Security Compliance Specialist, Leo External Security Assurance
2 settimane fa
Security Compliance Specialist, Leo External Security AssuranceJob ID: | Amazon Kuiper Manufacturing Enterprises LLCWe are open to hiring candidates to work out of one of the following locations:Arlington, VA, USA | Redmond, WA, USAAmazon Leo (previously known as Project Kuiper) is an initiative to increase global broadband access through a constellation of over 3,000 Low Earth Orbit (LEO) satellites. Its mission is to bring fast, affordable broadband to unserved and underserved communities worldwide.At Leo, we are obsessed with customer trust and are seeking an individual contributor who is creative, and passionate about delivering Governance, Risk and Compliance solutions to meet Leo's regulatory and external assurance needs. In this role, you will work collaboratively with various business and security teams across Amazon to identify compliance needs, assess the maturity of processes and controls, design, build, and execute high-impact security or compliance programs and liaise with external auditors and regulators.Export Control RequirementDue to applicable export control laws and regulations, candidates must be a U.S. citizen or national, U.S. permanent resident (i.e., current Green Card holder), or lawfully admitted into the U.S. as a refugee or granted asylum.Key job responsibilitiesDesign and drive scalable processes within a GRC framework to ensure compliance with Leo's regulatory and contractual security and privacy requirements.Building and maintaining compliance certifications such as ISO 27001, ISO 22301, NIST 800-53, ISO27701, SOC 2, GDPR, CCPA etc., identifying applicable security controls, assessing compliance gaps and readiness, developing remediation strategies, and driving remediation activities to completion.Driving certifications and assurance programs by liaising with external auditors and other Amazon security teams, articulating control implementation and impact, and establishing considerations for applying security, and risk concepts to a highly technical and complex environment.Communicating to key stakeholders and leadership on controls implementation, audit results, compliance program metrics, key risks and areas of program improvement, as well as, seek diverse opinions and coordinate improvement efforts.Working closely with engineering, compliance, security, bizdev and Legal teams to identify future compliance and regulatory requirements and define compliance solutions.Serving as an advisor on assurance issues.Understand and manage cross‑functional GRC requirements to translate them into GRC tool; andBe comfortable with hands‑on day‑to‑day problem solving and implementing quick and effective action plans to meet short‑and long‑term priorities.A day in the lifeHave you wanted an opportunity to secure an advanced satellite based broadband telecom service? The Leo Security team owns the security of product and operations of Leo end‑to‑end. We provide the necessary infrastructure and mechanisms to ensure the security of our satellite constellation and provide assurance to our customers and regulators on our security, privacy and resiliency programs. Our team drives the implementation of compliance programs, owns the collaboration with external auditors and regulators.You will work in a start‑up like environment, backed by Amazon’s infrastructure to bootstrap security mechanisms, and help instill the security culture in the organization.About the teamDiverse ExperiencesAmazon Security values diverse experiences. Even if you do not meet all of the qualifications and skills listed in the job description, we encourage candidates to apply. If your career is just starting, hasn’t followed a traditional path, or includes alternative experiences, don’t let it stop you from applying.Basic QualificationsBachelor's degree or equivalent6+ years of professional experience in governance, risk and compliance designing and implementing controls or experience performing audits over ISO 27001, NIST 800-53, SOC 1/ SOC 2 and other similar globally recognized compliance programsPreferred QualificationsExperience leveraging and improving internal toolsExperience working with ITAR and EAR controlled dataHold an industry certification such as CISSP, CISA, CISM, ISO 27001:2022 Lead Implementer/Lead Auditor, or ISO 22301:2019 Lead Implementer/Lead AuditorDemonstrate comprehensive understanding of compliance requirements for ISO 27001, ISO 22301, SOC 2, and US Government Compliance Frameworks/Programs (FedRAMP, NIST 800-53, NIST 800-171, NIST Risk Management Framework, FISMA).Highly organized and able to build trusting relationships with stakeholders at various levels across the organizationAmazon is an equal opportunity employer and does not discriminate on the basis of protected veteran status, disability, or other legally protected status.Our inclusive culture empowers Amazonians to deliver the best results for our customers. If you have a disability and need a workplace accommodation or adjustment during the application and hiring process, including support for the interview or onboarding process, please visit amzn.jobs for more information. If the country/region you’re applying in isn’t listed, please contact your Recruiting Partner.Our compensation reflects the cost of labor across several US geographic markets. The base pay for this position ranges from $91,800/year in our lowest geographic market up to $196,300/year in our highest geographic market. Pay is based on a number of factors including market location and may vary depending on job-related knowledge, skills, and experience. Amazon is a total compensation company. Dependent on the position offered, equity, sign‑on payments, and other forms of compensation may be provided as part of a total compensation package, in addition to a full range of medical, financial, and/or other benefits. For more information, please visit aboutamazon.com . This position will remain posted until filled. Applicants should apply via our internal or external career site.#J-18808-Ljbffr
-
OT Cyber Security Senior Consultant
2 settimane fa
Milan, Italia Horizon Security A tempo pienoAl fine di supportare il continuo trend di crescita del business aziendale, Horizon Security è alla ricerca di una figura di:OT Cybersecurity Senior ConsultantLa persona sarà inserita al nostro interno e prenderà parte al team impegnato in attività di consulenza su clienti nazionali ed internazionali di diversi settori.Cerchiamo profili che possano...
-
OT Cyber Security Senior Consultant
2 settimane fa
Milan, Italia Horizon Security A tempo pienoAl fine di supportare il continuo trend di crescita del business aziendale, Horizon Security è alla ricerca di una figura di: OT Cybersecurity Senior Consultant La persona sarà inserita al nostro interno e prenderà parte al team impegnato in attività di consulenza su clienti nazionali ed internazionali di diversi settori. Cerchiamo profili che possano...
-
OT Cyber Security Senior Consultant
2 settimane fa
Milan, Italia Horizon Security A tempo pienoAl fine di supportare il continuo trend di crescita del business aziendale, Horizon Security è alla ricerca di una figura di: OT Cybersecurity Senior Consultant La persona sarà inserita al nostro interno e prenderà parte al team impegnato in attività di consulenza su clienti nazionali ed internazionali di diversi settori. Cerchiamo profili che possano...
-
Senior Security
2 settimane fa
Milan, Italia Vendita al dettaglio e all'ingrosso Import-export A tempo pienoA leading technology company is seeking a Security Compliance Specialist to manage compliance programs and drive scalability. This role requires collaboration with multiple teams to ensure adherence to regulatory needs and the implementation of compliance frameworks. Candidates should possess a Bachelor’s degree and over 6 years of experience in...
-
Cyber Security Consultant
1 giorno fa
Greater Milan Metropolitan Area, Italia RAD Cyber Security A tempo pienoJunior Cyber Security Consultant Milano / Ibrido | Full-time | Entry-level (0–3 anni)Vuoi entrare nel mondo della Cyber Security e lavorare su progetti che fanno davvero la differenza?In RAD ti aspetta un ambiente stimolante, dove potrai sviluppare le tue competenze tecniche e personali, lavorando fianco a fianco con professionisti esperti e...
-
Security Governance, Risk
2 giorni fa
Milan, Italia Avanade A tempo pienoSecurity Governance, Risk & Compliance sedi: Roma, Milano Per la Practice Security di Avanade, cerchiamo profili Security Governance, Risk & Compliance per supportarci in progetti di grande complessità e visibilità, contribuendo alla trasformazione dei Security Management System dei nostri clienti. Il ruolo è fortemente orientato al cliente : lavorerai a...
-
EU Security
2 settimane fa
Milan, Italia Altro A tempo pienoA leading cybersecurity company is looking for an IT Security & Compliance Analyst in Milano, Lombardia. The ideal candidate will ensure adherence to security policies and compliance frameworks such as GDPR and NIS2. Responsibilities include maintaining compliance content and acting as a trusted advisor for product and sales teams. The position requires a...
-
Audit & Cyber Security Specialist
2 settimane fa
Milan, Italia Altro A tempo pienoAudit & Cyber Security SpecialistJoin to apply for the Audit & Cyber Security Specialist role at Dedagroup .Cosa aspettartiSiamo uno dei principali gruppi tecnologici in Italia e operiamo come Business & Technology Accelerator di Aziende, Istituzioni Finanziarie e Servizi Pubblici, supportando l’evoluzione delle loro strategie IT e digitali. Con un...
-
Audit & Cyber Security Specialist
2 settimane fa
Milan, Italia Altro A tempo pienoAudit & Cyber Security Specialist Join to apply for theAudit & Cyber Security Specialistrole atDedagroup .Cosa aspettarti Siamo uno dei principali gruppi tecnologici in Italia e operiamo come Business & Technology Accelerator di Aziende, Istituzioni Finanziarie e Servizi Pubblici, supportando l’evoluzione delle loro strategie IT e digitali. Con un...
-
Network Security Specialist
4 settimane fa
Milan, Italia BEGEAR A tempo pienoChi SiamoBegear è una delle principali realtà italiane nel mondo Tech e servizi ICT.Supportiamo aziende Enterprise nella loro trasformazione digitale attraverso consulenza specializzata e soluzioni ad alto contenuto tecnologico.Chi ricerchiamoCerchiamo un Network Security Specialist con esperienza comprovata su tecnologie di networking avanzato e sicurezza...