Security Compliance Specialist, Leo External Security Assurance

2 settimane fa


Lazio, Italia Amazon A tempo pieno

Security Compliance Specialist, Leo External Security Assurance Job ID: ******* | Amazon.com Services LLCLocations: Arlington, VA; Redmond, WAAmazon Leo (previously known as Project Kuiper) is an initiative to increase global broadband access through a constellation of over 3,000 Low Earth Orbit (LEO) satellites.Its mission is to bring fast, affordable broadband to unserved and underserved communities worldwide.At Leo, we are obsessed with customer trust and are seeking an individual contributor who is creative, and passionate about delivering Governance, Risk and Compliance solutions to meet Leo's regulatory and external assurance needs.In this role, you will work collaboratively with various business and security teams across Amazon to identify compliance needs, assess the maturity of processes and controls, design, build, and execute high-impact security or compliance programs and liaise with external auditors and regulators.Export Control Requirement: Due to applicable export control laws and regulations, candidates must be a U.S. citizen or national, U.S. permanent resident, or lawfully admitted into the U.S. as a refugee or granted asylum.Key job responsibilitiesDesign and drive scalable processes within a GRC (Governance, Risk, and Compliance) framework to ensure compliance with Leo's regulatory and contractual security and privacy requirements.Build and maintain compliance certifications such as ISO *****, ISO *****, NIST ******, ISO *****, SOC 2, GDPR, CCPA, etc., identifying applicable security controls, assessing compliance gaps and readiness, developing remediation strategies, and driving remediation activities to completion.Drive certifications and assurance programs by liaising with external auditors and other Amazon security teams, articulating control implementation and impact, and establishing considerations for applying security, and risk concepts to a highly technical and complex environment.Communicate to key stakeholders and leadership on controls implementation, audit results, compliance program metrics, key risks and areas of program improvement, as well as seek diverse opinions and coordinate improvement efforts.Work closely with engineering, compliance, security, bizdev and Legal teams to identify future compliance and regulatory requirements and define compliance solutions.Serve as an advisor on audit remediation issues.Understand and manage cross-functional GRC requirements to translate them into GRC tool.Be comfortable with hands-on day-to-day problem solving and implementing quick and effective action plans to meet short- and long-term priorities.A day in the lifeHave you wanted an opportunity to secure an advanced satellite based broadband telecom service?The Leo Security team owns the security of product and operations of Leo end-to-end.We provide the necessary infrastructure and mechanisms to ensure the security of our satellite constellation and provide assurance to our customers and regulators on our security, privacy and resiliency programs.Our team drives the implementation of compliance programs, owns the collaboration with external auditors and regulators.You will work in a start-up like environment, backed by Amazon's infrastructure to bootstrap security mechanisms, and help instill the security culture in the organization.About the teamDiverse Experiences: Amazon Security values diverse experiences.Even if you do not meet all of the qualifications and skills listed in the job description, we encourage candidates to apply.If your career is just starting, hasn't followed a traditional path, or includes alternative experiences, don't let it stop you from applying.Why Amazon Security: At Amazon, security is central to maintaining customer trust and delivering delightful customer experiences.Our organization is responsible for creating and maintaining a high bar for security across all of Amazon's products and services.Basic QualificationsBachelor's degree or equivalent6+ years of professional experience in governance, risk and compliance designing and implementing controls or experience performing audits over ISO *****, NIST ******, SOC 1/ SOC 2 and other similar globally recognized compliance programsPreferred QualificationsExperience leveraging and improving internal toolsExperience working with ITAR and EAR controlled dataHold an industry certification such as CISSP, CISA, CISM, ISO *****:**** Lead Implementer/Lead Auditor, or ISO *****:**** Lead Implementer/Lead AuditorDemonstrate comprehensive understanding of compliance requirements for ISO *****, ISO *****, SOC 2, and US Government Compliance Frameworks/Programs (FedRAMP, NIST ******, NIST *******, NIST Risk Management Framework, FISMA).Highly organized and able to build trusting relationships with stakeholders at various levels across the organizationCompensationOur compensation reflects the cost of labor across several US geographic markets.The base pay for this position ranges from $91,800/year in our lowest geographic market up to $196,300/year in our highest geographic market.Pay is based on a number of factors including market location and may vary depending on job-related knowledge, skills, and experience.Amazon is a total compensation company.Dependent on the position offered, equity, sign-on payments, and other forms of compensation may be provided as part of a total compensation package, in addition to a full range of medical, financial, and/or other benefits.For more information, please visit .This position will remain posted until filled.Applicants should apply via our internal or external career site.Equal Opportunity EEO StatementAmazon is an equal opportunity employer and does not discriminate on the basis of protected veteran status, disability, or other legally protected status.If you have a disability and need a workplace accommodation or adjustment during the application and hiring process, including support for the interview or onboarding process, please visit for more information.Posted: November 13, ****#J-*****-Ljbffr


  • Cloud Security Assurance

    1 settimana fa


    Lazio, Italia Amazon A tempo pieno

    A leading cloud services provider in Pisa, Italy is seeking an experienced audit and compliance professional to join their Security Assurance team.This role requires expertise in IT audits and the ability to bridge security with regulatory standards.The successful candidate will work directly with customers and regulators, driving innovative solutions for...


  • Lazio, Italia Amazon A tempo pieno

    EUR ***************** giorni faJob ID: ******* | AWS EMEA SARL (Spain Branch)Do you have a passion for applying cutting edge technologies and automation in traditionally manual processes?Do you have experience in finding innovative solutions to scale security controls across diverse teams and technologies?Do you have ideas about influencing the future of...


  • Lazio, Italia Jobbit A tempo pieno

    Manning Global AG EUR 80,*********,000 Do you have a passion for applying cutting edge technologies and automation in traditionally manual processes?Do you have experience in finding innovative solutions to scale security controls across diverse teams and technologies?Do you have ideas about influencing the future of security assurance?At Amazon, Security is...

  • Cyber Security Consultant

    1 settimana fa


    Lazio, Italia Sync Security Srl A tempo pieno

    Sync Security , società specializzata nelle tematiche di Data Protection, Compliance e Business Continuity per ampliamento dell'organico ricerca figure junior da inserire all'interno del proprio laboratorio. Ruoli e responsabilità al fine di potenziare la nostra struttura tecnica, cerchiamo un candidato da inserire in formazione e affiancare agli...

  • Cyber Security Consultant

    1 settimana fa


    Lazio, Italia Sync Security Srl A tempo pieno

    Sync Security, società specializzata nelle tematiche di Data Protection, Compliance e Business Continuity per ampliamento dell'organico ricerca figure junior da inserire all'interno del proprio laboratorio. Ruoli e responsabilitàal fine di potenziare la nostra struttura tecnica, cerchiamo un candidato da inserire in formazione e affiancare agli specialisti...

  • Cyber Security Consultant

    1 settimana fa


    Lazio, Italia Sync Security Srl A tempo pieno

    Sync Security, società specializzata nelle tematiche di Data Protection, Compliance e Business Continuity per ampliamento dell'organico ricerca figure junior da inserire all'interno del proprio laboratorio.Ruoli e responsabilitàal fine di potenziare la nostra struttura tecnica, cerchiamo un candidato da inserire in formazione e affiancare agli specialisti...

  • Cyber Security Consultant

    1 settimana fa


    Lazio, Italia Sync Security Srl A tempo pieno

    Sync Security , società specializzata nelle tematiche di Data Protection, Compliance e Business Continuity per ampliamento dell'organico ricerca figure junior da inserire all'interno del proprio laboratorio.Ruoli e responsabilitàal fine di potenziare la nostra struttura tecnica, cerchiamo un candidato da inserire in formazione e affiancare agli specialisti...


  • Lazio, Italia Sync Security Srl A tempo pieno

    Sync Security, società specializzata nelle tematiche di Data Protection, Compliance e Business Continuity per ampliamento dell'organico ricerca figure junior da inserire all'interno del proprio laboratorio.Ruoli e responsabilitàal fine di potenziare la nostra struttura tecnica, cerchiamo un candidato da inserire in formazione e affiancare agli specialisti...


  • Lazio, Italia Sync Security Srl A tempo pieno

    Sync Security, società specializzata nelle tematiche di Data Protection, Compliance e Business Continuity per ampliamento dell'organico ricerca figure junior da inserire all'interno del proprio laboratorio.Ruoli e responsabilitàal fine di potenziare la nostra struttura tecnica, cerchiamo un candidato da inserire in formazione e affiancare agli specialisti...


  • Lazio, Italia Sync Security Srl A tempo pieno

    Sync Security , società specializzata nelle tematiche di Data Protection, Compliance e Business Continuity per ampliamento dell'organico ricerca figure junior da inserire all'interno del proprio laboratorio.Ruoli e responsabilitàal fine di potenziare la nostra struttura tecnica, cerchiamo un candidato da inserire in formazione e affiancare agli specialisti...