Security Assurance Specialist, Global AWS Assurance, Security Assurance
Full time
at ENGINEERINGUK
in
Online
Posted on February 20, 2025
Job details
You will need to login before you can apply for a job.
Security Assurance Specialist, Global AWS Assurance, Security Assurance
Sector: Technology Role: Specialist Contract Type: Permanent Hours: Full Time DESCRIPTION Do you have a passion for applying cutting-edge technologies to automate traditionally manual processes? Do you have experience in finding innovative solutions to scale security controls across diverse teams and technologies? Do you have ideas about influencing the future of security assurance? At Amazon Web Services (AWS), Security is our highest priority. The AWS Security Assurance team is responsible for demonstrating the security controls of services offered by AWS. Our team works closely with customers across industries and their auditors and regulatory agencies to understand the security shift from on-premise to the cloud, security of the cloud, and customer capabilities in the cloud. We are looking for an independent, passionate, and deeply experienced security audit specialist with expertise in developing and implementing technology audit and assurance programs across Asia-Pacific. You will be responsible for defining and developing an audit and assurance program for our customers and countries in Singapore and across Asia-Pacific, along with hiring and managing the team that will work in specific markets. This role is responsible for AWS' flagship audit, attestations, and certifications. It also requires the ability to develop long-term projects and define processes and methods to ensure seamless execution across multiple internal and external stakeholders, including customers, auditors, and regulatory agencies across Asia-Pacific. You are someone who can prioritize well, communicate early and clearly, and will be able to demonstrate a track record of delivering both personally and through your team. You will be a positive influencer across diverse teams, able to effectively rally support for your initiatives and help independent industry specialists drive simple, scalable solutions to meet customer and regulator expectations. Key job responsibilities This position will be responsible for the following activities:- Dive deep into customers' audit and assurance expectations across all industry sectors in Asia-Pacific region.
- Dive deep into the Amazon control environment to develop a broad domain and technical understanding of our security activities and control implementations to articulate compliance implications to both customers and internal/external audit functions.
- Develop understanding of regulated industry compliance requirements and communicate how our control activities meet global regulatory obligations.
- Develop strategic direction for security audit and assurance activities in APAC market.
- Liaise with strategic customers, regulators, and auditors, articulate control implementation, and describe considerations for applying security and compliance concepts to a cloud environment.
- Monitor, evaluate, and continuously improve the organization by being a trusted adviser, facilitator, and creative problem solver.
- Apply a sound knowledge of global information security regulation and policy to articulate customer and regulatory impact and drive alignment to AWS environment.
- 5 years of professional experience in technology and security audit and assurance activities and security implementations within regulated industries.
- 5 years of experience building and managing teams of technical, audit, assurance, and regulatory specialists, with remote management experience.
- Relevant experience working directly with customers' senior management, regulators, and executives on financial regulatory, technology, or related policy issues.
- Bachelors or advanced degree in related area of study (Computer Science, Engineering, Cyber Security, IT Audit, Technology Risk Management, IT Security Management).
- Experience delivering programs such as PCI DSS, SOC 1/2/3, ISO 27001/27017/27018/22301/20000, TIA-942, FedRAMP, HIPAA, IRAP, FISC, OSPAR, K-ISMS, MTCS, or C5.
- Strong verbal and written communications skills, as well as the ability to work effectively across internal and external organizations.
- Demonstrated ability to effectively and comfortably interact at senior and executive levels.
- Self-starter with proven track record of successfully working with a wide array of functional groups across an organization and cultures.
- Experience auditing cloud environments.
- Strong analytical and critical thinking skills with the ability to use data to back up assumptions, recommendations and drive actions.
Apply safely
To stay safe in your job search, information on common scams and to get free expert advice, we recommend that you visit SAFERjobs, a non-profit, joint industry and law enforcement organization working to combat job scams.