AWS Security Assurance Services (SAS) is hiring a Senior Security & Compliance Engineering Manager to lead a team of security and compliance engineers who innovate on behalf of our customers building innovative security and compliance solutions, proof of concepts and products solving for new levels of scale, complexity, and performance in the age of AI. You will own the team's roadmap, hire and grow engineers, and drive the long-term strategy for security and compliance engineering and automation in support of regulated customers.
Key job responsibilities
• Manage a team of security and compliance engineers in multiple locations and one or two managers under you.
• Hire and develop bar-raising talent, run customized onboarding, and grow engineers through delegation, development planning, coaching, and stretch assignments, and promotions
• Provide both tactical and strategic management where the problem, opportunity, and strategy may not be fully defined.
• Establish team structure, inspection mechanisms, KPIs and SLAs that let the team deliver complex problems independently, and measure team progress, customer experience, and operational excellence.
• Define team and cross-team goals, and contribute to the organization's strategic goal planning and execution
• Own regular reporting to key stakeholders; Write clear narratives and reports for senior leadership up to three levels above.
• Negotiate priorities across teams and partner orgs. Influence partner-team roadmaps and resourcing, drive resolution of escalations
• Set the direction and technical bar for the security and compliance emerging-tech proofs of concept, solutions and products
• Identify and shape sales opportunities; provide input to AWS service-team roadmaps and SAS offering strategy.
• Travel to customer sites as needed.
BASIC QUALIFICATIONS
- 5+ years of managing and developing teams experience
- 5+ years of progressive work within a software security team or related operating environment experience
- Bachelor's degree in Computer Science, Information Security, or a related field
- Knowledge of security of web services, video content protection technologies, cryptography, network security protocols and operating system security
- Experience in managing and developing teams
- Experience in progressive work within a software security team or related operating environment
- Experience applying threat modeling or other risk identification techniques or equivalent
- Experience in one or more of the following: application security frameworks, security code reviews, incident response, security infrastructure, penetration testing, mobile security, cloud security, AI security, identity and access controls
- Experience working and communicating with multiple stakeholders, C-level executives and cross-functional teams
- Demonstrated ability to independently manage a team where the strategy is not fully defined; track record of defining metrics, setting goals, and delivering 1-3 year initiatives.
- Track record of running emerging-tech POCs and end-to-end solution development to clear outcomes with enterprise customers, across multiple teams and partners
PREFERRED QUALIFICATIONS
- information security professional certification (SANS GIAC, CISSP etc.)
- Knowledge of information security technologies such as security design review, threat modeling, risk analysis, and software testing techniques
- Experience managing remote team members
- 4+ years of cloud architecture and solution implementation experience, or US government security clearance of top secret or above
- Knowledge of networking protocols such as HTTP, DNS and TCP/IP
- Experience with compliance & security standards including PCI DSS, ISO 27001, HIPAA, and NIST
- 5+ years of technical specialist, design and architecture experience, or AWS Professional level certification
- Experience developing, deploying and managing AI products at scale
- AWS Professional level certification, or Bachelor's degree in business administration, finance, economics, computer science, data science, engineering, or other related field
- Experience leading teams that delivered SCPs and RCPs in multi-account AWS Organizations at enterprise scale.
- Experience overseeing reusable policy-as-code work (cfn-guard, OPA Rego, Cedar, or equivalent) deployed via CI/CD across large customer environments.
- Knowledge of AWS security and governance services: Config, GuardDuty, Security Hub, Control Tower, Systems Manager, KMS, IAM, VPC, Lambda, CloudTrail, CloudWatch, EventBridge.
The base salary range for this position is listed below. Your Amazon package will include sign-on payments and restricted stock units (RSUs). Final compensation will be determined based on factors including experience, qualifications, and location. Amazon also offers comprehensive benefits including health insurance (medical, dental, vision, prescription, Basic Life & AD&D insurance and option for Supplemental life plans, EAP, Mental Health Support, Medical Advice Line, Flexible Spending Accounts, Adoption and Surrogacy Reimbursement coverage), 401(k) matching, paid time off, and parental leave. Learn more about our benefits at https://amazon.jobs/en/benefits.
USA, TN, Nashville - 166,300.00 - 225,000.00 USD annually
USA, TX, Austin - 175,100.00 - 236,900.00 USD annually
USA, TX, Dallas - 175,100.00 - 236,900.00 USD annually
USA, TX, Houston - 175,100.00 - 236,900.00 USD annually
USA, VA, Arlington - 175,100.00 - 236,900.00 USD annually
USA, VA, Herndon - 175,100.00 - 236,900.00 USD annually
USA, WA, Seattle - 175,100.00 - 236,900.00 USD annually