Key job responsibilities
In this role, you will:
• Develop a deep understanding of the operational services, processes, and controls in place that support AWS's security posture.
• Understand our internal security control framework and how it relates to our compliance assessment processes.
• Understand the risk profile of emerging AI platforms and integrate them into our assessment process.
• Perform service, feature, and other related assessment work for customer and audit requirements.
• Work with service, infrastructure and administrative teams to develop and deliver tooling that improves AWS's security posture.
• Identify process improvement opportunities and high-risk areas.
• Work with service owners to develop innovative solutions to complex technical challenges.
• Manage the build and deployment of new tooling to streamline and automate security-related initiatives.
• Support process improvement and security-related projects in coordination with service teams.
• Manage communications to service teams and stakeholders.
A day in the life
• Dive deep into the AWS control environment to develop technical understanding of control implementation, and articulate compliance implications to internal and external audit functions.
• Set strategic direction, improve documentation, track progress, coordinate improvement efforts, and monitor process improvement effectiveness.
• Develop broad domain and technical knowledge in AWS security solutions including the operational processes and controls in place that support AWS compliance programs.
• Monitor, evaluate, and continuously improve the organization by being a trusted advisor, facilitator and creative problem solver.
• Develop and share program/project process frameworks, tools, and best practices that can be adopted throughout the organization.
• Liaise with auditors, articulate control implementation and impact, and establish considerations for applying security, privacy and compliance concepts to a technical cloud environment.
• Effectively communicate compliance program results, including assessment status, workflow, remediation, and reporting, to a broad audience including peers and senior leaders.
BASIC QUALIFICATIONS
- Bachelor's Degree in Computer Science, Information Systems Management, Mathematics, Accounting/Auditing, or other related fields or equivalent practical experience.
- 5+ years of experience in security, audits, customer trust, control assessments, or risk assessments.
- 3+ years of experience assessing complex technical processes
PREFERRED QUALIFICATIONS
- Experience with audit or risk program design, control environment process documentation, and control mapping
- Experience with monitoring and automating security controls.
- Experience in third-party and/or internal audit examinations.
- Demonstrates high judgement and risk decision making abilities.
- Have experience in performing technical assessments and documentation of network, operating systems, application security, as well as auditing IT processes, including working knowledge of key controls across a number of industry best practices.
- Experience understanding the risk profile of emerging AI technologies.
The base salary range for this position is listed below. Your Amazon package will include sign-on payments and restricted stock units (RSUs). Final compensation will be determined based on factors including experience, qualifications, and location. Amazon also offers comprehensive benefits including health insurance (medical, dental, vision, prescription, Basic Life & AD&D insurance and option for Supplemental life plans, EAP, Mental Health Support, Medical Advice Line, Flexible Spending Accounts, Adoption and Surrogacy Reimbursement coverage), 401(k) matching, paid time off, and parental leave. Learn more about our benefits at https://amazon.jobs/en/benefits.
USA, VA, Arlington - 102,000.00 - 178,400.00 USD annually
USA, VA, Herndon - 102,000.00 - 178,400.00 USD annually
USA, WA, Seattle - 102,000.00 - 178,400.00 USD annually