Risk Manager, WWOS
We are seeking a Security Industry Specialist with a diverse background, who is a creative problem solver and passionate about delivering solutions that improve both user experience and security while meeting internal and external objectives.In this role, you will work across many stakeholders to design solutions that meet global industry standards and regulatory requirements. As part of the team, you will identify industry requirements, evaluate compliance requests, and deliver results that demonstrate the effectiveness of Amazon's internal security controls. You’ll apply your creative problem-solving skills and work with service teams and partner security teams to provide assurance to customers, as well as, design, build, and execute high-impact security or compliance programs.This role will define field-facing strategies and campaigns to empower business-level associates and leadership ownership of site security culture. Establish and drive measurable business outcomes through best-in-class storytelling, integration with Internal Communications and Ops Engagement efforts, and force-multiplies effective engagement efforts through innovative and streamlined solutions. Responsible for simplifying GSO’s complex contributions for easy customer consumption in a way that enables trust, strengthens partnerships, and expands the footprint of GSO’s impact within WWAS.Key job responsibilities- Building ISO 27001, SOC2, and other security and privacy certifications and attestation programs, identifying applicable security controls, assessing compliance gaps and readiness, developing remediation strategies, and driving remediation activities to completion;- Driving certifications and assessments programs by liaising with external auditors and other Amazon security teams, articulating control implementation and impact, and establishing considerations for applying security, privacy, and compliance concepts to a technical cloud environment;- Delivering recommendations and risk interpretations in a clear, concise and audience-specific format- Developing broad domain and technical knowledge in AWS and Amazon security solutions including the operational processes and controls in place that support InfoSec compliance programs;- Communicating to key stakeholders and leadership the operational processes around Amazon security practices and how controls are implemented across the environment;- Communicating to leadership key risks and areas of program improvement, as well as, seek diverse opinions and coordinate improvement efforts;- Working closely with engineering, compliance, security, and Legal teams to meet compliance and regulatory requirements and design compliance solutions;- Developing and deploying initiatives that empower Operations employees at all levels to strengthen our security culture;- Delivering trusted and relevant information that engages, inspires, and drives Operations employees to take proactive and preventative action that advances workplace security infrastructure;- Developing measurability mechanisms and analyze data to drive improvements that are quantified with metrics and used to drive continuous improvements;- Executing all facets of this function with a forward-looking slate to identify optimization, scalability, and ROI-expansion opportunities;A day in the lifemAmazon offers a full range of benefits that support you and eligible family members, including domestic partners and their children. Benefits can vary by location, the number of regularly scheduled hours you work, length of employment, and job status such as seasonal or temporary employment. The benefits that generally apply to regular, full-time employees include:1. Medical, Dental, and Vision Coverage2. Maternity and Parental Leave Options3. Paid Time Off (PTO)4. 401(k) PlanIf you are not sure that every qualification on the list above describes you exactly, we'd still love to hear from you! At Amazon, we value people with unique backgrounds, experiences, and skillsets. If you’re passionate about this role and want to make an impact on a global scale, please apply!About the teamWWOS (World-Wide Operations Security) protects Amazon’s people, reputation, and assets by fostering a safe, secure, and resilient end-to-end supply chain that associates and customers value and trust. To accomplish this and ensure security excellence, WWOS prevents Security and Loss Prevention (S&LP)-related risks and vulnerabilities, intervenes in incidents and exposures to minimize any negative impact through early detection and effective response, and thoroughly investigates security-related incidents to identify and remove root causes and prevent reoccurrence.BASIC QUALIFICATIONS- 6+ years of compliance, audit or risk management experience- Bachelor's degree or equivalent- 5+ years of developing, negotiating and executing business agreements experience ...