Sr. Security Compliance Specialist, Kuiper External Security Assurance
Amazon.com
Project Kuiper is an Amazon initiative to increase global broadband access through a constellation of over 3,000 Low Earth Orbit (LEO) satellites. Its mission is to bring fast, affordable broadband to unserved and underserved communities worldwide.
At Project Kuiper, we are obsessed with customer trust and are seeking an individual contributor who is creative, and passionate about delivering Governance, Risk and Compliance solutions to meet Kuiper's regulatory and external assurance needs. In this role, you will work collaboratively with various business and security teams across Amazon to identify compliance needs, assess the maturity of processes and controls, design, build, and execute high-impact security or compliance programs and liaise with external auditors and regulators.
Export Control Requirement:
Due to applicable export control laws and regulations, candidates must be a U.S. citizen or national, U.S. permanent resident (i.e., current Green Card holder), or lawfully admitted into the U.S. as a refugee or granted asylum.
Key job responsibilities
- Design and drive scalable processes within a GRC (Governance, Risk, and Compliance) framework to ensure compliance with Kuiper's regulatory and contractual security and privacy requirements;
- Building and maintaining compliance certifications such as ISO 27001, ISO 22301, NIST 800-53, ISO27701, SOC 2, GDPR, CCPA etc., identifying applicable security controls, assessing compliance gaps and readiness, developing remediation strategies, and driving remediation activities to completion;
- Driving certifications and assurance programs by liaising with external auditors and other Amazon security teams, articulating control implementation and impact, and establishing considerations for applying security, and risk concepts to a highly technical and complex environment;
- Communicating to key stakeholders and leadership on controls implementation, audit results, compliance program metrics, key risks and areas of program improvement, as well as, seek diverse opinions and coordinate improvement efforts;
- Working closely with engineering, compliance, security, bizdev and Legal teams to identify future compliance and regulatory requirements and define compliance solutions;
- Serving as a subject matter expert and advisor on complex assurance issues;
- Understand and manage cross-functional GRC requirements to translate them into GRC tool; and
- Be comfortable with hands-on day-to-day problem solving and implementing quick and effective action plans to meet short- and long-term priorities.
About the team
Have you wanted an opportunity to secure an advanced satellite based broadband telecom service? The Kuiper Security team owns the security of product and operations of Project Kuiper end-to-end. We provide the necessary infrastructure and mechanisms to ensure the security of our satellite constellation and provide assurance to our customers and regulators on our security, privacy and resiliency programs. Our team drives the implementation of compliance programs, owns the collaboration with external auditors and regulators.
You will work in a start-up like environment, backed by Amazon’s infrastructure to bootstrap security mechanisms, and help instill the security culture in the organization.
At Project Kuiper, we are obsessed with customer trust and are seeking an individual contributor who is creative, and passionate about delivering Governance, Risk and Compliance solutions to meet Kuiper's regulatory and external assurance needs. In this role, you will work collaboratively with various business and security teams across Amazon to identify compliance needs, assess the maturity of processes and controls, design, build, and execute high-impact security or compliance programs and liaise with external auditors and regulators.
Export Control Requirement:
Due to applicable export control laws and regulations, candidates must be a U.S. citizen or national, U.S. permanent resident (i.e., current Green Card holder), or lawfully admitted into the U.S. as a refugee or granted asylum.
Key job responsibilities
- Design and drive scalable processes within a GRC (Governance, Risk, and Compliance) framework to ensure compliance with Kuiper's regulatory and contractual security and privacy requirements;
- Building and maintaining compliance certifications such as ISO 27001, ISO 22301, NIST 800-53, ISO27701, SOC 2, GDPR, CCPA etc., identifying applicable security controls, assessing compliance gaps and readiness, developing remediation strategies, and driving remediation activities to completion;
- Driving certifications and assurance programs by liaising with external auditors and other Amazon security teams, articulating control implementation and impact, and establishing considerations for applying security, and risk concepts to a highly technical and complex environment;
- Communicating to key stakeholders and leadership on controls implementation, audit results, compliance program metrics, key risks and areas of program improvement, as well as, seek diverse opinions and coordinate improvement efforts;
- Working closely with engineering, compliance, security, bizdev and Legal teams to identify future compliance and regulatory requirements and define compliance solutions;
- Serving as a subject matter expert and advisor on complex assurance issues;
- Understand and manage cross-functional GRC requirements to translate them into GRC tool; and
- Be comfortable with hands-on day-to-day problem solving and implementing quick and effective action plans to meet short- and long-term priorities.
About the team
Have you wanted an opportunity to secure an advanced satellite based broadband telecom service? The Kuiper Security team owns the security of product and operations of Project Kuiper end-to-end. We provide the necessary infrastructure and mechanisms to ensure the security of our satellite constellation and provide assurance to our customers and regulators on our security, privacy and resiliency programs. Our team drives the implementation of compliance programs, owns the collaboration with external auditors and regulators.
You will work in a start-up like environment, backed by Amazon’s infrastructure to bootstrap security mechanisms, and help instill the security culture in the organization.
Confirmar seu email: Enviar Email
Todos os Empregos de Amazon.com