Security Engineer-Compliance , AWS Infrastructure Security
The Infrastructure Security Team is responsible for the security and risk management of the AWS Infrastructure. We build systems that detect, assess, and mitigate risk across the global infrastructure and are accountable for keeping the Amazon Infrastructure secure and compliant with customer requirements.
The Infrastructure Security Team is looking for a Security Engineer to join our Infrastructure Governance, Risk, and Compliance Team.
The successful candidate is an owner who can deliver through high performing, diverse teams and who understands all parts of security, software development, deployment, and operations.
You must possess strong technical networking background, verbal and written communication skills, be self-driven, demonstrate high impact and influence across teams, and deliver high quality results in a fast-paced environment.
We’re looking for leaders who can lead through challenges and seek to shed light on ambiguity. If that is you, Amazon is the place to be as we solve hard problems, make history, and have fun.
Key job responsibilities
- You will aid in the development, assessment, and analyzing of security considerations for AWS Infrastructure and network in accordance with HiTRUST, NIST, FedRAMP, ISO and departmental standards.
- Lead in the identification and drive mitigation of security risks through formal assessment activities
- Lead in the Identification and application of remediation, fix procedures, and when necessary mitigation techniques, including the development of monitoring and reporting capabilities for continued compliance.
- Lead compliance related discussions, including expert understanding of applicable compliance frameworks, architectures, and security control requirements (technical and non-technical)
- You will assist customers to resolve security issues and concerns as well as to explain how compliance with various standards and frameworks are achieved
As a member of the Infrastructure Security Compliance organization, you are expected to be the subject matter expert on regulatory, compliance, legal implications on security risks and opportunities.
BASIC QUALIFICATIONS
- Bachelor's Degree in Computer Science, Information Systems, Engineering, or equivalent
- 5+ years of experience in performing in depth networking security assessments
- Advanced SME knowledge of Cloud Computing, FedRAMP, ISO, NIST and other industry leading compliance frameworks.
- 4+ years experience and technical knowledge in security engineering, secure architecture development, system and network security, authentication and security protocols, applied cryptography, and application security
- Self-motivated and able to work / lead in an independent manner in a fast-paced, deadline-driven, environment
- Ability to own and author original content / reports / attestations
- Weekly onsite office time is required.
PREFERRED QUALIFICATIONS
- Experienced with Software Development Lifecycle (SDLC) and related terminology as it relates to Information Security / Information Assurance on the cloud
- Exceptional organizational, planning, and attention to detail skills
- Strong technical background
- Certified Information Systems Security Professional (CISSP) certified
- 2+ years experience in assessing Infrastructure Networking Security
Related Jobs
Security Engineer-Compliance , AWS Infrastructure Security
Security technician
Cloud Security / Cloud Network Security
Information Security Engineer - PKI