DESCRIPTION
In compliance with regulatory requirements, and in alignment with business teams, InfoSec implemented the Office of Chief Information Security Officers (Office of CISO) in select regions. ISOs have varying scope of responsibility in each region, depending on the nature of regulatory licenses to be maintained, number of regulators, the number of systems and teams in scope (blast radius of regulatory compliance), and the degree of stringency the local regime places on Security and Data protection
We are seeking an experienced, self-motivated Sr. Technical Industry Specialist for our team with strong Security background. This candidate will be an innovative and forward thinking individual who possess in-depth knowledge and will be identifying Information Security risks, provide recommendation of threat mitigation, and help raise the Payment Security bar, partnering with Security Experts of Global Amazon Information Security team. Your ability to see the big picture and influence others will help drive the implementation of Security solutions for Payments. Your work directly impacts Customers Trust in Amazon by providing secure, robust, and reliable payment services.
Responsibilities:
Communicate clearly and effectively to executive management on the plans, status and critical issues. Escalate urgent issues appropriately and driving them to closure in a timely manner.
Review Implementation of Security Best practices and standards
Partner with InfoSec / External Vendors to conduct and manage Pen-Tests
Partner on Security Control Automation efforts, ensuring Payments nuances and Security threats are factored into the plans
Owns Security Governance across regulated and non-regulated workloads
Program Management of remediation programs
Auditee role from Security point of view across all External Audits, representing Security Posture, partnering with global teams and Security experts
Drive implementation of Security Dashboard, providing leadership visibility into threats and risks.
BASIC QUALIFICATIONS
Bachelor's Degree in computer science, engineering or related discipline or equivalent experience
Minimum 10 years experience in developing and implementing security operations and technology in large, complex enterprises in multiple industry verticals, across a wide range of technology platforms
3+ years of tech program management experience, in a fast-paced environment
Professional experience and good technical knowledge of application security, system security, network security, authentication/authorization protocols, and cryptography.
Familiarity with common attack patterns, exploitation techniques and remediation techniques will be plus
Experience with service-oriented architectures, private and public clouds and web services security.
Excellent communication, work prioritization and analytical skills.
Result oriented, high energy, self-motivated
Strong skills in security principles such as least privilege access, defense in depth, preventative vs detective controls, DevSecOps, Infrastructure and Network Security, Data protection, and Incident response
PREFERRED QUALIFICATIONS
Have a record of delivery of large scale security programs and/or technology solutions for major tech companies.
CISSP, CCSP, CISM, and/or other comparable certifications preferred.
Work ethic based on a strong desire to exceed expectations. Experience working successfully in a very fast-paced, results-oriented environment.
Knowledge of technology and payment industry trends
Senior-level written and verbal communication skills
Ability to communicate effectively with both technical and non-technical stakeholders across multiple business units
Seattle, WA
Amazon.com, Inc. engages in the retail sale of consumer products and subscriptions in North America and internationally. The company operates through three segments: North America, International, and Amazon Web Services (AWS) segments. It sells merchandise and content purchased for resale from third-party sellers through physical stores and online stores.
The company also manufactures and sells electronic devices, including Kindle e-readers, Fire tablets, Fire TVs, and Echo devices; provides Kindle Direct Publishing, an online service that allows independent authors and publishers to make their books available in the Kindle Store; and develops and produces media content.
In addition, it offers programs that enable sellers to sell their products on its Websites, as well as their own branded Websites; and programs that allow authors, musicians, filmmakers, skill and app developers, and others to publish and sell content. Further, the company provides compute, storage, database, and other AWS services, as well as compute, storage, database offerings, fulfillment, publishing, digital content subscriptions, advertising, and co-branded credit card agreement services.
Additionally, it offers Amazon Prime, a membership program, which provides free shipping of various items; access to streaming of movies and TV episodes; and other services. It serves consumers, sellers, developers, enterprises, and content creators. Amazon.com, Inc. has a strategic partnership with Volkswagen AG. The company was founded in 1994 and is headquartered in Seattle, Washington.