and corporate risk solutions to individuals, businesses, and institutions across more than 70 countries.
Industry: Insurance
Company Size: Enterprise (1,001+ employees)
Revenue: USD 1B+
Growth: Public Company
Valuation: Public Company (Market Cap in USD)
Funding: IPO / Publicly Listed
Headquarters: Munich, Germany
Founded: 1890
WebsiteLinkedIn