IT Compliance Specialist, Multi-Channel Fulfillment

Seattle, Washington


Employer: Amazon
Industry: Systems, Quality, \u0026 Security Engineering
Salary: $81600 per year
Job type: Full-Time

Do you have experience obtaining and maintaining IT compliance certifications for your organization? Do you have experience performing internal or external IT audits and assessments? Do you see regulatory compliance as a business enabler? Buy with Prime and Multi-Channel Fulfillment (MCF) are looking for a highly motivated Compliance Specialist to join our Security, Compliance, Privacy, & Trust (SCPT) team to support information security compliance self-assessments, coordinate remediation efforts with service teams, and manage third-party assessments objectives (e.g., ISO 27001, SOC 2, NIST CSF, etc.). You will join industry-leading security professionals to ensure that our services are in compliance with global security and privacy requirements.

Key job responsibilities

• \tDive deep into the control environment to develop a technical understanding of control implementation and articulate compliance implications to internal and external audit functions.

• \tImprove documentation, coordinate improvement efforts, and monitor process improvement effectiveness.

• \tOperate and plug into organizational mechanisms for managing changes to the control environment and external industry standards requirements; document organizational control activities and confirm readiness of controls for audit.

• \tDevelop broad domain and technical knowledge in AWS and Amazon corporate security solutions that support compliance programs.

• \tCommunicate and drive remediation and continuous improvements to the security organization, the program management process and control implementation projects in coordination with the service teams. This includes resolution of audit findings and the execution of projects originated from internal assessments.

• \tCollect evidence in support of audit engagements and the relationship with the third-party auditors and Amazon service teams, articulate control implementation and impact, and establish considerations for applying security, privacy, and compliance concepts to a technical cloud environment.

• \tApply a working knowledge of commercial information security and privacy regulation and policy to articulate customer and control impact and drive alignment to controls.

A day in the life

As part of the SCPT team, you will build bridges between security, technology, operations, and compliance by working directly with our in-scope service teams, infrastructure teams, corporate security teams, and third-party assessors.

About the team

Buy with Prime is helping people reimagine the way they shop.... wherever they do! Buy with Prime is a new way to extend Prime shopping benefits-including fast, free shipping, a seamless checkout experience, and free returns-to merchants' own online stores, ultimately increasing selection for Prime members. For over 20 years, Amazon been empowering businesses with opportunities to grow. Buy with Prime is an exciting next step in our mission to help merchants of all sizes grow their business-whether on Amazon or beyond.

MCF is a third-party logistics (3PL) solution that enables merchants to leverage Amazon's fulfillment network and team of experts to pick, pack, ship, and deliver customer orders from off-Amazon sales channels.

We are open to hiring candidates to work out of one of the following locations:

Arlington, VA, USA | Santa Clara, CA, USA | Seattle, WA, USA | Tempe, AZ, USA

BASIC QUALIFICATIONS

• \t3+ years of experience in security or commercial compliance work in support of highly technical, complex cloud services environment(s) or experience as an IT auditor in direct support of ISO 27001, SOC 2, or related examinations

• \tBachelor's Degree in Information Systems Management, Computer Science, Informatics, or other related fields.

• \tCertified Information Systems Auditor (CISA) or Certified Information Systems Manager (CISM)

• \tExperience communicating audit/assessment results and corrective action (i.e. remediation) plans to partners, and prioritizing and remediating findings with service/system owner.

• \tSolid technical background with experience in cloud technologies, cloud deployment models, and familiarity with AWS core services

• \tExperience working with auditors/regulators in support of information security assurance assessments.

• \tStrong organization, writing, and communication skills

PREFERRED QUALIFICATIONS

• \tCertified Information Systems Security Professional (CISSP), ISO 27001 Lead Auditor, ISO 27001 Lead Implementer, Certified Cloud Practitioner, or equivalent certifications

• \tExperience scoping and leading organizational risk assessments and documenting risk treatment plans

• \tExperience in privacy compliance consulting, control audits, or advisory work

• \tExperience engaging software development teams, who are building cloud products or services, defining technical security specifications to meet control requirements, and monitoring the team's progress from development to release.

• \tExperience building certification roadmaps based on customer requirements, compliance documentation, and ensuring that committed assessments are delivered on schedule.

• \tKnowledge and proficiency with Project Management tools, like Asana and ServiceNow.

Amazon is committed to a diverse and inclusive workplace. Amazon is an equal opportunity employer and does not discriminate on the basis of race, national origin, gender, gender identity, sexual orientation, protected veteran status, disability, age, or other legally protected status. For individuals with disabilities who would like to request an accommodation, please visit https://www.amazon.jobs/en/disability/us.

Our compensation reflects the cost of labor across several US geographic markets. The base pay for this position ranges from $81,600/year in our lowest geographic market up to $196,300/year in our highest geographic market. Pay is based on a number of factors including market location and may vary depending on job-related knowledge, skills, and experience. Amazon is a total compensation company. Dependent on the position offered, equity, sign-on payments, and other forms of compensation may be provided as part of a total compensation package, in addition to a full range of medical, financial, and/or other benefits. For more information, please visit https://www.aboutamazon.com/workplace/employee-benefits. This position will remain posted until filled. Applicants should apply via our internal or external career site.

Created: 2024-05-08
Reference: 2633829
Country: United States
State: Washington
City: Seattle
ZIP: 98109

About Amazon

Founded in: 1994
Number of Employees: 1600000