Assurance Consultant, AWS Security Assurance Services
Arlington, Virginia, USA
Full Time Mid-level / Intermediate USD 118K - 204K
Amazon.com
Free shipping on millions of items. Get the best of Shopping and Entertainment with Prime. Enjoy low prices and great deals on the largest selection of everyday essentials and other products, including fashion, home, beauty, electronics, Alexa...
The Global Services, Security (GSS) team, a part of Amazon Web Services, leverages the expertise and ingenuity of our builders to establish scalable security solutions for both internal and external customers that drive business outcomes. Our goal of securing the world’s workloads and building a brighter future for humanity requires us to focus on reliable delivery of bar raising security outcomes and investment in security mechanisms and automation on behalf of our customers.
The AWS Security Assurance Services team works with our largest enterprise customers to operationalize the shared responsibility model as they migrate to the cloud. Are you a Governance, Risk, and Compliance leader who can address the challenges of migrating systems and workloads to the cloud? Are you skilled at helping executives address their enterprise risk management requirements using highly scalable computing architectures?
The AWS Security Assurance Service team, within GSS, is seeking a talented Assurance Consultant to help the expansion of the Security Assurance practice and educate our customers on how our product-led, people-powered services helps operate their business securely on AWS while also demonstrating assurance that compliance objectives can be achieved. This is an exciting opportunity to contribute at the intersection of cloud, cyber security, and compliance. You will have the opportunity to work with multiple lines of business, and learn from (and contribute to) a variety of security and compliance use cases. This is a customer facing role where success is measured by helping enable our customers in moving their workloads and regulated data into the cloud by addressing specific risk, regulatory, and compliance requirements.
We are looking for an innovative security/compliance professional who has the ability to handle a wide range of compliance requirements, is willing to dive in to the details, can translate those requirements into scalable solutions, and is able to communicate at all levels within an organization.
Key job responsibilities
- Expertise – Delivers in teams that include Amazonians, partners, and customers to enhance security assurance and compliance programs
- Solutions - Work with a team to define innovative compliance and risk management approaches to customers that help the customer understand how to move sensitive workloads onto the cloud faster.
- Delivery – Engagements will require working to resolve security assurance questions and to understand how to manage risk and achieve compliance while operating in the AWS Cloud through deep dive discussions, strategic presentations/recommendations, and hands on demonstrations of automating compliance in the AWS environment.
- Insights - Work with AWS engineering, support and business teams to convey partner and customer feedback as input to AWS technology roadmaps.
- Ability to travel to customer sites as needed.
About the team
AWS Security Assurance Services LLC, a PCI-QSAC (Payment Card Industry-Qualified Security Assessor company) and HITRUST External Assessor Firm, is a team of industry certified assessors, helping our customers achieve, maintain, and automate compliance in the cloud by tying together applicable audit standards to AWS service specific features and functionality.
Diverse Experiences
Amazon values diverse experiences. Even if you do not meet all of the preferred qualifications and skills listed in the job description, we encourage candidates to apply. If your career is just starting, hasn’t followed a traditional path, or includes alternative experiences, don’t let it stop you from applying.
Why AWS
Amazon Web Services (AWS) is the world’s most comprehensive and broadly adopted cloud platform. We pioneered cloud computing and never stopped innovating — that’s why customers from the most successful startups to Global 500 companies trust our robust suite of products and services to power their businesses.
Work/Life Balance
We value work-life harmony. Achieving success at work should never come at the expense of sacrifices at home, which is why we strive for flexibility as part of our working culture. When we feel supported in the workplace and at home, there’s nothing we can’t achieve in the cloud.
Inclusive Team Culture
Here at AWS, it’s in our nature to learn and be curious. Our employee-led affinity groups foster a culture of inclusion that empower us to be proud of our differences. Ongoing events and learning experiences, including our Conversations on Race and Ethnicity (CORE) and AmazeCon (gender diversity) conferences, inspire us to never stop embracing our uniqueness.
Mentorship and Career Growth
We’re continuously raising our performance bar as we strive to become Earth’s Best Employer. That’s why you’ll find endless knowledge-sharing, mentorship and other career-advancing resources here to help you develop into a better-rounded professional.
- 5+ years experience in IT security, compliance and risk management, data privacy, or security controls.
- 2+ years experience advising customers on architectures meeting NIST-based industry standards such as NIST 800-53, FedRAMP, NIST 800-171, and CMMC.
- 2+ years experience with enterprise risk management methods and techniques to drive successful outcomes in a global enterprise environment.
- Bachelor's Degree in Computer Science, Information Systems Management, Information Security or equivalent experience required.
- Clear understanding of Agile, CI/CD, DevOps approach and how they impact risk management and compliance.
- Audit certification such as Certified Information System Auditor (CISA)
- CMMC certification such as CMMC-RP
- Demonstrated ability to think strategically about business, product, and technical challenges.
Amazon is committed to a diverse and inclusive workplace. Amazon is an equal opportunity employer and does not discriminate on the basis of race, national origin, gender, gender identity, sexual orientation, protected veteran status, disability, age, or other legally protected status.
Our inclusive culture empowers Amazonians to deliver the best results for our customers. If you have a disability and need a workplace accommodation or adjustment during the application and hiring process, including support for the interview or onboarding process, please visit https://amazon.jobs/content/en/how-we-hire/accommodations for more information. If the country/region you’re applying in isn’t listed, please contact your Recruiting Partner.
Our compensation reflects the cost of labor across several US geographic markets. The base pay for this position ranges from $118,200/year in our lowest geographic market up to $204,300/year in our highest geographic market. Pay is based on a number of factors including market location and may vary depending on job-related knowledge, skills, and experience. Amazon is a total compensation company. Dependent on the position offered, equity, sign-on payments, and other forms of compensation may be provided as part of a total compensation package, in addition to a full range of medical, financial, and/or other benefits. For more information, please visit https://www.aboutamazon.com/workplace/employee-benefits. This position will remain posted until filled. Applicants should apply via our internal or external career site.
The AWS Security Assurance Services team works with our largest enterprise customers to operationalize the shared responsibility model as they migrate to the cloud. Are you a Governance, Risk, and Compliance leader who can address the challenges of migrating systems and workloads to the cloud? Are you skilled at helping executives address their enterprise risk management requirements using highly scalable computing architectures?
The AWS Security Assurance Service team, within GSS, is seeking a talented Assurance Consultant to help the expansion of the Security Assurance practice and educate our customers on how our product-led, people-powered services helps operate their business securely on AWS while also demonstrating assurance that compliance objectives can be achieved. This is an exciting opportunity to contribute at the intersection of cloud, cyber security, and compliance. You will have the opportunity to work with multiple lines of business, and learn from (and contribute to) a variety of security and compliance use cases. This is a customer facing role where success is measured by helping enable our customers in moving their workloads and regulated data into the cloud by addressing specific risk, regulatory, and compliance requirements.
We are looking for an innovative security/compliance professional who has the ability to handle a wide range of compliance requirements, is willing to dive in to the details, can translate those requirements into scalable solutions, and is able to communicate at all levels within an organization.
Key job responsibilities
- Expertise – Delivers in teams that include Amazonians, partners, and customers to enhance security assurance and compliance programs
- Solutions - Work with a team to define innovative compliance and risk management approaches to customers that help the customer understand how to move sensitive workloads onto the cloud faster.
- Delivery – Engagements will require working to resolve security assurance questions and to understand how to manage risk and achieve compliance while operating in the AWS Cloud through deep dive discussions, strategic presentations/recommendations, and hands on demonstrations of automating compliance in the AWS environment.
- Insights - Work with AWS engineering, support and business teams to convey partner and customer feedback as input to AWS technology roadmaps.
- Ability to travel to customer sites as needed.
About the team
AWS Security Assurance Services LLC, a PCI-QSAC (Payment Card Industry-Qualified Security Assessor company) and HITRUST External Assessor Firm, is a team of industry certified assessors, helping our customers achieve, maintain, and automate compliance in the cloud by tying together applicable audit standards to AWS service specific features and functionality.
Diverse Experiences
Amazon values diverse experiences. Even if you do not meet all of the preferred qualifications and skills listed in the job description, we encourage candidates to apply. If your career is just starting, hasn’t followed a traditional path, or includes alternative experiences, don’t let it stop you from applying.
Why AWS
Amazon Web Services (AWS) is the world’s most comprehensive and broadly adopted cloud platform. We pioneered cloud computing and never stopped innovating — that’s why customers from the most successful startups to Global 500 companies trust our robust suite of products and services to power their businesses.
Work/Life Balance
We value work-life harmony. Achieving success at work should never come at the expense of sacrifices at home, which is why we strive for flexibility as part of our working culture. When we feel supported in the workplace and at home, there’s nothing we can’t achieve in the cloud.
Inclusive Team Culture
Here at AWS, it’s in our nature to learn and be curious. Our employee-led affinity groups foster a culture of inclusion that empower us to be proud of our differences. Ongoing events and learning experiences, including our Conversations on Race and Ethnicity (CORE) and AmazeCon (gender diversity) conferences, inspire us to never stop embracing our uniqueness.
Mentorship and Career Growth
We’re continuously raising our performance bar as we strive to become Earth’s Best Employer. That’s why you’ll find endless knowledge-sharing, mentorship and other career-advancing resources here to help you develop into a better-rounded professional.
Basic Qualifications
- 5+ years experience in IT security, compliance and risk management, data privacy, or security controls.
- 2+ years experience advising customers on architectures meeting NIST-based industry standards such as NIST 800-53, FedRAMP, NIST 800-171, and CMMC.
- 2+ years experience with enterprise risk management methods and techniques to drive successful outcomes in a global enterprise environment.
- Bachelor's Degree in Computer Science, Information Systems Management, Information Security or equivalent experience required.
Preferred Qualifications
- Experience in performing security assessments and information system audits of network, operating systems, application security, as well as auditing IT processes.- Clear understanding of Agile, CI/CD, DevOps approach and how they impact risk management and compliance.
- Audit certification such as Certified Information System Auditor (CISA)
- CMMC certification such as CMMC-RP
- Demonstrated ability to think strategically about business, product, and technical challenges.
Amazon is committed to a diverse and inclusive workplace. Amazon is an equal opportunity employer and does not discriminate on the basis of race, national origin, gender, gender identity, sexual orientation, protected veteran status, disability, age, or other legally protected status.
Our inclusive culture empowers Amazonians to deliver the best results for our customers. If you have a disability and need a workplace accommodation or adjustment during the application and hiring process, including support for the interview or onboarding process, please visit https://amazon.jobs/content/en/how-we-hire/accommodations for more information. If the country/region you’re applying in isn’t listed, please contact your Recruiting Partner.
Our compensation reflects the cost of labor across several US geographic markets. The base pay for this position ranges from $118,200/year in our lowest geographic market up to $204,300/year in our highest geographic market. Pay is based on a number of factors including market location and may vary depending on job-related knowledge, skills, and experience. Amazon is a total compensation company. Dependent on the position offered, equity, sign-on payments, and other forms of compensation may be provided as part of a total compensation package, in addition to a full range of medical, financial, and/or other benefits. For more information, please visit https://www.aboutamazon.com/workplace/employee-benefits. This position will remain posted until filled. Applicants should apply via our internal or external career site.
Job stats:
2
1
0
Categories:
CloudSec Jobs
Consulting Jobs
Tags: Agile Application security Audits Automation AWS CI/CD CISA Cloud CMMC Compliance Computer Science DevOps FedRAMP Governance HITRUST NIST NIST 800-53 Privacy Risk management Security assessment Travel
Perks/benefits: Career development Conferences Equity / stock options Team events
Region:
North America
Country:
United States
More jobs like this
Explore more career opportunities
Find even more open roles below ordered by popularity of job title or skills/products/technologies used.
Information Security Specialist jobsSenior Cloud Security Engineer jobsInformation System Security Officer jobsSenior Security Analyst jobsSenior Cybersecurity Engineer jobsSystems Administrator jobsInformation Security Manager jobsSystems Engineer jobsSenior Information Security Analyst jobsSenior Network Security Engineer jobsIT Security Engineer jobsCyber Security Specialist jobsIT Security Analyst jobsChief Information Security Officer jobsSecurity Specialist jobsSecurity Consultant jobsInformation System Security Officer (ISSO) jobsInformation Systems Security Engineer jobsSenior Information Security Engineer jobsSenior Cyber Security Engineer jobsSenior Product Security Engineer jobsCyber Threat Intelligence Analyst jobsCyber Security Architect jobsThreat Intelligence Analyst jobsSenior Software Engineer jobs
Java jobsEncryption jobsEDR jobsBash jobsTS/SCI jobsIDS jobsIPS jobsThreat detection jobsSQL jobsTerraform jobsSDLC jobsSplunk jobsMalware jobsTop Secret jobsFinance jobsDocker jobsForensics jobsSOC 2 jobsRMF jobsActive Directory jobsCompTIA jobsIntrusion detection jobsITIL jobsOWASP jobsGIAC jobs
DoDD 8570 jobsVPN jobsAnsible jobsHIPAA jobsOSCP jobsIT infrastructure jobsData Analytics jobsTCP/IP jobsUNIX jobsCCSP jobsCRISC jobsSAP jobsBanking jobsSANS jobsSOAR jobsSOX jobsJavaScript jobsMITRE ATT&CK jobsSecurity strategy jobsClearance Required jobsMachine Learning jobsZero Trust jobsDNS jobsJira jobsPolygraph jobs