Home
/
Comprehensive
/
IT Compliance Specialist
IT Compliance Specialist-May 2024
Santa Monica
May 3, 2025
ABOUT AMAZON
Our mission is to be the world’s most customer-centric company.
10,000+ employees
Technology
VIEW COMPANY PROFILE >>
About IT Compliance Specialist

  Description

  Do you have experience obtaining and maintaining commercial IT compliance certifications for your organization? Have you worked for a third-party auditor with experience performing IT audits and assessments? Do you see regulatory compliance as a business enabler? Buy with Prime and Multi-Channel Fulfillment (MCF) are looking for a highly motivated Compliance Specialist to join our Security, Compliance, Privacy, & Trust (SCPT) team to support commercial compliance self-assessments, coordinate remediation efforts with service teams, and manage third-party assessment organizations assessments for commercial accreditations (e.g. ISO 27001, SOC 2). You will join industry-leading security professionals to ensure that our services are in compliance with global security and privacy requirements.

  Key job responsibilities

  • Dive deep into the control environment to develop a technical understanding of control implementation and articulate compliance implications to internal and external audit functions.

  • Improve documentation, coordinate improvement efforts, and monitor process improvement effectiveness.

  • Operate and plug into organizational mechanisms for managing changes to the control environment and external industry standards requirements; document organizational control activities and confirm readiness of controls for audit.

  • Develop broad domain and technical knowledge in AWS and Amazon corporate security solutions that support compliance programs.

  • Communicate and drive remediation and continuous improvements to the security organization, the program management process and control implementation projects in coordination with the service teams. This includes resolution of audit findings and the execution of projects originated from internal assessments.

  • Collect evidence in support of audit engagements and the relationship with the ISO/SOC2 auditors and Amazon service teams, articulate control implementation and impact, and establish considerations for applying security, privacy, and compliance concepts to a technical cloud environment.

  • Apply a working knowledge of commercial information security and privacy regulation and policy to articulate customer and control impact and drive alignment to controls.

  A day in the life

  As part of the SCPT team, you will build bridges between security, technology, operations, and compliance by working directly with our in-scope service teams, infrastructure teams, corporate security teams, and third-party assessors.

  About the team

  Here at Amazon, we embrace our differences. We are committed to furthering our culture of inclusion. We have ten employee-led affinity groups, reaching 40,000 employees in over 190 chapters globally. We have innovative benefit offerings, and we host annual and ongoing learning experiences, including our Conversations on Race and Ethnicity (CORE) and Amazon (gender diversity) conferences. Amazon’s culture of inclusion is reinforced within our 16 Leadership Principles, which remind team members to seek diverse perspectives, learn and be curious, and earn trust.

  We are open to hiring candidates to work out of one of the following locations:

  Arlington, VA, USA | New York, NY, USA | Santa Clara, CA, USA | Santa Monica, CA, USA | Seattle, WA, USA | Tempe, AZ, USA

  Basic Qualifications

  • 5+ years of experience in security or commercial compliance work in support of highly technical, complex cloud services environment(s) or experience as an IT auditor in direct support of ISO 27001 and SOC 2 examinations

  • Bachelor's Degree in Information Systems Management, Computer Science, Informatics, or other related fields.

  • Certified Information Systems Auditor (CISA) or Certified Information Systems Manager (CISM)

  • Experience communicating audit/assessment results and corrective action (i.e. remediation) plans to partners, and prioritizing and remediating findings with service/system owner.

  • Solid technical background with experience in cloud technologies, cloud deployment models (IaaS/PaaS/SaaS), and familiarity with AWS core services (Lambda, ECS, EC2, S3, DDB, KMS, etc.)

  • Experience working with auditors/regulators for these types of assessments.

  • Strong organization, writing, and communication skills

  Preferred Qualifications

  • Certified Information Systems Security Professional (CISSP), ISO 27001 Lead Auditor, ISO 27001 Lead Implementer, Certified Cloud Practitioner, or equivalent certifications

  • Experience scoping and leading organizational risk assessments and documenting risk treatment plans

  • Experience in privacy compliance consulting, control audits, or advisory work

  • Experience engaging software development teams, who are building cloud products or services, defining technical security specifications to meet control requirements, and monitoring the team’s progress from development to release.

  • Experience building certification roadmaps based on customer requirements, compliance documentation, and ensuring that committed assessments are delivered on schedule.

  • Knowledge and proficiency with Project Management tools, like Asana and ServiceNow.

  Amazon is committed to a diverse and inclusive workplace. Amazon is an equal opportunity employer and does not discriminate on the basis of race, national origin, gender, gender identity, sexual orientation, protected veteran status, disability, age, or other legally protected status. For individuals with disabilities who would like to request an accommodation, please visit https://www.amazon.jobs/en/disability/us.

  Our compensation reflects the cost of labor across several US geographic markets. The base pay for this position ranges from $91,800/year in our lowest geographic market up to $185,000/year in our highest geographic market. Pay is based on a number of factors including market location and may vary depending on job-related knowledge, skills, and experience. Amazon is a total compensation company. Dependent on the position offered, equity, sign-on payments, and other forms of compensation may be provided as part of a total compensation package, in addition to a full range of medical, financial, and/or other benefits. For more information, please visit https://www.aboutamazon.com/workplace/employee-benefits. Applicants should apply via our internal or external career site.

Comments
Welcome to zdrecruit comments! Please keep conversations courteous and on-topic. To fosterproductive and respectful conversations, you may see comments from our Community Managers.
Sign up to post
Sort by
Show More Comments
SIMILAR JOBS
Brake Technician - Rochester, NY
IMMEDIATELY HIRING!!! – APPLY TODAY!!! Starting pay for the market: $19-$22 Hourly With a $1 Shift Differential! Work Location: 2040 Ridge Rd W Rochester, NY 14626-2721 Shift Information: 3rd Shift:
Wastewater Operator-2nd Shift
Wastewater Operator -- 2nd Shift 3pm - 11:30pm OMG Inc. is a leadingmanufacturer of fastening products and technologies for the commercialroofing and other construction industries worldwide. Based in
Construction Manager
...
materials handler
materials handler. lynnfield , massachusetts posted 3 days ago job details summary $18.99 - $19 per hour temp to perm no requirements category production occupations referenceAB_4451203 job details A
Retail Customer Service Cashier
Req ID: 428100 Address: 1001 W. Choctaw Chickasha, OK, 73018 Benefits: * Paid Time Off * Flexible Scheduling * 401(k) – 100% Match up to 5% * Medical/Dental/Vision Insurance after 30 days * Competiti
ADMINISTRATIVE ASSISTANT
Summary You will serve as a ADMINISTRATIVE ASSISTANT for the DEPT OF NAVY at the NET SEC ASTFLD ACT. Responsibilities You will schedule appointments and maintain calendars for executive level personn
Director of Market Intelligence
At U.S. Bank, we’re on a journey to do our best. Helping the customers and businesses we serve to make better and smarter financial decisions and enabling the communities we support to grow and succe
Climate Specialist - State Program Admin Prinincipal
Working Title: Climate Specialist Job Class: State Program Administrator Principal Agency: Pollution Control Agency Who May Apply : Open to all qualified job seekers Date Posted : 01/22/2024 Closing
Vans Assistant Store Manager (Towne East Square, Wichita, KS)
Assistant Store Manager As the Assistant Store Manager, you provide leadership and direction to the store team while successfully executing the company’s vision and values under the direction of the
IT System Administrator Acquisition Support
Requirements: Strong understanding of network infrastructure and network hardware. Ability to implement, administer, and troubleshoot network infrastructure devices, including wireless access points,
Copyright 2023-2025 - www.zdrecruit.com All Rights Reserved