Amazon.com Services LLC
Project/Program/Product Management--Non-Tech, Security Industry Specialist, amazon security
SecurityComplianceSpecialist
Neural analysis suggests this role is
optimal for Mid+ candidates.
“Security Compliance Specialist at Amazon.com Services LLC. Skills: Governance Risk Compliance, Security assurance, Regulatory compliance. Design scalable processes. Drive scalable processes”
Industry & Context.
Day-to-day problem solving; Action plans
U. S. citizen or national, U. S. permanent resident, Lawfully admitted refugee, Granted asylum
What They're Looking For.
Must Have
Bachelor's degree or above, 3+ years experience GRC, 3+ years experience designing controls, 3+ years experience implementing controls, 3+ years experience performing audits
Nice to Have
CISSP, CISA, CISM or security certification, Experience building strategic relationships, Experience communicating across teams, Experience collaborating across functions, Experience working with ITAR/EAR data, Comprehensive understanding ISO 27001, Comprehensive understanding ISO 22301, Comprehensive understanding SOC 2, Comprehensive understanding US Gov frameworks
What You'll Do.
Design scalable processes
Drive scalable processes
Ensure compliance with regulations
Ensure compliance with contracts
Build compliance certifications
Maintain compliance certifications
Identify security controls
Assess compliance gaps
Assess compliance readiness
Develop remediation strategies
Drive remediation activities
Drive assurance programs
Liaise with external auditors
Liaise with security teams
Articulate control implementation
Articulate control impact
Establish considerations for security
Establish considerations for risk
Communicate to stakeholders
Communicate to leadership
Seek diverse opinions
Coordinate improvement
Identify future requirements
Manage GRC requirements
Translate requirements
Implement action plans
How You'll Work.
Team & Collaboration
Business teams; Security teams; Engineering teams; Compliance teams; Bizdev teams; Legal teams; External auditors; Regulators
Communication Scope
Stakeholder communication; Leadership communication; Audit results; Program metrics; Key risks
Full Job Description
We are open to hiring candidates to work out of one of the following locations: Redmond, WA, USA | Arlington, VA, USA Amazon Leo (previously known as Project Kuiper) is an initiative to increase global broadband access through a constellation of over 3,000 Low Earth Orbit (LEO) satellites. Its mission is to bring fast, affordable broadband to unserved and underserved communities worldwide. At Leo, we are obsessed with customer trust and are seeking an individual contributor who is creative, and passionate about delivering Governance, Risk and Compliance solutions to meet Leo's regulatory and external assurance needs. In this role, you will work collaboratively with various business and security teams across Amazon to identify compliance needs, assess the maturity of processes and controls, design, build, and execute high-impact security or compliance programs and liaise with external auditors and regulators. Export Control Requirement: Due to applicable export control laws and regulations, candidates must be a U.S. citizen or national, U.S. permanent resident (i.e., current Green Card holder), or lawfully admitted into the U.S. as a refugee or granted asylum. Key job responsibilities - Design and drive scalable processes within a GRC (Governance, Risk, and Compliance) framework to ensure compliance with Leo's regulatory and contractual security and privacy requirements; - Building and maintaining compliance certifications such as ISO 27001, ISO 22301, NIST 800-53, ISO27701, SOC 2, GDPR, CCPA etc., identifying applicable security controls, assessing compliance gaps and readiness, developing remediation strategies, and driving remediation activities to completion; - Driving certifications and assurance programs by liaising with external auditors and other Amazon security teams, articulating control implementation and impact, and establishing considerations for applying security, and risk concepts to a highly technical and complex environment; - Communicating to key st
Applying for this Security Compliance Specialist role?
Most applicants get filtered before a human reads their resume. See if yours makes the cut.
ANONYMOUS · UNFILTERED
What do employees actually say about Amazon.com Services LLC?
Real rants from real employees. Read before you apply.