Security Assurance Specialist, AWS Compliance & Security Assurance
Amazon
- Location
- JP, 13, Tokyo
- Employment
- Full Time
- Work model
- On-Site
- Level
- Mid
- Posted
- 12h ago
Skills
About this role
At Amazon Web Services (AWS), Security is our highest priority. The AWS Security Assurance team is responsible for demonstrating the security controls of services offered by AWS. At our scale, we invent new ways to provide the highest level of assurance to our most security conscious customers. Our team works closely with customers across industries and their auditors and regulatory agencies to understand the security shift from on-premise to the cloud, security of the cloud and customer capabilities in the cloud. Our industry specialists ensure that AWS can meet customers audit, assurance and regulatory expectations. We are looking for an independent, passionate, and deeply experienced security audit specialist with expertise and experience in developing and implementing technology audit and assurance programs across Asia-Pacific. You will be responsible for defining and developing an audit and assurance program for our customers and countries across Asia-Pacific, along with hiring and managing the team that will work in specific markets. At our scale, we are committed to inventing new ways to provide the highest level of assurance to our most security conscious customers. You have a strong foundation in audit principles, as well as a diverse technology, privacy and assurance background. You have led teams and delivered challenging and complex audit and assurance programs. We have a team culture that encourages ownership, diversity, inclusion, and innovation. We expect team members and management alike to take a high degree of ownership for their program, vision and execution. We expect this person to balance their unique perspective with those of the diverse perspectives of the team and its stakeholders. You will have an opportunity to work directly with most divisions across AWS as we build the tools and evidence needed to demonstrate assurance for our customers. Your technical and audit background will help bridge security, technology, and compliance, and facilitate the scale of the program. This role, will be the single threaded owner of AWS' flagship assurance programs across Asia-Pacific, requires the ability to develop long-term projects and define processes and methods to ensure seamless execution across multiple internal and external stakeholders, including customers, auditors and regulatory agencies across Asia-Pacific. You are someone who can prioritize well, communicate early and clearly, and will be able to demonstrate track record of delivering both personally and through your team. You will be a positive influencer across diverse teams, be able to effectively rally support for your initiatives and be able to help independent industry specialists drive simple, scalable solutions to meet customer and regulator expectations. You will be able to show how you have used data to escalate and drive necessary change. This position will be responsible for the following activities: - Dive deep into customers' audit and assurance expectations across all industry sectors and Asia-Pacific geographies. - Dive deep into the Amazon control environment to develop broad domain and technical understanding of our security activities and control implementations to articulate compliance implications to both customers and internal/external audit functions. - Develop understanding of regulated industry compliance requirements and communicate how our control activities meet global regulatory obligations. - Develop strategic direction for security audit and assurance activities across all Asia-Pacific markets. - Liaise with strategic customers, regulators and auditors, articulate control implementation, and describe considerations for applying security and compliance concepts to a cloud environment. - Monitor, evaluate, and continuously improve the organization by being a trusted adviser, facilitator and creative problem solver. Implement continuous improvements to the security organization and the program management process. Share