Key job responsibilities
- Conduct security compliance assessments based on established control tests for compliance regimes (such as ISO, NIST, SOX, PCI, HIPAA, GDPR and other regulatory compliance)- Review security controls such as access controls, data encryption and audit logging- Participates in continuous improvements to the security assessment processes
- Captures and tracks information security assessment metrics and goals- Documents findings and recommendations in a clear, concise and audience-specific formatAbout the team
Diverse Experiences
Amazon Security values diverse experiences. Even if you do not meet all of the qualifications and skills listed in the job description, we encourage candidates to apply. If your career is just starting, hasn’t followed a traditional path, or includes alternative experiences, don’t let it stop you from applying.
Work/Life BalanceTraining and Career Growth
We’re continuously raising our performance bar as we strive to become Earth’s Best Employer. That’s why you’ll find endless knowledge-sharing, training, and other career-advancing resources here to help you develop into a better-rounded professional.
- Bachelor’s degree in Management Information Systems, Computer Science or relevant field
- 2+ years of relevant industry experience including information assurance, data privacy and compliance in security domains
- 2+ years of information security governance, audit, risk management or related client service or consulting experience.
- Related security control and compliance experience in any of the frameworks such as: HIPAA, HITRUST, PCI DSS, GLBA, ISO, NIST, or other regulatory regimes
- Experience with security control reviews and compliance assessments
- Understanding of information security standards and frameworks
- CISSP, CISA, CISM, CIPP, CEH and/or other comparable security or audit certifications preferred
- Experience in control framework development and implementation
- Related security control and compliance experience in multiple frameworks such as: HIPAA, HITRUST, PCI DSS, GLBA, ISO, NIST, or other regulatory regimes
- Experience with AWS Cloud services, managing security for AWS Cloud services
משרות נוספות שיכולות לעניין אותך