Senior Security Compliance Specialist, Payments Security Compliance
DESCRIPTION
In compliance with regulatory requirements, and in alignment with business teams, Payments Security Compliance (PSC) team supports Amazon payments entities in select regions. Security Compliance Specialists have varying scope of responsibility in each region, depending on the nature of regulatory licenses to be maintained, number of regulators, the number of systems and teams in scope (blast radius of regulatory compliance), and the degree of stringency the local regime places on Security and Data protection We are seeking an experienced, self-motivated Senior Security Compliance Specialist with strong Security and Compliance background. This candidate will be an innovative and forward thinking individual who possess in-depth knowledge and will be identifying Information Security compliance risks, drive Security Governance, Security Assurance and Risk Management efforts, manage regional regulatory compliance and contribute to emerging regulations and technology standards globally, partnering with Security Experts of Global Amazon Information Security teams. Your work directly impacts Customer’s Trust in Amazon by providing secure, robust, and reliable payment services. Key job responsibilitiesPositively impact how Amazon builds, consumes and operate software securely and in compliance with standards and regulations Contribute on emerging regulations and technology standards joining forces with AWS, Public Policy team and others, making Amazon Consumer org’s voice heard in the relevant forums Communicate clearly and effectively to executive management on the plans, status and critical issues. Escalate urgent issues appropriately and driving them to closure in a timely manner Oversight on remediation programs impacting regulated region (s) being supported Be recognized as thought leader in Regulatory Security Compliance and Security best practices/standards Represents Security posture of regulated entities, in external regulatory audits Review Implementation of Security best practices and standards, drive continuous improvements Influence Security Control Assessment Automation efforts, for security and compliance at scale. Skilled in security risk analysis and making complex business/risk trade-off recommendations and decisions Maintaining C-level relationships with peers, stakeholders, boardrooms, and/or customers, often becoming the “trusted advisor”. Also, create and maintain a trusted relationship with regulators and industry forums About the team
The objective of Payments Security Compliance (PSC) is to oversee & manage Information Security Governance, Risk and Compliance (IS-GRC) for the Payments entities globally as part of Amazon’s WW Privacy team. The tenets for Payments Security Compliance team (Unless you know better ones) are: We provide timely and accurate security, compliance, and risk data to the business to make decisions. We hold ourselves accountable for accuracy of the data and businesses accountable for timely customer trustworthy decisions. We escalate appropriately to ensure that security and compliance issues are resolved promptly and with high judgment. If in doubt, we escalate and are clinical, precise, and complete in our escalation. We are business-risk driven in security and compliance decisions. We exercise judgement and partner with businesses in managing risk. We make it easy to be compliant. We eliminate, automate, provide self-service for customer compliance activities and in that order. Only where absolutely necessary we have manual activities. We interpret unclear external regulations, industry standards or Amazon policies in favor of our businesses protecting customer trust. We always favor automated policy enforcement over manual/best intentions policy enforcement. We are slow and deliberate when adding new policies, quick to fix policy issues and quick to eliminate irrelevant policies. When we add or update policies we ensure they are enforceable.
BASIC QUALIFICATIONS
- Bachelor's degree or equivalent in Information Security, Computer Science, Risk Management, Engineering, Math, Statistics, or a related discipline, or equivalent technology experience- Experience performing and/or participating in technical assessments in direct support of a major compliance effort (e.g. ISO 27001, ISO 22301, ISO 27701, ISO 9001, PCI, SOC1/SOC 2, HITRUST)
- Experience in services oriented architecture (SOA) hosted on cloud native infrastructure. Excellent communication, work prioritization and analytical skills. Result oriented, high energy, self-motivated Strong skills in security principles such as least privilege access, defense in depth, preventative vs detective controls
Recommended Jobs
IT Systems Analyst
A leading specialty insurer based in London is seeking an experienced IT Systems Analyst to join their IT team on a contract basis. This is a great opportunity to work in a dynamic environment whe…
Senior Aviation Broker
A leading independent broker is seeking a highly experienced Aviation Broker to join their London-based Aviation division. This is an exciting opportunity for a seasoned market professional to work wi…
SEN Teaching Assistant - Primary School (Wembley)
Location: Wembley, North-West London Start Date: ASAP / Next Term Contract: Full-time, Term Time Only Salary: £85–£100 per day A diverse and inclusive primary school in Wembley is s…
Internal Sales Executive
Permanent | Full-Time Location: Park Royal, London Hours: Monday to Friday, 08:30 - 17:00 Salary: £26,000 - £30,000 - DOE The Company A well-established specialist supplier with…
Site Manager - Haringey Secondary School
Role Category & Location Sector: Large Local Authority Secondary School. Borough: Haringey (Inner London, England). Start Date: Permanent, full-time role commencing January 2026. The Op…
Locum RVN - DAYS - NW London
Locum RVN &##128204; Camden &##127973; Hospital October: 24th, 26th, 29th November: 1st, 2nd, 3rd, 14th, 17th, 22nd, 24th Book Your Dates Today ⬇️ &##128233; [email protected] …
Financial Institutions Underwriter(s)
We’re working with a leading MGA, writing mid-market business across all territories, who are on an exciting growth drive. They’re looking for talented professionals—from 4 years’ experience to senio…
Senior Backend Engineer (Hiring Immediately)
About CarbonChain Want to work on the most pressing challenge of our generation? If you have experience building exceptional products, know how to execute at scale, and want to help build a company …
Production Operator - Nights
Shift - 4on/ 4off Pay Rate - £12.35 p/h Production Operator Nights Why Greencore? We’re one of the UK’s leading creators of convenience food, driven by a simple purpose: to make every day …
Part-time Housekeeper in Kilburn, London, Job ID J1F7C9
This lovely family based in Kilburn, London, is looking for a Part-time Housekeeper to maintain the cleanliness of their home. All general Housekeeping duties are required in this role Working hou…